2026-04-04T23:32:06.517 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-04T23:32:06.517 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-04T23:32:06.517 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-04T23:32:06.517 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-04T23:32:06.517 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-04T23:32:06.517 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-04T23:32:06.517 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-04T23:32:06.517 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-04T23:32:06.517 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-04T23:32:06.517 MdCoreSvc is supported in this platform and OS Signature updated on 04-04-2026 23:32:06 Product Version: 4.18.26020.6 Service Version: 4.18.26020.6 Engine Version: 1.1.26020.3 AS Signature Version: 1.447.168.0 AV Signature Version: 1.447.168.0 ************************************************************ 2026-04-04T23:32:06.533 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-04T23:32:06.533 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\90A33711-4830-4ED9-AED9-9151414B75DC1808.1dcc48b3998103f Signature updated via MicrosoftUpdateServer on 04-04-2026 23:32:06 ************************************************************ 2026-04-04T23:32:06.580 Job Notification: Process exited from job (3672) 2026-04-04T23:32:06.595 Job Notification: Process exited from job (7388) 2026-04-04T23:32:06.595 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-04T23:32:06.595 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-04-04T23:32:06.595 Job Notification: Process exited from job (3784) 2026-04-04T23:32:06.595 Job Notification: Process exited from job (4180) 2026-04-04T23:32:06.752 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-04T23:32:06.752 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-04T23:32:06.752 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-04T23:32:06.752 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-04T23:32:06.752 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-04T23:32:06.752 [Engine] Engine 00007FFD0D3319B0 no longer in use. Number of active engines: 1 2026-04-04T23:32:06.752 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-04T23:32:06.752 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-04T23:32:07.003 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-04T23:32:07.003 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-04T23:32:07.003 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-04T23:32:07.589 Process scan (postsignatureupdatescan) started. 2026-04-04T23:32:07.854 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 68091, Count: 7083, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\actualitati\stiri\a527209d050c2d1448a13bb1891c4b4a.html, EstimatedImpact: 0% 2026-04-04T23:32:07.854 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8461, Count: 77652, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{22BBF5DF-8BAD-4C94-A3BE-D946F6176CDF}.info, EstimatedImpact: 0% 2026-04-04T23:32:07.854 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-04T23:32:07.854 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 25, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823f92_1.MAI, EstimatedImpact: 0% 2026-04-04T23:32:07.854 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c683b440-9b2c-4cca-8b1b-16a5f96ed888.tmp, EstimatedImpact: 0% 2026-04-04T23:32:07.854 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-04T23:32:07.854 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c56d150-f446-44b0-85e0-05d65c0f7d36.tmp, EstimatedImpact: 0% 2026-04-04T23:32:07.854 ProcessImageName: updater.exe, Pid: 7344, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3f27603d-02ac-4bbd-b67e-ad5b541b9e2b.tmp, EstimatedImpact: 0% 2026-04-04T23:32:07.854 ProcessImageName: updater.exe, Pid: 3924, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3103e6b4-de36-4074-804d-989dbef78854.tmp, EstimatedImpact: 0% 2026-04-04T23:32:07.854 ProcessImageName: updater.exe, Pid: 6280, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-04T23:32:07.854 ProcessImageName: updater.exe, Pid: 7616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5bce322-5349-42fb-b95a-0f3828770496.tmp, EstimatedImpact: 0% 2026-04-04T23:32:07.854 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44c8d4e9-330b-4930-acde-e4916d6b5b6e.tmp, EstimatedImpact: 0% 2026-04-04T23:32:07.885 [Engine] RSIG_UNLOADENGINE, 00007FFD0D3319B0, err=0x0 2026-04-04T23:32:07.901 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AF23BF2B-248E-4A28-8672-7A7CA746515F} removed 2026-04-04T23:32:13.729 Process scan (postsignatureupdatescan) completed. 2026-04-04T23:37:06.501 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-04T23:38:33.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-04T23:50:34.129 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823fcc_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #745072, FileId: 0x2b1b00000004c526, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-04T23:53:38.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T00:08:43.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T00:10:26.210 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #746600, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T00:10:26.226 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #746602, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T00:10:36.231 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #746615, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T00:10:36.231 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #746617, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T00:10:36.377 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #746621, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T00:10:36.377 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #746623, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T00:23:48.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T00:38:53.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T00:53:58.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T01:09:03.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T01:10:26.055 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #749961, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T01:10:26.071 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #749963, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T01:10:36.069 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #749976, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T01:10:36.069 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #749977, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T01:10:36.084 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #749979, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T01:10:36.084 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #749978, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T01:24:08.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T01:32:06.472 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53700, Count: 5839, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 1% 2026-04-05T01:32:06.472 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 841, Count: 6471, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.5U7FX3, EstimatedImpact: 0% 2026-04-05T01:32:06.472 ProcessImageName: updater.exe, Pid: 5156, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1e2e5ef-2766-4661-8a1d-6ec11f558a25.tmp, EstimatedImpact: 0% 2026-04-05T01:32:06.472 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-05T01:32:06.472 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ee9036b-6c69-48bc-8fb6-21189b281b31.tmp, EstimatedImpact: 0% 2026-04-05T01:39:13.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T01:54:18.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T02:09:23.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T02:10:26.518 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #753328, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T02:10:26.534 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #753330, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T02:10:36.523 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #753343, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T02:10:36.523 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #753344, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T02:10:36.538 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #753345, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T02:24:28.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T02:39:33.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T02:54:38.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T03:09:43.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T03:10:25.718 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #756705, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T03:10:25.734 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #756707, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T03:10:35.733 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #756720, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T03:10:35.733 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #756722, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T03:16:55.884 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:1C0AC482-D4D5-48EA-9AEB-896347E722B8, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-05T03:16:55.884 Scheduled scan with Id 1C0AC482-D4D5-48EA-9AEB-896347E722B8 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-05T03:16:55.884 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-05T03:16:55.884 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-05T03:16:55.884 [SFC] System file cache build is not needed (already completed) 2026-04-05T03:17:06.559 Engine:Triggered AR EMS scan 2026-04-05T03:17:06.559 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.575 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.606 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.622 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.653 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.668 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.684 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.715 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.731 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.762 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.793 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.809 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.825 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.840 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.856 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.887 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.903 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.965 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.981 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:06.997 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:07.028 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:07.075 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-05T03:17:07.106 Bm signature throttled:0x00002db31bed458f 2026-04-05T03:17:20.497 QuickScan:ScanID:1C0AC482-D4D5-48EA-9AEB-896347E722B8: Quick scan finished with error 0 2026-04-05T03:17:20.512 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-05T03:17:21.019 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-05T03:17:21.019 [RTP] Duplicating the current plugin configuration object... 2026-04-05T03:17:21.019 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-05T03:17:21.019 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-05T03:17:21.019 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-05T03:17:21.019 [RTP] No config change detected. Not updating plugin configuration. 2026-04-05T03:17:21.019 [RTP] No config changes found. No configuration switch. 2026-04-05T03:17:21.019 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-05T03:24:48.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T03:32:06.484 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53746, Count: 5843, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-05T03:32:06.484 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1591, Count: 12942, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.5U7FX3, EstimatedImpact: 0% 2026-04-05T03:32:06.484 ProcessImageName: updater.exe, Pid: 5156, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1e2e5ef-2766-4661-8a1d-6ec11f558a25.tmp, EstimatedImpact: 0% 2026-04-05T03:32:06.484 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-05T03:32:06.484 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18be0f62-a718-42c3-abd8-75460c137627.tmp, EstimatedImpact: 0% 2026-04-05T03:32:06.484 ProcessImageName: updater.exe, Pid: 6080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f72f2499-3028-4d3e-a916-4766fd59580a.tmp, EstimatedImpact: 0% 2026-04-05T03:32:06.484 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ee9036b-6c69-48bc-8fb6-21189b281b31.tmp, EstimatedImpact: 0% 2026-04-05T03:39:53.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T03:54:58.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T04:10:03.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T04:10:25.438 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #760262, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T04:10:25.454 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #760264, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T04:10:35.456 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #760277, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T04:10:35.471 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #760279, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T04:12:03.457 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #760357, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T04:12:03.473 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #760359, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T04:12:08.607 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #760378, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T04:12:08.607 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #760381, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T04:12:08.622 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #760383, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T04:12:08.622 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #760385, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T04:12:18.617 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #760397, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T04:12:18.633 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #760399, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T04:12:18.633 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #760401, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T04:25:08.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T04:40:13.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T04:55:18.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T05:10:23.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T05:10:27.249 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #763602, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T05:10:27.264 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #763604, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T05:10:37.269 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #763617, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T05:10:37.269 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #763619, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T05:10:37.425 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #763623, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T05:10:37.425 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #763625, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T05:25:28.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T05:32:06.493 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53746, Count: 5843, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-05T05:32:06.493 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2401, Count: 19413, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.5U7FX3, EstimatedImpact: 0% 2026-04-05T05:32:06.493 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db8d8e44-b7a2-456a-a5f1-4f2bfccb70b1.tmp, EstimatedImpact: 0% 2026-04-05T05:32:06.493 ProcessImageName: updater.exe, Pid: 5156, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1e2e5ef-2766-4661-8a1d-6ec11f558a25.tmp, EstimatedImpact: 0% 2026-04-05T05:32:06.493 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-05T05:32:06.493 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18be0f62-a718-42c3-abd8-75460c137627.tmp, EstimatedImpact: 0% 2026-04-05T05:32:06.493 ProcessImageName: updater.exe, Pid: 7648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f61552a-f665-4759-bd67-4a165bec1df6.tmp, EstimatedImpact: 0% 2026-04-05T05:32:06.493 ProcessImageName: updater.exe, Pid: 6080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f72f2499-3028-4d3e-a916-4766fd59580a.tmp, EstimatedImpact: 0% 2026-04-05T05:32:06.493 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ee9036b-6c69-48bc-8fb6-21189b281b31.tmp, EstimatedImpact: 0% 2026-04-05T05:32:06.493 ProcessImageName: updater.exe, Pid: 2504, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-05T05:40:33.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T05:55:38.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T06:10:25.710 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #766949, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T06:10:25.726 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #766952, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T06:10:35.724 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #766965, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T06:10:35.740 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #766967, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T06:10:35.740 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #766969, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T06:10:43.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T06:25:48.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T06:40:53.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T06:55:58.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T07:10:25.021 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #770261, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T07:10:25.036 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #770263, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T07:10:35.035 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #770277, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T07:10:35.035 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #770279, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T07:10:35.035 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #770281, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T07:11:03.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T07:26:08.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T07:32:06.501 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54003, Count: 5864, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-05T07:32:06.501 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3286, Count: 25884, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.5U7FX3, EstimatedImpact: 0% 2026-04-05T07:32:06.501 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-05T07:32:06.501 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db8d8e44-b7a2-456a-a5f1-4f2bfccb70b1.tmp, EstimatedImpact: 0% 2026-04-05T07:32:06.501 ProcessImageName: updater.exe, Pid: 5156, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1e2e5ef-2766-4661-8a1d-6ec11f558a25.tmp, EstimatedImpact: 0% 2026-04-05T07:32:06.501 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ee9036b-6c69-48bc-8fb6-21189b281b31.tmp, EstimatedImpact: 0% 2026-04-05T07:32:06.501 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37c4b605-9967-45ea-8484-4a6afff4a8f2.tmp, EstimatedImpact: 0% 2026-04-05T07:32:06.501 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c01ecf7-cb4e-4642-97ce-f04e2a2ef6a5.tmp, EstimatedImpact: 0% 2026-04-05T07:32:06.501 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18be0f62-a718-42c3-abd8-75460c137627.tmp, EstimatedImpact: 0% 2026-04-05T07:32:06.501 ProcessImageName: updater.exe, Pid: 7648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f61552a-f665-4759-bd67-4a165bec1df6.tmp, EstimatedImpact: 0% 2026-04-05T07:32:06.501 ProcessImageName: updater.exe, Pid: 6080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f72f2499-3028-4d3e-a916-4766fd59580a.tmp, EstimatedImpact: 0% 2026-04-05T07:32:06.501 ProcessImageName: updater.exe, Pid: 2504, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-05T07:41:13.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T07:56:18.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T08:10:27.127 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #773582, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T08:10:27.159 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #773585, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T08:10:37.131 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #773598, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T08:10:37.131 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #773600, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T08:10:37.147 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #773602, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T08:10:37.147 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #773604, FileId: 0x554000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T08:11:23.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T08:26:28.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T08:41:33.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T08:56:38.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T09:10:24.468 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #776903, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T09:10:24.483 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #776905, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T09:10:34.483 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #776919, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T09:10:34.498 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #776922, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T09:11:43.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T09:12:08.708 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #777007, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T09:12:08.708 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #777010, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T09:12:12.945 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #777019, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T09:12:12.961 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #777022, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T09:12:12.961 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #777024, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T09:12:22.959 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #777037, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T09:12:22.959 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #777038, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T09:12:22.959 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #777039, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T09:26:48.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T09:32:06.505 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54003, Count: 5864, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-05T09:32:06.505 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4006, Count: 32364, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.5U7FX3, EstimatedImpact: 0% 2026-04-05T09:32:06.505 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-05T09:32:06.505 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db8d8e44-b7a2-456a-a5f1-4f2bfccb70b1.tmp, EstimatedImpact: 0% 2026-04-05T09:32:06.505 ProcessImageName: updater.exe, Pid: 5156, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1e2e5ef-2766-4661-8a1d-6ec11f558a25.tmp, EstimatedImpact: 0% 2026-04-05T09:32:06.505 ProcessImageName: updater.exe, Pid: 7648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f61552a-f665-4759-bd67-4a165bec1df6.tmp, EstimatedImpact: 0% 2026-04-05T09:32:06.505 ProcessImageName: updater.exe, Pid: 7176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e84db7cf-b2fc-4e75-8f0f-adb58e569cd9.tmp, EstimatedImpact: 0% 2026-04-05T09:32:06.505 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c01ecf7-cb4e-4642-97ce-f04e2a2ef6a5.tmp, EstimatedImpact: 0% 2026-04-05T09:32:06.505 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18be0f62-a718-42c3-abd8-75460c137627.tmp, EstimatedImpact: 0% 2026-04-05T09:32:06.505 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ee9036b-6c69-48bc-8fb6-21189b281b31.tmp, EstimatedImpact: 0% 2026-04-05T09:32:06.505 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37c4b605-9967-45ea-8484-4a6afff4a8f2.tmp, EstimatedImpact: 0% 2026-04-05T09:32:06.505 ProcessImageName: updater.exe, Pid: 6080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f72f2499-3028-4d3e-a916-4766fd59580a.tmp, EstimatedImpact: 0% 2026-04-05T09:32:06.505 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ab9fe21-e72e-4c3e-95bf-ce039fdb94e8.tmp, EstimatedImpact: 0% 2026-04-05T09:32:06.505 ProcessImageName: updater.exe, Pid: 3972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\766f743d-cffa-4786-9004-cfaba39e945a.tmp, EstimatedImpact: 0% 2026-04-05T09:32:06.505 ProcessImageName: updater.exe, Pid: 2504, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-05T09:41:53.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T09:56:58.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T10:10:25.730 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #780239, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T10:10:25.746 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #780241, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T10:10:35.750 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #780255, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T10:10:35.750 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #780257, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T10:10:35.890 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #780261, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T10:10:35.906 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #780263, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T10:12:03.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T10:27:08.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T10:42:13.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T10:57:18.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T11:00:25.956 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823fe9_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #783007, FileId: 0xb2000000037a7e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T11:00:31.550 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823fe9_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #783116, FileId: 0xb3000000037a7e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T11:10:25.885 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #783676, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T11:10:25.885 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #783678, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T11:10:35.872 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #783692, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T11:10:35.872 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #783694, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T11:10:35.888 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #783696, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T11:10:35.888 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #783698, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T11:12:23.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T11:27:28.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T11:32:06.506 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 58607, Count: 6308, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4741, Count: 38835, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.5U7FX3, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db8d8e44-b7a2-456a-a5f1-4f2bfccb70b1.tmp, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: updater.exe, Pid: 5156, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1e2e5ef-2766-4661-8a1d-6ec11f558a25.tmp, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac0776d8-93ff-46ea-ba93-60cb067a9b93.tmp, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 15, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823fe9_3.MAI, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: updater.exe, Pid: 7648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f61552a-f665-4759-bd67-4a165bec1df6.tmp, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: updater.exe, Pid: 7176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e84db7cf-b2fc-4e75-8f0f-adb58e569cd9.tmp, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c01ecf7-cb4e-4642-97ce-f04e2a2ef6a5.tmp, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18be0f62-a718-42c3-abd8-75460c137627.tmp, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07c5a159-8234-4bb9-91b9-e86c535f2390.tmp, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: updater.exe, Pid: 6080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f72f2499-3028-4d3e-a916-4766fd59580a.tmp, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37c4b605-9967-45ea-8484-4a6afff4a8f2.tmp, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ee9036b-6c69-48bc-8fb6-21189b281b31.tmp, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ab9fe21-e72e-4c3e-95bf-ce039fdb94e8.tmp, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: updater.exe, Pid: 3972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\766f743d-cffa-4786-9004-cfaba39e945a.tmp, EstimatedImpact: 0% 2026-04-05T11:32:06.506 ProcessImageName: updater.exe, Pid: 2504, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-05T11:42:33.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T11:57:38.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T12:10:26.197 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #786987, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T12:10:26.212 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #786989, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T12:10:36.224 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #787003, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T12:10:36.224 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #787005, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T12:12:43.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T12:27:48.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T12:42:53.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T12:57:58.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T13:10:26.464 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #790303, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T13:10:26.479 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #790305, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T13:10:36.480 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #790319, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T13:10:36.496 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #790321, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T13:10:36.496 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #790323, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T13:13:03.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T13:28:08.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T13:32:06.511 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 58607, Count: 6308, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5371, Count: 45306, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.5U7FX3, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db8d8e44-b7a2-456a-a5f1-4f2bfccb70b1.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 5156, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1e2e5ef-2766-4661-8a1d-6ec11f558a25.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac0776d8-93ff-46ea-ba93-60cb067a9b93.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 15, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823fe9_3.MAI, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 7648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f61552a-f665-4759-bd67-4a165bec1df6.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925059fb-339d-4601-bdbd-b4fb5e3f3590.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ee9036b-6c69-48bc-8fb6-21189b281b31.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c01ecf7-cb4e-4642-97ce-f04e2a2ef6a5.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18be0f62-a718-42c3-abd8-75460c137627.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37c4b605-9967-45ea-8484-4a6afff4a8f2.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07c5a159-8234-4bb9-91b9-e86c535f2390.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 3972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\766f743d-cffa-4786-9004-cfaba39e945a.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 7176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e84db7cf-b2fc-4e75-8f0f-adb58e569cd9.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 6080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f72f2499-3028-4d3e-a916-4766fd59580a.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 7532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fbdfd771-e50a-431c-89bd-031a4f679d22.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ab9fe21-e72e-4c3e-95bf-ce039fdb94e8.tmp, EstimatedImpact: 0% 2026-04-05T13:32:06.511 ProcessImageName: updater.exe, Pid: 2504, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-05T13:43:13.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T13:58:18.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T14:10:24.723 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #793638, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T14:10:24.738 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #793640, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T14:10:34.738 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #793654, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T14:10:34.738 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #793655, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T14:10:34.754 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #793658, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T14:12:13.034 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #793752, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T14:12:13.050 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #793754, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T14:12:17.314 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #793773, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T14:13:23.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T14:28:28.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T14:43:33.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T14:58:38.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T15:10:36.648 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #797013, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T15:13:43.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T15:28:48.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T15:32:06.525 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 62281, Count: 6525, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6226, Count: 51777, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.5U7FX3, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db8d8e44-b7a2-456a-a5f1-4f2bfccb70b1.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70464921-9cc6-4589-a162-78a5b1a1dd14.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 5156, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1e2e5ef-2766-4661-8a1d-6ec11f558a25.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac0776d8-93ff-46ea-ba93-60cb067a9b93.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 15, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823fe9_3.MAI, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 7176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e84db7cf-b2fc-4e75-8f0f-adb58e569cd9.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925059fb-339d-4601-bdbd-b4fb5e3f3590.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c01ecf7-cb4e-4642-97ce-f04e2a2ef6a5.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18be0f62-a718-42c3-abd8-75460c137627.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 6672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d52aa34c-032f-44b8-a1f8-c1bcd57998e5.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07c5a159-8234-4bb9-91b9-e86c535f2390.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 7648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f61552a-f665-4759-bd67-4a165bec1df6.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f6d5694-e8a1-4ccf-bd01-3806f444dc4d.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37c4b605-9967-45ea-8484-4a6afff4a8f2.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 6080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f72f2499-3028-4d3e-a916-4766fd59580a.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 7532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fbdfd771-e50a-431c-89bd-031a4f679d22.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ee9036b-6c69-48bc-8fb6-21189b281b31.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ab9fe21-e72e-4c3e-95bf-ce039fdb94e8.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 3972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\766f743d-cffa-4786-9004-cfaba39e945a.tmp, EstimatedImpact: 0% 2026-04-05T15:32:06.525 ProcessImageName: updater.exe, Pid: 2504, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-05T15:43:53.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T15:58:58.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T16:14:03.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T16:29:08.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T16:44:13.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T16:59:18.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T17:10:26.748 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #803647, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T17:14:23.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T17:29:28.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T17:32:06.536 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 62296, Count: 6527, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6871, Count: 58248, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.5U7FX3, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db8d8e44-b7a2-456a-a5f1-4f2bfccb70b1.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70464921-9cc6-4589-a162-78a5b1a1dd14.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823fe9_3.MAI, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 5156, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1e2e5ef-2766-4661-8a1d-6ec11f558a25.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac0776d8-93ff-46ea-ba93-60cb067a9b93.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 7176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e84db7cf-b2fc-4e75-8f0f-adb58e569cd9.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ab9fe21-e72e-4c3e-95bf-ce039fdb94e8.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37c4b605-9967-45ea-8484-4a6afff4a8f2.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c01ecf7-cb4e-4642-97ce-f04e2a2ef6a5.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18be0f62-a718-42c3-abd8-75460c137627.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ee9036b-6c69-48bc-8fb6-21189b281b31.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07c5a159-8234-4bb9-91b9-e86c535f2390.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 7648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f61552a-f665-4759-bd67-4a165bec1df6.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 3972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\766f743d-cffa-4786-9004-cfaba39e945a.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 6672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d52aa34c-032f-44b8-a1f8-c1bcd57998e5.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 7532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fbdfd771-e50a-431c-89bd-031a4f679d22.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925059fb-339d-4601-bdbd-b4fb5e3f3590.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f6d5694-e8a1-4ccf-bd01-3806f444dc4d.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 7324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\888f021f-7958-468b-add9-8f71be70eef9.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b1493f26-7696-4729-8af0-dd50d710e8d2.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 6080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f72f2499-3028-4d3e-a916-4766fd59580a.tmp, EstimatedImpact: 0% 2026-04-05T17:32:06.536 ProcessImageName: updater.exe, Pid: 2504, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-05T17:44:33.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T17:59:38.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T18:14:43.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T18:29:48.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T18:44:53.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T18:59:58.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T19:10:34.274 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #810287, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T19:12:31.947 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #810420, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T19:15:03.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T19:30:08.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T19:32:06.546 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 62296, Count: 6528, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7426, Count: 64728, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.5U7FX3, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db8d8e44-b7a2-456a-a5f1-4f2bfccb70b1.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70464921-9cc6-4589-a162-78a5b1a1dd14.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823fe9_3.MAI, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 5156, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1e2e5ef-2766-4661-8a1d-6ec11f558a25.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac0776d8-93ff-46ea-ba93-60cb067a9b93.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 7532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fbdfd771-e50a-431c-89bd-031a4f679d22.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925059fb-339d-4601-bdbd-b4fb5e3f3590.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c01ecf7-cb4e-4642-97ce-f04e2a2ef6a5.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f6d5694-e8a1-4ccf-bd01-3806f444dc4d.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18be0f62-a718-42c3-abd8-75460c137627.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 7324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\888f021f-7958-468b-add9-8f71be70eef9.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07c5a159-8234-4bb9-91b9-e86c535f2390.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 6080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f72f2499-3028-4d3e-a916-4766fd59580a.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b1493f26-7696-4729-8af0-dd50d710e8d2.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ab9fe21-e72e-4c3e-95bf-ce039fdb94e8.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 4916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe293246-56d5-48a2-9791-0d05bea5c451.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2017538d-a5f7-442f-9d75-d161367670d7.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 3972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\766f743d-cffa-4786-9004-cfaba39e945a.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 3168, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2720820-8329-4905-81b1-9c250b7f7a22.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ee9036b-6c69-48bc-8fb6-21189b281b31.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 6672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d52aa34c-032f-44b8-a1f8-c1bcd57998e5.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 7176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e84db7cf-b2fc-4e75-8f0f-adb58e569cd9.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37c4b605-9967-45ea-8484-4a6afff4a8f2.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 7648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f61552a-f665-4759-bd67-4a165bec1df6.tmp, EstimatedImpact: 0% 2026-04-05T19:32:06.546 ProcessImageName: updater.exe, Pid: 2504, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-05T19:45:13.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T20:00:18.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T20:15:23.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T20:30:28.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T20:45:33.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T21:00:38.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T21:10:36.378 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #816949, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T21:15:43.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T21:30:48.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T21:32:06.548 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 62296, Count: 6528, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8026, Count: 71199, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.5U7FX3, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db8d8e44-b7a2-456a-a5f1-4f2bfccb70b1.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 7052, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0832da34-6eb3-424f-94c8-67cc6b9645ff.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70464921-9cc6-4589-a162-78a5b1a1dd14.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823fe9_3.MAI, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 5156, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1e2e5ef-2766-4661-8a1d-6ec11f558a25.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac0776d8-93ff-46ea-ba93-60cb067a9b93.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 7324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\888f021f-7958-468b-add9-8f71be70eef9.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f6d5694-e8a1-4ccf-bd01-3806f444dc4d.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c01ecf7-cb4e-4642-97ce-f04e2a2ef6a5.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ee9036b-6c69-48bc-8fb6-21189b281b31.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18be0f62-a718-42c3-abd8-75460c137627.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37c4b605-9967-45ea-8484-4a6afff4a8f2.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07c5a159-8234-4bb9-91b9-e86c535f2390.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 7176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e84db7cf-b2fc-4e75-8f0f-adb58e569cd9.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b1493f26-7696-4729-8af0-dd50d710e8d2.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ab9fe21-e72e-4c3e-95bf-ce039fdb94e8.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 4916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe293246-56d5-48a2-9791-0d05bea5c451.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2017538d-a5f7-442f-9d75-d161367670d7.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 3972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\766f743d-cffa-4786-9004-cfaba39e945a.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 3168, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2720820-8329-4905-81b1-9c250b7f7a22.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925059fb-339d-4601-bdbd-b4fb5e3f3590.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1fc1cd2-2d1f-4a98-bb7a-455106a88435.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 7532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fbdfd771-e50a-431c-89bd-031a4f679d22.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 6080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f72f2499-3028-4d3e-a916-4766fd59580a.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 7648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f61552a-f665-4759-bd67-4a165bec1df6.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 6672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d52aa34c-032f-44b8-a1f8-c1bcd57998e5.tmp, EstimatedImpact: 0% 2026-04-05T21:32:06.548 ProcessImageName: updater.exe, Pid: 2504, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-05T21:45:53.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T22:00:58.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T22:16:03.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T22:31:08.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T22:46:13.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T23:01:18.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T23:10:27.664 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #823569, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-05T23:16:23.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T23:31:28.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T23:31:53.456 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-05T23:31:53.471 Job Notification: New process added to job (2540) 2026-04-05T23:31:53.471 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-05T23:31:53.487 Aggressive catchup quick scan threshold: 728976037804 / 25920000000000 2026-04-05T23:31:53.487 Job Notification: New process added to job (8056) 2026-04-05T23:31:53.487 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:2540] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:8056]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-05T23:31:53.596 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-05T23:31:53.596 Job Notification: New process added to job (4264) 2026-04-05T23:31:53.628 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:4264] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2728]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-05T23:31:53.628 Job Notification: New process added to job (2728) 2026-04-05T23:31:53.987 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-05T23:31:54.003 [RTP] Duplicating the current plugin configuration object... 2026-04-05T23:31:54.003 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-05T23:31:54.003 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-05T23:31:54.003 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-05T23:31:54.003 [RTP] No config change detected. Not updating plugin configuration. 2026-04-05T23:31:54.003 [RTP] No config changes found. No configuration switch. 2026-04-05T23:31:54.003 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-05T23:31:54.518 Job Notification: New process added to job (6212) 2026-04-05T23:31:54.518 Task(GetDeviceTicket -AccessKey 667B198E-8B20-1E0C-09DC-09CF263008C1 ) launched as network service 2026-04-05T23:31:54.596 Job Notification: Process exited from job (6212) 2026-04-05T23:31:55.679 [RTP] [Mini-filter] MpQueryRuntimeDrivers called. bytesToCopy = 36, ntStatus = 0xc0000023 2026-04-05T23:31:55.679 [RTP] [Mini-filter] MpQueryRuntimeDrivers called. bytesToCopy = 384, ntStatus = 0x0 2026-04-05T23:31:55.711 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-05T23:31:55.711 [Cloud] Start of cloud request. Passive mode: 0 2026-04-05T23:31:55.711 [Cloud] Queued cloud request. 2026-04-05T23:31:55.711 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-05T23:31:55.711 [Cloud] Dequeued cloud request. 2026-04-05T23:31:55.711 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-05T23:31:55.711 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-05T23:31:55.711 [Cloud] Start of cloud request. Passive mode: 0 2026-04-05T23:31:55.711 [Cloud] Queued cloud request. 2026-04-05T23:31:55.711 [Cloud] Dequeued cloud request. 2026-04-05T23:31:55.726 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-05T23:31:56.012 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-05T23:31:56.012 [Cloud] End of cloud request. 2026-04-05T23:31:56.012 [Cloud] End of cloud request. 2026-04-05T23:31:56.215 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-05T23:32:06.557 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 62993, Count: 6578, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8836, Count: 77670, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.5U7FX3, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823fe9_3.MAI, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db8d8e44-b7a2-456a-a5f1-4f2bfccb70b1.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70464921-9cc6-4589-a162-78a5b1a1dd14.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 7052, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0832da34-6eb3-424f-94c8-67cc6b9645ff.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 5156, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1e2e5ef-2766-4661-8a1d-6ec11f558a25.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac0776d8-93ff-46ea-ba93-60cb067a9b93.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925059fb-339d-4601-bdbd-b4fb5e3f3590.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c01ecf7-cb4e-4642-97ce-f04e2a2ef6a5.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 7324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\888f021f-7958-468b-add9-8f71be70eef9.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18be0f62-a718-42c3-abd8-75460c137627.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 6672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d52aa34c-032f-44b8-a1f8-c1bcd57998e5.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07c5a159-8234-4bb9-91b9-e86c535f2390.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f6d5694-e8a1-4ccf-bd01-3806f444dc4d.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b1493f26-7696-4729-8af0-dd50d710e8d2.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 7648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f61552a-f665-4759-bd67-4a165bec1df6.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 7176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e84db7cf-b2fc-4e75-8f0f-adb58e569cd9.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 6080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f72f2499-3028-4d3e-a916-4766fd59580a.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 6212, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\02b3fa03-527e-43ed-8eac-5ee55db5236d.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 7532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fbdfd771-e50a-431c-89bd-031a4f679d22.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2017538d-a5f7-442f-9d75-d161367670d7.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 3972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\766f743d-cffa-4786-9004-cfaba39e945a.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 3168, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2720820-8329-4905-81b1-9c250b7f7a22.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ab9fe21-e72e-4c3e-95bf-ce039fdb94e8.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1fc1cd2-2d1f-4a98-bb7a-455106a88435.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ee9036b-6c69-48bc-8fb6-21189b281b31.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 1288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bbf6674e-e2ef-4dcc-b7a8-32659b5d0486.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 4916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe293246-56d5-48a2-9791-0d05bea5c451.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37c4b605-9967-45ea-8484-4a6afff4a8f2.tmp, EstimatedImpact: 0% 2026-04-05T23:32:06.557 ProcessImageName: updater.exe, Pid: 2504, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-05T23:32:07.325 Job Notification: Process exited from job (7728) 2026-04-05T23:32:43.657 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\7EC54A9E-CF3A-4873-8D7C-1BF4DBC4E7741988.1dcc5547f5f48ba 2026-04-05T23:32:43.704 Verifying engine and signature files (source: 0) ... 2026-04-05T23:32:43.704 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A6EC0ADE-0394-4B35-B44E-D3073F432029}\mpengine.dll] due to PPL. 2026-04-05T23:32:43.704 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A6EC0ADE-0394-4B35-B44E-D3073F432029}\mpasbase.vdm] (file in cache) 2026-04-05T23:32:43.704 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A6EC0ADE-0394-4B35-B44E-D3073F432029}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-05T23:32:43.720 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A6EC0ADE-0394-4B35-B44E-D3073F432029}\mpasdlta.vdm] 2026-04-05T23:32:43.720 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A6EC0ADE-0394-4B35-B44E-D3073F432029}\mpavbase.vdm] (file in cache) 2026-04-05T23:32:43.720 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A6EC0ADE-0394-4B35-B44E-D3073F432029}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-05T23:32:43.735 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A6EC0ADE-0394-4B35-B44E-D3073F432029}\mpavdlta.vdm] 2026-04-05T23:32:43.923 [Engine] IsHybridMode: 0 2026-04-05T23:32:43.923 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-05T23:32:43.985 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-2528C4336F2525A23036C45B7FC58EFFF55079AF.bin): 0x00000002 2026-04-05T23:32:43.985 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-2528C4336F2525A23036C45B7FC58EFFF55079AF.bin) 2026-04-05T23:32:43.985 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-05T23:32:43.985 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-05T23:32:43.985 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-05T23:32:43.985 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-05T23:32:52.360 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-05T23:32:52.360 [AutoExclusion] Applied roles from cache. 2026-04-05T23:32:52.360 [AutoExclusion] Started roles monitoring. 2026-04-05T23:32:52.376 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0E4219B0, lRefCount: 5, hr=0 2026-04-05T23:32:52.376 [Engine] New active engine 00007FFD0D3319B0 replacing engine 00007FFD0E4219B0. Number of active engines: 2 2026-04-05T23:32:52.376 EngineInit:Global ASOC is enabled 2026-04-05T23:32:52.376 EngineInit:ASOO is enabled for developer volumes 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-05T23:32:52.391 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-05T23:32:52.407 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-05T23:32:52.407 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-05T23:32:52.407 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-05T23:32:52.407 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-05T23:32:52.407 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-05T23:32:52.407 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-05T23:32:52.407 [Plugin] Initializing RTP plugin state... 2026-04-05T23:32:52.407 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-05T23:32:52.407 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎05‎-‎2026 01:32:06 Last Perf:‎04‎-‎05‎-‎2026 01:32:06 First RTP Scan:‎04‎-‎05‎-‎2026 01:32:14 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:376 Misses:2010 BM Queue:0,55,0 Proc:0,40,0 File:0,54,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:824913 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:933833320 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2531 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:52224 TotalHits:282624 InstanceCacheInserts:442051 InstanceCacheUpdates:0 InstanceCacheDeletes:74051 InstanceCacheHits:647 InstanceCacheMisses:465645 InstanceCacheOverflows:359161 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:0ms (243/256) Success: 256, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-05T23:32:52.423 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-05T23:32:52.423 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-05T23:32:52.423 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-05T23:32:52.423 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A6EC0ADE-0394-4B35-B44E-D3073F432029} 2026-04-05T23:32:52.423 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{736D64C9-6D68-4725-B280-509B3A552B6C}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{736D64C9-6D68-4725-B280-509B3A552B6C}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-05T23:32:52.423 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-05T23:32:52.423 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-05T23:32:52.423 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-05T23:32:52.423 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-05T23:32:52.423 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-05-2026 23:32:52 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-05-2026 23:32:52 2026-04-05T23:32:52.423 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-05T23:32:52.423 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-05T23:32:52.438 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-05T23:32:52.438 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-05T23:32:52.438 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-05T23:32:52.438 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-05T23:32:52.438 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-05T23:32:52.438 MdCoreSvc is supported in this platform and OS Signature updated on 04-05-2026 23:32:52 Product Version: 4.18.26020.6 Service Version: 4.18.26020.6 Engine Version: 1.1.26020.3 AS Signature Version: 1.447.187.0 AV Signature Version: 1.447.187.0 ************************************************************ 2026-04-05T23:32:52.438 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-05T23:32:52.438 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\7EC54A9E-CF3A-4873-8D7C-1BF4DBC4E7741988.1dcc5547f5f48ba 2026-04-05T23:32:52.485 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-05T23:32:52.485 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 04-05-2026 23:32:52 ************************************************************ 2026-04-05T23:32:52.548 Job Notification: Process exited from job (4264) 2026-04-05T23:32:52.548 Job Notification: Process exited from job (2728) 2026-04-05T23:32:52.563 Job Notification: Process exited from job (2540) 2026-04-05T23:32:52.563 Job Notification: Process exited from job (8056) 2026-04-05T23:32:52.641 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-05T23:32:52.641 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-05T23:32:52.641 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-05T23:32:52.641 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-05T23:32:52.641 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-05T23:32:52.641 [Engine] Engine 00007FFD0E4219B0 no longer in use. Number of active engines: 1 2026-04-05T23:32:52.641 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-05T23:32:52.641 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-05T23:32:52.908 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-05T23:32:52.908 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-05T23:32:52.908 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-05T23:32:53.533 Process scan (postsignatureupdatescan) started. 2026-04-05T23:32:53.721 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 62993, Count: 6578, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-05T23:32:53.721 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8836, Count: 77715, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.5U7FX3, EstimatedImpact: 0% 2026-04-05T23:32:53.721 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-05T23:32:53.721 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823fe9_3.MAI, EstimatedImpact: 0% 2026-04-05T23:32:53.721 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-05T23:32:53.721 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db8d8e44-b7a2-456a-a5f1-4f2bfccb70b1.tmp, EstimatedImpact: 0% 2026-04-05T23:32:53.721 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70464921-9cc6-4589-a162-78a5b1a1dd14.tmp, EstimatedImpact: 0% 2026-04-05T23:32:53.721 ProcessImageName: updater.exe, Pid: 7052, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0832da34-6eb3-424f-94c8-67cc6b9645ff.tmp, EstimatedImpact: 0% 2026-04-05T23:32:53.721 ProcessImageName: updater.exe, Pid: 5156, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1e2e5ef-2766-4661-8a1d-6ec11f558a25.tmp, EstimatedImpact: 0% 2026-04-05T23:32:53.721 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac0776d8-93ff-46ea-ba93-60cb067a9b93.tmp, EstimatedImpact: 0% 2026-04-05T23:32:53.721 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925059fb-339d-4601-bdbd-b4fb5e3f3590.tmp, EstimatedImpact: 0% 2026-04-05T23:32:53.721 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c01ecf7-cb4e-4642-97ce-f04e2a2ef6a5.tmp, EstimatedImpact: 0% 2026-04-05T23:32:53.767 [Engine] RSIG_UNLOADENGINE, 00007FFD0E4219B0, err=0x0 2026-04-05T23:32:53.783 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{736D64C9-6D68-4725-B280-509B3A552B6C} removed 2026-04-05T23:32:59.892 Process scan (postsignatureupdatescan) completed. 2026-04-05T23:37:52.401 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-05T23:46:33.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-05T23:57:11.168 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-04-05T23:59:49.742 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-04-06T00:00:13.696 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-04-06T00:01:03.149 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823ff3_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #873205, FileId: 0x70000000e3e9a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T00:01:38.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T00:04:11.417 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-04-06T00:10:27.758 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #912768, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T00:10:27.773 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #912772, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T00:10:37.768 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #913590, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T00:10:37.784 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #913592, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T00:10:37.784 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #913594, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T00:12:05.777 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-04-06T00:12:22.021 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #922103, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T00:12:22.037 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #922105, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T00:12:24.819 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #922361, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T00:12:24.835 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #922364, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T00:12:24.835 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #922366, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T00:12:34.835 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #923142, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T00:12:34.851 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #923145, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T00:13:42.801 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-04-06T00:16:43.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T00:31:48.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T00:46:53.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T01:01:58.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T01:10:26.510 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1033452, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T01:10:26.526 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1033454, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T01:10:36.515 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1033468, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T01:10:36.515 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1033470, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T01:10:36.687 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1033474, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T01:10:36.687 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1033476, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T01:17:03.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T01:32:08.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T01:32:52.386 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50769, Count: 5484, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 13% 2026-04-06T01:32:52.386 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 795, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.7QJJX3, EstimatedImpact: 0% 2026-04-06T01:32:52.386 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-06T01:32:52.386 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29bc4ca0-7435-4ba4-9c64-f4ff0b53c19a.tmp, EstimatedImpact: 0% 2026-04-06T01:32:52.386 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 2% 2026-04-06T01:32:52.386 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b95449c-84dd-4bf5-b42c-cf6600b3ddd9.tmp, EstimatedImpact: 0% 2026-04-06T01:32:52.386 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04af4e5f-41af-4568-8693-985cc73bdce6.tmp, EstimatedImpact: 0% 2026-04-06T01:47:13.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T02:02:18.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T02:10:25.967 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1037430, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T02:10:25.967 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1037432, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T02:10:35.971 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1037446, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T02:10:35.986 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1037448, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T02:10:35.986 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1037450, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T02:17:23.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T02:32:28.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T02:47:33.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T03:02:38.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T03:10:25.787 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1040787, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T03:10:25.803 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1040789, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T03:10:35.799 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1040802, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T03:10:35.814 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1040805, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T03:16:55.981 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:08062771-5CA3-4FA2-9189-2E0B691B0204, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-06T03:16:55.981 Scheduled scan with Id 08062771-5CA3-4FA2-9189-2E0B691B0204 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-06T03:16:55.981 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-06T03:16:55.981 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-06T03:16:55.981 [SFC] System file cache build is not needed (already completed) 2026-04-06T03:17:11.784 Engine:Triggered AR EMS scan 2026-04-06T03:17:11.784 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:11.815 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:11.846 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:11.862 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:11.893 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:11.924 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:11.924 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:11.955 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:11.987 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:12.002 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:12.033 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:12.049 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:12.065 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:12.080 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:12.112 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:12.127 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:12.159 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:12.221 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:12.237 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:12.252 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:12.284 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:12.330 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-06T03:17:12.362 Bm signature throttled:0x00002db31bed458f 2026-04-06T03:17:43.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T03:18:02.000 QuickScan:ScanID:08062771-5CA3-4FA2-9189-2E0B691B0204: Quick scan finished with error 0 2026-04-06T03:18:02.000 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-06T03:18:02.500 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-06T03:18:02.500 [RTP] Duplicating the current plugin configuration object... 2026-04-06T03:18:02.500 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-06T03:18:02.500 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-06T03:18:02.500 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-06T03:18:02.500 [RTP] No config change detected. Not updating plugin configuration. 2026-04-06T03:18:02.500 [RTP] No config changes found. No configuration switch. 2026-04-06T03:18:02.500 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-06T03:32:48.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T03:32:52.397 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50769, Count: 5485, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-04-06T03:32:52.397 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1395, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.7QJJX3, EstimatedImpact: 0% 2026-04-06T03:32:52.397 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-06T03:32:52.397 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29bc4ca0-7435-4ba4-9c64-f4ff0b53c19a.tmp, EstimatedImpact: 0% 2026-04-06T03:32:52.397 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-06T03:32:52.397 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 2% 2026-04-06T03:32:52.397 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b95449c-84dd-4bf5-b42c-cf6600b3ddd9.tmp, EstimatedImpact: 0% 2026-04-06T03:32:52.397 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04af4e5f-41af-4568-8693-985cc73bdce6.tmp, EstimatedImpact: 0% 2026-04-06T03:32:52.397 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74cd70fc-7469-48fb-97bb-c114f440fe40.tmp, EstimatedImpact: 0% 2026-04-06T03:32:52.397 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32533463-4fe2-4864-b839-0d7f631ef19e.tmp, EstimatedImpact: 0% 2026-04-06T03:47:53.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T04:02:58.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T04:10:25.581 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1044273, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T04:10:25.597 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1044275, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T04:10:35.593 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1044288, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T04:10:35.608 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1044291, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T04:18:03.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T04:33:08.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T04:48:13.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T05:03:18.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T05:10:26.010 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1047629, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:10:26.010 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1047631, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:10:36.017 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1047644, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:10:36.033 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1047646, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:10:36.033 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1047648, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:12:24.919 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1047753, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:12:24.934 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1047756, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:12:29.856 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1047766, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:12:29.871 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1047769, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:12:29.887 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1047770, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:12:29.887 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1047772, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:12:39.876 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1047786, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:12:39.876 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1047788, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:12:39.876 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1047789, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:18:23.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T05:26:48.179 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823ff6_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1048814, FileId: 0x5d8000000056889, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T05:32:52.402 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59545, Count: 6279, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-04-06T05:32:52.402 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2175, Count: 19413, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.7QJJX3, EstimatedImpact: 0% 2026-04-06T05:32:52.402 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-06T05:32:52.402 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-06T05:32:52.402 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823ff3_1.MAI, EstimatedImpact: 0% 2026-04-06T05:32:52.402 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29bc4ca0-7435-4ba4-9c64-f4ff0b53c19a.tmp, EstimatedImpact: 0% 2026-04-06T05:32:52.402 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 2% 2026-04-06T05:32:52.402 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b95449c-84dd-4bf5-b42c-cf6600b3ddd9.tmp, EstimatedImpact: 0% 2026-04-06T05:32:52.402 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74cd70fc-7469-48fb-97bb-c114f440fe40.tmp, EstimatedImpact: 0% 2026-04-06T05:32:52.402 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04af4e5f-41af-4568-8693-985cc73bdce6.tmp, EstimatedImpact: 0% 2026-04-06T05:32:52.402 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f294a16-ab94-4226-9210-9a488ab80e05.tmp, EstimatedImpact: 0% 2026-04-06T05:32:52.402 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\deed53b3-3216-48d7-93c8-ac48d569b120.tmp, EstimatedImpact: 0% 2026-04-06T05:32:52.402 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abe3edb3-d817-4d45-93e7-0504c34c71f8.tmp, EstimatedImpact: 0% 2026-04-06T05:32:52.402 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32533463-4fe2-4864-b839-0d7f631ef19e.tmp, EstimatedImpact: 0% 2026-04-06T05:33:28.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T05:48:33.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T06:03:38.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T06:10:26.982 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1051244, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T06:10:26.982 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1051246, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T06:10:36.999 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1051259, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T06:10:36.999 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1051261, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T06:10:37.155 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1051265, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T06:10:37.155 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1051267, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T06:18:43.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T06:33:48.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T06:41:38.539 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823ff9_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1052981, FileId: 0x11e6000000052ede, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T06:48:53.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T07:03:58.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T07:10:26.689 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1054578, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T07:10:26.705 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1054580, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T07:10:36.700 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1054593, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T07:10:36.716 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1054595, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T07:10:36.716 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1054597, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T07:19:03.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T07:32:52.406 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 63416, Count: 6501, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-04-06T07:32:52.406 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2895, Count: 25884, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.7QJJX3, EstimatedImpact: 0% 2026-04-06T07:32:52.406 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-06T07:32:52.406 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823ff3_1.MAI, EstimatedImpact: 0% 2026-04-06T07:32:52.406 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-06T07:32:52.406 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29bc4ca0-7435-4ba4-9c64-f4ff0b53c19a.tmp, EstimatedImpact: 0% 2026-04-06T07:32:52.406 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 2% 2026-04-06T07:32:52.406 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6b85517-922e-4d11-bbaf-19c0bd4c16d1.tmp, EstimatedImpact: 0% 2026-04-06T07:32:52.406 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b95449c-84dd-4bf5-b42c-cf6600b3ddd9.tmp, EstimatedImpact: 0% 2026-04-06T07:32:52.406 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\deed53b3-3216-48d7-93c8-ac48d569b120.tmp, EstimatedImpact: 0% 2026-04-06T07:32:52.406 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04af4e5f-41af-4568-8693-985cc73bdce6.tmp, EstimatedImpact: 0% 2026-04-06T07:32:52.406 ProcessImageName: updater.exe, Pid: 7636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c4c4cbe-2271-4536-afde-7a5679023229.tmp, EstimatedImpact: 0% 2026-04-06T07:32:52.406 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f294a16-ab94-4226-9210-9a488ab80e05.tmp, EstimatedImpact: 0% 2026-04-06T07:32:52.406 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74cd70fc-7469-48fb-97bb-c114f440fe40.tmp, EstimatedImpact: 0% 2026-04-06T07:32:52.406 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abe3edb3-d817-4d45-93e7-0504c34c71f8.tmp, EstimatedImpact: 0% 2026-04-06T07:32:52.406 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32533463-4fe2-4864-b839-0d7f631ef19e.tmp, EstimatedImpact: 0% 2026-04-06T07:34:08.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T07:49:13.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T07:50:52.703 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823ffe_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1056812, FileId: 0x4c4000000056811, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T08:04:18.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T08:10:25.791 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1057893, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T08:10:25.807 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1057895, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T08:10:35.803 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1057908, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T08:10:35.818 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1057910, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T08:10:35.818 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1057912, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T08:10:35.834 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1057915, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T08:19:23.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T08:34:28.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T08:49:33.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T08:55:03.182 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823fff_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1060368, FileId: 0x30500000007376f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T08:55:03.807 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823fff_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1060372, FileId: 0x30600000007376f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T09:04:38.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T09:10:25.735 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1061222, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T09:10:25.750 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1061224, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T09:10:35.743 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1061237, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T09:10:35.759 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1061239, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T09:19:43.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T09:32:52.405 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 63477, Count: 6506, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3600, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.7QJJX3, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823ff3_1.MAI, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29bc4ca0-7435-4ba4-9c64-f4ff0b53c19a.tmp, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 2% 2026-04-06T09:32:52.405 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6b85517-922e-4d11-bbaf-19c0bd4c16d1.tmp, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b95449c-84dd-4bf5-b42c-cf6600b3ddd9.tmp, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\faf691b1-c478-461b-92bb-bb349455e15d.tmp, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\deed53b3-3216-48d7-93c8-ac48d569b120.tmp, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04af4e5f-41af-4568-8693-985cc73bdce6.tmp, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: updater.exe, Pid: 7636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c4c4cbe-2271-4536-afde-7a5679023229.tmp, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f294a16-ab94-4226-9210-9a488ab80e05.tmp, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74cd70fc-7469-48fb-97bb-c114f440fe40.tmp, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abe3edb3-d817-4d45-93e7-0504c34c71f8.tmp, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e575845-c634-4bc8-b699-6fa5ba4d5ca9.tmp, EstimatedImpact: 0% 2026-04-06T09:32:52.405 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32533463-4fe2-4864-b839-0d7f631ef19e.tmp, EstimatedImpact: 0% 2026-04-06T09:34:48.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T09:44:59.818 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824000_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1063132, FileId: 0x2d7000000072e7d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T09:45:00.334 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824000_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1063136, FileId: 0x2d8000000072e7d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T09:49:53.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T10:04:58.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T10:10:24.113 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064537, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T10:10:24.113 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064539, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T10:10:34.128 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064552, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T10:10:34.143 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064555, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T10:12:29.968 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064668, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T10:12:29.968 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064671, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T10:12:34.538 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064680, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T10:12:34.554 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064683, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T10:12:34.554 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064685, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T10:12:34.554 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064686, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T10:12:44.565 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064700, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T10:12:44.565 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064703, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T10:12:44.565 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064704, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T10:20:03.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T10:35:08.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T10:50:13.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T11:05:18.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T11:10:25.615 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1067885, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T11:10:25.631 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1067887, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T11:10:35.635 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1067899, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T11:10:35.635 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1067901, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T11:10:35.791 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1067905, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T11:10:35.791 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1067907, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T11:20:23.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T11:32:52.414 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 63477, Count: 6508, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4425, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.7QJJX3, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823ff3_1.MAI, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8da42c5-80ba-4e68-9f74-543ed77f45f6.tmp, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29bc4ca0-7435-4ba4-9c64-f4ff0b53c19a.tmp, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6b85517-922e-4d11-bbaf-19c0bd4c16d1.tmp, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 2% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b95449c-84dd-4bf5-b42c-cf6600b3ddd9.tmp, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f294a16-ab94-4226-9210-9a488ab80e05.tmp, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\faf691b1-c478-461b-92bb-bb349455e15d.tmp, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ce6dca3-7d3c-47f4-bcb0-f48c18142c3a.tmp, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04af4e5f-41af-4568-8693-985cc73bdce6.tmp, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74cd70fc-7469-48fb-97bb-c114f440fe40.tmp, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 7636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c4c4cbe-2271-4536-afde-7a5679023229.tmp, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\deed53b3-3216-48d7-93c8-ac48d569b120.tmp, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 4212, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5625404b-4eac-420b-8c5d-b22a84894f77.tmp, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abe3edb3-d817-4d45-93e7-0504c34c71f8.tmp, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e575845-c634-4bc8-b699-6fa5ba4d5ca9.tmp, EstimatedImpact: 0% 2026-04-06T11:32:52.414 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32533463-4fe2-4864-b839-0d7f631ef19e.tmp, EstimatedImpact: 0% 2026-04-06T11:35:28.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T11:50:33.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T12:05:38.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T12:10:25.401 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1071209, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T12:10:25.401 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1071211, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T12:10:35.414 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1071224, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T12:10:35.429 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1071226, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T12:10:35.429 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1071228, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T12:20:43.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T12:35:48.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T12:50:53.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T13:05:58.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T13:10:25.316 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1074518, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T13:10:25.332 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1074520, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T13:21:03.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T13:32:52.416 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 63477, Count: 6508, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5235, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.7QJJX3, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823ff3_1.MAI, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8da42c5-80ba-4e68-9f74-543ed77f45f6.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29bc4ca0-7435-4ba4-9c64-f4ff0b53c19a.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 2% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6b85517-922e-4d11-bbaf-19c0bd4c16d1.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b95449c-84dd-4bf5-b42c-cf6600b3ddd9.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 8164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\117448ba-9253-4501-a724-d62b163432b8.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f294a16-ab94-4226-9210-9a488ab80e05.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 7636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c4c4cbe-2271-4536-afde-7a5679023229.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\faf691b1-c478-461b-92bb-bb349455e15d.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ce6dca3-7d3c-47f4-bcb0-f48c18142c3a.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\deed53b3-3216-48d7-93c8-ac48d569b120.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04af4e5f-41af-4568-8693-985cc73bdce6.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74cd70fc-7469-48fb-97bb-c114f440fe40.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 4956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06df97f4-fdad-4495-be75-2615f1b49cd9.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 4212, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5625404b-4eac-420b-8c5d-b22a84894f77.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e575845-c634-4bc8-b699-6fa5ba4d5ca9.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abe3edb3-d817-4d45-93e7-0504c34c71f8.tmp, EstimatedImpact: 0% 2026-04-06T13:32:52.416 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32533463-4fe2-4864-b839-0d7f631ef19e.tmp, EstimatedImpact: 0% 2026-04-06T13:36:08.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T13:51:13.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T14:06:18.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T14:21:23.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T14:36:28.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T14:51:33.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T15:06:38.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T15:10:26.684 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1081179, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T15:12:48.514 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1081343, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T15:21:43.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T15:32:52.416 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 63477, Count: 6508, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5910, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.7QJJX3, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823ff3_1.MAI, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8da42c5-80ba-4e68-9f74-543ed77f45f6.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29bc4ca0-7435-4ba4-9c64-f4ff0b53c19a.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6b85517-922e-4d11-bbaf-19c0bd4c16d1.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 2% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b95449c-84dd-4bf5-b42c-cf6600b3ddd9.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 8164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\117448ba-9253-4501-a724-d62b163432b8.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 7636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c4c4cbe-2271-4536-afde-7a5679023229.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\faf691b1-c478-461b-92bb-bb349455e15d.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f294a16-ab94-4226-9210-9a488ab80e05.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ce6dca3-7d3c-47f4-bcb0-f48c18142c3a.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\deed53b3-3216-48d7-93c8-ac48d569b120.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 2204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5584c33-58dc-44d1-9e41-b47c5347fa3a.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04af4e5f-41af-4568-8693-985cc73bdce6.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74cd70fc-7469-48fb-97bb-c114f440fe40.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 4956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06df97f4-fdad-4495-be75-2615f1b49cd9.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 4212, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5625404b-4eac-420b-8c5d-b22a84894f77.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66f3f6af-dd99-4e75-9d8e-fe268a60eb07.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abe3edb3-d817-4d45-93e7-0504c34c71f8.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e575845-c634-4bc8-b699-6fa5ba4d5ca9.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fdc40a5e-a521-4876-bfc0-50f4c0a9047a.tmp, EstimatedImpact: 0% 2026-04-06T15:32:52.416 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32533463-4fe2-4864-b839-0d7f631ef19e.tmp, EstimatedImpact: 0% 2026-04-06T15:36:48.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T15:51:53.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T16:06:58.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T16:22:03.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T16:37:08.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T16:52:13.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T17:07:18.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T17:10:24.795 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1087843, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T17:22:23.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T17:32:52.420 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 63477, Count: 6508, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6660, Count: 58248, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.7QJJX3, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823ff3_1.MAI, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 6908, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16f9cbbe-31af-455c-a75a-42787f931bed.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8da42c5-80ba-4e68-9f74-543ed77f45f6.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29bc4ca0-7435-4ba4-9c64-f4ff0b53c19a.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6b85517-922e-4d11-bbaf-19c0bd4c16d1.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 2% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b95449c-84dd-4bf5-b42c-cf6600b3ddd9.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 8164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\117448ba-9253-4501-a724-d62b163432b8.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04af4e5f-41af-4568-8693-985cc73bdce6.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\faf691b1-c478-461b-92bb-bb349455e15d.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 7636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c4c4cbe-2271-4536-afde-7a5679023229.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\deed53b3-3216-48d7-93c8-ac48d569b120.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ce6dca3-7d3c-47f4-bcb0-f48c18142c3a.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f294a16-ab94-4226-9210-9a488ab80e05.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74cd70fc-7469-48fb-97bb-c114f440fe40.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 4956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06df97f4-fdad-4495-be75-2615f1b49cd9.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 4212, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5625404b-4eac-420b-8c5d-b22a84894f77.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66f3f6af-dd99-4e75-9d8e-fe268a60eb07.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 2204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5584c33-58dc-44d1-9e41-b47c5347fa3a.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abe3edb3-d817-4d45-93e7-0504c34c71f8.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e575845-c634-4bc8-b699-6fa5ba4d5ca9.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fdc40a5e-a521-4876-bfc0-50f4c0a9047a.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\381df544-93e6-46b9-90b5-bfea7909e1e9.tmp, EstimatedImpact: 0% 2026-04-06T17:32:52.420 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32533463-4fe2-4864-b839-0d7f631ef19e.tmp, EstimatedImpact: 0% 2026-04-06T17:37:28.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T17:52:33.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T18:07:38.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T18:10:34.660 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1091172, FileId: 0xbd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T18:22:43.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T18:37:48.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T18:52:53.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T19:07:58.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T19:23:03.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T19:32:52.429 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 63523, Count: 6511, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7335, Count: 64719, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.7QJJX3, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823ff3_1.MAI, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 6908, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16f9cbbe-31af-455c-a75a-42787f931bed.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8da42c5-80ba-4e68-9f74-543ed77f45f6.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29bc4ca0-7435-4ba4-9c64-f4ff0b53c19a.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 2% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6b85517-922e-4d11-bbaf-19c0bd4c16d1.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b95449c-84dd-4bf5-b42c-cf6600b3ddd9.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 8164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\117448ba-9253-4501-a724-d62b163432b8.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 4956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06df97f4-fdad-4495-be75-2615f1b49cd9.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 4212, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5625404b-4eac-420b-8c5d-b22a84894f77.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66f3f6af-dd99-4e75-9d8e-fe268a60eb07.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\faf691b1-c478-461b-92bb-bb349455e15d.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abe3edb3-d817-4d45-93e7-0504c34c71f8.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e575845-c634-4bc8-b699-6fa5ba4d5ca9.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ce6dca3-7d3c-47f4-bcb0-f48c18142c3a.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3142201c-f539-4b83-a54a-642452ae0769.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fdc40a5e-a521-4876-bfc0-50f4c0a9047a.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\381df544-93e6-46b9-90b5-bfea7909e1e9.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04af4e5f-41af-4568-8693-985cc73bdce6.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32533463-4fe2-4864-b839-0d7f631ef19e.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f294a16-ab94-4226-9210-9a488ab80e05.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 7636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c4c4cbe-2271-4536-afde-7a5679023229.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\deed53b3-3216-48d7-93c8-ac48d569b120.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 6080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a9ce1aee-a8d3-4e8f-99c1-2a38f286e372.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 2204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5584c33-58dc-44d1-9e41-b47c5347fa3a.tmp, EstimatedImpact: 0% 2026-04-06T19:32:52.429 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74cd70fc-7469-48fb-97bb-c114f440fe40.tmp, EstimatedImpact: 0% 2026-04-06T19:38:08.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T19:53:13.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T20:08:18.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T20:12:38.657 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1097924, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T20:23:23.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T20:38:28.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T20:53:33.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T21:08:38.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T21:10:27.063 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1101156, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T21:23:43.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T21:32:52.430 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64183, Count: 6539, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7920, Count: 71190, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.7QJJX3, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 26, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823ff3_1.MAI, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 6908, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16f9cbbe-31af-455c-a75a-42787f931bed.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8da42c5-80ba-4e68-9f74-543ed77f45f6.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29bc4ca0-7435-4ba4-9c64-f4ff0b53c19a.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 2% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6b85517-922e-4d11-bbaf-19c0bd4c16d1.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d38d450e-08ea-4908-9946-5842329bb42b.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b95449c-84dd-4bf5-b42c-cf6600b3ddd9.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ce6dca3-7d3c-47f4-bcb0-f48c18142c3a.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3142201c-f539-4b83-a54a-642452ae0769.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\deed53b3-3216-48d7-93c8-ac48d569b120.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04af4e5f-41af-4568-8693-985cc73bdce6.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74cd70fc-7469-48fb-97bb-c114f440fe40.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 4956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06df97f4-fdad-4495-be75-2615f1b49cd9.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 8164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\117448ba-9253-4501-a724-d62b163432b8.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 8000, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\46eeee3b-638e-4e5c-b00e-44f46f7a87d8.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 4212, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5625404b-4eac-420b-8c5d-b22a84894f77.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66f3f6af-dd99-4e75-9d8e-fe268a60eb07.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abe3edb3-d817-4d45-93e7-0504c34c71f8.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\381df544-93e6-46b9-90b5-bfea7909e1e9.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e575845-c634-4bc8-b699-6fa5ba4d5ca9.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fdc40a5e-a521-4876-bfc0-50f4c0a9047a.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 2204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5584c33-58dc-44d1-9e41-b47c5347fa3a.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 1860, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\613606a8-273e-4aa6-9366-128d664121a1.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 6080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a9ce1aee-a8d3-4e8f-99c1-2a38f286e372.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 7636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c4c4cbe-2271-4536-afde-7a5679023229.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\faf691b1-c478-461b-92bb-bb349455e15d.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f294a16-ab94-4226-9210-9a488ab80e05.tmp, EstimatedImpact: 0% 2026-04-06T21:32:52.430 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32533463-4fe2-4864-b839-0d7f631ef19e.tmp, EstimatedImpact: 0% 2026-04-06T21:38:48.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T21:53:53.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T22:08:58.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T22:24:03.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T22:39:08.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T22:54:13.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T23:09:18.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T23:10:24.703 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1107938, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T23:24:23.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T23:31:53.447 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-06T23:31:53.463 Job Notification: New process added to job (7116) 2026-04-06T23:31:53.479 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-06T23:31:53.479 Job Notification: New process added to job (5232) 2026-04-06T23:31:53.479 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:7116] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5232]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-06T23:31:53.494 Aggressive catchup quick scan threshold: 728975151486 / 25920000000000 2026-04-06T23:31:53.573 Job Notification: New process added to job (2332) 2026-04-06T23:31:53.573 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-06T23:31:53.573 Job Notification: New process added to job (5448) 2026-04-06T23:31:53.604 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:2332] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5448]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-06T23:31:54.010 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-06T23:31:54.057 [RTP] Duplicating the current plugin configuration object... 2026-04-06T23:31:54.057 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-06T23:31:54.057 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-06T23:31:54.057 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-06T23:31:54.057 [RTP] No config change detected. Not updating plugin configuration. 2026-04-06T23:31:54.057 [RTP] No config changes found. No configuration switch. 2026-04-06T23:31:54.057 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-06T23:31:54.557 Job Notification: New process added to job (4764) 2026-04-06T23:31:54.557 Task(GetDeviceTicket -AccessKey FBFD1229-C7B8-103E-5EA3-672F6B491BBB ) launched as network service 2026-04-06T23:31:54.635 Job Notification: Process exited from job (4764) 2026-04-06T23:31:55.810 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-06T23:31:55.810 [Cloud] Start of cloud request. Passive mode: 0 2026-04-06T23:31:55.810 [Cloud] Queued cloud request. 2026-04-06T23:31:55.810 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-06T23:31:55.810 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-06T23:31:55.810 [Cloud] Start of cloud request. Passive mode: 0 2026-04-06T23:31:55.810 [Cloud] Queued cloud request. 2026-04-06T23:31:55.841 Job Notification: New process added to job (7368) 2026-04-06T23:31:55.841 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey A1F98222-E7F1-03F7-9EA2-AA13B515D8C4) launched 2026-04-06T23:31:55.841 Job Notification: New process added to job (5764) 2026-04-06T23:31:55.857 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:7368] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5764]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-06T23:31:55.873 Job Notification: New process added to job (6716) 2026-04-06T23:31:55.873 Job Notification: Process exited from job (7368) 2026-04-06T23:31:55.888 Job Notification: Process exited from job (5764) 2026-04-06T23:31:55.888 [Cloud] Dequeued cloud request. 2026-04-06T23:31:55.888 [Cloud] Dequeued cloud request. 2026-04-06T23:31:55.888 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-06T23:31:55.888 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-06T23:31:56.138 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-06T23:31:56.138 [Cloud] End of cloud request. 2026-04-06T23:31:56.138 [Cloud] End of cloud request. 2026-04-06T23:31:56.310 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-06T23:31:58.154 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\B5031640-09A9-4160-BCCF-4EAF6CC5352D4d8.1dcc61d8ea4dafb 2026-04-06T23:31:58.216 Verifying engine and signature files (source: 0) ... 2026-04-06T23:31:58.216 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1888E3FA-5C06-4A65-B9D4-44472162A904}\mpengine.dll] due to PPL. 2026-04-06T23:31:58.216 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1888E3FA-5C06-4A65-B9D4-44472162A904}\mpasbase.vdm] (file in cache) 2026-04-06T23:31:58.216 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1888E3FA-5C06-4A65-B9D4-44472162A904}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-06T23:31:58.263 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1888E3FA-5C06-4A65-B9D4-44472162A904}\mpasdlta.vdm] 2026-04-06T23:31:58.263 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1888E3FA-5C06-4A65-B9D4-44472162A904}\mpavbase.vdm] (file in cache) 2026-04-06T23:31:58.263 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1888E3FA-5C06-4A65-B9D4-44472162A904}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-06T23:31:58.279 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1888E3FA-5C06-4A65-B9D4-44472162A904}\mpavdlta.vdm] 2026-04-06T23:31:58.498 [Engine] IsHybridMode: 0 2026-04-06T23:31:58.498 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-06T23:31:58.576 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-1A38FD099BCA063D95BD008A31033531C6C12B28.bin): 0x00000002 2026-04-06T23:31:58.576 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-1A38FD099BCA063D95BD008A31033531C6C12B28.bin) 2026-04-06T23:31:58.576 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-06T23:31:58.576 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-06T23:31:58.576 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-06T23:31:58.576 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-06T23:32:07.180 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-06T23:32:07.180 [AutoExclusion] Applied roles from cache. 2026-04-06T23:32:07.180 [AutoExclusion] Started roles monitoring. 2026-04-06T23:32:07.196 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D3319B0, lRefCount: 5, hr=0 2026-04-06T23:32:07.196 [Engine] New active engine 00007FFD0E4219B0 replacing engine 00007FFD0D3319B0. Number of active engines: 2 2026-04-06T23:32:07.196 EngineInit:Global ASOC is enabled 2026-04-06T23:32:07.196 EngineInit:ASOO is enabled for developer volumes 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-06T23:32:07.211 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-06T23:32:07.211 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-06T23:32:07.227 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-06T23:32:07.227 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-06T23:32:07.227 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-06T23:32:07.227 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-06T23:32:07.227 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-06T23:32:07.227 [Plugin] Initializing RTP plugin state... 2026-04-06T23:32:07.227 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-06T23:32:07.227 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎06‎-‎2026 01:32:52 Last Perf:‎04‎-‎06‎-‎2026 01:32:52 First RTP Scan:‎04‎-‎06‎-‎2026 01:32:59 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:2859 Misses:117668 BM Queue:0,1197,0 Proc:0,40,0 File:0,1197,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1109208 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1331158354 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:16238 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:298498 TotalHits:306968 InstanceCacheInserts:491939 InstanceCacheUpdates:0 InstanceCacheDeletes:82243 InstanceCacheHits:2806 InstanceCacheMisses:830042 InstanceCacheOverflows:398698 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (485/292) Success: 292, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-06T23:32:07.227 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1888E3FA-5C06-4A65-B9D4-44472162A904} 2026-04-06T23:32:07.227 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A6EC0ADE-0394-4B35-B44E-D3073F432029}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A6EC0ADE-0394-4B35-B44E-D3073F432029}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-06T23:32:07.227 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-06T23:32:07.227 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-06T23:32:07.227 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-06T23:32:07.227 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-06T23:32:07.227 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-06T23:32:07.227 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-06-2026 23:32:07 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-06-2026 23:32:07 2026-04-06T23:32:07.227 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-06T23:32:07.227 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-06T23:32:07.242 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-06T23:32:07.242 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-06T23:32:07.242 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-06T23:32:07.242 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-06T23:32:07.242 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-06T23:32:07.242 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-06T23:32:07.242 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-06T23:32:07.242 MdCoreSvc is supported in this platform and OS Signature updated on 04-06-2026 23:32:07 Product Version: 4.18.26020.6 Service Version: 4.18.26020.6 Engine Version: 1.1.26020.3 AS Signature Version: 1.447.204.0 AV Signature Version: 1.447.204.0 ************************************************************ 2026-04-06T23:32:07.242 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-06T23:32:07.242 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\B5031640-09A9-4160-BCCF-4EAF6CC5352D4d8.1dcc61d8ea4dafb Signature updated via MicrosoftUpdateServer on 04-06-2026 23:32:07 ************************************************************ 2026-04-06T23:32:07.289 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-06T23:32:07.289 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-04-06T23:32:07.305 Job Notification: Process exited from job (2332) 2026-04-06T23:32:07.305 Job Notification: Process exited from job (5448) 2026-04-06T23:32:07.305 Job Notification: Process exited from job (7116) 2026-04-06T23:32:07.321 Job Notification: Process exited from job (5232) 2026-04-06T23:32:07.430 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-06T23:32:07.430 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-06T23:32:07.430 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-06T23:32:07.430 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-06T23:32:07.430 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-06T23:32:07.430 [Engine] Engine 00007FFD0D3319B0 no longer in use. Number of active engines: 1 2026-04-06T23:32:07.430 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-06T23:32:07.430 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-06T23:32:07.712 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-06T23:32:07.712 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-06T23:32:07.712 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-06T23:32:08.089 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64849, Count: 6588, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-04-06T23:32:08.089 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8640, Count: 77625, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.7QJJX3, EstimatedImpact: 0% 2026-04-06T23:32:08.089 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 26, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_823ff3_1.MAI, EstimatedImpact: 0% 2026-04-06T23:32:08.089 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-06T23:32:08.089 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-06T23:32:08.089 ProcessImageName: updater.exe, Pid: 6908, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16f9cbbe-31af-455c-a75a-42787f931bed.tmp, EstimatedImpact: 0% 2026-04-06T23:32:08.089 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8da42c5-80ba-4e68-9f74-543ed77f45f6.tmp, EstimatedImpact: 0% 2026-04-06T23:32:08.089 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29bc4ca0-7435-4ba4-9c64-f4ff0b53c19a.tmp, EstimatedImpact: 0% 2026-04-06T23:32:08.089 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 2% 2026-04-06T23:32:08.089 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6b85517-922e-4d11-bbaf-19c0bd4c16d1.tmp, EstimatedImpact: 0% 2026-04-06T23:32:08.089 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d38d450e-08ea-4908-9946-5842329bb42b.tmp, EstimatedImpact: 0% 2026-04-06T23:32:08.089 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b95449c-84dd-4bf5-b42c-cf6600b3ddd9.tmp, EstimatedImpact: 0% 2026-04-06T23:32:08.089 ProcessImageName: updater.exe, Pid: 7568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e4367fb8-8a3e-498b-8e46-6dab44f93a4d.tmp, EstimatedImpact: 0% 2026-04-06T23:32:08.089 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ce6dca3-7d3c-47f4-bcb0-f48c18142c3a.tmp, EstimatedImpact: 0% 2026-04-06T23:32:08.089 ProcessImageName: updater.exe, Pid: 2204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5584c33-58dc-44d1-9e41-b47c5347fa3a.tmp, EstimatedImpact: 0% 2026-04-06T23:32:08.136 [Engine] RSIG_UNLOADENGINE, 00007FFD0D3319B0, err=0x0 2026-04-06T23:32:08.136 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A6EC0ADE-0394-4B35-B44E-D3073F432029} removed 2026-04-06T23:32:08.308 Process scan (postsignatureupdatescan) started. 2026-04-06T23:32:15.277 Process scan (postsignatureupdatescan) completed. 2026-04-06T23:37:07.209 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-06T23:39:28.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-06T23:49:06.792 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82400b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1111364, FileId: 0x65100000004c451, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-06T23:54:33.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T00:09:38.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T00:10:25.987 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1113011, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T00:10:26.002 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1113013, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T00:10:36.000 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1113026, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T00:10:36.016 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1113029, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T00:24:43.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T00:39:48.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T00:54:53.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T01:09:58.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T01:10:25.294 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116413, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:10:25.294 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116415, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:10:35.304 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116428, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:10:35.304 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116429, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:10:35.319 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116430, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:12:43.154 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116553, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:12:43.154 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116555, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:12:48.569 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116577, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:12:48.584 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116580, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:12:48.584 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116582, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:12:48.584 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116584, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:12:58.572 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116597, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:12:58.588 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116600, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:12:58.588 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116601, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:12:58.603 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1116603, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T01:25:03.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T01:32:07.197 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53782, Count: 6170, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 4% 2026-04-07T01:32:07.197 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 690, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2PTDX3, EstimatedImpact: 0% 2026-04-07T01:32:07.197 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-07T01:32:07.197 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-07T01:32:07.197 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\126290f0-a29d-47c3-a386-d732fb934588.tmp, EstimatedImpact: 0% 2026-04-07T01:32:07.197 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45054986-533b-4b42-88c4-af635485df6d.tmp, EstimatedImpact: 0% 2026-04-07T01:40:08.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T01:55:13.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T02:10:18.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T02:10:25.694 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1119951, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T02:10:25.710 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1119953, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T02:10:35.705 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1119966, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T02:10:35.705 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1119968, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T02:10:35.861 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1119972, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T02:10:35.861 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1119974, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T02:25:23.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T02:40:28.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T02:55:33.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T03:10:25.509 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1123275, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T03:10:25.525 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1123277, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T03:10:35.539 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1123289, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T03:10:35.539 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1123293, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T03:10:38.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T03:16:55.900 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:4F197CF8-09A0-4A5B-874B-33DC13B64CC3, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-07T03:16:55.900 Scheduled scan with Id 4F197CF8-09A0-4A5B-874B-33DC13B64CC3 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-07T03:16:55.900 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-07T03:16:55.900 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-07T03:16:55.900 [SFC] System file cache build is not needed (already completed) 2026-04-07T03:17:07.252 Engine:Triggered AR EMS scan 2026-04-07T03:17:07.252 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.268 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.284 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.299 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.331 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.362 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.362 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.393 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.424 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.440 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.456 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.487 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.502 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.518 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.549 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.565 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.581 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.643 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.674 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.690 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.721 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.768 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-07T03:17:07.799 Bm signature throttled:0x00002db31bed458f 2026-04-07T03:17:21.237 QuickScan:ScanID:4F197CF8-09A0-4A5B-874B-33DC13B64CC3: Quick scan finished with error 0 2026-04-07T03:17:21.252 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-07T03:17:21.758 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-07T03:17:21.758 [RTP] Duplicating the current plugin configuration object... 2026-04-07T03:17:21.758 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-07T03:17:21.758 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-07T03:17:21.758 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-07T03:17:21.758 [RTP] No config change detected. Not updating plugin configuration. 2026-04-07T03:17:21.758 [RTP] No config changes found. No configuration switch. 2026-04-07T03:17:21.758 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-07T03:25:43.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T03:32:07.212 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53782, Count: 6170, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 4% 2026-04-07T03:32:07.212 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1410, Count: 12951, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2PTDX3, EstimatedImpact: 0% 2026-04-07T03:32:07.212 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-07T03:32:07.212 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e03993a2-0c92-4c52-a099-b5c4d0bcb915.tmp, EstimatedImpact: 0% 2026-04-07T03:32:07.212 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-07T03:32:07.212 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\126290f0-a29d-47c3-a386-d732fb934588.tmp, EstimatedImpact: 0% 2026-04-07T03:32:07.212 ProcessImageName: updater.exe, Pid: 7232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\359a69d7-f585-4c45-aae6-3aff2a804e74.tmp, EstimatedImpact: 0% 2026-04-07T03:32:07.212 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45054986-533b-4b42-88c4-af635485df6d.tmp, EstimatedImpact: 0% 2026-04-07T03:40:48.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T03:55:53.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T04:10:26.929 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1126734, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T04:10:26.945 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1126736, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T04:10:36.932 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1126749, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T04:10:36.947 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1126751, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T04:10:36.947 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1126753, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T04:10:36.947 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1126755, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T04:10:58.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T04:26:03.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T04:41:08.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T04:56:13.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T05:10:26.443 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1130084, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T05:10:26.459 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1130086, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T05:10:36.468 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1130099, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T05:10:36.468 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1130102, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T05:11:18.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T05:26:23.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T05:32:07.218 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54564, Count: 6206, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-07T05:32:07.218 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2040, Count: 19422, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2PTDX3, EstimatedImpact: 0% 2026-04-07T05:32:07.218 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-07T05:32:07.218 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e03993a2-0c92-4c52-a099-b5c4d0bcb915.tmp, EstimatedImpact: 0% 2026-04-07T05:32:07.218 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-07T05:32:07.218 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3822aae-6374-43ab-a8a2-b1d35f8ef864.tmp, EstimatedImpact: 0% 2026-04-07T05:32:07.218 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ef6376-3ba0-4b61-8419-7b4777beabd0.tmp, EstimatedImpact: 0% 2026-04-07T05:32:07.218 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\126290f0-a29d-47c3-a386-d732fb934588.tmp, EstimatedImpact: 0% 2026-04-07T05:32:07.218 ProcessImageName: updater.exe, Pid: 7232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\359a69d7-f585-4c45-aae6-3aff2a804e74.tmp, EstimatedImpact: 0% 2026-04-07T05:32:07.218 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45054986-533b-4b42-88c4-af635485df6d.tmp, EstimatedImpact: 0% 2026-04-07T05:41:28.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T05:56:33.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T06:10:26.829 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1133424, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T06:10:26.844 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1133426, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T06:10:36.841 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1133439, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T06:10:36.857 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1133442, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T06:11:38.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T06:12:48.657 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1133573, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T06:12:48.673 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1133575, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T06:12:52.884 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1133586, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T06:12:52.900 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1133589, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T06:12:52.900 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1133591, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T06:12:52.900 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1133593, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T06:13:02.887 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1133606, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T06:13:02.887 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1133608, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T06:13:02.902 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1133610, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T06:13:02.902 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1133612, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T06:26:43.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T06:41:48.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T06:56:53.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T07:10:26.741 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1136776, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T07:10:26.757 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1136778, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T07:10:36.751 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1136791, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T07:10:36.751 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1136793, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T07:10:36.923 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1136797, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T07:10:36.938 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1136799, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T07:11:58.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T07:27:03.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T07:32:07.221 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54594, Count: 6211, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-07T07:32:07.221 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2805, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2PTDX3, EstimatedImpact: 0% 2026-04-07T07:32:07.221 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 105, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-07T07:32:07.221 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c92ee813-58e6-428a-b9ab-0340dd8c03d1.tmp, EstimatedImpact: 0% 2026-04-07T07:32:07.221 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e03993a2-0c92-4c52-a099-b5c4d0bcb915.tmp, EstimatedImpact: 0% 2026-04-07T07:32:07.221 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-07T07:32:07.221 ProcessImageName: updater.exe, Pid: 7232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\359a69d7-f585-4c45-aae6-3aff2a804e74.tmp, EstimatedImpact: 0% 2026-04-07T07:32:07.221 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3822aae-6374-43ab-a8a2-b1d35f8ef864.tmp, EstimatedImpact: 0% 2026-04-07T07:32:07.221 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ef6376-3ba0-4b61-8419-7b4777beabd0.tmp, EstimatedImpact: 0% 2026-04-07T07:32:07.221 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\126290f0-a29d-47c3-a386-d732fb934588.tmp, EstimatedImpact: 0% 2026-04-07T07:32:07.221 ProcessImageName: updater.exe, Pid: 7108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68daf445-8cb0-4b9c-96a3-c5c0bcbe6b65.tmp, EstimatedImpact: 0% 2026-04-07T07:32:07.221 ProcessImageName: updater.exe, Pid: 6776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88ff58a1-d384-42bf-b76c-d7bca59daa46.tmp, EstimatedImpact: 0% 2026-04-07T07:32:07.221 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45054986-533b-4b42-88c4-af635485df6d.tmp, EstimatedImpact: 0% 2026-04-07T07:42:08.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T07:57:13.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T08:10:24.277 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1140092, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T08:10:24.293 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1140094, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T08:10:34.288 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1140107, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T08:10:34.288 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1140108, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T08:10:34.304 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1140110, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T08:12:18.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T08:27:23.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T08:42:28.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T08:57:33.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T09:10:25.930 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1143408, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T09:10:25.945 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1143410, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T09:10:35.939 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1143423, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T09:10:35.955 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1143426, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T09:12:38.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T09:27:43.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T09:32:07.223 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54594, Count: 6211, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-07T09:32:07.223 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3480, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2PTDX3, EstimatedImpact: 0% 2026-04-07T09:32:07.223 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 105, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-07T09:32:07.223 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c92ee813-58e6-428a-b9ab-0340dd8c03d1.tmp, EstimatedImpact: 0% 2026-04-07T09:32:07.223 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e03993a2-0c92-4c52-a099-b5c4d0bcb915.tmp, EstimatedImpact: 0% 2026-04-07T09:32:07.223 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-07T09:32:07.223 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ef6376-3ba0-4b61-8419-7b4777beabd0.tmp, EstimatedImpact: 0% 2026-04-07T09:32:07.223 ProcessImageName: updater.exe, Pid: 7232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\359a69d7-f585-4c45-aae6-3aff2a804e74.tmp, EstimatedImpact: 0% 2026-04-07T09:32:07.223 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8724f22-aa4d-45c8-bd2a-28d1300d2bae.tmp, EstimatedImpact: 0% 2026-04-07T09:32:07.223 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3822aae-6374-43ab-a8a2-b1d35f8ef864.tmp, EstimatedImpact: 0% 2026-04-07T09:32:07.223 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\126290f0-a29d-47c3-a386-d732fb934588.tmp, EstimatedImpact: 0% 2026-04-07T09:32:07.223 ProcessImageName: updater.exe, Pid: 7108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68daf445-8cb0-4b9c-96a3-c5c0bcbe6b65.tmp, EstimatedImpact: 0% 2026-04-07T09:32:07.223 ProcessImageName: updater.exe, Pid: 6776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88ff58a1-d384-42bf-b76c-d7bca59daa46.tmp, EstimatedImpact: 0% 2026-04-07T09:32:07.223 ProcessImageName: updater.exe, Pid: 3772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c5de792-3cba-477e-acd2-4c5917a5e31a.tmp, EstimatedImpact: 0% 2026-04-07T09:32:07.223 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45054986-533b-4b42-88c4-af635485df6d.tmp, EstimatedImpact: 0% 2026-04-07T09:42:48.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T09:57:53.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T10:10:25.591 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1146726, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T10:10:25.591 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1146728, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T10:10:35.602 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1146741, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T10:10:35.617 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1146743, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T10:12:58.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T10:28:03.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T10:43:08.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T10:58:13.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T11:10:26.189 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150034, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T11:10:26.205 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150036, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T11:10:36.199 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150049, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T11:10:36.199 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150050, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T11:10:36.199 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150052, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T11:12:52.980 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150184, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T11:12:52.996 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150186, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T11:12:58.825 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150196, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T11:12:58.840 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150198, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T11:12:58.856 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150200, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T11:13:08.841 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150212, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T11:13:08.841 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150213, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T11:13:08.856 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150215, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T11:13:18.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T11:28:23.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T11:32:07.229 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54640, Count: 6214, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4125, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2PTDX3, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 105, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c92ee813-58e6-428a-b9ab-0340dd8c03d1.tmp, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e03993a2-0c92-4c52-a099-b5c4d0bcb915.tmp, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\126290f0-a29d-47c3-a386-d732fb934588.tmp, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 6776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88ff58a1-d384-42bf-b76c-d7bca59daa46.tmp, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8724f22-aa4d-45c8-bd2a-28d1300d2bae.tmp, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3822aae-6374-43ab-a8a2-b1d35f8ef864.tmp, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45054986-533b-4b42-88c4-af635485df6d.tmp, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\245141da-8a7b-4ba1-b10c-f642af906cbe.tmp, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ef6376-3ba0-4b61-8419-7b4777beabd0.tmp, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 7232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\359a69d7-f585-4c45-aae6-3aff2a804e74.tmp, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 3772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c5de792-3cba-477e-acd2-4c5917a5e31a.tmp, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 3392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\baead333-2ef4-4033-b3bc-bf894943fcfa.tmp, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 7108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68daf445-8cb0-4b9c-96a3-c5c0bcbe6b65.tmp, EstimatedImpact: 0% 2026-04-07T11:32:07.229 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-07T11:43:28.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T11:58:33.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T12:10:25.925 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1153378, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T12:10:25.940 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1153380, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T12:10:35.939 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1153393, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T12:10:35.939 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1153395, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T12:10:36.095 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1153399, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T12:10:36.110 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1153401, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T12:13:38.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T12:28:43.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T12:39:22.705 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82403c_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1154982, FileId: 0x74d00000004c45d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T12:39:24.596 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82403c_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1155016, FileId: 0x74e00000004c45d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T12:43:48.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T12:58:53.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T13:10:26.818 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1156733, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T13:10:26.818 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1156735, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T13:10:36.811 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1156749, FileId: 0x56cf000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T13:10:36.811 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1156748, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T13:10:36.826 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1156751, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T13:13:58.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T13:29:03.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T13:32:07.229 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55892, Count: 6326, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4965, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2PTDX3, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 105, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a82ba944-9250-4b77-8891-ff5360214691.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c92ee813-58e6-428a-b9ab-0340dd8c03d1.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e03993a2-0c92-4c52-a099-b5c4d0bcb915.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 15, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82403c_1.MAI, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 6776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88ff58a1-d384-42bf-b76c-d7bca59daa46.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8724f22-aa4d-45c8-bd2a-28d1300d2bae.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3822aae-6374-43ab-a8a2-b1d35f8ef864.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 7232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\359a69d7-f585-4c45-aae6-3aff2a804e74.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ef6376-3ba0-4b61-8419-7b4777beabd0.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\126290f0-a29d-47c3-a386-d732fb934588.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 7108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68daf445-8cb0-4b9c-96a3-c5c0bcbe6b65.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 4196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cf1000bb-e11d-4e36-a9ce-f101715fc71c.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\245141da-8a7b-4ba1-b10c-f642af906cbe.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 3772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c5de792-3cba-477e-acd2-4c5917a5e31a.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 3392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\baead333-2ef4-4033-b3bc-bf894943fcfa.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45054986-533b-4b42-88c4-af635485df6d.tmp, EstimatedImpact: 0% 2026-04-07T13:32:07.229 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-07T13:44:08.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T13:59:13.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T14:10:25.767 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1160074, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T14:14:18.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T14:29:23.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T14:44:28.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T14:59:33.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T15:10:35.143 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1163403, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T15:14:38.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T15:29:43.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T15:32:07.228 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55953, Count: 6330, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5730, Count: 51786, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2PTDX3, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 105, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a82ba944-9250-4b77-8891-ff5360214691.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c92ee813-58e6-428a-b9ab-0340dd8c03d1.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e03993a2-0c92-4c52-a099-b5c4d0bcb915.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 15, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82403c_1.MAI, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\126290f0-a29d-47c3-a386-d732fb934588.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4932aa85-4731-46e8-b8dd-ec5ccce5d53d.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8724f22-aa4d-45c8-bd2a-28d1300d2bae.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3822aae-6374-43ab-a8a2-b1d35f8ef864.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 4196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cf1000bb-e11d-4e36-a9ce-f101715fc71c.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\245141da-8a7b-4ba1-b10c-f642af906cbe.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ef6376-3ba0-4b61-8419-7b4777beabd0.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 3772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c5de792-3cba-477e-acd2-4c5917a5e31a.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 7232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\359a69d7-f585-4c45-aae6-3aff2a804e74.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\55f65023-06cc-4971-b43a-6f005ef4abb5.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 7108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68daf445-8cb0-4b9c-96a3-c5c0bcbe6b65.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 3392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\baead333-2ef4-4033-b3bc-bf894943fcfa.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 6776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88ff58a1-d384-42bf-b76c-d7bca59daa46.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45054986-533b-4b42-88c4-af635485df6d.tmp, EstimatedImpact: 0% 2026-04-07T15:32:07.228 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-07T15:44:48.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T15:59:53.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T16:12:58.931 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1166872, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T16:14:58.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T16:30:03.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T16:45:08.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T17:00:13.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T17:10:25.971 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1170076, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T17:15:18.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T17:30:23.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T17:32:07.240 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59750, Count: 6549, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6345, Count: 58257, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2PTDX3, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 105, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a82ba944-9250-4b77-8891-ff5360214691.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b582dd2-a4ec-484b-b0d4-66801e7d87c7.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82403c_1.MAI, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c92ee813-58e6-428a-b9ab-0340dd8c03d1.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e03993a2-0c92-4c52-a099-b5c4d0bcb915.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c7232a31-1c2f-491e-b254-055a4ae2e7cd.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8724f22-aa4d-45c8-bd2a-28d1300d2bae.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3822aae-6374-43ab-a8a2-b1d35f8ef864.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86d4d608-553f-48ac-98b8-b147dab18a04.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 7108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68daf445-8cb0-4b9c-96a3-c5c0bcbe6b65.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ef6376-3ba0-4b61-8419-7b4777beabd0.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 7232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\359a69d7-f585-4c45-aae6-3aff2a804e74.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\126290f0-a29d-47c3-a386-d732fb934588.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\55f65023-06cc-4971-b43a-6f005ef4abb5.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 6776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88ff58a1-d384-42bf-b76c-d7bca59daa46.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4932aa85-4731-46e8-b8dd-ec5ccce5d53d.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 4196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cf1000bb-e11d-4e36-a9ce-f101715fc71c.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\245141da-8a7b-4ba1-b10c-f642af906cbe.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 3772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c5de792-3cba-477e-acd2-4c5917a5e31a.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 3392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\baead333-2ef4-4033-b3bc-bf894943fcfa.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45054986-533b-4b42-88c4-af635485df6d.tmp, EstimatedImpact: 0% 2026-04-07T17:32:07.240 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-07T17:45:28.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T18:00:33.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T18:15:38.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T18:29:12.186 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82404f_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1174434, FileId: 0x8e800000004c447, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T18:30:43.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T18:45:48.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T19:00:53.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T19:15:58.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T19:31:03.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T19:32:07.250 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59750, Count: 6550, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7125, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2PTDX3, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 105, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b582dd2-a4ec-484b-b0d4-66801e7d87c7.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a82ba944-9250-4b77-8891-ff5360214691.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82403c_1.MAI, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c92ee813-58e6-428a-b9ab-0340dd8c03d1.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e03993a2-0c92-4c52-a099-b5c4d0bcb915.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c7232a31-1c2f-491e-b254-055a4ae2e7cd.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 6776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88ff58a1-d384-42bf-b76c-d7bca59daa46.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 6192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7da4081-08b9-414a-89dd-e1d5769f69c0.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8724f22-aa4d-45c8-bd2a-28d1300d2bae.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3822aae-6374-43ab-a8a2-b1d35f8ef864.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86d4d608-553f-48ac-98b8-b147dab18a04.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 7232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\359a69d7-f585-4c45-aae6-3aff2a804e74.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ef6376-3ba0-4b61-8419-7b4777beabd0.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\126290f0-a29d-47c3-a386-d732fb934588.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\55f65023-06cc-4971-b43a-6f005ef4abb5.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 7108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68daf445-8cb0-4b9c-96a3-c5c0bcbe6b65.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4932aa85-4731-46e8-b8dd-ec5ccce5d53d.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 4196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cf1000bb-e11d-4e36-a9ce-f101715fc71c.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\245141da-8a7b-4ba1-b10c-f642af906cbe.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 3772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c5de792-3cba-477e-acd2-4c5917a5e31a.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 3392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\baead333-2ef4-4033-b3bc-bf894943fcfa.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45054986-533b-4b42-88c4-af635485df6d.tmp, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 6476, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-07T19:32:07.250 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-07T19:46:08.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T20:01:13.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T20:10:34.248 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1180035, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T20:16:18.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T20:31:23.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T20:46:28.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T21:01:33.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T21:13:07.132 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1183513, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T21:16:38.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T21:31:43.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T21:32:07.261 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59750, Count: 6550, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7860, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2PTDX3, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 105, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a82ba944-9250-4b77-8891-ff5360214691.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b582dd2-a4ec-484b-b0d4-66801e7d87c7.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82403c_1.MAI, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c92ee813-58e6-428a-b9ab-0340dd8c03d1.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e03993a2-0c92-4c52-a099-b5c4d0bcb915.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ef6376-3ba0-4b61-8419-7b4777beabd0.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\126290f0-a29d-47c3-a386-d732fb934588.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\55f65023-06cc-4971-b43a-6f005ef4abb5.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 6192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7da4081-08b9-414a-89dd-e1d5769f69c0.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 7108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68daf445-8cb0-4b9c-96a3-c5c0bcbe6b65.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c7232a31-1c2f-491e-b254-055a4ae2e7cd.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4932aa85-4731-46e8-b8dd-ec5ccce5d53d.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 4196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cf1000bb-e11d-4e36-a9ce-f101715fc71c.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\245141da-8a7b-4ba1-b10c-f642af906cbe.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 3772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c5de792-3cba-477e-acd2-4c5917a5e31a.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc100be8-c78f-4c79-abad-15cd0bcbebfe.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 3392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\baead333-2ef4-4033-b3bc-bf894943fcfa.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45054986-533b-4b42-88c4-af635485df6d.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8724f22-aa4d-45c8-bd2a-28d1300d2bae.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3822aae-6374-43ab-a8a2-b1d35f8ef864.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86d4d608-553f-48ac-98b8-b147dab18a04.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 7232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\359a69d7-f585-4c45-aae6-3aff2a804e74.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 6776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88ff58a1-d384-42bf-b76c-d7bca59daa46.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0477b064-73b1-4272-a84e-75f5ebf72d91.tmp, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-07T21:32:07.261 ProcessImageName: updater.exe, Pid: 6476, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-07T21:46:48.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T21:50:01.397 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824056_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1185629, FileId: 0x7a900000004c484, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T21:50:03.567 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824056_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1185669, FileId: 0xb5000000002568b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T21:50:03.848 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824056_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1185699, FileId: 0xb5a00000002568b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T21:50:16.041 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824058_a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1185796, FileId: 0x5f7000000056863, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T21:50:17.668 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824058_1e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1185826, FileId: 0x601000000056863, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T21:50:17.934 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824058_36.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1185856, FileId: 0x60b000000056863, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T22:01:53.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T22:10:36.369 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1187014, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-07T22:16:58.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T22:32:03.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T22:47:08.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T23:02:13.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T23:17:18.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T23:31:53.429 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-07T23:31:53.444 Job Notification: New process added to job (4376) 2026-04-07T23:31:53.460 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-07T23:31:53.460 Aggressive catchup quick scan threshold: 728975627401 / 25920000000000 2026-04-07T23:31:53.460 Job Notification: New process added to job (7180) 2026-04-07T23:31:53.476 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:4376] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7180]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-07T23:31:53.554 Job Notification: New process added to job (2820) 2026-04-07T23:31:53.569 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-07T23:31:53.569 Job Notification: New process added to job (7052) 2026-04-07T23:31:53.585 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:2820] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7052]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-07T23:31:54.007 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-07T23:31:54.038 [RTP] Duplicating the current plugin configuration object... 2026-04-07T23:31:54.038 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-07T23:31:54.038 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-07T23:31:54.038 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-07T23:31:54.038 [RTP] No config change detected. Not updating plugin configuration. 2026-04-07T23:31:54.038 [RTP] No config changes found. No configuration switch. 2026-04-07T23:31:54.038 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-07T23:31:54.429 Job Notification: New process added to job (2332) 2026-04-07T23:31:54.444 Task(GetDeviceTicket -AccessKey 801CB9C8-AA01-83BA-7408-B179B2E00816 ) launched as network service 2026-04-07T23:31:54.491 Job Notification: Process exited from job (2332) 2026-04-07T23:31:55.630 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-07T23:31:55.630 [Cloud] Start of cloud request. Passive mode: 0 2026-04-07T23:31:55.630 [Cloud] Queued cloud request. 2026-04-07T23:31:55.630 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-07T23:31:55.630 [Cloud] Dequeued cloud request. 2026-04-07T23:31:55.630 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-07T23:31:55.630 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-07T23:31:55.630 [Cloud] Start of cloud request. Passive mode: 0 2026-04-07T23:31:55.630 [Cloud] Queued cloud request. 2026-04-07T23:31:55.630 [Cloud] Dequeued cloud request. 2026-04-07T23:31:55.630 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-07T23:31:55.866 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-07T23:31:55.866 [Cloud] End of cloud request. 2026-04-07T23:31:55.866 [Cloud] End of cloud request. 2026-04-07T23:31:56.134 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-07T23:32:07.264 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64528, Count: 6945, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8565, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2PTDX3, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 151, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82403c_1.MAI, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 135, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5f119815-df82-4c86-9992-0fde3f89b1e0.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a82ba944-9250-4b77-8891-ff5360214691.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b582dd2-a4ec-484b-b0d4-66801e7d87c7.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c92ee813-58e6-428a-b9ab-0340dd8c03d1.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e03993a2-0c92-4c52-a099-b5c4d0bcb915.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ef6376-3ba0-4b61-8419-7b4777beabd0.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 7232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\359a69d7-f585-4c45-aae6-3aff2a804e74.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\126290f0-a29d-47c3-a386-d732fb934588.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\55f65023-06cc-4971-b43a-6f005ef4abb5.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 6776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88ff58a1-d384-42bf-b76c-d7bca59daa46.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c7232a31-1c2f-491e-b254-055a4ae2e7cd.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4932aa85-4731-46e8-b8dd-ec5ccce5d53d.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 7108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68daf445-8cb0-4b9c-96a3-c5c0bcbe6b65.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 4196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cf1000bb-e11d-4e36-a9ce-f101715fc71c.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\245141da-8a7b-4ba1-b10c-f642af906cbe.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 3772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c5de792-3cba-477e-acd2-4c5917a5e31a.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 6192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7da4081-08b9-414a-89dd-e1d5769f69c0.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 3392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\baead333-2ef4-4033-b3bc-bf894943fcfa.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45054986-533b-4b42-88c4-af635485df6d.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8724f22-aa4d-45c8-bd2a-28d1300d2bae.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3822aae-6374-43ab-a8a2-b1d35f8ef864.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86d4d608-553f-48ac-98b8-b147dab18a04.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 7960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a9e2419-0e64-4766-9ae3-711b88f4fbad.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc100be8-c78f-4c79-abad-15cd0bcbebfe.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0477b064-73b1-4272-a84e-75f5ebf72d91.tmp, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-07T23:32:07.264 ProcessImageName: updater.exe, Pid: 6476, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-07T23:32:07.866 Job Notification: Process exited from job (6716) 2026-04-07T23:32:23.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-07T23:33:18.706 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\4E6E98D9-2EDF-4299-A9D9-F3FD4D391DDDd00.1dcc6e6e91018f8 2026-04-07T23:33:18.753 Verifying engine and signature files (source: 0) ... 2026-04-07T23:33:18.753 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{43A77DEB-D398-4A79-B2E5-658E3B783BE6}\mpengine.dll] due to PPL. 2026-04-07T23:33:18.753 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{43A77DEB-D398-4A79-B2E5-658E3B783BE6}\mpasbase.vdm] (file in cache) 2026-04-07T23:33:18.753 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{43A77DEB-D398-4A79-B2E5-658E3B783BE6}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-07T23:33:18.768 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{43A77DEB-D398-4A79-B2E5-658E3B783BE6}\mpasdlta.vdm] 2026-04-07T23:33:18.768 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{43A77DEB-D398-4A79-B2E5-658E3B783BE6}\mpavbase.vdm] (file in cache) 2026-04-07T23:33:18.768 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{43A77DEB-D398-4A79-B2E5-658E3B783BE6}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-07T23:33:18.784 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{43A77DEB-D398-4A79-B2E5-658E3B783BE6}\mpavdlta.vdm] 2026-04-07T23:33:18.925 [Engine] IsHybridMode: 0 2026-04-07T23:33:18.925 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-07T23:33:18.940 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-D6EE7CA46C608AB314663F7221B32EC0FF55913D.bin): 0x00000002 2026-04-07T23:33:18.940 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-D6EE7CA46C608AB314663F7221B32EC0FF55913D.bin) 2026-04-07T23:33:18.940 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-07T23:33:18.940 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-07T23:33:18.940 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-07T23:33:18.940 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-07T23:33:27.509 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-07T23:33:27.509 [AutoExclusion] Applied roles from cache. 2026-04-07T23:33:27.509 [AutoExclusion] Started roles monitoring. 2026-04-07T23:33:27.525 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0E4219B0, lRefCount: 5, hr=0 2026-04-07T23:33:27.525 [Engine] New active engine 00007FFD0D3319B0 replacing engine 00007FFD0E4219B0. Number of active engines: 2 2026-04-07T23:33:27.525 EngineInit:Global ASOC is enabled 2026-04-07T23:33:27.525 EngineInit:ASOO is enabled for developer volumes 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-07T23:33:27.540 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-07T23:33:27.540 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-07T23:33:27.556 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-07T23:33:27.556 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-07T23:33:27.556 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-07T23:33:27.556 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-07T23:33:27.556 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-07T23:33:27.556 [Plugin] Initializing RTP plugin state... 2026-04-07T23:33:27.556 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-07T23:33:27.556 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎07‎-‎2026 01:32:07 Last Perf:‎04‎-‎07‎-‎2026 01:32:07 First RTP Scan:‎04‎-‎07‎-‎2026 01:32:10 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:398 Misses:2249 BM Queue:0,55,0 Proc:0,41,0 File:0,55,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1191750 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1424061868 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:16403 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:303611 TotalHits:328019 InstanceCacheInserts:536138 InstanceCacheUpdates:0 InstanceCacheDeletes:90435 InstanceCacheHits:2858 InstanceCacheMisses:876320 InstanceCacheOverflows:434653 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:0ms (253/275) Success: 275, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-07T23:33:27.556 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{43A77DEB-D398-4A79-B2E5-658E3B783BE6} 2026-04-07T23:33:27.556 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-07T23:33:27.556 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1888E3FA-5C06-4A65-B9D4-44472162A904}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1888E3FA-5C06-4A65-B9D4-44472162A904}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-07T23:33:27.556 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-07T23:33:27.556 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-07T23:33:27.556 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-07T23:33:27.556 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-07T23:33:27.571 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-07-2026 23:33:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-07-2026 23:33:27 2026-04-07T23:33:27.571 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-07T23:33:27.571 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-07T23:33:27.571 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-07T23:33:27.571 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-07T23:33:27.571 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-07T23:33:27.571 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-07T23:33:27.571 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-07T23:33:27.571 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-07T23:33:27.571 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-07T23:33:27.571 MdCoreSvc is supported in this platform and OS Signature updated on 04-07-2026 23:33:27 Product Version: 4.18.26020.6 Service Version: 4.18.26020.6 Engine Version: 1.1.26020.3 AS Signature Version: 1.447.220.0 AV Signature Version: 1.447.220.0 ************************************************************ 2026-04-07T23:33:27.571 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-07T23:33:27.571 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\4E6E98D9-2EDF-4299-A9D9-F3FD4D391DDDd00.1dcc6e6e91018f8 Signature updated via MicrosoftUpdateServer on 04-07-2026 23:33:27 ************************************************************ 2026-04-07T23:33:27.634 Job Notification: Process exited from job (2820) 2026-04-07T23:33:27.650 Job Notification: Process exited from job (7052) 2026-04-07T23:33:27.650 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-07T23:33:27.650 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-04-07T23:33:27.650 Job Notification: Process exited from job (4376) 2026-04-07T23:33:27.650 Job Notification: Process exited from job (7180) 2026-04-07T23:33:27.775 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-07T23:33:27.775 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-07T23:33:27.775 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-07T23:33:27.775 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-07T23:33:27.775 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-07T23:33:27.775 [Engine] Engine 00007FFD0E4219B0 no longer in use. Number of active engines: 1 2026-04-07T23:33:27.775 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-07T23:33:27.775 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-07T23:33:28.041 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-07T23:33:28.041 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-07T23:33:28.041 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-07T23:33:28.644 Process scan (postsignatureupdatescan) started. 2026-04-07T23:33:28.660 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64528, Count: 6945, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-07T23:33:28.660 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8565, Count: 77742, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2PTDX3, EstimatedImpact: 0% 2026-04-07T23:33:28.660 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 151, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82403c_1.MAI, EstimatedImpact: 0% 2026-04-07T23:33:28.660 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 135, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-07T23:33:28.660 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-07T23:33:28.660 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5f119815-df82-4c86-9992-0fde3f89b1e0.tmp, EstimatedImpact: 0% 2026-04-07T23:33:28.660 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a82ba944-9250-4b77-8891-ff5360214691.tmp, EstimatedImpact: 0% 2026-04-07T23:33:28.660 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b582dd2-a4ec-484b-b0d4-66801e7d87c7.tmp, EstimatedImpact: 0% 2026-04-07T23:33:28.660 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c92ee813-58e6-428a-b9ab-0340dd8c03d1.tmp, EstimatedImpact: 0% 2026-04-07T23:33:28.660 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e03993a2-0c92-4c52-a099-b5c4d0bcb915.tmp, EstimatedImpact: 0% 2026-04-07T23:33:28.660 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-07T23:33:28.660 ProcessImageName: updater.exe, Pid: 7232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\359a69d7-f585-4c45-aae6-3aff2a804e74.tmp, EstimatedImpact: 0% 2026-04-07T23:33:28.706 [Engine] RSIG_UNLOADENGINE, 00007FFD0E4219B0, err=0x0 2026-04-07T23:33:28.722 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1888E3FA-5C06-4A65-B9D4-44472162A904} removed 2026-04-07T23:33:35.598 Process scan (postsignatureupdatescan) completed. 2026-04-07T23:38:27.540 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-07T23:47:28.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T00:02:33.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T00:10:25.440 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1194096, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T00:10:25.440 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1194098, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T00:10:35.460 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1194111, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T00:10:35.460 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1194113, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T00:17:38.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T00:32:43.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T00:47:48.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T01:02:53.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T01:10:24.786 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1197438, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T01:10:24.786 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1197440, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T01:10:34.799 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1197452, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T01:10:34.815 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1197455, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T01:17:58.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T01:33:03.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T01:33:27.538 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 840, Count: 6480, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.E9F7W3, EstimatedImpact: 0% 2026-04-08T01:33:27.538 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 709, Count: 63, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin\php\inc\db\dbmysql.php, EstimatedImpact: 0% 2026-04-08T01:33:27.538 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-08T01:33:27.538 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e7d062-2cc4-42e1-9b9e-5926c6414949.tmp, EstimatedImpact: 0% 2026-04-08T01:33:27.538 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb278fd1-474a-4eda-8218-45f00fe5d495.tmp, EstimatedImpact: 0% 2026-04-08T01:48:08.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T02:03:13.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T02:10:26.265 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1200811, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T02:10:26.265 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1200813, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T02:10:36.275 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1200826, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T02:10:36.275 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1200827, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T02:10:36.275 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1200829, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T02:13:07.243 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1200970, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T02:13:07.258 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1200973, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T02:13:11.631 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1200991, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T02:13:11.631 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1200994, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T02:13:11.631 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1200996, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T02:13:11.647 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1200998, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T02:13:21.645 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1201011, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T02:13:21.660 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1201014, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T02:18:18.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T02:33:23.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T02:48:28.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T03:03:33.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T03:10:26.725 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1204236, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T03:10:26.741 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1204238, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T03:10:36.737 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1204251, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T03:10:36.753 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1204253, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T03:10:36.899 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1204257, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T03:10:36.915 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1204259, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T03:16:55.891 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:75572D63-BEDA-48C0-985B-3AE673570B81, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-08T03:16:55.891 Scheduled scan with Id 75572D63-BEDA-48C0-985B-3AE673570B81 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-08T03:16:55.891 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-08T03:16:55.891 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-08T03:16:55.891 [SFC] System file cache build is not needed (already completed) 2026-04-08T03:17:07.752 Engine:Triggered AR EMS scan 2026-04-08T03:17:07.752 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:07.767 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:07.799 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:07.814 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:07.845 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:07.877 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:07.892 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:07.924 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:07.939 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:07.955 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:07.986 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:08.002 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:08.017 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:08.033 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:08.064 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:08.080 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:08.095 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:08.158 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:08.174 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:08.189 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:08.220 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:08.267 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-08T03:17:08.299 Bm signature throttled:0x00002db31bed458f 2026-04-08T03:17:22.283 QuickScan:ScanID:75572D63-BEDA-48C0-985B-3AE673570B81: Quick scan finished with error 0 2026-04-08T03:17:22.283 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-08T03:17:22.784 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-08T03:17:22.784 [RTP] Duplicating the current plugin configuration object... 2026-04-08T03:17:22.784 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-08T03:17:22.784 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-08T03:17:22.784 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-08T03:17:22.784 [RTP] No config change detected. Not updating plugin configuration. 2026-04-08T03:17:22.784 [RTP] No config changes found. No configuration switch. 2026-04-08T03:17:22.784 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-08T03:18:38.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T03:33:27.547 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1365, Count: 12951, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.E9F7W3, EstimatedImpact: 0% 2026-04-08T03:33:27.547 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 740, Count: 64, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin\php\inc\db\dbmysql.php, EstimatedImpact: 0% 2026-04-08T03:33:27.547 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-08T03:33:27.547 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-08T03:33:27.547 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f04ee7-4fa1-4450-b6f7-4a750073a161.tmp, EstimatedImpact: 0% 2026-04-08T03:33:27.547 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e7d062-2cc4-42e1-9b9e-5926c6414949.tmp, EstimatedImpact: 0% 2026-04-08T03:33:27.547 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cd81622-99b8-4e27-976b-246c07c59c8c.tmp, EstimatedImpact: 0% 2026-04-08T03:33:27.547 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37deaa90-1d3a-4abe-987b-54361a15bef7.tmp, EstimatedImpact: 0% 2026-04-08T03:33:27.547 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb278fd1-474a-4eda-8218-45f00fe5d495.tmp, EstimatedImpact: 0% 2026-04-08T03:33:43.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T03:48:48.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T04:03:53.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T04:10:25.641 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1207694, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T04:10:25.657 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1207696, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T04:10:35.656 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1207709, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T04:10:35.671 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1207712, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T04:18:58.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T04:34:03.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T04:49:08.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T05:04:13.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T05:10:25.126 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1211010, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T05:10:25.126 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1211012, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T05:10:35.129 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1211025, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T05:10:35.145 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1211027, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T05:19:18.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T05:33:27.557 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2025, Count: 19422, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.E9F7W3, EstimatedImpact: 0% 2026-04-08T05:33:27.557 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 740, Count: 64, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin\php\inc\db\dbmysql.php, EstimatedImpact: 0% 2026-04-08T05:33:27.557 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-08T05:33:27.557 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-08T05:33:27.557 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f04ee7-4fa1-4450-b6f7-4a750073a161.tmp, EstimatedImpact: 0% 2026-04-08T05:33:27.557 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e7d062-2cc4-42e1-9b9e-5926c6414949.tmp, EstimatedImpact: 0% 2026-04-08T05:33:27.557 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc280f81-a9f0-498e-8785-ef5ec5b78336.tmp, EstimatedImpact: 0% 2026-04-08T05:33:27.557 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cd81622-99b8-4e27-976b-246c07c59c8c.tmp, EstimatedImpact: 0% 2026-04-08T05:33:27.557 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37deaa90-1d3a-4abe-987b-54361a15bef7.tmp, EstimatedImpact: 0% 2026-04-08T05:33:27.557 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb278fd1-474a-4eda-8218-45f00fe5d495.tmp, EstimatedImpact: 0% 2026-04-08T05:33:27.557 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cca04d4-3187-4599-97c2-50af2ffb7649.tmp, EstimatedImpact: 0% 2026-04-08T05:34:23.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T05:49:28.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T06:04:33.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T06:10:26.500 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1214355, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T06:10:26.515 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1214357, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T06:10:36.508 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1214369, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T06:10:36.508 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1214370, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T06:10:36.508 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1214372, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T06:19:38.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T06:34:43.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T06:49:48.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T07:04:53.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T07:10:26.445 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1217662, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:10:26.445 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1217664, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:10:36.455 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1217677, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:10:36.455 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1217678, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:10:36.470 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1217679, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:10:36.470 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1217681, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:13:11.711 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1217832, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:13:11.711 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1217834, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:13:15.699 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1217845, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:13:15.699 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1217847, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:13:15.715 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1217849, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:13:15.715 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1217851, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:13:25.732 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1217864, FileId: 0x555000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:13:25.732 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1217867, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:19:58.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T07:33:27.566 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2655, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.E9F7W3, EstimatedImpact: 0% 2026-04-08T07:33:27.566 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 1057, Count: 92, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin\php\inc\db\dbmysql.php, EstimatedImpact: 0% 2026-04-08T07:33:27.566 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-08T07:33:27.566 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-08T07:33:27.566 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f04ee7-4fa1-4450-b6f7-4a750073a161.tmp, EstimatedImpact: 0% 2026-04-08T07:33:27.566 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e7d062-2cc4-42e1-9b9e-5926c6414949.tmp, EstimatedImpact: 0% 2026-04-08T07:33:27.566 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dcdcea42-a445-4d88-9de3-016ab30e4163.tmp, EstimatedImpact: 0% 2026-04-08T07:33:27.566 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc280f81-a9f0-498e-8785-ef5ec5b78336.tmp, EstimatedImpact: 0% 2026-04-08T07:33:27.566 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cd81622-99b8-4e27-976b-246c07c59c8c.tmp, EstimatedImpact: 0% 2026-04-08T07:33:27.566 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37deaa90-1d3a-4abe-987b-54361a15bef7.tmp, EstimatedImpact: 0% 2026-04-08T07:33:27.566 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb278fd1-474a-4eda-8218-45f00fe5d495.tmp, EstimatedImpact: 0% 2026-04-08T07:33:27.566 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39789a33-97ce-4671-b53a-d58dd73155f4.tmp, EstimatedImpact: 0% 2026-04-08T07:33:27.566 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cca04d4-3187-4599-97c2-50af2ffb7649.tmp, EstimatedImpact: 0% 2026-04-08T07:33:27.566 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-08T07:35:03.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T07:50:08.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T07:54:32.185 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824076_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1221322, FileId: 0xe58000000072e70, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T07:54:47.123 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824076_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1221786, FileId: 0x2cb000000072e8b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T08:05:13.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T08:10:25.562 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1222662, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T08:10:25.562 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1222664, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T08:10:35.576 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1222677, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T08:10:35.592 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1222679, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T08:10:35.748 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1222683, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T08:10:35.748 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1222685, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T08:20:18.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T08:35:23.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T08:50:28.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T09:05:33.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T09:10:25.148 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1225976, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T09:10:25.164 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1225978, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T09:10:35.163 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1225991, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T09:10:35.163 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1225992, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T09:10:35.179 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1225994, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T09:20:38.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T09:33:27.569 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64204, Count: 6319, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3285, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.E9F7W3, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f04ee7-4fa1-4450-b6f7-4a750073a161.tmp, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a6364b-ffce-472a-aa2a-219499654b63.tmp, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e7d062-2cc4-42e1-9b9e-5926c6414949.tmp, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dcdcea42-a445-4d88-9de3-016ab30e4163.tmp, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cd81622-99b8-4e27-976b-246c07c59c8c.tmp, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\270e20fd-e8f7-4d89-95a1-dcef3a6e8a9d.tmp, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc280f81-a9f0-498e-8785-ef5ec5b78336.tmp, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37deaa90-1d3a-4abe-987b-54361a15bef7.tmp, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb278fd1-474a-4eda-8218-45f00fe5d495.tmp, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39789a33-97ce-4671-b53a-d58dd73155f4.tmp, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cca04d4-3187-4599-97c2-50af2ffb7649.tmp, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 0, Count: 4, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824076_1.MAI, EstimatedImpact: 0% 2026-04-08T09:33:27.569 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-08T09:35:43.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T09:50:48.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T10:05:53.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T10:10:26.098 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1229292, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T10:10:26.113 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1229294, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T10:10:36.110 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1229308, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T10:10:36.110 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1229307, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T10:10:36.110 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1229309, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T10:20:58.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T10:36:03.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T10:51:08.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T11:06:13.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T11:10:27.074 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1232619, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T11:10:27.089 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1232621, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T11:10:37.087 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1232634, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T11:10:37.102 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1232637, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T11:21:18.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T11:33:27.575 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64234, Count: 6328, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4050, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.E9F7W3, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 150, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f04ee7-4fa1-4450-b6f7-4a750073a161.tmp, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a6364b-ffce-472a-aa2a-219499654b63.tmp, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e7d062-2cc4-42e1-9b9e-5926c6414949.tmp, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dcdcea42-a445-4d88-9de3-016ab30e4163.tmp, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cd81622-99b8-4e27-976b-246c07c59c8c.tmp, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc280f81-a9f0-498e-8785-ef5ec5b78336.tmp, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: updater.exe, Pid: 7064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\805f283c-cf74-4c8e-a9b1-bfd26320e14d.tmp, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d027d5-75ff-4dd6-80b8-aea99d647e73.tmp, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\270e20fd-e8f7-4d89-95a1-dcef3a6e8a9d.tmp, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37deaa90-1d3a-4abe-987b-54361a15bef7.tmp, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb278fd1-474a-4eda-8218-45f00fe5d495.tmp, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39789a33-97ce-4671-b53a-d58dd73155f4.tmp, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cca04d4-3187-4599-97c2-50af2ffb7649.tmp, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 0, Count: 4, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824076_1.MAI, EstimatedImpact: 0% 2026-04-08T11:33:27.575 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-08T11:36:23.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T11:51:28.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T12:06:33.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T12:10:25.000 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1235940, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T12:10:25.016 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1235942, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T12:10:35.005 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1235955, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T12:10:35.020 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1235958, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T12:13:15.787 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1236108, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T12:13:15.802 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1236111, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T12:13:18.524 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1236120, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T12:13:18.539 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1236123, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T12:13:18.539 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1236124, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T12:13:18.555 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1236126, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T12:13:28.537 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1236139, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T12:13:28.553 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1236142, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T12:21:38.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T12:36:43.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T12:51:48.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T13:06:53.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T13:10:26.564 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1239288, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T13:10:26.579 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1239290, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T13:10:36.579 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1239302, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T13:10:36.579 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1239304, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T13:10:36.766 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1239308, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T13:10:36.782 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1239310, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T13:21:58.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T13:25:35.594 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8240f9_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1240130, FileId: 0xb7300000004c45d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T13:25:36.266 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8240f9_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1240143, FileId: 0x3b59000000008da7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T13:33:27.590 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64295, Count: 6335, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4605, Count: 45315, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.E9F7W3, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 150, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f04ee7-4fa1-4450-b6f7-4a750073a161.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a6364b-ffce-472a-aa2a-219499654b63.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8240f9_1.MAI, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\194947de-7b11-4110-865c-1ae3101080c0.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e7d062-2cc4-42e1-9b9e-5926c6414949.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dcdcea42-a445-4d88-9de3-016ab30e4163.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 7064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\805f283c-cf74-4c8e-a9b1-bfd26320e14d.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cd81622-99b8-4e27-976b-246c07c59c8c.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc280f81-a9f0-498e-8785-ef5ec5b78336.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37deaa90-1d3a-4abe-987b-54361a15bef7.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d9bcda3-22ec-4a0c-b8de-cffef730628f.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\270e20fd-e8f7-4d89-95a1-dcef3a6e8a9d.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d027d5-75ff-4dd6-80b8-aea99d647e73.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 4560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a1bbd8d-5c30-4e45-ab7a-0be14ac545ce.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb278fd1-474a-4eda-8218-45f00fe5d495.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39789a33-97ce-4671-b53a-d58dd73155f4.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cca04d4-3187-4599-97c2-50af2ffb7649.tmp, EstimatedImpact: 0% 2026-04-08T13:33:27.590 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-08T13:37:03.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T13:52:08.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T14:07:13.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T14:10:26.452 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1242630, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T14:10:26.468 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1242632, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T14:10:36.465 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1242645, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T14:10:36.481 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1242647, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T14:22:18.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T14:37:23.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T14:52:28.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T15:07:33.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T15:22:38.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T15:33:27.590 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64295, Count: 6335, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5370, Count: 51786, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.E9F7W3, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 150, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f04ee7-4fa1-4450-b6f7-4a750073a161.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a6364b-ffce-472a-aa2a-219499654b63.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8240f9_1.MAI, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\194947de-7b11-4110-865c-1ae3101080c0.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e7d062-2cc4-42e1-9b9e-5926c6414949.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dcdcea42-a445-4d88-9de3-016ab30e4163.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d027d5-75ff-4dd6-80b8-aea99d647e73.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cd81622-99b8-4e27-976b-246c07c59c8c.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc280f81-a9f0-498e-8785-ef5ec5b78336.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\270e20fd-e8f7-4d89-95a1-dcef3a6e8a9d.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d9bcda3-22ec-4a0c-b8de-cffef730628f.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 7064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\805f283c-cf74-4c8e-a9b1-bfd26320e14d.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 5164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2f52977-9800-426e-82d3-340f0e6d95a3.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37deaa90-1d3a-4abe-987b-54361a15bef7.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 4560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a1bbd8d-5c30-4e45-ab7a-0be14ac545ce.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cca04d4-3187-4599-97c2-50af2ffb7649.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cfc773b-4e77-4661-9273-62280a51d88b.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb278fd1-474a-4eda-8218-45f00fe5d495.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39789a33-97ce-4671-b53a-d58dd73155f4.tmp, EstimatedImpact: 0% 2026-04-08T15:33:27.590 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-08T15:37:43.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T15:52:48.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T16:07:53.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T16:10:36.081 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1249275, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T16:22:58.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T16:38:03.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T16:53:08.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T17:08:13.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T17:13:23.813 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1252771, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T17:23:18.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T17:33:27.593 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64295, Count: 6335, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5985, Count: 58257, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.E9F7W3, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 150, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f04ee7-4fa1-4450-b6f7-4a750073a161.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a6364b-ffce-472a-aa2a-219499654b63.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8240f9_1.MAI, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\194947de-7b11-4110-865c-1ae3101080c0.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e7d062-2cc4-42e1-9b9e-5926c6414949.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dcdcea42-a445-4d88-9de3-016ab30e4163.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cd81622-99b8-4e27-976b-246c07c59c8c.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d9bcda3-22ec-4a0c-b8de-cffef730628f.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\270e20fd-e8f7-4d89-95a1-dcef3a6e8a9d.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc280f81-a9f0-498e-8785-ef5ec5b78336.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cca04d4-3187-4599-97c2-50af2ffb7649.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 7064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\805f283c-cf74-4c8e-a9b1-bfd26320e14d.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 5164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2f52977-9800-426e-82d3-340f0e6d95a3.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37deaa90-1d3a-4abe-987b-54361a15bef7.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d027d5-75ff-4dd6-80b8-aea99d647e73.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18d00644-05c1-4fa3-ac61-d14510dec4f3.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 4560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a1bbd8d-5c30-4e45-ab7a-0be14ac545ce.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cfc773b-4e77-4661-9273-62280a51d88b.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 3204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d7d5a54-3953-4c00-953f-d367e196862e.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 3044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7719fe13-7dd5-4601-b038-e00a77b155d3.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb278fd1-474a-4eda-8218-45f00fe5d495.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39789a33-97ce-4671-b53a-d58dd73155f4.tmp, EstimatedImpact: 0% 2026-04-08T17:33:27.593 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-08T17:38:23.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T17:53:28.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T18:08:33.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T18:10:34.977 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1255941, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T18:23:38.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T18:38:43.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T18:53:48.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T19:08:53.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T19:23:58.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T19:33:27.595 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64341, Count: 6338, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6540, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.E9F7W3, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 150, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8240f9_1.MAI, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a6364b-ffce-472a-aa2a-219499654b63.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f04ee7-4fa1-4450-b6f7-4a750073a161.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 2196, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c271152-7045-4d13-bb48-7f5665df41e0.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\194947de-7b11-4110-865c-1ae3101080c0.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e7d062-2cc4-42e1-9b9e-5926c6414949.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dcdcea42-a445-4d88-9de3-016ab30e4163.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 5164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2f52977-9800-426e-82d3-340f0e6d95a3.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37deaa90-1d3a-4abe-987b-54361a15bef7.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d027d5-75ff-4dd6-80b8-aea99d647e73.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18d00644-05c1-4fa3-ac61-d14510dec4f3.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 4560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a1bbd8d-5c30-4e45-ab7a-0be14ac545ce.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 7064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\805f283c-cf74-4c8e-a9b1-bfd26320e14d.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cd81622-99b8-4e27-976b-246c07c59c8c.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 3204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d7d5a54-3953-4c00-953f-d367e196862e.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 3044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7719fe13-7dd5-4601-b038-e00a77b155d3.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb278fd1-474a-4eda-8218-45f00fe5d495.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39789a33-97ce-4671-b53a-d58dd73155f4.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cca04d4-3187-4599-97c2-50af2ffb7649.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc280f81-a9f0-498e-8785-ef5ec5b78336.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d9bcda3-22ec-4a0c-b8de-cffef730628f.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cfc773b-4e77-4661-9273-62280a51d88b.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\270e20fd-e8f7-4d89-95a1-dcef3a6e8a9d.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cadb9969-ec3b-4f8b-bc68-af86afd0d145.tmp, EstimatedImpact: 0% 2026-04-08T19:33:27.595 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-08T19:39:03.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T19:54:08.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T20:09:13.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T20:10:36.019 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1262579, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T20:24:18.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T20:39:23.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T20:54:28.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T21:09:33.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T21:24:38.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T21:33:27.605 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64341, Count: 6339, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7155, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.E9F7W3, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 150, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8240f9_1.MAI, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 2196, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c271152-7045-4d13-bb48-7f5665df41e0.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f04ee7-4fa1-4450-b6f7-4a750073a161.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a6364b-ffce-472a-aa2a-219499654b63.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\194947de-7b11-4110-865c-1ae3101080c0.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dcdcea42-a445-4d88-9de3-016ab30e4163.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e7d062-2cc4-42e1-9b9e-5926c6414949.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d027d5-75ff-4dd6-80b8-aea99d647e73.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 4560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a1bbd8d-5c30-4e45-ab7a-0be14ac545ce.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cfc773b-4e77-4661-9273-62280a51d88b.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 3204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d7d5a54-3953-4c00-953f-d367e196862e.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 7064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\805f283c-cf74-4c8e-a9b1-bfd26320e14d.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 3044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7719fe13-7dd5-4601-b038-e00a77b155d3.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc280f81-a9f0-498e-8785-ef5ec5b78336.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb278fd1-474a-4eda-8218-45f00fe5d495.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39789a33-97ce-4671-b53a-d58dd73155f4.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18d00644-05c1-4fa3-ac61-d14510dec4f3.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cca04d4-3187-4599-97c2-50af2ffb7649.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 1404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68d9d9ee-0e9b-442f-a9b6-cd8a6deb6a21.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 6592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43d6ef3b-2a56-4c5f-8cf8-c0946e49b8c6.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d9bcda3-22ec-4a0c-b8de-cffef730628f.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\270e20fd-e8f7-4d89-95a1-dcef3a6e8a9d.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cd81622-99b8-4e27-976b-246c07c59c8c.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cadb9969-ec3b-4f8b-bc68-af86afd0d145.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 5164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2f52977-9800-426e-82d3-340f0e6d95a3.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37deaa90-1d3a-4abe-987b-54361a15bef7.tmp, EstimatedImpact: 0% 2026-04-08T21:33:27.605 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-08T21:39:43.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T21:46:13.390 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824102_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1267932, FileId: 0x24c900000004c455, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T21:46:15.052 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824102_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1267963, FileId: 0x24d300000004c455, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T21:46:15.380 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824102_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1267996, FileId: 0x24de00000004c455, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T21:54:48.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T22:09:53.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T22:13:23.895 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1269621, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T22:24:58.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T22:40:03.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T22:55:08.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T23:10:13.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T23:10:35.669 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1272832, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-08T23:25:18.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T23:31:53.426 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-08T23:31:53.442 Job Notification: New process added to job (6952) 2026-04-08T23:31:53.457 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-08T23:31:53.457 Job Notification: New process added to job (7576) 2026-04-08T23:31:53.457 Aggressive catchup quick scan threshold: 728975733141 / 25920000000000 2026-04-08T23:31:53.473 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:6952] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7576]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-08T23:31:53.567 Job Notification: New process added to job (7096) 2026-04-08T23:31:53.582 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-08T23:31:53.582 Job Notification: New process added to job (5396) 2026-04-08T23:31:53.660 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:7096] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5396]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-08T23:31:53.973 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-08T23:31:53.973 [RTP] Duplicating the current plugin configuration object... 2026-04-08T23:31:53.973 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-08T23:31:53.973 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-08T23:31:53.973 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-08T23:31:53.973 [RTP] No config change detected. Not updating plugin configuration. 2026-04-08T23:31:53.973 [RTP] No config changes found. No configuration switch. 2026-04-08T23:31:53.973 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-08T23:31:54.504 Job Notification: New process added to job (7320) 2026-04-08T23:31:54.504 Task(GetDeviceTicket -AccessKey 4C05C16A-26A9-3198-4695-A8E25A454778 ) launched as network service 2026-04-08T23:31:54.567 Job Notification: Process exited from job (7320) 2026-04-08T23:31:55.730 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-08T23:31:55.730 [Cloud] Start of cloud request. Passive mode: 0 2026-04-08T23:31:55.730 [Cloud] Queued cloud request. 2026-04-08T23:31:55.730 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-08T23:31:55.730 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-08T23:31:55.730 [Cloud] Start of cloud request. Passive mode: 0 2026-04-08T23:31:55.730 [Cloud] Queued cloud request. 2026-04-08T23:31:55.746 Job Notification: New process added to job (5384) 2026-04-08T23:31:55.762 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 62831F5B-36BA-874A-2A88-82D4254352F9) launched 2026-04-08T23:31:55.762 Job Notification: New process added to job (7416) 2026-04-08T23:31:55.762 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:5384] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7416]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-08T23:31:55.777 Job Notification: New process added to job (7236) 2026-04-08T23:31:55.777 Job Notification: Process exited from job (5384) 2026-04-08T23:31:55.793 Job Notification: Process exited from job (7416) 2026-04-08T23:31:55.793 [Cloud] Dequeued cloud request. 2026-04-08T23:31:55.793 [Cloud] Dequeued cloud request. 2026-04-08T23:31:55.793 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-08T23:31:55.793 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-08T23:31:56.012 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-08T23:31:56.012 [Cloud] End of cloud request. 2026-04-08T23:31:56.027 [Cloud] End of cloud request. 2026-04-08T23:31:56.242 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-08T23:33:19.633 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\EA361DC3-F7CA-4436-85EC-F02D28D1676C85c.1dcc7b01404574a 2026-04-08T23:33:19.680 Verifying engine and signature files (source: 0) ... 2026-04-08T23:33:19.680 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DE3BC47D-6BE9-4B30-8689-7DB3D255A656}\mpengine.dll] due to PPL. 2026-04-08T23:33:19.680 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DE3BC47D-6BE9-4B30-8689-7DB3D255A656}\mpasbase.vdm] (file in cache) 2026-04-08T23:33:19.680 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DE3BC47D-6BE9-4B30-8689-7DB3D255A656}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-08T23:33:19.695 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DE3BC47D-6BE9-4B30-8689-7DB3D255A656}\mpasdlta.vdm] 2026-04-08T23:33:19.695 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DE3BC47D-6BE9-4B30-8689-7DB3D255A656}\mpavbase.vdm] (file in cache) 2026-04-08T23:33:19.695 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DE3BC47D-6BE9-4B30-8689-7DB3D255A656}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-08T23:33:19.711 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DE3BC47D-6BE9-4B30-8689-7DB3D255A656}\mpavdlta.vdm] 2026-04-08T23:33:19.899 [Engine] IsHybridMode: 0 2026-04-08T23:33:19.899 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-08T23:33:19.977 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-FC3A8964CC1153377F95F12A2FCAD410905C7DFA.bin): 0x00000002 2026-04-08T23:33:19.977 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-FC3A8964CC1153377F95F12A2FCAD410905C7DFA.bin) 2026-04-08T23:33:19.977 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-08T23:33:19.977 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-08T23:33:19.977 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-08T23:33:19.977 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-04-08T23:33:27.609 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 68273, Count: 6684, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7695, Count: 77679, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.E9F7W3, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 165, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 80, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8240f9_1.MAI, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 5560, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1f77ca54-7f10-45c7-8806-0b02e0f6ac53.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f04ee7-4fa1-4450-b6f7-4a750073a161.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a6364b-ffce-472a-aa2a-219499654b63.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 2196, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c271152-7045-4d13-bb48-7f5665df41e0.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\194947de-7b11-4110-865c-1ae3101080c0.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e7d062-2cc4-42e1-9b9e-5926c6414949.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dcdcea42-a445-4d88-9de3-016ab30e4163.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 6592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43d6ef3b-2a56-4c5f-8cf8-c0946e49b8c6.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cadb9969-ec3b-4f8b-bc68-af86afd0d145.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 5164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2f52977-9800-426e-82d3-340f0e6d95a3.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37deaa90-1d3a-4abe-987b-54361a15bef7.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d027d5-75ff-4dd6-80b8-aea99d647e73.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d9bcda3-22ec-4a0c-b8de-cffef730628f.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 4560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a1bbd8d-5c30-4e45-ab7a-0be14ac545ce.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cca04d4-3187-4599-97c2-50af2ffb7649.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 7096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\040a2b5b-a626-4969-af83-ad5c8d29a57c.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cfc773b-4e77-4661-9273-62280a51d88b.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 3204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d7d5a54-3953-4c00-953f-d367e196862e.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 3044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7719fe13-7dd5-4601-b038-e00a77b155d3.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb278fd1-474a-4eda-8218-45f00fe5d495.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39789a33-97ce-4671-b53a-d58dd73155f4.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 7064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\805f283c-cf74-4c8e-a9b1-bfd26320e14d.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cd81622-99b8-4e27-976b-246c07c59c8c.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 1404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68d9d9ee-0e9b-442f-a9b6-cd8a6deb6a21.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\270e20fd-e8f7-4d89-95a1-dcef3a6e8a9d.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc280f81-a9f0-498e-8785-ef5ec5b78336.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18d00644-05c1-4fa3-ac61-d14510dec4f3.tmp, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-08T23:33:27.609 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-08T23:33:28.735 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-08T23:33:28.735 [AutoExclusion] Applied roles from cache. 2026-04-08T23:33:28.735 [AutoExclusion] Started roles monitoring. 2026-04-08T23:33:28.750 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D3319B0, lRefCount: 5, hr=0 2026-04-08T23:33:28.750 [Engine] New active engine 00007FFD0E4219B0 replacing engine 00007FFD0D3319B0. Number of active engines: 2 2026-04-08T23:33:28.766 EngineInit:Global ASOC is enabled 2026-04-08T23:33:28.766 EngineInit:ASOO is enabled for developer volumes 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-08T23:33:28.782 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-08T23:33:28.782 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-08T23:33:28.797 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-08T23:33:28.797 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-08T23:33:28.797 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-08T23:33:28.797 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-08T23:33:28.797 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-08T23:33:28.797 [Plugin] Initializing RTP plugin state... 2026-04-08T23:33:28.797 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎08‎-‎2026 01:33:27 Last Perf:‎04‎-‎08‎-‎2026 01:33:27 First RTP Scan:‎04‎-‎08‎-‎2026 01:33:28 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:415 Misses:2251 BM Queue:0,52,0 Proc:0,46,0 File:0,52,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1274178 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1516769762 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:12349 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:309018 TotalHits:345644 InstanceCacheInserts:580266 InstanceCacheUpdates:0 InstanceCacheDeletes:98627 InstanceCacheHits:2902 InstanceCacheMisses:922508 InstanceCacheOverflows:470545 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:0ms (272/284) Success: 284, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-08T23:33:28.797 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-08T23:33:28.797 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DE3BC47D-6BE9-4B30-8689-7DB3D255A656} 2026-04-08T23:33:28.797 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{43A77DEB-D398-4A79-B2E5-658E3B783BE6}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{43A77DEB-D398-4A79-B2E5-658E3B783BE6}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-08T23:33:28.797 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-08T23:33:28.797 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-08T23:33:28.797 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-08T23:33:28.797 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-08T23:33:28.797 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-08T23:33:28.797 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-08-2026 23:33:28 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-08-2026 23:33:28 2026-04-08T23:33:28.797 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-08T23:33:28.797 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-08T23:33:28.813 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-08T23:33:28.813 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-08T23:33:28.813 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-08T23:33:28.813 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-08T23:33:28.813 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-08T23:33:28.813 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-08T23:33:28.813 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-08T23:33:28.813 MdCoreSvc is supported in this platform and OS Signature updated on 04-08-2026 23:33:28 Product Version: 4.18.26020.6 Service Version: 4.18.26020.6 Engine Version: 1.1.26020.3 AS Signature Version: 1.447.235.0 AV Signature Version: 1.447.235.0 ************************************************************ 2026-04-08T23:33:28.813 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-08T23:33:28.813 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\EA361DC3-F7CA-4436-85EC-F02D28D1676C85c.1dcc7b01404574a 2026-04-08T23:33:28.860 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-08T23:33:28.860 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 04-08-2026 23:33:28 ************************************************************ 2026-04-08T23:33:28.875 Job Notification: Process exited from job (7096) 2026-04-08T23:33:28.875 Job Notification: Process exited from job (5396) 2026-04-08T23:33:28.891 Job Notification: Process exited from job (6952) 2026-04-08T23:33:28.891 Job Notification: Process exited from job (7576) 2026-04-08T23:33:29.000 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-08T23:33:29.000 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-08T23:33:29.000 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-08T23:33:29.000 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-08T23:33:29.000 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-08T23:33:29.016 [Engine] Engine 00007FFD0D3319B0 no longer in use. Number of active engines: 1 2026-04-08T23:33:29.016 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-08T23:33:29.016 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-08T23:33:29.282 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-08T23:33:29.282 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-08T23:33:29.282 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-08T23:33:29.892 Process scan (postsignatureupdatescan) started. 2026-04-08T23:33:29.970 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 68273, Count: 6684, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-08T23:33:29.970 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7695, Count: 77679, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.E9F7W3, EstimatedImpact: 0% 2026-04-08T23:33:29.970 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 165, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-08T23:33:29.970 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 80, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8240f9_1.MAI, EstimatedImpact: 0% 2026-04-08T23:33:29.970 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-08T23:33:29.970 ProcessImageName: updater.exe, Pid: 5560, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1f77ca54-7f10-45c7-8806-0b02e0f6ac53.tmp, EstimatedImpact: 0% 2026-04-08T23:33:29.970 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f04ee7-4fa1-4450-b6f7-4a750073a161.tmp, EstimatedImpact: 0% 2026-04-08T23:33:29.970 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a6364b-ffce-472a-aa2a-219499654b63.tmp, EstimatedImpact: 0% 2026-04-08T23:33:29.970 ProcessImageName: updater.exe, Pid: 2196, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c271152-7045-4d13-bb48-7f5665df41e0.tmp, EstimatedImpact: 0% 2026-04-08T23:33:29.970 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\194947de-7b11-4110-865c-1ae3101080c0.tmp, EstimatedImpact: 0% 2026-04-08T23:33:29.970 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e7d062-2cc4-42e1-9b9e-5926c6414949.tmp, EstimatedImpact: 0% 2026-04-08T23:33:29.970 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dcdcea42-a445-4d88-9de3-016ab30e4163.tmp, EstimatedImpact: 0% 2026-04-08T23:33:29.970 ProcessImageName: updater.exe, Pid: 6592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43d6ef3b-2a56-4c5f-8cf8-c0946e49b8c6.tmp, EstimatedImpact: 0% 2026-04-08T23:33:29.970 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cadb9969-ec3b-4f8b-bc68-af86afd0d145.tmp, EstimatedImpact: 0% 2026-04-08T23:33:30.017 [Engine] RSIG_UNLOADENGINE, 00007FFD0D3319B0, err=0x0 2026-04-08T23:33:30.032 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{43A77DEB-D398-4A79-B2E5-658E3B783BE6} removed 2026-04-08T23:33:36.642 Process scan (postsignatureupdatescan) completed. 2026-04-08T23:38:28.781 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-08T23:40:23.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-08T23:55:28.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T00:05:29.683 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824115_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1277178, FileId: 0x1902000000026bc1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T00:07:01.745 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824116_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1277523, FileId: 0x1370000000730e1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T00:07:09.636 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824116_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1277719, FileId: 0x55700000004c472, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T00:10:24.336 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1277936, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T00:10:24.351 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1277938, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T00:10:33.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T00:10:34.343 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1277951, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T00:10:34.358 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1277953, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T00:25:38.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T00:40:43.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T00:54:25.672 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82411b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1280370, FileId: 0xce000000051937, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T00:54:26.188 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82411b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1280374, FileId: 0xcf000000051937, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T00:55:48.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T01:10:24.565 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1281380, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T01:10:24.581 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1281382, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T01:10:34.576 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1281395, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T01:10:34.591 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1281398, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T01:10:53.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T01:25:58.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T01:33:28.756 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64505, Count: 6518, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 1% 2026-04-09T01:33:28.756 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 796, Count: 6471, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.9OJCX3, EstimatedImpact: 0% 2026-04-09T01:33:28.756 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bdaf45e-88a9-4129-acb2-f75a07a46689.tmp, EstimatedImpact: 0% 2026-04-09T01:33:28.756 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c965c8b-6234-4202-99a5-30ff3ead449f.tmp, EstimatedImpact: 0% 2026-04-09T01:33:28.756 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 0, Count: 10, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824115_1.MAI, EstimatedImpact: 0% 2026-04-09T01:41:03.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T01:56:08.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T02:10:26.585 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1284909, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T02:10:26.600 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1284911, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T02:10:36.593 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1284923, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T02:10:36.609 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1284925, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T02:11:13.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T02:26:18.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T02:41:23.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T02:56:28.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T03:10:25.653 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288229, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:10:25.669 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288231, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:10:35.657 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288244, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:10:35.657 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288246, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:10:35.673 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288248, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:10:35.673 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288250, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:11:33.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T03:13:28.750 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288410, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:13:28.750 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288412, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:13:33.209 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288433, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:13:33.225 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288436, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:13:33.225 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288438, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:13:33.225 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288440, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:13:43.216 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288453, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:13:43.216 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288454, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:13:43.232 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1288456, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T03:16:55.918 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:8477B5E8-698A-481D-A3E7-9623BDEA5847, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-09T03:16:55.918 Scheduled scan with Id 8477B5E8-698A-481D-A3E7-9623BDEA5847 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-09T03:16:55.918 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-09T03:16:55.918 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-09T03:16:55.918 [SFC] System file cache build is not needed (already completed) 2026-04-09T03:17:07.808 Engine:Triggered AR EMS scan 2026-04-09T03:17:07.808 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:07.855 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:07.886 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:07.902 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:07.918 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:07.949 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:07.965 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:07.996 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.027 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.043 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.058 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.090 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.105 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.121 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.152 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.168 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.183 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.246 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.261 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.293 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.324 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.371 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-09T03:17:08.402 Bm signature throttled:0x00002db31bed458f 2026-04-09T03:17:23.199 QuickScan:ScanID:8477B5E8-698A-481D-A3E7-9623BDEA5847: Quick scan finished with error 0 2026-04-09T03:17:23.199 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-09T03:17:23.705 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-09T03:17:23.705 [RTP] Duplicating the current plugin configuration object... 2026-04-09T03:17:23.705 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-09T03:17:23.705 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-09T03:17:23.705 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-09T03:17:23.705 [RTP] No config change detected. Not updating plugin configuration. 2026-04-09T03:17:23.705 [RTP] No config changes found. No configuration switch. 2026-04-09T03:17:23.705 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-09T03:26:38.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T03:33:28.760 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64640, Count: 6529, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-09T03:33:28.760 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1576, Count: 12942, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.9OJCX3, EstimatedImpact: 0% 2026-04-09T03:33:28.760 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-09T03:33:28.760 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bdaf45e-88a9-4129-acb2-f75a07a46689.tmp, EstimatedImpact: 0% 2026-04-09T03:33:28.760 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfc6908e-d390-4d0a-86ef-9e1567e3cd4a.tmp, EstimatedImpact: 0% 2026-04-09T03:33:28.760 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c965c8b-6234-4202-99a5-30ff3ead449f.tmp, EstimatedImpact: 0% 2026-04-09T03:33:28.760 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8858d48a-0289-4baf-91ed-6c41cc771da5.tmp, EstimatedImpact: 0% 2026-04-09T03:33:28.760 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 0, Count: 10, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824115_1.MAI, EstimatedImpact: 0% 2026-04-09T03:33:28.760 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T03:41:43.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T03:56:48.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T04:10:25.750 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1291758, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T04:10:25.765 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1291760, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T04:10:35.764 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1291773, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T04:10:35.764 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1291775, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T04:10:35.920 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1291778, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T04:10:35.920 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1291780, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T04:11:53.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T04:26:58.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T04:42:03.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T04:57:08.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T05:10:24.456 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1295079, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T05:10:24.471 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1295081, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T05:10:34.472 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1295093, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T05:10:34.487 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1295095, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T05:10:34.487 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1295097, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T05:12:13.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T05:27:18.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T05:33:28.766 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64640, Count: 6529, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-09T05:33:28.766 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2131, Count: 19413, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.9OJCX3, EstimatedImpact: 0% 2026-04-09T05:33:28.766 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-09T05:33:28.766 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\17b08f67-37d9-4e30-a67f-ed54dc2a2886.tmp, EstimatedImpact: 0% 2026-04-09T05:33:28.766 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-09T05:33:28.766 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bdaf45e-88a9-4129-acb2-f75a07a46689.tmp, EstimatedImpact: 0% 2026-04-09T05:33:28.766 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfc6908e-d390-4d0a-86ef-9e1567e3cd4a.tmp, EstimatedImpact: 0% 2026-04-09T05:33:28.766 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c965c8b-6234-4202-99a5-30ff3ead449f.tmp, EstimatedImpact: 0% 2026-04-09T05:33:28.766 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8858d48a-0289-4baf-91ed-6c41cc771da5.tmp, EstimatedImpact: 0% 2026-04-09T05:33:28.766 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 0, Count: 10, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824115_1.MAI, EstimatedImpact: 0% 2026-04-09T05:33:28.766 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T05:33:28.766 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T05:42:23.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T05:57:28.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T06:10:26.561 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1298422, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T06:10:26.577 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1298424, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T06:10:36.592 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1298437, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T06:10:36.592 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1298439, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T06:10:36.592 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1298441, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T06:12:33.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T06:27:38.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T06:42:43.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T06:57:48.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T07:10:24.922 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1301731, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T07:10:24.938 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1301733, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T07:10:34.924 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1301746, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T07:10:34.924 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1301748, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T07:10:34.940 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1301750, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T07:10:34.940 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1301752, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T07:12:53.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T07:27:58.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T07:33:28.781 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64685, Count: 6532, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-09T07:33:28.781 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2776, Count: 25884, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.9OJCX3, EstimatedImpact: 0% 2026-04-09T07:33:28.781 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-09T07:33:28.781 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-09T07:33:28.781 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\17b08f67-37d9-4e30-a67f-ed54dc2a2886.tmp, EstimatedImpact: 0% 2026-04-09T07:33:28.781 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bdaf45e-88a9-4129-acb2-f75a07a46689.tmp, EstimatedImpact: 0% 2026-04-09T07:33:28.781 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfc6908e-d390-4d0a-86ef-9e1567e3cd4a.tmp, EstimatedImpact: 0% 2026-04-09T07:33:28.781 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c965c8b-6234-4202-99a5-30ff3ead449f.tmp, EstimatedImpact: 0% 2026-04-09T07:33:28.781 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8858d48a-0289-4baf-91ed-6c41cc771da5.tmp, EstimatedImpact: 0% 2026-04-09T07:33:28.781 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e52cf2de-8257-47be-b23e-7fc15d3321c8.tmp, EstimatedImpact: 0% 2026-04-09T07:33:28.781 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ad5020a-4ff8-4ca5-9373-f1e7b2d04065.tmp, EstimatedImpact: 0% 2026-04-09T07:33:28.781 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 0, Count: 10, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824115_1.MAI, EstimatedImpact: 0% 2026-04-09T07:33:28.781 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T07:33:28.781 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T07:43:03.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T07:58:08.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T08:10:26.231 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305053, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T08:10:26.247 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305055, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T08:10:36.249 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305068, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T08:10:36.249 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305069, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T08:10:36.264 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305071, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T08:13:13.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T08:13:33.302 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305239, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T08:13:33.317 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305241, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T08:13:37.218 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305251, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T08:13:37.234 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305254, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T08:13:37.234 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305256, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T08:13:47.227 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305269, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T08:13:47.243 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305271, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T08:15:53.795 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824134_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1305395, FileId: 0xb500000007f2f6, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T08:15:54.685 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824134_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1305401, FileId: 0xb600000007f2f6, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T08:28:18.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T08:43:23.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T08:58:28.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T09:10:24.999 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1308399, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T09:10:25.015 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1308401, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T09:10:35.005 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1308414, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T09:10:35.005 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1308416, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T09:10:35.177 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1308420, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T09:10:35.177 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1308422, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T09:13:33.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T09:28:38.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T09:33:28.784 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64777, Count: 6536, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3496, Count: 32364, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.9OJCX3, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\17b08f67-37d9-4e30-a67f-ed54dc2a2886.tmp, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\de7869ed-1da9-4945-a1de-a5b8998bf736.tmp, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824134_1.MAI, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bdaf45e-88a9-4129-acb2-f75a07a46689.tmp, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfc6908e-d390-4d0a-86ef-9e1567e3cd4a.tmp, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c965c8b-6234-4202-99a5-30ff3ead449f.tmp, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ad5020a-4ff8-4ca5-9373-f1e7b2d04065.tmp, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\221eaa63-b980-4694-bfc5-7f5529e81782.tmp, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e52cf2de-8257-47be-b23e-7fc15d3321c8.tmp, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8858d48a-0289-4baf-91ed-6c41cc771da5.tmp, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54ac8c2a-aa3f-4756-b30a-3acae35540bc.tmp, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T09:33:28.784 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T09:43:43.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T09:58:48.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T10:10:26.095 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1311722, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T10:10:26.095 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1311724, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T10:10:36.117 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1311737, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T10:10:36.117 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1311740, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T10:13:53.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T10:28:58.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T10:44:03.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T10:59:08.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T11:10:27.342 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1315042, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T11:10:27.358 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1315044, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T11:10:37.353 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1315057, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T11:10:37.368 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1315059, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T11:10:37.368 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1315061, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T11:14:13.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T11:29:18.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T11:33:28.795 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64823, Count: 6539, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4141, Count: 38835, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.9OJCX3, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\17b08f67-37d9-4e30-a67f-ed54dc2a2886.tmp, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\de7869ed-1da9-4945-a1de-a5b8998bf736.tmp, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824134_1.MAI, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bdaf45e-88a9-4129-acb2-f75a07a46689.tmp, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfc6908e-d390-4d0a-86ef-9e1567e3cd4a.tmp, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c965c8b-6234-4202-99a5-30ff3ead449f.tmp, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8436b81a-d2ba-4618-a3d1-859114e67d68.tmp, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8858d48a-0289-4baf-91ed-6c41cc771da5.tmp, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e52cf2de-8257-47be-b23e-7fc15d3321c8.tmp, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ad5020a-4ff8-4ca5-9373-f1e7b2d04065.tmp, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: updater.exe, Pid: 7208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89752956-cda7-4c27-b257-0f60fd6d5dbb.tmp, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54ac8c2a-aa3f-4756-b30a-3acae35540bc.tmp, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\221eaa63-b980-4694-bfc5-7f5529e81782.tmp, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T11:33:28.795 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T11:44:23.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T11:59:28.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T12:10:25.621 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1318350, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T12:10:25.636 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1318352, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T12:10:35.626 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1318366, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T12:10:35.626 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1318365, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T12:10:35.641 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1318368, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T12:10:35.641 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1318370, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T12:14:33.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T12:29:38.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T12:44:43.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T12:59:48.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T13:10:26.897 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1321669, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T13:10:26.913 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1321671, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T13:10:36.911 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1321684, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T13:10:36.911 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1321685, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T13:10:36.927 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1321686, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T13:13:37.335 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1321855, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T13:13:37.335 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1321857, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T13:13:41.136 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1321867, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T13:13:41.136 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1321870, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T13:13:41.152 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1321872, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T13:13:51.149 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1321885, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T13:14:53.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T13:29:58.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T13:33:28.801 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64823, Count: 6539, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5011, Count: 45306, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.9OJCX3, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\de7869ed-1da9-4945-a1de-a5b8998bf736.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\17b08f67-37d9-4e30-a67f-ed54dc2a2886.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824134_1.MAI, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bdaf45e-88a9-4129-acb2-f75a07a46689.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 5628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f729ad9c-3125-418c-8c9c-538319048d62.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfc6908e-d390-4d0a-86ef-9e1567e3cd4a.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c965c8b-6234-4202-99a5-30ff3ead449f.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8858d48a-0289-4baf-91ed-6c41cc771da5.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54ac8c2a-aa3f-4756-b30a-3acae35540bc.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\521e97aa-a393-4933-afe0-174e83527a98.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e52cf2de-8257-47be-b23e-7fc15d3321c8.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ad5020a-4ff8-4ca5-9373-f1e7b2d04065.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\221eaa63-b980-4694-bfc5-7f5529e81782.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 1072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e58bcdb1-15ab-48a2-b0e2-3acb50a0b0c1.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 7208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89752956-cda7-4c27-b257-0f60fd6d5dbb.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8436b81a-d2ba-4618-a3d1-859114e67d68.tmp, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T13:33:28.801 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T13:45:03.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T14:00:08.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T14:15:13.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T14:30:18.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T14:45:23.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T15:00:28.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T15:10:34.993 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1328365, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T15:15:33.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T15:30:38.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T15:33:28.800 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64823, Count: 6539, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5686, Count: 51777, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.9OJCX3, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\17b08f67-37d9-4e30-a67f-ed54dc2a2886.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\de7869ed-1da9-4945-a1de-a5b8998bf736.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57b3c4c0-399c-48f9-8300-cba7b475b823.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824134_1.MAI, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bdaf45e-88a9-4129-acb2-f75a07a46689.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfc6908e-d390-4d0a-86ef-9e1567e3cd4a.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c965c8b-6234-4202-99a5-30ff3ead449f.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2fb093ea-c5c3-4118-b6bc-c1203c78b5d6.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54ac8c2a-aa3f-4756-b30a-3acae35540bc.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\521e97aa-a393-4933-afe0-174e83527a98.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e52cf2de-8257-47be-b23e-7fc15d3321c8.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8436b81a-d2ba-4618-a3d1-859114e67d68.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 5628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f729ad9c-3125-418c-8c9c-538319048d62.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 7208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89752956-cda7-4c27-b257-0f60fd6d5dbb.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8858d48a-0289-4baf-91ed-6c41cc771da5.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ad5020a-4ff8-4ca5-9373-f1e7b2d04065.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\221eaa63-b980-4694-bfc5-7f5529e81782.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 1072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e58bcdb1-15ab-48a2-b0e2-3acb50a0b0c1.tmp, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T15:33:28.800 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T15:45:43.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T16:00:48.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T16:15:53.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T16:25:51.761 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824141_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1332531, FileId: 0x294800000004c455, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T16:30:58.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T16:46:03.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T17:01:08.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T17:16:13.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T17:31:18.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T17:33:28.804 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64944, Count: 6550, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6361, Count: 58248, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.9OJCX3, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824134_1.MAI, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\17b08f67-37d9-4e30-a67f-ed54dc2a2886.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\de7869ed-1da9-4945-a1de-a5b8998bf736.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57b3c4c0-399c-48f9-8300-cba7b475b823.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bdaf45e-88a9-4129-acb2-f75a07a46689.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8858d48a-0289-4baf-91ed-6c41cc771da5.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfc6908e-d390-4d0a-86ef-9e1567e3cd4a.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c965c8b-6234-4202-99a5-30ff3ead449f.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2fb093ea-c5c3-4118-b6bc-c1203c78b5d6.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\521e97aa-a393-4933-afe0-174e83527a98.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 7576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9430a5e-522e-442e-97a3-eed4c4f91f5a.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e52cf2de-8257-47be-b23e-7fc15d3321c8.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54ac8c2a-aa3f-4756-b30a-3acae35540bc.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8436b81a-d2ba-4618-a3d1-859114e67d68.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 7208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89752956-cda7-4c27-b257-0f60fd6d5dbb.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 5628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f729ad9c-3125-418c-8c9c-538319048d62.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ad5020a-4ff8-4ca5-9373-f1e7b2d04065.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 3392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d459220b-2bc1-4ae2-bb7b-ca45f1146455.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\221eaa63-b980-4694-bfc5-7f5529e81782.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 1072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e58bcdb1-15ab-48a2-b0e2-3acb50a0b0c1.tmp, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T17:33:28.804 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T17:46:23.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T18:01:28.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T18:10:35.508 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1338323, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T18:13:54.878 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1338530, FileId: 0xbe0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T18:16:33.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T18:31:38.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T18:46:43.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T19:01:48.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T19:16:53.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T19:31:58.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T19:33:28.814 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64944, Count: 6550, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7051, Count: 64719, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.9OJCX3, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824134_1.MAI, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\de7869ed-1da9-4945-a1de-a5b8998bf736.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\17b08f67-37d9-4e30-a67f-ed54dc2a2886.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57b3c4c0-399c-48f9-8300-cba7b475b823.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 4784, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9cb4758-9a0e-43ae-86c4-fbac5882dcab.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bdaf45e-88a9-4129-acb2-f75a07a46689.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfc6908e-d390-4d0a-86ef-9e1567e3cd4a.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c965c8b-6234-4202-99a5-30ff3ead449f.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54ac8c2a-aa3f-4756-b30a-3acae35540bc.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8436b81a-d2ba-4618-a3d1-859114e67d68.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\521e97aa-a393-4933-afe0-174e83527a98.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 7576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9430a5e-522e-442e-97a3-eed4c4f91f5a.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e52cf2de-8257-47be-b23e-7fc15d3321c8.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b15381d9-545b-4d3d-b041-fcac45e5ff6e.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 5628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f729ad9c-3125-418c-8c9c-538319048d62.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 7208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89752956-cda7-4c27-b257-0f60fd6d5dbb.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2fb093ea-c5c3-4118-b6bc-c1203c78b5d6.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8858d48a-0289-4baf-91ed-6c41cc771da5.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ad5020a-4ff8-4ca5-9373-f1e7b2d04065.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 3392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d459220b-2bc1-4ae2-bb7b-ca45f1146455.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\221eaa63-b980-4694-bfc5-7f5529e81782.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 1072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e58bcdb1-15ab-48a2-b0e2-3acb50a0b0c1.tmp, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T19:33:28.814 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T19:47:03.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T20:02:08.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T20:10:35.848 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1345032, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T20:17:13.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T20:32:18.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T20:47:23.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T21:02:28.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T21:17:33.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T21:32:38.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T21:33:28.823 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 65745, Count: 6615, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7861, Count: 71190, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.9OJCX3, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824134_1.MAI, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\17b08f67-37d9-4e30-a67f-ed54dc2a2886.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\de7869ed-1da9-4945-a1de-a5b8998bf736.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57b3c4c0-399c-48f9-8300-cba7b475b823.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0365f620-3cff-49f8-8839-e899c63d9ef6.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 4784, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9cb4758-9a0e-43ae-86c4-fbac5882dcab.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bdaf45e-88a9-4129-acb2-f75a07a46689.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54ac8c2a-aa3f-4756-b30a-3acae35540bc.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 7208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89752956-cda7-4c27-b257-0f60fd6d5dbb.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8436b81a-d2ba-4618-a3d1-859114e67d68.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b15381d9-545b-4d3d-b041-fcac45e5ff6e.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 5628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f729ad9c-3125-418c-8c9c-538319048d62.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfc6908e-d390-4d0a-86ef-9e1567e3cd4a.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ad5020a-4ff8-4ca5-9373-f1e7b2d04065.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 3392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d459220b-2bc1-4ae2-bb7b-ca45f1146455.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c965c8b-6234-4202-99a5-30ff3ead449f.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\521e97aa-a393-4933-afe0-174e83527a98.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 7576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9430a5e-522e-442e-97a3-eed4c4f91f5a.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\221eaa63-b980-4694-bfc5-7f5529e81782.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e52cf2de-8257-47be-b23e-7fc15d3321c8.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 5644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f8a5182-22a2-465e-b0f3-456f4b50f67e.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2fb093ea-c5c3-4118-b6bc-c1203c78b5d6.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 1072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e58bcdb1-15ab-48a2-b0e2-3acb50a0b0c1.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8858d48a-0289-4baf-91ed-6c41cc771da5.tmp, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T21:33:28.823 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-09T21:47:43.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T21:47:52.150 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_825b94_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1350467, FileId: 0x23b9000000051405, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T21:47:53.500 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_825b94_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1350501, FileId: 0x23c4000000051405, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T21:47:54.234 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_825b94_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1350537, FileId: 0x23d0000000051405, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T21:48:07.411 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_825b9f_a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1350631, FileId: 0xedb000000072e7b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T21:48:08.970 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_825b9f_1e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1350661, FileId: 0xee5000000072e7b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T21:48:09.235 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_825b9f_36.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1350691, FileId: 0xeef000000072e7b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T22:02:48.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T22:10:35.575 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1351971, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T22:17:53.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T22:32:58.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T22:48:03.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T23:03:08.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T23:13:49.078 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1355486, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T23:18:13.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T23:31:53.424 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-09T23:31:53.440 Job Notification: New process added to job (4400) 2026-04-09T23:31:53.456 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-09T23:31:53.456 Job Notification: New process added to job (7792) 2026-04-09T23:31:53.456 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:4400] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7792]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-09T23:31:53.472 Aggressive catchup quick scan threshold: 728975550204 / 25920000000000 2026-04-09T23:31:53.565 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-09T23:31:53.565 Job Notification: New process added to job (3168) 2026-04-09T23:31:53.581 Job Notification: New process added to job (2776) 2026-04-09T23:31:53.659 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:3168] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2776]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-09T23:31:54.081 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-09T23:31:54.097 [RTP] Duplicating the current plugin configuration object... 2026-04-09T23:31:54.097 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-09T23:31:54.097 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-09T23:31:54.097 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-09T23:31:54.097 [RTP] No config change detected. Not updating plugin configuration. 2026-04-09T23:31:54.097 [RTP] No config changes found. No configuration switch. 2026-04-09T23:31:54.097 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-09T23:31:54.503 Job Notification: New process added to job (5592) 2026-04-09T23:31:54.503 Task(GetDeviceTicket -AccessKey 8C66DAA3-3145-F180-14EC-B3C7C9B357C6 ) launched as network service 2026-04-09T23:31:54.565 Job Notification: Process exited from job (5592) 2026-04-09T23:31:55.743 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-09T23:31:55.743 [Cloud] Start of cloud request. Passive mode: 0 2026-04-09T23:31:55.743 [Cloud] Queued cloud request. 2026-04-09T23:31:55.743 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-09T23:31:55.743 [Cloud] Dequeued cloud request. 2026-04-09T23:31:55.743 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-09T23:31:55.743 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-09T23:31:55.743 [Cloud] Start of cloud request. Passive mode: 0 2026-04-09T23:31:55.743 [Cloud] Queued cloud request. 2026-04-09T23:31:55.743 [Cloud] Dequeued cloud request. 2026-04-09T23:31:55.743 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-09T23:31:55.978 [Cloud] End of cloud request. 2026-04-09T23:31:55.978 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-09T23:31:55.993 [Cloud] End of cloud request. 2026-04-09T23:31:56.244 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-09T23:32:02.385 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\1CD90D2B-462E-4ED5-8AE2-61928FB1799Cd6c.1dcc879109cea8f 2026-04-09T23:32:02.432 Verifying engine and signature files (source: 0) ... 2026-04-09T23:32:02.432 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{32132A60-CFB0-499F-8575-6D40D937A2BE}\mpengine.dll] due to PPL. 2026-04-09T23:32:02.432 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{32132A60-CFB0-499F-8575-6D40D937A2BE}\mpasbase.vdm] (file in cache) 2026-04-09T23:32:02.432 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{32132A60-CFB0-499F-8575-6D40D937A2BE}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-09T23:32:02.447 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{32132A60-CFB0-499F-8575-6D40D937A2BE}\mpasdlta.vdm] 2026-04-09T23:32:02.447 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{32132A60-CFB0-499F-8575-6D40D937A2BE}\mpavbase.vdm] (file in cache) 2026-04-09T23:32:02.447 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{32132A60-CFB0-499F-8575-6D40D937A2BE}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-09T23:32:02.463 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{32132A60-CFB0-499F-8575-6D40D937A2BE}\mpavdlta.vdm] 2026-04-09T23:32:02.650 [Engine] IsHybridMode: 0 2026-04-09T23:32:02.650 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-09T23:32:02.736 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-285F4B8B68719F1AB4632D3D7BCC6815090EC4CC.bin): 0x00000002 2026-04-09T23:32:02.736 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-285F4B8B68719F1AB4632D3D7BCC6815090EC4CC.bin) 2026-04-09T23:32:02.736 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-09T23:32:02.736 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-09T23:32:02.736 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-09T23:32:02.736 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-04-09T23:32:07.720 Job Notification: Process exited from job (7236) IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-09T23:32:11.622 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-09T23:32:11.622 [AutoExclusion] Applied roles from cache. 2026-04-09T23:32:11.622 [AutoExclusion] Started roles monitoring. 2026-04-09T23:32:11.622 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0E4219B0, lRefCount: 5, hr=0 2026-04-09T23:32:11.622 [Engine] New active engine 00007FFD0D3319B0 replacing engine 00007FFD0E4219B0. Number of active engines: 2 2026-04-09T23:32:11.637 EngineInit:Global ASOC is enabled 2026-04-09T23:32:11.637 EngineInit:ASOO is enabled for developer volumes 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-09T23:32:11.668 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-09T23:32:11.668 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-09T23:32:11.684 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-09T23:32:11.684 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-09T23:32:11.684 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-09T23:32:11.684 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-09T23:32:11.684 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-09T23:32:11.684 [Plugin] Initializing RTP plugin state... 2026-04-09T23:32:11.684 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-09T23:32:11.684 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎09‎-‎2026 01:33:29 Last Perf:‎04‎-‎09‎-‎2026 01:33:28 First RTP Scan:‎04‎-‎09‎-‎2026 01:33:29 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:395 Misses:2250 BM Queue:0,58,0 Proc:0,43,0 File:0,57,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1356566 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1611301258 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:7547 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:313845 TotalHits:439044 InstanceCacheInserts:624262 InstanceCacheUpdates:0 InstanceCacheDeletes:106819 InstanceCacheHits:2946 InstanceCacheMisses:968420 InstanceCacheOverflows:506305 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:0ms (263/277) Success: 277, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-09T23:32:11.684 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{32132A60-CFB0-499F-8575-6D40D937A2BE} 2026-04-09T23:32:11.684 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DE3BC47D-6BE9-4B30-8689-7DB3D255A656}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DE3BC47D-6BE9-4B30-8689-7DB3D255A656}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-09T23:32:11.700 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-09T23:32:11.700 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-09T23:32:11.700 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-09T23:32:11.700 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-09T23:32:11.700 MdCoreSvc is supported in this platform and OS 2026-04-09T23:32:11.700 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-09-2026 23:32:11 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-09-2026 23:32:11 2026-04-09T23:32:11.700 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-09T23:32:11.700 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-09T23:32:11.700 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-09T23:32:11.700 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-09T23:32:11.700 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-09T23:32:11.700 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-09T23:32:11.700 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-09T23:32:11.700 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-09T23:32:11.700 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-09T23:32:11.700 MdCoreSvc is supported in this platform and OS Signature updated on 04-09-2026 23:32:11 Product Version: 4.18.26020.6 Service Version: 4.18.26020.6 Engine Version: 1.1.26020.3 AS Signature Version: 1.447.236.0 AV Signature Version: 1.447.236.0 ************************************************************ 2026-04-09T23:32:11.700 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-09T23:32:11.700 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\1CD90D2B-462E-4ED5-8AE2-61928FB1799Cd6c.1dcc879109cea8f 2026-04-09T23:32:11.747 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-09T23:32:11.747 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 04-09-2026 23:32:11 ************************************************************ 2026-04-09T23:32:11.778 Job Notification: Process exited from job (3168) 2026-04-09T23:32:11.778 Job Notification: Process exited from job (4400) 2026-04-09T23:32:11.793 Job Notification: Process exited from job (2776) 2026-04-09T23:32:11.793 Job Notification: Process exited from job (7792) 2026-04-09T23:32:11.934 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-09T23:32:11.934 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-09T23:32:11.934 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-09T23:32:11.934 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-09T23:32:11.934 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-09T23:32:11.981 [Engine] Engine 00007FFD0E4219B0 no longer in use. Number of active engines: 1 2026-04-09T23:32:11.981 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-09T23:32:11.981 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-09T23:32:12.184 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-09T23:32:12.184 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-09T23:32:12.184 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-09T23:32:12.775 Process scan (postsignatureupdatescan) started. 2026-04-09T23:32:13.150 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 69696, Count: 6961, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-09T23:32:13.150 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8671, Count: 77598, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.9OJCX3, EstimatedImpact: 0% 2026-04-09T23:32:13.150 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 195, Count: 154, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_824134_1.MAI, EstimatedImpact: 0% 2026-04-09T23:32:13.150 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-09T23:32:13.150 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-09T23:32:13.150 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\17b08f67-37d9-4e30-a67f-ed54dc2a2886.tmp, EstimatedImpact: 0% 2026-04-09T23:32:13.150 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\de7869ed-1da9-4945-a1de-a5b8998bf736.tmp, EstimatedImpact: 0% 2026-04-09T23:32:13.150 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57b3c4c0-399c-48f9-8300-cba7b475b823.tmp, EstimatedImpact: 0% 2026-04-09T23:32:13.150 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0365f620-3cff-49f8-8839-e899c63d9ef6.tmp, EstimatedImpact: 0% 2026-04-09T23:32:13.150 ProcessImageName: updater.exe, Pid: 4784, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9cb4758-9a0e-43ae-86c4-fbac5882dcab.tmp, EstimatedImpact: 0% 2026-04-09T23:32:13.150 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bdaf45e-88a9-4129-acb2-f75a07a46689.tmp, EstimatedImpact: 0% 2026-04-09T23:32:13.150 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54ac8c2a-aa3f-4756-b30a-3acae35540bc.tmp, EstimatedImpact: 0% 2026-04-09T23:32:13.196 [Engine] RSIG_UNLOADENGINE, 00007FFD0E4219B0, err=0x0 2026-04-09T23:32:13.212 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DE3BC47D-6BE9-4B30-8689-7DB3D255A656} removed 2026-04-09T23:32:20.290 Process scan (postsignatureupdatescan) completed. 2026-04-09T23:33:18.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-09T23:37:11.640 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-09T23:39:27.511 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8261d6_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1358190, FileId: 0x20e100000004c46a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-09T23:48:23.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T00:03:28.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T00:10:25.944 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1360313, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T00:10:25.960 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1360315, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T00:10:35.951 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1360328, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T00:10:35.967 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1360330, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T00:10:36.123 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1360334, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T00:10:36.123 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1360336, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T00:18:33.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T00:33:38.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T00:48:43.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T01:03:48.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T01:10:25.840 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1363888, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T01:10:25.856 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1363890, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T01:10:35.849 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1363903, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T01:10:35.864 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1363906, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T01:18:53.415 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T01:32:11.627 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54868, Count: 5935, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-10T01:32:11.627 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 810, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.K0MMX3, EstimatedImpact: 0% 2026-04-10T01:32:11.627 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-10T01:32:11.627 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\430d7f58-0b88-4cd0-8b10-75c7f8cba612.tmp, EstimatedImpact: 0% 2026-04-10T01:33:58.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T01:49:03.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T02:04:08.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T02:10:26.198 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1367235, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T02:10:26.198 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1367237, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T02:10:36.208 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1367249, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T02:10:36.223 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1367252, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T02:19:13.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T02:23:54.844 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8262cd_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1368042, FileId: 0x2ed400000004fe52, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T02:24:00.610 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8262cd_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1368160, FileId: 0x1a0600000004c45b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T02:34:18.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T02:49:23.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T03:04:28.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T03:10:24.669 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1370733, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T03:10:24.685 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1370735, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T03:10:34.680 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1370748, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T03:10:34.696 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1370751, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T03:16:55.936 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:4001DB50-DB27-4692-9EE7-EDF73E4C9F41, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-10T03:16:55.936 Scheduled scan with Id 4001DB50-DB27-4692-9EE7-EDF73E4C9F41 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-10T03:16:55.936 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-10T03:16:55.936 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-10T03:16:55.936 [SFC] System file cache build is not needed (already completed) 2026-04-10T03:17:07.438 Engine:Triggered AR EMS scan 2026-04-10T03:17:07.454 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.469 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.485 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.516 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.547 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.563 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.579 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.610 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.641 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.657 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.672 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.704 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.719 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.735 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.766 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.782 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.813 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.876 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.891 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.907 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.938 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:07.985 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-10T03:17:08.016 Bm signature throttled:0x00002db31bed458f 2026-04-10T03:17:22.751 QuickScan:ScanID:4001DB50-DB27-4692-9EE7-EDF73E4C9F41: Quick scan finished with error 0 2026-04-10T03:17:22.751 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-10T03:17:23.262 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-10T03:17:23.262 [RTP] Duplicating the current plugin configuration object... 2026-04-10T03:17:23.262 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-10T03:17:23.262 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-10T03:17:23.262 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-10T03:17:23.262 [RTP] No config change detected. Not updating plugin configuration. 2026-04-10T03:17:23.262 [RTP] No config changes found. No configuration switch. 2026-04-10T03:17:23.262 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-10T03:19:33.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T03:32:11.642 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59776, Count: 6400, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-10T03:32:11.642 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1545, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.K0MMX3, EstimatedImpact: 0% 2026-04-10T03:32:11.642 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-10T03:32:11.642 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8261d6_1.MAI, EstimatedImpact: 0% 2026-04-10T03:32:11.642 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-10T03:32:11.642 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98d4d6aa-ae4a-4021-97fd-e6e65d471fbe.tmp, EstimatedImpact: 0% 2026-04-10T03:32:11.642 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\430d7f58-0b88-4cd0-8b10-75c7f8cba612.tmp, EstimatedImpact: 0% 2026-04-10T03:32:11.642 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-10T03:34:38.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T03:49:43.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T04:04:48.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T04:10:25.349 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1374189, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T04:10:25.365 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1374191, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T04:10:35.357 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1374204, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T04:10:35.372 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1374206, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T04:13:49.149 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1374394, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T04:13:49.149 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1374396, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T04:13:52.801 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1374406, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T04:13:52.817 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1374409, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T04:13:52.817 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1374411, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T04:14:02.811 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1374424, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T04:14:02.827 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1374427, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T04:19:53.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T04:34:58.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T04:50:03.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T05:05:08.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T05:10:25.430 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1377537, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T05:10:25.446 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1377539, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T05:10:35.447 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1377552, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T05:10:35.447 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1377554, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T05:10:35.604 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1377558, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T05:10:35.619 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1377560, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T05:20:13.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T05:32:11.654 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59837, Count: 6403, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-10T05:32:11.654 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2250, Count: 19413, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.K0MMX3, EstimatedImpact: 0% 2026-04-10T05:32:11.654 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-10T05:32:11.654 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8261d6_1.MAI, EstimatedImpact: 0% 2026-04-10T05:32:11.654 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-10T05:32:11.654 ProcessImageName: updater.exe, Pid: 7084, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e9c159-9db4-458b-9da4-916608dbd020.tmp, EstimatedImpact: 0% 2026-04-10T05:32:11.654 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f800c3f6-4d59-4629-9bda-1d32c741f1e1.tmp, EstimatedImpact: 0% 2026-04-10T05:32:11.654 ProcessImageName: updater.exe, Pid: 6932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\147b3db2-f364-4799-ab1c-cb979a53a284.tmp, EstimatedImpact: 0% 2026-04-10T05:32:11.654 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98d4d6aa-ae4a-4021-97fd-e6e65d471fbe.tmp, EstimatedImpact: 0% 2026-04-10T05:32:11.654 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\430d7f58-0b88-4cd0-8b10-75c7f8cba612.tmp, EstimatedImpact: 0% 2026-04-10T05:32:11.654 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-10T05:35:18.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T05:50:23.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T06:05:28.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T06:10:26.497 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1380888, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T06:10:26.513 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1380890, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T06:10:36.506 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1380903, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T06:10:36.506 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1380904, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T06:10:36.522 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1380905, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T06:20:33.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T06:35:38.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T06:50:43.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T07:05:48.415 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T07:10:26.382 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1384196, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T07:10:26.398 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1384198, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T07:10:36.388 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1384211, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T07:10:36.404 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1384213, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T07:10:36.404 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1384215, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T07:20:53.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T07:32:11.667 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59837, Count: 6404, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-10T07:32:11.667 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2970, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.K0MMX3, EstimatedImpact: 0% 2026-04-10T07:32:11.667 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-10T07:32:11.667 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8261d6_1.MAI, EstimatedImpact: 0% 2026-04-10T07:32:11.667 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-10T07:32:11.667 ProcessImageName: updater.exe, Pid: 7084, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e9c159-9db4-458b-9da4-916608dbd020.tmp, EstimatedImpact: 0% 2026-04-10T07:32:11.667 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-10T07:32:11.667 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f800c3f6-4d59-4629-9bda-1d32c741f1e1.tmp, EstimatedImpact: 0% 2026-04-10T07:32:11.667 ProcessImageName: updater.exe, Pid: 6932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\147b3db2-f364-4799-ab1c-cb979a53a284.tmp, EstimatedImpact: 0% 2026-04-10T07:32:11.667 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98d4d6aa-ae4a-4021-97fd-e6e65d471fbe.tmp, EstimatedImpact: 0% 2026-04-10T07:32:11.667 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\afb90ee9-564c-40fb-86bd-f9d748f7be74.tmp, EstimatedImpact: 0% 2026-04-10T07:32:11.667 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\430d7f58-0b88-4cd0-8b10-75c7f8cba612.tmp, EstimatedImpact: 0% 2026-04-10T07:32:11.667 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d064d5e6-102d-4aa3-93a2-e4ece0e971a6.tmp, EstimatedImpact: 0% 2026-04-10T07:32:11.667 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-10T07:35:58.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T07:47:26.276 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8262e6_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1386245, FileId: 0x29fb000000000344, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T07:47:26.885 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8262e6_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1386249, FileId: 0x29fc000000000344, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T07:51:03.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T08:06:08.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T08:10:25.227 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1387520, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T08:10:25.243 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1387522, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T08:10:35.238 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1387536, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T08:10:35.238 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1387537, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T08:10:35.254 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1387538, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T08:21:13.415 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T08:36:18.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T08:51:23.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T09:06:28.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T09:10:00.628 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8262fd_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1390808, FileId: 0x253400000000585d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T09:10:01.238 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8262fd_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1390812, FileId: 0x253500000000585d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T09:10:24.944 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1390841, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T09:10:24.959 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1390843, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T09:10:34.959 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1390857, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T09:10:34.974 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1390860, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T09:13:52.903 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1391046, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T09:13:52.919 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1391048, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T09:13:57.412 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1391058, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T09:13:57.428 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1391061, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T09:13:57.428 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1391063, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T09:13:57.428 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1391065, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T09:14:07.443 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1391078, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T09:14:07.443 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1391081, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T09:21:33.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T09:32:11.682 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 63574, Count: 6622, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3675, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.K0MMX3, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8261d6_1.MAI, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: updater.exe, Pid: 7084, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e9c159-9db4-458b-9da4-916608dbd020.tmp, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f800c3f6-4d59-4629-9bda-1d32c741f1e1.tmp, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67648fcc-e658-4f22-82a6-b66c1b7ce32b.tmp, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\312704a1-de09-4420-ac62-3b0e0edb2a26.tmp, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d064d5e6-102d-4aa3-93a2-e4ece0e971a6.tmp, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: updater.exe, Pid: 6932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\147b3db2-f364-4799-ab1c-cb979a53a284.tmp, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98d4d6aa-ae4a-4021-97fd-e6e65d471fbe.tmp, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\afb90ee9-564c-40fb-86bd-f9d748f7be74.tmp, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: updater.exe, Pid: 3404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c701fc58-dbe9-46c9-bcba-e5e401f3e892.tmp, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\430d7f58-0b88-4cd0-8b10-75c7f8cba612.tmp, EstimatedImpact: 0% 2026-04-10T09:32:11.682 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-10T09:36:38.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T09:51:43.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T10:06:48.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T10:10:26.223 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1394188, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T10:10:26.239 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1394190, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T10:10:36.232 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1394204, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T10:10:36.232 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1394206, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T10:10:36.451 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1394210, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T10:10:36.467 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1394212, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T10:21:53.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T10:36:58.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T10:52:03.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T11:07:08.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T11:10:26.015 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1397501, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T11:10:26.015 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1397503, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T11:10:36.018 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1397517, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T11:10:36.033 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1397519, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T11:22:13.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T11:32:11.695 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 63574, Count: 6622, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4440, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.K0MMX3, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8261d6_1.MAI, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: updater.exe, Pid: 7084, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e9c159-9db4-458b-9da4-916608dbd020.tmp, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: updater.exe, Pid: 7400, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18acb610-d816-4cae-aeb4-a0ad8962300f.tmp, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f800c3f6-4d59-4629-9bda-1d32c741f1e1.tmp, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: updater.exe, Pid: 6932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\147b3db2-f364-4799-ab1c-cb979a53a284.tmp, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67648fcc-e658-4f22-82a6-b66c1b7ce32b.tmp, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\312704a1-de09-4420-ac62-3b0e0edb2a26.tmp, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d064d5e6-102d-4aa3-93a2-e4ece0e971a6.tmp, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98d4d6aa-ae4a-4021-97fd-e6e65d471fbe.tmp, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\afb90ee9-564c-40fb-86bd-f9d748f7be74.tmp, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: updater.exe, Pid: 3404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c701fc58-dbe9-46c9-bcba-e5e401f3e892.tmp, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\430d7f58-0b88-4cd0-8b10-75c7f8cba612.tmp, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86859b8d-905c-4251-a910-34a1ca507144.tmp, EstimatedImpact: 0% 2026-04-10T11:32:11.695 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-10T11:37:18.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T11:52:23.415 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T12:06:54.000 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826300_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1400625, FileId: 0x133a00000004c46d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T12:07:28.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T12:10:25.287 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1400829, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T12:10:25.303 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1400831, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T12:10:35.308 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1400845, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T12:10:35.308 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1400847, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T12:10:35.324 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1400849, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T12:10:35.324 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1400851, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T12:22:33.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T12:30:06.754 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826301_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1401927, FileId: 0x30bf00000004fe52, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T12:30:07.333 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826301_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1401931, FileId: 0x30c000000004fe52, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T12:37:38.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T12:52:43.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T13:07:48.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T13:10:24.956 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1404156, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T13:10:24.972 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1404158, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T13:10:34.959 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1404172, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T13:10:34.959 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1404174, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T13:10:34.975 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1404176, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T13:10:34.975 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1404178, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T13:22:53.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T13:32:11.696 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64560, Count: 6680, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5265, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.K0MMX3, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 23, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8261d6_1.MAI, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 7400, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18acb610-d816-4cae-aeb4-a0ad8962300f.tmp, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 7084, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e9c159-9db4-458b-9da4-916608dbd020.tmp, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 3404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c701fc58-dbe9-46c9-bcba-e5e401f3e892.tmp, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86859b8d-905c-4251-a910-34a1ca507144.tmp, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d064d5e6-102d-4aa3-93a2-e4ece0e971a6.tmp, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 2140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9a819c75-06d1-464b-aada-30f205a321bb.tmp, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\312704a1-de09-4420-ac62-3b0e0edb2a26.tmp, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f800c3f6-4d59-4629-9bda-1d32c741f1e1.tmp, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 6932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\147b3db2-f364-4799-ab1c-cb979a53a284.tmp, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67648fcc-e658-4f22-82a6-b66c1b7ce32b.tmp, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 5708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a5b8ab9-1ea0-42c2-932a-66a3cd5694e2.tmp, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\430d7f58-0b88-4cd0-8b10-75c7f8cba612.tmp, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98d4d6aa-ae4a-4021-97fd-e6e65d471fbe.tmp, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\afb90ee9-564c-40fb-86bd-f9d748f7be74.tmp, EstimatedImpact: 0% 2026-04-10T13:32:11.696 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-10T13:37:58.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T13:53:03.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T14:08:08.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T14:10:26.804 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1407491, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T14:10:26.804 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1407493, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T14:10:36.806 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1407507, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T14:10:36.822 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1407510, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T14:13:57.518 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1407696, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T14:13:57.534 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1407699, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T14:23:13.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T14:38:18.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T14:53:23.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T15:08:28.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T15:10:25.815 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1410844, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T15:23:33.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T15:32:11.710 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64560, Count: 6680, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6150, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.K0MMX3, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 23, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8261d6_1.MAI, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 7400, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18acb610-d816-4cae-aeb4-a0ad8962300f.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 7084, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e9c159-9db4-458b-9da4-916608dbd020.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae02f4c3-6274-4c0b-b9d6-43478e1fd41f.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 6932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\147b3db2-f364-4799-ab1c-cb979a53a284.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 5708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a5b8ab9-1ea0-42c2-932a-66a3cd5694e2.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\312704a1-de09-4420-ac62-3b0e0edb2a26.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f800c3f6-4d59-4629-9bda-1d32c741f1e1.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67648fcc-e658-4f22-82a6-b66c1b7ce32b.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98d4d6aa-ae4a-4021-97fd-e6e65d471fbe.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 4032, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8b8e386-4494-4fbe-90c9-838abfc74af9.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\afb90ee9-564c-40fb-86bd-f9d748f7be74.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 3404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c701fc58-dbe9-46c9-bcba-e5e401f3e892.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\430d7f58-0b88-4cd0-8b10-75c7f8cba612.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86859b8d-905c-4251-a910-34a1ca507144.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 2140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9a819c75-06d1-464b-aada-30f205a321bb.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d064d5e6-102d-4aa3-93a2-e4ece0e971a6.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1eb4b346-b0c5-4817-bbd3-05a3a2851a2e.tmp, EstimatedImpact: 0% 2026-04-10T15:32:11.710 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-10T15:38:38.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T15:53:43.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T16:08:48.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T16:23:53.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T16:38:58.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T16:54:03.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T17:09:08.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T17:10:26.048 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1417536, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T17:24:13.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T17:32:11.717 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64653, Count: 6683, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6930, Count: 58248, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.K0MMX3, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 23, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8261d6_1.MAI, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 7400, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18acb610-d816-4cae-aeb4-a0ad8962300f.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 7084, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e9c159-9db4-458b-9da4-916608dbd020.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae02f4c3-6274-4c0b-b9d6-43478e1fd41f.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 6668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fd4ed7ee-02e1-43c8-89c5-88710955ae23.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 6932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\147b3db2-f364-4799-ab1c-cb979a53a284.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\312704a1-de09-4420-ac62-3b0e0edb2a26.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f800c3f6-4d59-4629-9bda-1d32c741f1e1.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67648fcc-e658-4f22-82a6-b66c1b7ce32b.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 4032, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8b8e386-4494-4fbe-90c9-838abfc74af9.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 5708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a5b8ab9-1ea0-42c2-932a-66a3cd5694e2.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98d4d6aa-ae4a-4021-97fd-e6e65d471fbe.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\afb90ee9-564c-40fb-86bd-f9d748f7be74.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 3404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c701fc58-dbe9-46c9-bcba-e5e401f3e892.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\430d7f58-0b88-4cd0-8b10-75c7f8cba612.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0791419-8827-4f18-b57f-bf084842ed8b.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86859b8d-905c-4251-a910-34a1ca507144.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 2140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9a819c75-06d1-464b-aada-30f205a321bb.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d064d5e6-102d-4aa3-93a2-e4ece0e971a6.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1eb4b346-b0c5-4817-bbd3-05a3a2851a2e.tmp, EstimatedImpact: 0% 2026-04-10T17:32:11.717 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-10T17:39:18.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T17:54:23.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T18:09:28.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T18:24:33.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T18:39:38.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T18:54:43.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T19:09:48.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T19:10:35.136 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1424175, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T19:14:15.602 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1424406, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T19:24:53.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T19:32:11.726 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64683, Count: 6685, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7470, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.K0MMX3, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 23, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8261d6_1.MAI, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 7400, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18acb610-d816-4cae-aeb4-a0ad8962300f.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 7084, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e9c159-9db4-458b-9da4-916608dbd020.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae02f4c3-6274-4c0b-b9d6-43478e1fd41f.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 6668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fd4ed7ee-02e1-43c8-89c5-88710955ae23.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67648fcc-e658-4f22-82a6-b66c1b7ce32b.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 5708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a5b8ab9-1ea0-42c2-932a-66a3cd5694e2.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\312704a1-de09-4420-ac62-3b0e0edb2a26.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 7636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45a5f2fd-b4e7-4fed-a0c7-7be8703b10e7.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f800c3f6-4d59-4629-9bda-1d32c741f1e1.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 5796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a734f0f0-f978-4517-8849-5e9b049d7c24.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 6932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\147b3db2-f364-4799-ab1c-cb979a53a284.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e6fd1f9-6f88-4d7b-99dd-deb98a47fef7.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98d4d6aa-ae4a-4021-97fd-e6e65d471fbe.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 4032, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8b8e386-4494-4fbe-90c9-838abfc74af9.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\afb90ee9-564c-40fb-86bd-f9d748f7be74.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 3404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c701fc58-dbe9-46c9-bcba-e5e401f3e892.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\430d7f58-0b88-4cd0-8b10-75c7f8cba612.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0791419-8827-4f18-b57f-bf084842ed8b.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86859b8d-905c-4251-a910-34a1ca507144.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 2140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9a819c75-06d1-464b-aada-30f205a321bb.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d064d5e6-102d-4aa3-93a2-e4ece0e971a6.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1eb4b346-b0c5-4817-bbd3-05a3a2851a2e.tmp, EstimatedImpact: 0% 2026-04-10T19:32:11.726 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-10T19:39:58.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T19:55:03.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T20:10:08.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T20:25:13.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T20:40:18.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T20:55:23.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T21:10:25.938 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1430826, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T21:10:28.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T21:25:33.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T21:32:11.728 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64683, Count: 6686, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8235, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.K0MMX3, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 27, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8261d6_1.MAI, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 7084, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e9c159-9db4-458b-9da4-916608dbd020.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 7400, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18acb610-d816-4cae-aeb4-a0ad8962300f.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 3228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69b6300f-a0e6-439e-996a-3df9c30f107c.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae02f4c3-6274-4c0b-b9d6-43478e1fd41f.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 6932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\147b3db2-f364-4799-ab1c-cb979a53a284.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60032411-13e6-4a76-9a5c-f4ea4f3261e1.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67648fcc-e658-4f22-82a6-b66c1b7ce32b.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 5708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a5b8ab9-1ea0-42c2-932a-66a3cd5694e2.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\312704a1-de09-4420-ac62-3b0e0edb2a26.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 7636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45a5f2fd-b4e7-4fed-a0c7-7be8703b10e7.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f800c3f6-4d59-4629-9bda-1d32c741f1e1.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98d4d6aa-ae4a-4021-97fd-e6e65d471fbe.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 4032, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8b8e386-4494-4fbe-90c9-838abfc74af9.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\afb90ee9-564c-40fb-86bd-f9d748f7be74.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 3404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c701fc58-dbe9-46c9-bcba-e5e401f3e892.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\430d7f58-0b88-4cd0-8b10-75c7f8cba612.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0791419-8827-4f18-b57f-bf084842ed8b.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86859b8d-905c-4251-a910-34a1ca507144.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 2140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9a819c75-06d1-464b-aada-30f205a321bb.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d064d5e6-102d-4aa3-93a2-e4ece0e971a6.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1eb4b346-b0c5-4817-bbd3-05a3a2851a2e.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e6fd1f9-6f88-4d7b-99dd-deb98a47fef7.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 5796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a734f0f0-f978-4517-8849-5e9b049d7c24.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 6668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fd4ed7ee-02e1-43c8-89c5-88710955ae23.tmp, EstimatedImpact: 0% 2026-04-10T21:32:11.728 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-10T21:40:38.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T21:55:43.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T22:10:48.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T22:25:53.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T22:40:58.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T22:56:03.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T23:10:24.413 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1437455, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T23:11:08.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T23:26:13.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T23:31:53.419 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-10T23:31:53.450 Job Notification: New process added to job (2468) 2026-04-10T23:31:53.450 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-10T23:31:53.450 Job Notification: New process added to job (2148) 2026-04-10T23:31:53.450 Aggressive catchup quick scan threshold: 728975215990 / 25920000000000 2026-04-10T23:31:53.465 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:2468] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2148]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-10T23:31:53.497 Job Notification: New process added to job (8052) 2026-04-10T23:31:53.497 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-10T23:31:53.497 Job Notification: New process added to job (7976) 2026-04-10T23:31:53.512 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:8052] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7976]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-10T23:31:53.981 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-10T23:31:54.012 [RTP] Duplicating the current plugin configuration object... 2026-04-10T23:31:54.012 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-10T23:31:54.012 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-10T23:31:54.012 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-10T23:31:54.012 [RTP] No config change detected. Not updating plugin configuration. 2026-04-10T23:31:54.012 [RTP] No config changes found. No configuration switch. 2026-04-10T23:31:54.012 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-10T23:31:54.481 Job Notification: New process added to job (7820) 2026-04-10T23:31:54.481 Task(GetDeviceTicket -AccessKey DBABEDEB-9A4D-9FBF-BAD8-E3DA447E3262 ) launched as network service 2026-04-10T23:31:54.559 Job Notification: Process exited from job (7820) 2026-04-10T23:31:55.834 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-10T23:31:55.834 [Cloud] Start of cloud request. Passive mode: 0 2026-04-10T23:31:55.834 [Cloud] Queued cloud request. 2026-04-10T23:31:55.834 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-10T23:31:55.834 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-10T23:31:55.834 [Cloud] Start of cloud request. Passive mode: 0 2026-04-10T23:31:55.834 [Cloud] Queued cloud request. 2026-04-10T23:31:55.866 Job Notification: New process added to job (3320) 2026-04-10T23:31:55.866 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 9D971B08-4B0B-2338-DD21-6D312430401B) launched 2026-04-10T23:31:55.881 Job Notification: New process added to job (3700) 2026-04-10T23:31:55.881 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:3320] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3700]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-10T23:31:55.897 Job Notification: New process added to job (7784) 2026-04-10T23:31:55.897 Job Notification: Process exited from job (3320) 2026-04-10T23:31:55.913 Job Notification: Process exited from job (3700) 2026-04-10T23:31:55.913 [Cloud] Dequeued cloud request. 2026-04-10T23:31:55.913 [Cloud] Dequeued cloud request. 2026-04-10T23:31:55.913 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-10T23:31:55.913 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-10T23:31:56.241 [Cloud] End of cloud request. 2026-04-10T23:31:56.272 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-10T23:31:56.272 [Cloud] End of cloud request. 2026-04-10T23:31:56.335 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-10T23:32:11.741 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64745, Count: 6687, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9075, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.K0MMX3, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 27, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8261d6_1.MAI, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 7084, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e9c159-9db4-458b-9da4-916608dbd020.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 7400, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18acb610-d816-4cae-aeb4-a0ad8962300f.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 3228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69b6300f-a0e6-439e-996a-3df9c30f107c.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae02f4c3-6274-4c0b-b9d6-43478e1fd41f.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e6fd1f9-6f88-4d7b-99dd-deb98a47fef7.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60032411-13e6-4a76-9a5c-f4ea4f3261e1.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 5796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a734f0f0-f978-4517-8849-5e9b049d7c24.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 6668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fd4ed7ee-02e1-43c8-89c5-88710955ae23.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 6932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\147b3db2-f364-4799-ab1c-cb979a53a284.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67648fcc-e658-4f22-82a6-b66c1b7ce32b.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\312704a1-de09-4420-ac62-3b0e0edb2a26.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\02706182-965f-4d39-80a6-2e283e70d920.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 7636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45a5f2fd-b4e7-4fed-a0c7-7be8703b10e7.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f800c3f6-4d59-4629-9bda-1d32c741f1e1.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 5708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a5b8ab9-1ea0-42c2-932a-66a3cd5694e2.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98d4d6aa-ae4a-4021-97fd-e6e65d471fbe.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 4032, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8b8e386-4494-4fbe-90c9-838abfc74af9.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\afb90ee9-564c-40fb-86bd-f9d748f7be74.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 3404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c701fc58-dbe9-46c9-bcba-e5e401f3e892.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\430d7f58-0b88-4cd0-8b10-75c7f8cba612.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1eb4b346-b0c5-4817-bbd3-05a3a2851a2e.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0791419-8827-4f18-b57f-bf084842ed8b.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86859b8d-905c-4251-a910-34a1ca507144.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 2140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9a819c75-06d1-464b-aada-30f205a321bb.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d064d5e6-102d-4aa3-93a2-e4ece0e971a6.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7bb77dcb-ba6f-42b1-a98c-4cb4ea6adf6d.tmp, EstimatedImpact: 0% 2026-04-10T23:32:11.741 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-10T23:33:04.768 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\41A76E8C-B2AD-41D1-A1F6-5B88A5B2804D1074.1dcc94251784651 2026-04-10T23:33:05.175 Verifying engine and signature files (source: 0) ... 2026-04-10T23:33:05.175 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F7FCC20F-DFF8-4C9D-AC78-7851C606FEC7}\mpengine.dll] due to PPL. 2026-04-10T23:33:05.175 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F7FCC20F-DFF8-4C9D-AC78-7851C606FEC7}\mpasbase.vdm]. File not in cache (0x1) 2026-04-10T23:33:05.862 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F7FCC20F-DFF8-4C9D-AC78-7851C606FEC7}\mpasbase.vdm] 2026-04-10T23:33:05.862 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F7FCC20F-DFF8-4C9D-AC78-7851C606FEC7}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-10T23:33:05.878 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F7FCC20F-DFF8-4C9D-AC78-7851C606FEC7}\mpasdlta.vdm] 2026-04-10T23:33:05.878 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F7FCC20F-DFF8-4C9D-AC78-7851C606FEC7}\mpavbase.vdm]. File not in cache (0x1) 2026-04-10T23:33:06.206 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F7FCC20F-DFF8-4C9D-AC78-7851C606FEC7}\mpavbase.vdm] 2026-04-10T23:33:06.206 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F7FCC20F-DFF8-4C9D-AC78-7851C606FEC7}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-10T23:33:06.206 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F7FCC20F-DFF8-4C9D-AC78-7851C606FEC7}\mpavdlta.vdm] 2026-04-10T23:33:06.393 [Engine] IsHybridMode: 0 2026-04-10T23:33:06.393 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-10T23:33:06.471 Current mpengine.dll version(1.1.26030.3008) is newer than mpengine_etw.dll version(1.1.26020.3). Updating C:\ProgramData\Microsoft\Windows Defender\Definition Updates\StableEngineEtwLocation\mpengine_etw.dll ... 2026-04-10T23:33:06.549 C:\ProgramData\Microsoft\Windows Defender\Definition Updates\StableEngineEtwLocation\mpengine_etw.dll updated. 2026-04-10T23:33:06.690 Job Notification: New process added to job (7776) 2026-04-10T23:33:06.706 Job Notification: New process added to job (6688) 2026-04-10T23:33:06.784 Job Notification: Process exited from job (7776) 2026-04-10T23:33:06.784 Job Notification: Process exited from job (6688) 2026-04-10T23:33:06.784 Job Notification: New process added to job (5632) 2026-04-10T23:33:06.784 Job Notification: New process added to job (7700) 2026-04-10T23:33:06.971 Job Notification: Process exited from job (5632) 2026-04-10T23:33:06.987 Job Notification: Process exited from job (7700) 2026-04-10T23:33:06.987 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-899025E2B80D61F5B5E0D10BF2F35CFAA01842FC.bin): 0x00000002 2026-04-10T23:33:06.987 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-899025E2B80D61F5B5E0D10BF2F35CFAA01842FC.bin) 2026-04-10T23:33:06.987 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-10T23:33:06.987 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-10T23:33:06.987 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-10T23:33:06.987 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-04-10T23:33:07.206 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-04-10T23:33:07.206 [RTP] [RtpConfig] Config change detected, type: 1024 2026-04-10T23:33:09.784 [RTP] Duplicating the current plugin configuration object... 2026-04-10T23:33:09.784 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-10T23:33:09.784 [RTP] Updating plugin configuration due to recent config changes (0x400) ... 2026-04-10T23:33:09.784 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-04-10T23:33:09.784 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x400, Changed: 0x218 IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-10T23:33:16.495 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-10T23:33:16.495 [AutoExclusion] Applied roles from cache. 2026-04-10T23:33:16.495 [AutoExclusion] Started roles monitoring. 2026-04-10T23:33:16.495 Engine upgrade detected 0x1000165a40003. Saving old engine files to last known good engine files ... 2026-04-10T23:33:16.511 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D3319B0, lRefCount: 5, hr=0 2026-04-10T23:33:16.511 [Engine] New active engine 00007FFCF90E8020 replacing engine 00007FFD0D3319B0. Number of active engines: 2 2026-04-10T23:33:16.526 EngineInit:Global ASOC is enabled 2026-04-10T23:33:16.526 EngineInit:ASOO is enabled for developer volumes 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-10T23:33:16.542 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-10T23:33:16.542 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-10T23:33:16.558 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-10T23:33:16.558 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-10T23:33:16.558 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-10T23:33:16.558 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-10T23:33:16.558 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-10T23:33:16.558 [Plugin] Initializing RTP plugin state... 2026-04-10T23:33:16.558 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-10T23:33:16.558 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎10‎-‎2026 01:32:11 Last Perf:‎04‎-‎10‎-‎2026 01:32:11 First RTP Scan:‎04‎-‎10‎-‎2026 01:32:12 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:415 Misses:2133 BM Queue:0,101,0 Proc:0,41,0 File:0,84,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1438860 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1701369832 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:3778 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:317644 TotalHits:461333 InstanceCacheInserts:667811 InstanceCacheUpdates:0 InstanceCacheDeletes:123203 InstanceCacheHits:2994 InstanceCacheMisses:1013422 InstanceCacheOverflows:541614 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (319/273) Success: 273, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-10T23:33:16.558 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F7FCC20F-DFF8-4C9D-AC78-7851C606FEC7} 2026-04-10T23:33:16.558 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{32132A60-CFB0-499F-8575-6D40D937A2BE}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{32132A60-CFB0-499F-8575-6D40D937A2BE}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-10T23:33:16.558 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-10T23:33:16.558 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-10T23:33:16.558 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-10T23:33:16.558 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-10T23:33:16.558 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-10-2026 23:33:16 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-10-2026 23:33:16 2026-04-10T23:33:16.573 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-10T23:33:16.573 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-10T23:33:16.573 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-10T23:33:16.573 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-10T23:33:16.573 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-10T23:33:16.573 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-10T23:33:16.573 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-10T23:33:16.573 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-10T23:33:16.573 MdCoreSvc is supported in this platform and OS 2026-04-10T23:33:16.573 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-10T23:33:16.573 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 04-10-2026 23:33:16 Product Version: 4.18.26020.6 Service Version: 4.18.26020.6 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.34.0 AV Signature Version: 1.449.34.0 ************************************************************ 2026-04-10T23:33:16.573 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-10T23:33:16.573 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\41A76E8C-B2AD-41D1-A1F6-5B88A5B2804D1074.1dcc94251784651 2026-04-10T23:33:16.620 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-10T23:33:16.620 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-04-10T23:33:16.808 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-10T23:33:16.808 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-10T23:33:16.808 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-10T23:33:16.808 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-10T23:33:16.808 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-10T23:33:16.808 [Engine] Engine 00007FFD0D3319B0 no longer in use. Number of active engines: 1 2026-04-10T23:33:16.808 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-10T23:33:16.808 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). Signature updated via MicrosoftUpdateServer on 04-10-2026 23:33:17 ************************************************************ 2026-04-10T23:33:17.011 Job Notification: Process exited from job (8052) 2026-04-10T23:33:17.011 Job Notification: Process exited from job (7976) 2026-04-10T23:33:17.011 Job Notification: Process exited from job (2468) 2026-04-10T23:33:17.011 Job Notification: Process exited from job (2148) 2026-04-10T23:33:17.042 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-10T23:33:17.042 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-10T23:33:17.042 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-10T23:33:17.638 Process scan (postsignatureupdatescan) started. 2026-04-10T23:33:17.935 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 64745, Count: 6687, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-10T23:33:17.935 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9090, Count: 77733, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.K0MMX3, EstimatedImpact: 0% 2026-04-10T23:33:17.935 ProcessImageName: MpSigStub.exe, Pid: 4212, TotalTime: 280, Count: 2, MaxTime: 187, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\41A76E8C-B2AD-41D1-A1F6-5B88A5B2804D1074.1dcc94251784651\mpengine.dll, EstimatedImpact: 100% 2026-04-10T23:33:17.935 ProcessImageName: wuauclt.exe, Pid: 3840, TotalTime: 187, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\SoftwareDistribution\Download\Install\AM_Engine_Patch_1.1.26020.3.exe, EstimatedImpact: 11% 2026-04-10T23:33:17.935 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 27, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8261d6_1.MAI, EstimatedImpact: 0% 2026-04-10T23:33:17.935 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-10T23:33:17.935 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-10T23:33:17.935 ProcessImageName: updater.exe, Pid: 7084, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e9c159-9db4-458b-9da4-916608dbd020.tmp, EstimatedImpact: 0% 2026-04-10T23:33:17.935 ProcessImageName: updater.exe, Pid: 3228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69b6300f-a0e6-439e-996a-3df9c30f107c.tmp, EstimatedImpact: 0% 2026-04-10T23:33:17.935 ProcessImageName: updater.exe, Pid: 7400, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18acb610-d816-4cae-aeb4-a0ad8962300f.tmp, EstimatedImpact: 0% 2026-04-10T23:33:17.935 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-10T23:33:17.935 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae02f4c3-6274-4c0b-b9d6-43478e1fd41f.tmp, EstimatedImpact: 0% 2026-04-10T23:33:17.997 [Engine] RSIG_UNLOADENGINE, 00007FFD0D3319B0, err=0x0 2026-04-10T23:33:17.997 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{32132A60-CFB0-499F-8575-6D40D937A2BE} removed 2026-04-10T23:33:24.430 Process scan (postsignatureupdatescan) completed. 2026-04-10T23:38:16.539 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-10T23:41:18.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-10T23:52:11.885 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1441120, FileId: 0x9f00000004c4f9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T23:52:22.604 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1441575, FileId: 0x49f600000001ccad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-10T23:56:23.415 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T00:10:26.382 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1442609, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T00:10:26.382 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1442611, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T00:10:36.390 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1442626, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T00:10:36.390 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1442625, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T00:10:36.406 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1442628, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T00:11:28.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T00:14:05.663 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1442823, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T00:14:05.679 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1442826, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T00:14:09.928 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1442846, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T00:14:09.943 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1442849, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T00:14:09.943 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1442851, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T00:14:19.940 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1442864, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T00:14:19.955 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1442867, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T00:26:33.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T00:41:38.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T00:56:43.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T01:10:24.202 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1446004, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T01:10:24.202 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1446007, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T01:10:29.908 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1446013, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T01:10:30.049 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1446015, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T01:10:47.633 ReportLowfi(c:\program files (x86)\google\chrome\application\146.0.7680.180\installer\chrmstp.exe, 0x437a0835) from 0x0006b6bd6566d2d9 Internal signature match:subtype=Lowfi, sigseq=0x000005550240CBF2, sigsha=e39a25e9b19899abbd79ec872fd8aeabe27e140d, cached=false, source=0, resourceid=0xfdc1c668 2026-04-11T01:10:47.930 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1446340, FileId: 0x1f0000000568a5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T01:10:48.055 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1446345, FileId: 0x1f0000000568a5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T01:10:50.098 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1446355, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T01:10:50.113 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1446357, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T01:11:00.116 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1446396, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T01:11:00.116 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1446398, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T01:11:00.257 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1446402, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T01:11:00.272 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1446404, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T01:11:48.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T01:26:53.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T01:33:16.519 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 44728, Count: 6285, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 4% 2026-04-11T01:33:16.519 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 5276, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping4736_2091255215\146.0.7680.180_chrome_installer_uncompressed.exe, EstimatedImpact: 13% 2026-04-11T01:33:16.519 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 675, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.RH2HX3, EstimatedImpact: 0% 2026-04-11T01:33:16.519 ProcessImageName: setup.exe, Pid: 2812, TotalTime: 92, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Temp\source2812_730644884\Chrome-bin\chrome.exe, EstimatedImpact: 2% 2026-04-11T01:33:16.519 ProcessImageName: setup.exe, Pid: 7176, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 16% 2026-04-11T01:33:16.519 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 1% 2026-04-11T01:33:16.519 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-11T01:33:16.519 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631b_3.MAI, EstimatedImpact: 0% 2026-04-11T01:33:16.519 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5198d1e4-2652-49b6-b95e-031659a18e00.tmp, EstimatedImpact: 0% 2026-04-11T01:34:12.864 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631c_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1447682, FileId: 0x970000000568ac, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T01:34:13.473 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631c_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1447687, FileId: 0x980000000568ac, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T01:41:58.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T01:57:03.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T02:10:27.451 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1449732, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T02:10:27.466 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1449734, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T02:10:37.459 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1449748, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T02:10:37.475 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1449750, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T02:10:37.475 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1449752, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T02:12:08.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T02:27:13.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T02:42:18.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T02:57:23.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T03:10:25.235 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1453281, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T03:10:25.251 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1453283, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T03:10:35.238 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1453296, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T03:10:35.238 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1453298, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T03:10:35.254 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1453300, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T03:10:35.254 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1453302, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T03:12:28.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T03:16:55.934 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:122343D3-84A3-4EA2-B879-BA7F9594C9F4, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-11T03:16:55.934 Scheduled scan with Id 122343D3-84A3-4EA2-B879-BA7F9594C9F4 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-11T03:16:55.934 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-11T03:16:55.934 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-11T03:16:55.934 [SFC] System file cache build is not needed (already completed) 2026-04-11T03:17:07.326 Engine:Triggered AR EMS scan 2026-04-11T03:17:07.326 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.342 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.373 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.389 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.420 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.451 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.467 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.498 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.529 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.545 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.561 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.592 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.607 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.623 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.639 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.654 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.686 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.748 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.764 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.795 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.811 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.873 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-11T03:17:07.889 Bm signature throttled:0x00002db31bed458f 2026-04-11T03:17:30.029 QuickScan:ScanID:122343D3-84A3-4EA2-B879-BA7F9594C9F4: Quick scan finished with error 0 2026-04-11T03:17:30.045 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-11T03:17:30.557 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-11T03:17:30.557 [RTP] Duplicating the current plugin configuration object... 2026-04-11T03:17:30.557 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-11T03:17:30.557 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-11T03:17:30.557 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-11T03:17:30.557 [RTP] No config change detected. Not updating plugin configuration. 2026-04-11T03:17:30.557 [RTP] No config changes found. No configuration switch. 2026-04-11T03:17:30.557 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-11T03:27:33.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T03:33:16.531 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49279, Count: 6567, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-11T03:33:16.531 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 5276, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping4736_2091255215\146.0.7680.180_chrome_installer_uncompressed.exe, EstimatedImpact: 13% 2026-04-11T03:33:16.531 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1725, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.RH2HX3, EstimatedImpact: 0% 2026-04-11T03:33:16.531 ProcessImageName: setup.exe, Pid: 2812, TotalTime: 92, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Temp\source2812_730644884\Chrome-bin\chrome.exe, EstimatedImpact: 2% 2026-04-11T03:33:16.531 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 30% 2026-04-11T03:33:16.531 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-11T03:33:16.531 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631b_3.MAI, EstimatedImpact: 0% 2026-04-11T03:33:16.531 ProcessImageName: setup.exe, Pid: 7176, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 16% 2026-04-11T03:33:16.531 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 1% 2026-04-11T03:33:16.531 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-11T03:33:16.531 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93b02e15-a3a2-4038-af19-4dab5220167e.tmp, EstimatedImpact: 0% 2026-04-11T03:33:16.531 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5198d1e4-2652-49b6-b95e-031659a18e00.tmp, EstimatedImpact: 0% 2026-04-11T03:33:16.531 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95f96c87-ef27-4518-b2aa-6f13d666db0a.tmp, EstimatedImpact: 0% 2026-04-11T03:42:38.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T03:57:43.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T04:10:26.442 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1456759, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T04:10:26.458 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1456761, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T04:10:36.451 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1456774, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T04:10:36.467 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1456777, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T04:12:48.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T04:27:53.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T04:42:58.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T04:58:03.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T05:10:24.961 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460069, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T05:10:24.976 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460071, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T05:10:34.979 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460083, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T05:10:34.994 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460085, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T05:13:08.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T05:14:10.028 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460291, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T05:14:10.044 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460293, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T05:14:16.439 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460303, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T05:14:16.454 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460305, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T05:14:16.470 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460307, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T05:14:26.446 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460319, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T05:14:26.462 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460321, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T05:28:13.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T05:33:16.536 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49461, Count: 6584, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-11T05:33:16.536 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 5276, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping4736_2091255215\146.0.7680.180_chrome_installer_uncompressed.exe, EstimatedImpact: 13% 2026-04-11T05:33:16.536 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2550, Count: 19413, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.RH2HX3, EstimatedImpact: 0% 2026-04-11T05:33:16.536 ProcessImageName: setup.exe, Pid: 2812, TotalTime: 92, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Temp\source2812_730644884\Chrome-bin\chrome.exe, EstimatedImpact: 2% 2026-04-11T05:33:16.536 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 30% 2026-04-11T05:33:16.536 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-11T05:33:16.536 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631b_3.MAI, EstimatedImpact: 0% 2026-04-11T05:33:16.536 ProcessImageName: setup.exe, Pid: 7176, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 16% 2026-04-11T05:33:16.536 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 1% 2026-04-11T05:33:16.536 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-11T05:33:16.536 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93b02e15-a3a2-4038-af19-4dab5220167e.tmp, EstimatedImpact: 0% 2026-04-11T05:33:16.536 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5198d1e4-2652-49b6-b95e-031659a18e00.tmp, EstimatedImpact: 0% 2026-04-11T05:33:16.536 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95f96c87-ef27-4518-b2aa-6f13d666db0a.tmp, EstimatedImpact: 0% 2026-04-11T05:33:16.536 ProcessImageName: updater.exe, Pid: 6296, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\484f5ef5-cbd3-4063-be58-8f219114ee76.tmp, EstimatedImpact: 0% 2026-04-11T05:33:16.536 ProcessImageName: updater.exe, Pid: 7192, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T05:33:16.536 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T05:43:18.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T05:58:23.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T06:10:24.610 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1463441, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T06:10:24.625 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1463443, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T06:10:34.622 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1463455, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T06:10:34.653 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1463458, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T06:10:34.778 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1463462, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T06:10:34.793 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1463464, FileId: 0x556000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T06:13:28.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T06:28:33.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T06:43:38.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T06:58:43.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T07:10:25.648 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1466755, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T07:10:25.663 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1466757, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T07:10:35.651 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1466770, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T07:10:35.651 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1466772, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T07:10:35.666 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1466774, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T07:10:35.666 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1466776, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T07:13:48.407 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T07:28:53.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T07:33:16.551 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49492, Count: 6586, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-11T07:33:16.551 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 5276, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping4736_2091255215\146.0.7680.180_chrome_installer_uncompressed.exe, EstimatedImpact: 13% 2026-04-11T07:33:16.551 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3540, Count: 25884, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.RH2HX3, EstimatedImpact: 0% 2026-04-11T07:33:16.551 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-11T07:33:16.551 ProcessImageName: setup.exe, Pid: 2812, TotalTime: 92, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Temp\source2812_730644884\Chrome-bin\chrome.exe, EstimatedImpact: 2% 2026-04-11T07:33:16.551 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-11T07:33:16.551 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be7f4032-686d-44d9-93aa-e5bc7a563ffd.tmp, EstimatedImpact: 0% 2026-04-11T07:33:16.551 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631b_3.MAI, EstimatedImpact: 0% 2026-04-11T07:33:16.551 ProcessImageName: setup.exe, Pid: 7176, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 16% 2026-04-11T07:33:16.551 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 1% 2026-04-11T07:33:16.551 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-11T07:33:16.551 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab97ce2-b03a-42d2-a28b-954a10423ad7.tmp, EstimatedImpact: 0% 2026-04-11T07:33:16.551 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93b02e15-a3a2-4038-af19-4dab5220167e.tmp, EstimatedImpact: 0% 2026-04-11T07:33:16.551 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5198d1e4-2652-49b6-b95e-031659a18e00.tmp, EstimatedImpact: 0% 2026-04-11T07:33:16.551 ProcessImageName: updater.exe, Pid: 6296, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\484f5ef5-cbd3-4063-be58-8f219114ee76.tmp, EstimatedImpact: 0% 2026-04-11T07:33:16.551 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95f96c87-ef27-4518-b2aa-6f13d666db0a.tmp, EstimatedImpact: 0% 2026-04-11T07:33:16.551 ProcessImageName: updater.exe, Pid: 7192, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T07:33:16.551 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T07:43:58.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T07:59:03.415 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T08:10:26.138 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1470076, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T08:10:26.154 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1470078, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T08:10:36.156 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1470090, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T08:10:36.172 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1470093, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T08:14:08.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T08:29:13.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T08:44:18.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T08:59:06.159 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826335_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1472768, FileId: 0x25d4000000008eb4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T08:59:06.738 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826335_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1472772, FileId: 0x25d5000000008eb4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T08:59:23.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T09:10:26.721 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1473402, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T09:10:26.721 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1473404, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T09:10:36.725 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1473417, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T09:10:36.725 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1473419, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T09:10:36.725 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1473421, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T09:10:36.741 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1473423, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T09:14:28.407 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T09:29:33.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T09:33:16.561 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49523, Count: 6589, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 5276, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping4736_2091255215\146.0.7680.180_chrome_installer_uncompressed.exe, EstimatedImpact: 13% 2026-04-11T09:33:16.561 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4425, Count: 32355, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.RH2HX3, EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: setup.exe, Pid: 2812, TotalTime: 92, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Temp\source2812_730644884\Chrome-bin\chrome.exe, EstimatedImpact: 2% 2026-04-11T09:33:16.561 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631b_3.MAI, EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be7f4032-686d-44d9-93aa-e5bc7a563ffd.tmp, EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: setup.exe, Pid: 7176, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 16% 2026-04-11T09:33:16.561 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 1% 2026-04-11T09:33:16.561 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5198d1e4-2652-49b6-b95e-031659a18e00.tmp, EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b8a61c8-c2c2-4d67-ba97-14134b3a2e8e.tmp, EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab97ce2-b03a-42d2-a28b-954a10423ad7.tmp, EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93b02e15-a3a2-4038-af19-4dab5220167e.tmp, EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: updater.exe, Pid: 6296, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\484f5ef5-cbd3-4063-be58-8f219114ee76.tmp, EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95f96c87-ef27-4518-b2aa-6f13d666db0a.tmp, EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: updater.exe, Pid: 5608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b533391-2064-4938-b0fd-c22e2017b79d.tmp, EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: updater.exe, Pid: 7192, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T09:33:16.561 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T09:44:38.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T09:59:43.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T10:10:25.471 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1476715, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T10:10:25.486 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1476717, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T10:10:35.485 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1476730, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T10:10:35.485 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1476732, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T10:10:35.485 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1476734, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T10:10:35.501 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1476736, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T10:14:16.546 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1476942, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T10:14:16.546 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1476944, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T10:14:21.753 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1476963, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T10:14:21.753 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1476966, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T10:14:21.768 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1476967, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T10:14:21.768 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1476969, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T10:14:31.761 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1476982, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T10:14:31.777 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1476984, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T10:14:48.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T10:29:53.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T10:44:58.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T11:00:03.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T11:10:27.393 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1480066, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T11:10:27.409 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1480068, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T11:10:37.402 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1480081, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T11:10:37.402 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1480083, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T11:10:37.574 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1480087, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T11:10:37.574 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1480089, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T11:15:08.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T11:30:13.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T11:33:16.560 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49523, Count: 6589, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 5276, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping4736_2091255215\146.0.7680.180_chrome_installer_uncompressed.exe, EstimatedImpact: 13% 2026-04-11T11:33:16.560 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5160, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.RH2HX3, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: setup.exe, Pid: 2812, TotalTime: 92, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Temp\source2812_730644884\Chrome-bin\chrome.exe, EstimatedImpact: 2% 2026-04-11T11:33:16.560 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631b_3.MAI, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 992, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1799adb5-b429-4e21-863c-c5c97c4f7a2a.tmp, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be7f4032-686d-44d9-93aa-e5bc7a563ffd.tmp, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: setup.exe, Pid: 7176, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 16% 2026-04-11T11:33:16.560 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 1% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5198d1e4-2652-49b6-b95e-031659a18e00.tmp, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b8a61c8-c2c2-4d67-ba97-14134b3a2e8e.tmp, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 5608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b533391-2064-4938-b0fd-c22e2017b79d.tmp, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab97ce2-b03a-42d2-a28b-954a10423ad7.tmp, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 5488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\02e67b7c-7bd7-4b9b-b191-34ee10d47c3b.tmp, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93b02e15-a3a2-4038-af19-4dab5220167e.tmp, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95f96c87-ef27-4518-b2aa-6f13d666db0a.tmp, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 6296, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\484f5ef5-cbd3-4063-be58-8f219114ee76.tmp, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 5644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d24bf5aa-e15d-4b50-bef0-c352970fd2d4.tmp, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T11:33:16.560 ProcessImageName: updater.exe, Pid: 7192, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T11:45:18.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T12:00:23.406 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T12:10:26.263 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1483380, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T12:10:26.278 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1483382, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T12:15:28.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T12:30:33.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T12:45:38.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T13:00:43.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T13:15:48.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T13:30:53.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T13:33:16.560 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49690, Count: 6600, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6090, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.RH2HX3, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 5276, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping4736_2091255215\146.0.7680.180_chrome_installer_uncompressed.exe, EstimatedImpact: 13% 2026-04-11T13:33:16.560 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: setup.exe, Pid: 2812, TotalTime: 92, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Temp\source2812_730644884\Chrome-bin\chrome.exe, EstimatedImpact: 2% 2026-04-11T13:33:16.560 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631b_3.MAI, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 992, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1799adb5-b429-4e21-863c-c5c97c4f7a2a.tmp, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be7f4032-686d-44d9-93aa-e5bc7a563ffd.tmp, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: setup.exe, Pid: 7176, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 16% 2026-04-11T13:33:16.560 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 1% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5198d1e4-2652-49b6-b95e-031659a18e00.tmp, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b8a61c8-c2c2-4d67-ba97-14134b3a2e8e.tmp, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 5608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b533391-2064-4938-b0fd-c22e2017b79d.tmp, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab97ce2-b03a-42d2-a28b-954a10423ad7.tmp, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 5488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\02e67b7c-7bd7-4b9b-b191-34ee10d47c3b.tmp, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93b02e15-a3a2-4038-af19-4dab5220167e.tmp, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 5644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d24bf5aa-e15d-4b50-bef0-c352970fd2d4.tmp, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2eb251d0-ddf4-4606-9e76-3c64d6251d0b.tmp, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 6296, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\484f5ef5-cbd3-4063-be58-8f219114ee76.tmp, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f668ad6d-5d95-4048-9ca0-8706734f384b.tmp, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95f96c87-ef27-4518-b2aa-6f13d666db0a.tmp, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T13:33:16.560 ProcessImageName: updater.exe, Pid: 7192, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T13:45:58.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T14:01:03.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T14:10:27.623 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1490078, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T14:16:08.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T14:31:13.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T14:46:18.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T15:01:23.406 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T15:10:35.571 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1493411, FileId: 0x46520000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T15:16:28.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T15:31:33.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T15:33:16.573 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49735, Count: 6608, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7020, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.RH2HX3, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 5276, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping4736_2091255215\146.0.7680.180_chrome_installer_uncompressed.exe, EstimatedImpact: 13% 2026-04-11T15:33:16.573 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 21, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631b_3.MAI, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: setup.exe, Pid: 2812, TotalTime: 92, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Temp\source2812_730644884\Chrome-bin\chrome.exe, EstimatedImpact: 2% 2026-04-11T15:33:16.573 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be7f4032-686d-44d9-93aa-e5bc7a563ffd.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 992, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1799adb5-b429-4e21-863c-c5c97c4f7a2a.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: setup.exe, Pid: 7176, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 16% 2026-04-11T15:33:16.573 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 1% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6bfa5bab-cec9-4bb5-93e3-1e7dc7d1fb6f.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b8a61c8-c2c2-4d67-ba97-14134b3a2e8e.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab97ce2-b03a-42d2-a28b-954a10423ad7.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93b02e15-a3a2-4038-af19-4dab5220167e.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 6296, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\484f5ef5-cbd3-4063-be58-8f219114ee76.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2dfff77-5c7d-4e56-938d-5913fba98eed.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2eb251d0-ddf4-4606-9e76-3c64d6251d0b.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f668ad6d-5d95-4048-9ca0-8706734f384b.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5198d1e4-2652-49b6-b95e-031659a18e00.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\62c711bf-37cc-438c-b65e-19c21e6eec14.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95f96c87-ef27-4518-b2aa-6f13d666db0a.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 5644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d24bf5aa-e15d-4b50-bef0-c352970fd2d4.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 5608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b533391-2064-4938-b0fd-c22e2017b79d.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 5488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\02e67b7c-7bd7-4b9b-b191-34ee10d47c3b.tmp, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 7192, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T15:33:16.573 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T15:46:38.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T16:01:43.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T16:10:25.203 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1496770, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T16:16:48.415 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T16:31:53.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T16:46:58.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T17:02:03.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T17:17:08.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T17:32:13.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T17:33:16.578 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49735, Count: 6608, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7695, Count: 58248, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.RH2HX3, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 5276, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping4736_2091255215\146.0.7680.180_chrome_installer_uncompressed.exe, EstimatedImpact: 13% 2026-04-11T17:33:16.578 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 21, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631b_3.MAI, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: setup.exe, Pid: 2812, TotalTime: 92, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Temp\source2812_730644884\Chrome-bin\chrome.exe, EstimatedImpact: 2% 2026-04-11T17:33:16.578 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be7f4032-686d-44d9-93aa-e5bc7a563ffd.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 172, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f55db9f8-16ad-4cc1-96d9-a9d7241d7ec7.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 992, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1799adb5-b429-4e21-863c-c5c97c4f7a2a.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: setup.exe, Pid: 7176, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 16% 2026-04-11T17:33:16.578 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 1% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95f96c87-ef27-4518-b2aa-6f13d666db0a.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b8a61c8-c2c2-4d67-ba97-14134b3a2e8e.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f668ad6d-5d95-4048-9ca0-8706734f384b.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab97ce2-b03a-42d2-a28b-954a10423ad7.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93b02e15-a3a2-4038-af19-4dab5220167e.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 6296, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\484f5ef5-cbd3-4063-be58-8f219114ee76.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2dfff77-5c7d-4e56-938d-5913fba98eed.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 3272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a41c71-1899-42fb-bfd3-8ca5ecfbf07e.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6bfa5bab-cec9-4bb5-93e3-1e7dc7d1fb6f.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\62c711bf-37cc-438c-b65e-19c21e6eec14.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5198d1e4-2652-49b6-b95e-031659a18e00.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2eb251d0-ddf4-4606-9e76-3c64d6251d0b.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 5644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d24bf5aa-e15d-4b50-bef0-c352970fd2d4.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 5608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b533391-2064-4938-b0fd-c22e2017b79d.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 5488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\02e67b7c-7bd7-4b9b-b191-34ee10d47c3b.tmp, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T17:33:16.578 ProcessImageName: updater.exe, Pid: 7192, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T17:43:05.863 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82634c_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1501902, FileId: 0x20f500000004c46d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T17:47:18.407 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T18:02:23.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T18:17:28.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T18:32:33.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T18:47:38.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T19:02:43.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T19:17:48.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T19:19:16.899 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82634f_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1507230, FileId: 0x508800000001ccad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T19:19:19.751 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82634f_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1507319, FileId: 0x509300000001ccad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T19:19:21.625 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82634f_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1507349, FileId: 0x509d00000001ccad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T19:32:53.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T19:33:16.584 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53484, Count: 6936, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8565, Count: 64719, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.RH2HX3, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 5276, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping4736_2091255215\146.0.7680.180_chrome_installer_uncompressed.exe, EstimatedImpact: 13% 2026-04-11T19:33:16.584 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 85, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631b_3.MAI, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: setup.exe, Pid: 2812, TotalTime: 92, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Temp\source2812_730644884\Chrome-bin\chrome.exe, EstimatedImpact: 2% 2026-04-11T19:33:16.584 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be7f4032-686d-44d9-93aa-e5bc7a563ffd.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 172, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f55db9f8-16ad-4cc1-96d9-a9d7241d7ec7.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 992, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1799adb5-b429-4e21-863c-c5c97c4f7a2a.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: setup.exe, Pid: 7176, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 16% 2026-04-11T19:33:16.584 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 1% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 5644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d24bf5aa-e15d-4b50-bef0-c352970fd2d4.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2dfff77-5c7d-4e56-938d-5913fba98eed.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 5488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\02e67b7c-7bd7-4b9b-b191-34ee10d47c3b.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\63890b6a-8696-4ac4-ab1f-95d307be401d.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b8a61c8-c2c2-4d67-ba97-14134b3a2e8e.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2eb251d0-ddf4-4606-9e76-3c64d6251d0b.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d21b689-7c4d-498d-a4c9-2b3b35da470b.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95f96c87-ef27-4518-b2aa-6f13d666db0a.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab97ce2-b03a-42d2-a28b-954a10423ad7.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 3272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a41c71-1899-42fb-bfd3-8ca5ecfbf07e.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93b02e15-a3a2-4038-af19-4dab5220167e.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\62c711bf-37cc-438c-b65e-19c21e6eec14.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6bfa5bab-cec9-4bb5-93e3-1e7dc7d1fb6f.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 6296, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\484f5ef5-cbd3-4063-be58-8f219114ee76.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5198d1e4-2652-49b6-b95e-031659a18e00.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f668ad6d-5d95-4048-9ca0-8706734f384b.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 5608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b533391-2064-4938-b0fd-c22e2017b79d.tmp, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T19:33:16.584 ProcessImageName: updater.exe, Pid: 7192, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T19:47:58.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T20:03:03.404 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T20:10:25.800 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1510238, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T20:14:30.159 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1510489, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T20:18:08.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T20:23:23.369 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826354_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1511013, FileId: 0xba0000000568dc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T20:23:24.858 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826354_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1511043, FileId: 0xc40000000568dc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T20:23:25.123 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826354_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1511073, FileId: 0xce0000000568dc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T20:33:13.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T20:48:18.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T21:03:23.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T21:10:35.253 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1513702, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-11T21:18:28.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T21:33:16.596 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53484, Count: 6937, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9465, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.RH2HX3, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 5276, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping4736_2091255215\146.0.7680.180_chrome_installer_uncompressed.exe, EstimatedImpact: 13% 2026-04-11T21:33:16.596 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 195, Count: 145, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631b_3.MAI, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: setup.exe, Pid: 2812, TotalTime: 92, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Temp\source2812_730644884\Chrome-bin\chrome.exe, EstimatedImpact: 2% 2026-04-11T21:33:16.596 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be7f4032-686d-44d9-93aa-e5bc7a563ffd.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 172, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f55db9f8-16ad-4cc1-96d9-a9d7241d7ec7.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 992, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1799adb5-b429-4e21-863c-c5c97c4f7a2a.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 5160, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ce2c375-324d-431e-b430-dd1ba03a9d4b.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 1% 2026-04-11T21:33:16.596 ProcessImageName: setup.exe, Pid: 7176, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 16% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\63890b6a-8696-4ac4-ab1f-95d307be401d.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b8a61c8-c2c2-4d67-ba97-14134b3a2e8e.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d21b689-7c4d-498d-a4c9-2b3b35da470b.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2eb251d0-ddf4-4606-9e76-3c64d6251d0b.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab97ce2-b03a-42d2-a28b-954a10423ad7.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 6988, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed18441a-4c7f-4aae-be40-ca02d6e18655.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 7944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93b02e15-a3a2-4038-af19-4dab5220167e.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 6296, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\484f5ef5-cbd3-4063-be58-8f219114ee76.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2dfff77-5c7d-4e56-938d-5913fba98eed.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 5608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b533391-2064-4938-b0fd-c22e2017b79d.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 5644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d24bf5aa-e15d-4b50-bef0-c352970fd2d4.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f668ad6d-5d95-4048-9ca0-8706734f384b.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 3272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a41c71-1899-42fb-bfd3-8ca5ecfbf07e.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 3168, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad203b69-afbd-4547-9abb-720844a8cbd9.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5198d1e4-2652-49b6-b95e-031659a18e00.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\62c711bf-37cc-438c-b65e-19c21e6eec14.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6bfa5bab-cec9-4bb5-93e3-1e7dc7d1fb6f.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 5488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\02e67b7c-7bd7-4b9b-b191-34ee10d47c3b.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95f96c87-ef27-4518-b2aa-6f13d666db0a.tmp, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T21:33:16.596 ProcessImageName: updater.exe, Pid: 7192, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-11T21:33:33.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T21:48:38.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T22:03:43.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T22:18:48.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T22:33:53.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T22:48:58.406 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T23:04:03.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T23:19:08.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T23:31:53.409 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-11T23:31:53.442 Job Notification: New process added to job (6872) 2026-04-11T23:31:53.442 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-11T23:31:53.442 Job Notification: New process added to job (3912) 2026-04-11T23:31:53.442 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:6872] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3912]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-11T23:31:53.457 Aggressive catchup quick scan threshold: 728975243181 / 25920000000000 2026-04-11T23:31:53.535 Job Notification: New process added to job (7064) 2026-04-11T23:31:53.535 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-11T23:31:53.535 Job Notification: New process added to job (6932) 2026-04-11T23:31:53.551 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:7064] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6932]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-11T23:31:54.067 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-11T23:31:54.129 [RTP] Duplicating the current plugin configuration object... 2026-04-11T23:31:54.129 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-11T23:31:54.129 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-11T23:31:54.129 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-11T23:31:54.129 [RTP] No config change detected. Not updating plugin configuration. 2026-04-11T23:31:54.129 [RTP] No config changes found. No configuration switch. 2026-04-11T23:31:54.129 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-11T23:31:54.473 Task(GetDeviceTicket -AccessKey 85E76B79-C38A-1D89-639F-1D62A5E0EFA5 ) launched as network service 2026-04-11T23:31:54.473 Job Notification: New process added to job (5468) 2026-04-11T23:31:54.551 Job Notification: Process exited from job (5468) 2026-04-11T23:31:55.723 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-11T23:31:55.723 [Cloud] Start of cloud request. Passive mode: 0 2026-04-11T23:31:55.723 [Cloud] Queued cloud request. 2026-04-11T23:31:55.723 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-11T23:31:55.723 [Cloud] Dequeued cloud request. 2026-04-11T23:31:55.723 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-11T23:31:55.739 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-11T23:31:55.739 [Cloud] Start of cloud request. Passive mode: 0 2026-04-11T23:31:55.739 [Cloud] Queued cloud request. 2026-04-11T23:31:55.739 [Cloud] Dequeued cloud request. 2026-04-11T23:31:55.739 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-11T23:31:55.963 [Cloud] End of cloud request. 2026-04-11T23:31:55.963 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-11T23:31:55.963 [Cloud] End of cloud request. 2026-04-11T23:31:56.245 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-11T23:32:07.738 Job Notification: Process exited from job (7784) 2026-04-11T23:32:38.266 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\570FA29F-1E76-4A89-8425-5C4DCFAC64A21f18.1dcca0b7ad3ef27 2026-04-11T23:32:38.313 Verifying engine and signature files (source: 0) ... 2026-04-11T23:32:38.313 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0E5A9182-6B30-4E41-ADCC-6B199C3FA867}\mpengine.dll] due to PPL. 2026-04-11T23:32:38.313 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0E5A9182-6B30-4E41-ADCC-6B199C3FA867}\mpasbase.vdm] (file in cache) 2026-04-11T23:32:38.313 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0E5A9182-6B30-4E41-ADCC-6B199C3FA867}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-11T23:32:38.313 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0E5A9182-6B30-4E41-ADCC-6B199C3FA867}\mpasdlta.vdm] 2026-04-11T23:32:38.313 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0E5A9182-6B30-4E41-ADCC-6B199C3FA867}\mpavbase.vdm] (file in cache) 2026-04-11T23:32:38.313 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0E5A9182-6B30-4E41-ADCC-6B199C3FA867}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-11T23:32:38.329 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0E5A9182-6B30-4E41-ADCC-6B199C3FA867}\mpavdlta.vdm] 2026-04-11T23:32:38.501 [Engine] IsHybridMode: 0 2026-04-11T23:32:38.501 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-11T23:32:38.532 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-4044B29D2A90F59BEA61CE50BE80C1732A40A19A.bin): 0x00000002 2026-04-11T23:32:38.532 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-4044B29D2A90F59BEA61CE50BE80C1732A40A19A.bin) 2026-04-11T23:32:38.532 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-11T23:32:38.532 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-11T23:32:38.532 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-11T23:32:38.532 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-11T23:32:47.629 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-11T23:32:47.629 [AutoExclusion] Applied roles from cache. 2026-04-11T23:32:47.629 [AutoExclusion] Started roles monitoring. 2026-04-11T23:32:47.644 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFCF90E8020, lRefCount: 5, hr=0 2026-04-11T23:32:47.644 [Engine] New active engine 00007FFD0E458020 replacing engine 00007FFCF90E8020. Number of active engines: 2 2026-04-11T23:32:47.644 EngineInit:Global ASOC is enabled 2026-04-11T23:32:47.644 EngineInit:ASOO is enabled for developer volumes 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-11T23:32:47.660 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-11T23:32:47.660 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-11T23:32:47.675 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-11T23:32:47.675 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-11T23:32:47.675 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-11T23:32:47.675 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-11T23:32:47.675 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-11T23:32:47.675 [Plugin] Initializing RTP plugin state... 2026-04-11T23:32:47.675 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-11T23:32:47.675 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎11‎-‎2026 01:33:16 Last Perf:‎04‎-‎11‎-‎2026 01:33:16 First RTP Scan:‎04‎-‎11‎-‎2026 01:33:16 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:413 Misses:2271 BM Queue:0,86,0 Proc:0,43,0 File:0,83,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1521626 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1792012980 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2804 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:321613 TotalHits:482293 InstanceCacheInserts:711416 InstanceCacheUpdates:0 InstanceCacheDeletes:123203 InstanceCacheHits:3066 InstanceCacheMisses:1059145 InstanceCacheOverflows:576955 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (306/290) Success: 290, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-11T23:32:47.675 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0E5A9182-6B30-4E41-ADCC-6B199C3FA867} 2026-04-11T23:32:47.675 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-11T23:32:47.675 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F7FCC20F-DFF8-4C9D-AC78-7851C606FEC7}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F7FCC20F-DFF8-4C9D-AC78-7851C606FEC7}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-11T23:32:47.675 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-11T23:32:47.675 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-11T23:32:47.675 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-11T23:32:47.675 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-11T23:32:47.675 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-11-2026 23:32:47 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-11-2026 23:32:47 2026-04-11T23:32:47.691 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-11T23:32:47.691 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-11T23:32:47.691 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-11T23:32:47.691 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-11T23:32:47.691 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-11T23:32:47.691 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-11T23:32:47.691 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-11T23:32:47.691 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-11T23:32:47.691 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-11T23:32:47.691 MdCoreSvc is supported in this platform and OS Signature updated on 04-11-2026 23:32:47 Product Version: 4.18.26020.6 Service Version: 4.18.26020.6 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.54.0 AV Signature Version: 1.449.54.0 ************************************************************ 2026-04-11T23:32:47.691 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-11T23:32:47.691 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\570FA29F-1E76-4A89-8425-5C4DCFAC64A21f18.1dcca0b7ad3ef27 Signature updated via MicrosoftUpdateServer on 04-11-2026 23:32:47 ************************************************************ 2026-04-11T23:32:47.754 Job Notification: Process exited from job (7064) 2026-04-11T23:32:47.754 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-11T23:32:47.754 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-04-11T23:32:47.754 Job Notification: Process exited from job (6932) 2026-04-11T23:32:47.769 Job Notification: Process exited from job (6872) 2026-04-11T23:32:47.769 Job Notification: Process exited from job (3912) 2026-04-11T23:32:47.972 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-11T23:32:47.972 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-11T23:32:47.972 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-11T23:32:47.972 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-11T23:32:47.972 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-11T23:32:47.972 [Engine] Engine 00007FFCF90E8020 no longer in use. Number of active engines: 1 2026-04-11T23:32:47.972 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-11T23:32:47.972 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-11T23:32:48.163 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-11T23:32:48.163 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-11T23:32:48.163 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-11T23:32:48.527 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53529, Count: 6940, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-11T23:32:48.527 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 10110, Count: 77643, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.RH2HX3, EstimatedImpact: 0% 2026-04-11T23:32:48.527 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 5276, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping4736_2091255215\146.0.7680.180_chrome_installer_uncompressed.exe, EstimatedImpact: 13% 2026-04-11T23:32:48.527 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 195, Count: 145, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82631b_3.MAI, EstimatedImpact: 0% 2026-04-11T23:32:48.527 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-11T23:32:48.527 ProcessImageName: setup.exe, Pid: 2812, TotalTime: 92, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Temp\source2812_730644884\Chrome-bin\chrome.exe, EstimatedImpact: 2% 2026-04-11T23:32:48.527 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-11T23:32:48.527 ProcessImageName: updater.exe, Pid: 5160, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ce2c375-324d-431e-b430-dd1ba03a9d4b.tmp, EstimatedImpact: 0% 2026-04-11T23:32:48.527 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be7f4032-686d-44d9-93aa-e5bc7a563ffd.tmp, EstimatedImpact: 0% 2026-04-11T23:32:48.527 ProcessImageName: updater.exe, Pid: 172, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f55db9f8-16ad-4cc1-96d9-a9d7241d7ec7.tmp, EstimatedImpact: 0% 2026-04-11T23:32:48.527 ProcessImageName: updater.exe, Pid: 992, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1799adb5-b429-4e21-863c-c5c97c4f7a2a.tmp, EstimatedImpact: 0% 2026-04-11T23:32:48.527 ProcessImageName: setup.exe, Pid: 7176, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 16% 2026-04-11T23:32:48.527 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 1% 2026-04-11T23:32:48.574 [Engine] RSIG_UNLOADENGINE, 00007FFCF90E8020, err=0x0 2026-04-11T23:32:48.590 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F7FCC20F-DFF8-4C9D-AC78-7851C606FEC7} removed 2026-04-11T23:32:48.754 Process scan (postsignatureupdatescan) started. 2026-04-11T23:32:55.269 Process scan (postsignatureupdatescan) completed. 2026-04-11T23:34:13.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-11T23:37:47.666 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-11T23:49:18.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T00:04:23.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T00:10:25.740 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1523750, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T00:10:25.756 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1523752, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T00:10:35.764 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1523765, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T00:10:35.764 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1523767, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T00:19:28.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T00:34:33.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T00:49:38.403 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T01:04:43.403 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T01:10:26.686 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1527101, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T01:10:26.701 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1527103, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T01:10:36.709 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1527116, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T01:10:36.709 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1527118, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T01:14:30.237 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1527334, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T01:14:30.237 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1527336, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T01:14:33.989 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1527357, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T01:14:34.005 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1527360, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T01:14:34.005 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1527362, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T01:14:44.002 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1527375, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T01:14:44.002 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1527376, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T01:14:44.017 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1527378, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T01:19:48.407 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T01:32:47.657 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 750, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.QU4PX3, EstimatedImpact: 0% 2026-04-12T01:32:47.657 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 542, Count: 62, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-04-12T01:32:47.657 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-12T01:32:47.657 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d5b235-0f7c-4173-995a-d9a96e2a8556.tmp, EstimatedImpact: 0% 2026-04-12T01:32:47.657 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea35aed7-4cc4-459e-a260-3addb959b0f4.tmp, EstimatedImpact: 0% 2026-04-12T01:34:53.402 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T01:49:58.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T02:05:03.407 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T02:10:26.431 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1530586, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T02:10:26.447 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1530588, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T02:10:36.445 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1530601, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T02:10:36.445 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1530603, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T02:10:36.665 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1530607, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T02:10:36.665 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1530609, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T02:20:08.406 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T02:35:13.401 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T02:50:18.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T03:05:23.415 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T03:10:25.946 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1534079, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T03:10:25.961 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1534081, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T03:10:35.952 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1534094, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T03:10:35.968 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1534096, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T03:10:35.968 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1534098, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T03:16:55.937 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:7B3E79BE-3F28-41CB-AAE4-D7A32BB126D1, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-12T03:16:55.937 Scheduled scan with Id 7B3E79BE-3F28-41CB-AAE4-D7A32BB126D1 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-12T03:16:55.937 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-12T03:16:55.937 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-12T03:16:55.937 [SFC] System file cache build is not needed (already completed) 2026-04-12T03:17:06.473 Engine:Triggered AR EMS scan 2026-04-12T03:17:06.473 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.488 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.519 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.535 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.566 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.598 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.613 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.644 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.660 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.676 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.707 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.723 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.738 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.769 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.785 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.801 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.816 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.894 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.910 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.926 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:06.957 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:07.004 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-12T03:17:07.035 Bm signature throttled:0x00002db31bed458f 2026-04-12T03:17:19.566 QuickScan:ScanID:7B3E79BE-3F28-41CB-AAE4-D7A32BB126D1: Quick scan finished with error 0 2026-04-12T03:17:19.566 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-12T03:17:20.096 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-12T03:17:20.096 [RTP] Duplicating the current plugin configuration object... 2026-04-12T03:17:20.096 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-12T03:17:20.096 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-12T03:17:20.096 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-12T03:17:20.096 [RTP] No config change detected. Not updating plugin configuration. 2026-04-12T03:17:20.096 [RTP] No config changes found. No configuration switch. 2026-04-12T03:17:20.096 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-12T03:20:28.401 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T03:32:47.672 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1350, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.QU4PX3, EstimatedImpact: 0% 2026-04-12T03:32:47.672 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 619, Count: 66, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-04-12T03:32:47.672 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-12T03:32:47.672 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86dde535-0f97-4b37-b3c9-03bb88d37475.tmp, EstimatedImpact: 0% 2026-04-12T03:32:47.672 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-12T03:32:47.672 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\760d2476-9572-4ce8-b099-5ef5e0077b42.tmp, EstimatedImpact: 0% 2026-04-12T03:32:47.672 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d5b235-0f7c-4173-995a-d9a96e2a8556.tmp, EstimatedImpact: 0% 2026-04-12T03:32:47.672 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea35aed7-4cc4-459e-a260-3addb959b0f4.tmp, EstimatedImpact: 0% 2026-04-12T03:35:33.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T03:50:38.404 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T04:05:43.404 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T04:10:25.233 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1537560, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:10:25.249 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1537562, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:10:35.249 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1537574, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:10:35.265 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1537577, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:20:48.403 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T04:35:53.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T04:50:58.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T04:58:20.899 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541414, FileId: 0x57f700000001ccad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:33.870 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541931, FileId: 0x20fa00000004c53e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:33.917 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541934, FileId: 0x20fb00000004c53e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:33.979 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541938, FileId: 0x20fc00000004c53e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:34.010 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541941, FileId: 0x20fd00000004c53e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:34.026 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541944, FileId: 0x20fe00000004c53e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:34.057 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541947, FileId: 0x20ff00000004c53e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:34.089 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541950, FileId: 0x210000000004c53e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:34.120 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541953, FileId: 0x210100000004c53e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:34.151 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541956, FileId: 0x210200000004c53e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:34.167 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541959, FileId: 0x210300000004c53e, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:34.198 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541962, FileId: 0x210400000004c53e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:34.795 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541966, FileId: 0x210500000004c53e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:35.357 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541969, FileId: 0x210600000004c53e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:35.864 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541981, FileId: 0x1020000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:35.895 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541984, FileId: 0x1030000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:35.926 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541987, FileId: 0x1040000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:35.942 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541990, FileId: 0x1050000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:35.957 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541993, FileId: 0x1060000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:35.973 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541996, FileId: 0x1070000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:35.989 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541999, FileId: 0x1080000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:36.020 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1542002, FileId: 0x1090000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:36.051 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1542005, FileId: 0x10a0000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:36.098 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1542008, FileId: 0x10b0000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:36.114 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1542011, FileId: 0x10c0000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:36.145 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1542014, FileId: 0x10d0000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:36.176 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1542017, FileId: 0x10e0000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:36.192 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1542020, FileId: 0x10f0000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:36.223 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1542023, FileId: 0x1100000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:36.629 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1542036, FileId: 0x1110000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T04:58:37.004 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1542045, FileId: 0x1120000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T05:06:03.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T05:10:25.400 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1542743, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T05:10:25.415 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1542745, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T05:10:35.414 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1542757, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T05:10:35.430 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1542759, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T05:10:35.430 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1542761, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T05:10:35.430 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1542763, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T05:21:08.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T05:26:20.966 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826372_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1543638, FileId: 0x588700000001ccad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T05:32:47.674 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49551, Count: 6692, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-12T05:32:47.674 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2325, Count: 19413, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.QU4PX3, EstimatedImpact: 0% 2026-04-12T05:32:47.674 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-12T05:32:47.674 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 71, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1.MAI, EstimatedImpact: 0% 2026-04-12T05:32:47.674 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86dde535-0f97-4b37-b3c9-03bb88d37475.tmp, EstimatedImpact: 0% 2026-04-12T05:32:47.674 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-12T05:32:47.674 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-12T05:32:47.674 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\138abff7-fca4-4aa5-80b5-e53f4e247e79.tmp, EstimatedImpact: 0% 2026-04-12T05:32:47.674 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\760d2476-9572-4ce8-b099-5ef5e0077b42.tmp, EstimatedImpact: 0% 2026-04-12T05:32:47.674 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d5b235-0f7c-4173-995a-d9a96e2a8556.tmp, EstimatedImpact: 0% 2026-04-12T05:32:47.674 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea35aed7-4cc4-459e-a260-3addb959b0f4.tmp, EstimatedImpact: 0% 2026-04-12T05:32:47.674 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a844e2e4-e847-4062-90ca-918f16cacdff.tmp, EstimatedImpact: 0% 2026-04-12T05:36:13.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T05:51:18.402 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T06:06:23.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T06:10:25.785 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1546095, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T06:10:25.801 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1546097, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T06:10:35.798 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1546110, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T06:10:35.814 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1546113, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T06:14:34.077 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1546336, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T06:14:34.077 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1546338, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T06:14:39.491 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1546348, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T06:14:39.507 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1546351, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T06:14:39.507 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1546353, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T06:14:49.506 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1546367, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T06:14:49.506 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1546368, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T06:14:49.522 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1546369, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T06:21:28.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T06:36:33.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T06:51:38.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T07:06:43.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T07:10:25.027 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1549445, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T07:10:25.043 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1549447, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T07:10:35.031 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1549460, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T07:10:35.031 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1549462, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T07:10:35.218 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1549466, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T07:10:35.218 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1549468, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T07:21:48.415 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T07:32:47.677 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49671, Count: 6711, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-12T07:32:47.677 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2985, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.QU4PX3, EstimatedImpact: 0% 2026-04-12T07:32:47.677 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-12T07:32:47.677 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 71, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1.MAI, EstimatedImpact: 0% 2026-04-12T07:32:47.677 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-12T07:32:47.677 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57a4edc7-8235-47c9-9fd7-f491a5d1aee6.tmp, EstimatedImpact: 0% 2026-04-12T07:32:47.677 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86dde535-0f97-4b37-b3c9-03bb88d37475.tmp, EstimatedImpact: 0% 2026-04-12T07:32:47.677 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-12T07:32:47.677 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\138abff7-fca4-4aa5-80b5-e53f4e247e79.tmp, EstimatedImpact: 0% 2026-04-12T07:32:47.677 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\760d2476-9572-4ce8-b099-5ef5e0077b42.tmp, EstimatedImpact: 0% 2026-04-12T07:32:47.677 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\815884a9-0dd1-4907-8616-e9cf607804c6.tmp, EstimatedImpact: 0% 2026-04-12T07:32:47.677 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea35aed7-4cc4-459e-a260-3addb959b0f4.tmp, EstimatedImpact: 0% 2026-04-12T07:32:47.677 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\066ec2be-ec1b-4a9e-af06-99b839d87e64.tmp, EstimatedImpact: 0% 2026-04-12T07:32:47.677 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a844e2e4-e847-4062-90ca-918f16cacdff.tmp, EstimatedImpact: 0% 2026-04-12T07:32:47.677 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d5b235-0f7c-4173-995a-d9a96e2a8556.tmp, EstimatedImpact: 0% 2026-04-12T07:36:53.404 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T07:51:58.400 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T08:07:03.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T08:10:25.684 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1552758, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T08:10:25.700 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1552760, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T08:10:35.697 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1552773, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T08:10:35.713 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1552776, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T08:22:08.403 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T08:34:22.894 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826391_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1554091, FileId: 0x3732000000008eac, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T08:34:23.550 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826391_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1554095, FileId: 0x3733000000008eac, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T08:37:13.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T08:52:18.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T09:07:23.407 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T09:10:25.603 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1556082, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T09:10:25.619 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1556084, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T09:10:35.607 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1556096, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T09:10:35.607 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1556098, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T09:10:35.623 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1556100, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T09:10:35.623 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1556102, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T09:22:28.400 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T09:32:47.681 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49686, Count: 6715, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3765, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.QU4PX3, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 75, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1.MAI, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57a4edc7-8235-47c9-9fd7-f491a5d1aee6.tmp, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86dde535-0f97-4b37-b3c9-03bb88d37475.tmp, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\066ec2be-ec1b-4a9e-af06-99b839d87e64.tmp, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\138abff7-fca4-4aa5-80b5-e53f4e247e79.tmp, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d5b235-0f7c-4173-995a-d9a96e2a8556.tmp, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea35aed7-4cc4-459e-a260-3addb959b0f4.tmp, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\760d2476-9572-4ce8-b099-5ef5e0077b42.tmp, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\700c93a9-987b-4ba9-a64d-f68868dd9e9c.tmp, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\815884a9-0dd1-4907-8616-e9cf607804c6.tmp, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a844e2e4-e847-4062-90ca-918f16cacdff.tmp, EstimatedImpact: 0% 2026-04-12T09:32:47.681 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T09:37:33.402 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T09:52:38.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T09:57:43.898 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263a0_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1558692, FileId: 0x12e400000004c45c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T10:07:43.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T10:22:48.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T10:37:53.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T10:52:58.400 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T11:08:03.400 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T11:14:39.589 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1562963, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T11:23:08.399 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T11:32:47.685 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53450, Count: 6936, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4530, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.QU4PX3, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 79, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1.MAI, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57a4edc7-8235-47c9-9fd7-f491a5d1aee6.tmp, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14174eb3-8bd6-4268-b803-eda76bd86674.tmp, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86dde535-0f97-4b37-b3c9-03bb88d37475.tmp, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea35aed7-4cc4-459e-a260-3addb959b0f4.tmp, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\138abff7-fca4-4aa5-80b5-e53f4e247e79.tmp, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980b47d6-e765-4c01-adda-79ccf3a70da2.tmp, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\700c93a9-987b-4ba9-a64d-f68868dd9e9c.tmp, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\760d2476-9572-4ce8-b099-5ef5e0077b42.tmp, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\066ec2be-ec1b-4a9e-af06-99b839d87e64.tmp, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d5b235-0f7c-4173-995a-d9a96e2a8556.tmp, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\815884a9-0dd1-4907-8616-e9cf607804c6.tmp, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 4956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06c31405-ca17-4ec2-a554-ce18ae1eb836.tmp, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a844e2e4-e847-4062-90ca-918f16cacdff.tmp, EstimatedImpact: 0% 2026-04-12T11:32:47.685 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T11:38:13.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T11:53:18.404 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T12:08:23.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T12:10:35.960 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1566084, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T12:23:28.403 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T12:38:33.403 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T12:53:38.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T13:02:13.791 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263c9_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1568963, FileId: 0x8eb000000044e45, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T13:02:15.450 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263c9_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1568993, FileId: 0x8f5000000044e45, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T13:02:15.716 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263c9_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1569023, FileId: 0x8ff000000044e45, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T13:08:43.401 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T13:10:34.720 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1569515, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T13:23:48.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T13:32:47.695 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54019, Count: 6957, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5355, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.QU4PX3, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 145, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1.MAI, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57a4edc7-8235-47c9-9fd7-f491a5d1aee6.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90f06208-867d-479c-9523-54562583cc73.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14174eb3-8bd6-4268-b803-eda76bd86674.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86dde535-0f97-4b37-b3c9-03bb88d37475.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea35aed7-4cc4-459e-a260-3addb959b0f4.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\138abff7-fca4-4aa5-80b5-e53f4e247e79.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 6808, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb9d9a2a-06bb-42f4-9ba8-dfd6e332dd48.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980b47d6-e765-4c01-adda-79ccf3a70da2.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\700c93a9-987b-4ba9-a64d-f68868dd9e9c.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\760d2476-9572-4ce8-b099-5ef5e0077b42.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\066ec2be-ec1b-4a9e-af06-99b839d87e64.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d5b235-0f7c-4173-995a-d9a96e2a8556.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\815884a9-0dd1-4907-8616-e9cf607804c6.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 4956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06c31405-ca17-4ec2-a554-ce18ae1eb836.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a844e2e4-e847-4062-90ca-918f16cacdff.tmp, EstimatedImpact: 0% 2026-04-12T13:32:47.695 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T13:37:46.509 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263ca_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1571041, FileId: 0xf1e00000004c522, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T13:37:48.029 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263ca_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1571071, FileId: 0xf2800000004c522, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T13:37:48.357 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263ca_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1571101, FileId: 0xf3200000004c522, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T13:38:53.404 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T13:53:58.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T14:09:03.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T14:24:08.400 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T14:39:13.401 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T14:54:18.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T15:09:23.400 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T15:10:35.783 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1576317, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T15:24:28.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T15:32:47.707 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54019, Count: 6958, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6150, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.QU4PX3, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 211, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1.MAI, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57a4edc7-8235-47c9-9fd7-f491a5d1aee6.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90f06208-867d-479c-9523-54562583cc73.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14174eb3-8bd6-4268-b803-eda76bd86674.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86dde535-0f97-4b37-b3c9-03bb88d37475.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d5b235-0f7c-4173-995a-d9a96e2a8556.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\138abff7-fca4-4aa5-80b5-e53f4e247e79.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea35aed7-4cc4-459e-a260-3addb959b0f4.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980b47d6-e765-4c01-adda-79ccf3a70da2.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 6808, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb9d9a2a-06bb-42f4-9ba8-dfd6e332dd48.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\760d2476-9572-4ce8-b099-5ef5e0077b42.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\700c93a9-987b-4ba9-a64d-f68868dd9e9c.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\066ec2be-ec1b-4a9e-af06-99b839d87e64.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\815884a9-0dd1-4907-8616-e9cf607804c6.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 4956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06c31405-ca17-4ec2-a554-ce18ae1eb836.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 3232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07b5e2ed-3007-40f0-bbef-f67c42f2b035.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a844e2e4-e847-4062-90ca-918f16cacdff.tmp, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T15:32:47.707 ProcessImageName: updater.exe, Pid: 4784, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T15:39:33.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T15:54:38.404 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T16:09:43.404 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T16:14:47.064 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1579885, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T16:24:48.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T16:39:53.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T16:54:58.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T17:10:03.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T17:10:35.482 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1582990, FileId: 0xbf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T17:25:08.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T17:32:47.709 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54019, Count: 6958, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6900, Count: 58257, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.QU4PX3, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 211, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1.MAI, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57a4edc7-8235-47c9-9fd7-f491a5d1aee6.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90f06208-867d-479c-9523-54562583cc73.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 4604, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d938d05-c84a-42ba-aa2f-3225f3db3312.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14174eb3-8bd6-4268-b803-eda76bd86674.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86dde535-0f97-4b37-b3c9-03bb88d37475.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\138abff7-fca4-4aa5-80b5-e53f4e247e79.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980b47d6-e765-4c01-adda-79ccf3a70da2.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 6808, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb9d9a2a-06bb-42f4-9ba8-dfd6e332dd48.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\066ec2be-ec1b-4a9e-af06-99b839d87e64.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 4956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06c31405-ca17-4ec2-a554-ce18ae1eb836.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\760d2476-9572-4ce8-b099-5ef5e0077b42.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\700c93a9-987b-4ba9-a64d-f68868dd9e9c.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea35aed7-4cc4-459e-a260-3addb959b0f4.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d5b235-0f7c-4173-995a-d9a96e2a8556.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\815884a9-0dd1-4907-8616-e9cf607804c6.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b8bf66c-7cd1-47bb-b40b-4eb8c10b49d9.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 3232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07b5e2ed-3007-40f0-bbef-f67c42f2b035.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a844e2e4-e847-4062-90ca-918f16cacdff.tmp, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T17:32:47.709 ProcessImageName: updater.exe, Pid: 4784, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T17:40:13.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T17:55:18.407 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T18:10:23.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T18:25:28.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T18:40:33.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T18:55:38.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T19:10:43.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T19:22:30.582 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263d3_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1590271, FileId: 0x3bd0000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T19:25:48.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T19:32:47.718 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54019, Count: 6960, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7665, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.QU4PX3, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 195, Count: 219, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1.MAI, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57a4edc7-8235-47c9-9fd7-f491a5d1aee6.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90f06208-867d-479c-9523-54562583cc73.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 4604, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d938d05-c84a-42ba-aa2f-3225f3db3312.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14174eb3-8bd6-4268-b803-eda76bd86674.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86dde535-0f97-4b37-b3c9-03bb88d37475.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a844e2e4-e847-4062-90ca-918f16cacdff.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea35aed7-4cc4-459e-a260-3addb959b0f4.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\138abff7-fca4-4aa5-80b5-e53f4e247e79.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\066ec2be-ec1b-4a9e-af06-99b839d87e64.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\815884a9-0dd1-4907-8616-e9cf607804c6.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980b47d6-e765-4c01-adda-79ccf3a70da2.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 6808, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb9d9a2a-06bb-42f4-9ba8-dfd6e332dd48.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf463f13-f20d-4e85-9eca-8489ada204ff.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 7636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3bd384a-b093-4dee-9036-524a346b19cc.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 4956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06c31405-ca17-4ec2-a554-ce18ae1eb836.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\700c93a9-987b-4ba9-a64d-f68868dd9e9c.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b8bf66c-7cd1-47bb-b40b-4eb8c10b49d9.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\760d2476-9572-4ce8-b099-5ef5e0077b42.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d5b235-0f7c-4173-995a-d9a96e2a8556.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 3232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07b5e2ed-3007-40f0-bbef-f67c42f2b035.tmp, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T19:32:47.718 ProcessImageName: updater.exe, Pid: 4784, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T19:40:53.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T19:55:58.404 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T20:11:03.404 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T20:26:08.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T20:34:33.251 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263d5_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1594268, FileId: 0x4970000000568b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T20:41:13.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T20:56:18.401 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T21:11:23.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T21:14:51.781 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1596525, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T21:26:28.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T21:32:47.720 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54064, Count: 6968, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8190, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.QU4PX3, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 210, Count: 225, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1.MAI, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57a4edc7-8235-47c9-9fd7-f491a5d1aee6.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 4604, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d938d05-c84a-42ba-aa2f-3225f3db3312.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90f06208-867d-479c-9523-54562583cc73.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14174eb3-8bd6-4268-b803-eda76bd86674.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86dde535-0f97-4b37-b3c9-03bb88d37475.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2cee97a5-748d-4f1b-95c0-72710e1968fa.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\138abff7-fca4-4aa5-80b5-e53f4e247e79.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 7636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3bd384a-b093-4dee-9036-524a346b19cc.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980b47d6-e765-4c01-adda-79ccf3a70da2.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea35aed7-4cc4-459e-a260-3addb959b0f4.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 6808, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb9d9a2a-06bb-42f4-9ba8-dfd6e332dd48.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf463f13-f20d-4e85-9eca-8489ada204ff.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 7232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\807ccf25-e7a7-4519-952c-9eb1d1839856.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d5b235-0f7c-4173-995a-d9a96e2a8556.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\815884a9-0dd1-4907-8616-e9cf607804c6.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 4956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06c31405-ca17-4ec2-a554-ce18ae1eb836.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b8bf66c-7cd1-47bb-b40b-4eb8c10b49d9.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 3232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07b5e2ed-3007-40f0-bbef-f67c42f2b035.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 2812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9567dbcd-f954-4f8e-b5aa-683064a229ba.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\066ec2be-ec1b-4a9e-af06-99b839d87e64.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a844e2e4-e847-4062-90ca-918f16cacdff.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\700c93a9-987b-4ba9-a64d-f68868dd9e9c.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\760d2476-9572-4ce8-b099-5ef5e0077b42.tmp, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T21:32:47.720 ProcessImageName: updater.exe, Pid: 4784, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T21:41:33.397 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T21:56:38.406 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T22:10:36.276 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1599625, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-12T22:11:43.401 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T22:26:48.406 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T22:41:53.400 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T22:56:58.400 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T23:12:03.400 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T23:27:08.407 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T23:31:53.398 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-12T23:31:53.414 Job Notification: New process added to job (5656) 2026-04-12T23:31:53.429 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-12T23:31:53.429 Aggressive catchup quick scan threshold: 728974941395 / 25920000000000 2026-04-12T23:31:53.429 Job Notification: New process added to job (6620) 2026-04-12T23:31:53.461 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:5656] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6620]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-12T23:31:53.554 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-12T23:31:53.554 Job Notification: New process added to job (3784) 2026-04-12T23:31:53.570 Job Notification: New process added to job (3272) 2026-04-12T23:31:53.586 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:3784] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3272]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-12T23:31:53.929 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-12T23:31:53.961 [RTP] Duplicating the current plugin configuration object... 2026-04-12T23:31:53.961 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-12T23:31:53.961 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-12T23:31:53.961 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-12T23:31:53.961 [RTP] No config change detected. Not updating plugin configuration. 2026-04-12T23:31:53.961 [RTP] No config changes found. No configuration switch. 2026-04-12T23:31:53.961 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-12T23:31:54.461 Job Notification: New process added to job (8060) 2026-04-12T23:31:54.461 Task(GetDeviceTicket -AccessKey C314831F-3531-9042-9655-E853870B6EBF ) launched as network service 2026-04-12T23:31:54.523 Job Notification: Process exited from job (8060) 2026-04-12T23:31:55.651 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-12T23:31:55.651 [Cloud] Start of cloud request. Passive mode: 0 2026-04-12T23:31:55.651 [Cloud] Queued cloud request. 2026-04-12T23:31:55.651 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-12T23:31:55.651 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-12T23:31:55.651 [Cloud] Start of cloud request. Passive mode: 0 2026-04-12T23:31:55.651 [Cloud] Queued cloud request. 2026-04-12T23:31:55.682 Job Notification: New process added to job (6796) 2026-04-12T23:31:55.682 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 64A16225-ED94-5025-54EA-F6E34F0176B2) launched 2026-04-12T23:31:55.682 Job Notification: New process added to job (4004) 2026-04-12T23:31:55.698 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:6796] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4004]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-12T23:31:55.698 Job Notification: New process added to job (3856) 2026-04-12T23:31:55.714 Job Notification: Process exited from job (6796) 2026-04-12T23:31:55.714 Job Notification: Process exited from job (4004) 2026-04-12T23:31:55.729 [Cloud] Dequeued cloud request. 2026-04-12T23:31:55.729 [Cloud] Dequeued cloud request. 2026-04-12T23:31:55.729 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-12T23:31:55.729 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-12T23:31:56.034 [Cloud] End of cloud request. 2026-04-12T23:31:56.065 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-12T23:31:56.065 [Cloud] End of cloud request. 2026-04-12T23:31:56.159 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-12T23:32:47.067 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\166A1CEB-A2C5-4570-8F52-50CEB613DF8911dc.1dccad4aa759a65 2026-04-12T23:32:47.114 Verifying engine and signature files (source: 0) ... 2026-04-12T23:32:47.114 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E}\mpengine.dll] due to PPL. 2026-04-12T23:32:47.114 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E}\mpasbase.vdm] (file in cache) 2026-04-12T23:32:47.114 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-12T23:32:47.114 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E}\mpasdlta.vdm] 2026-04-12T23:32:47.114 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E}\mpavbase.vdm] (file in cache) 2026-04-12T23:32:47.114 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-12T23:32:47.130 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E}\mpavdlta.vdm] 2026-04-12T23:32:47.317 [Engine] IsHybridMode: 0 2026-04-12T23:32:47.317 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-12T23:32:47.364 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-4E6FF8F2EFB815092FE04A55C86C22E6A8FACBAA.bin): 0x00000002 2026-04-12T23:32:47.364 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-4E6FF8F2EFB815092FE04A55C86C22E6A8FACBAA.bin) 2026-04-12T23:32:47.364 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-12T23:32:47.364 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-12T23:32:47.364 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-12T23:32:47.364 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-04-12T23:32:47.724 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54064, Count: 6969, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8940, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.QU4PX3, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 240, Count: 229, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1.MAI, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57a4edc7-8235-47c9-9fd7-f491a5d1aee6.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90f06208-867d-479c-9523-54562583cc73.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 4604, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d938d05-c84a-42ba-aa2f-3225f3db3312.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14174eb3-8bd6-4268-b803-eda76bd86674.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 1952, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0848268-787a-46eb-afe6-e9f88aa8ccf9.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86dde535-0f97-4b37-b3c9-03bb88d37475.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d5b235-0f7c-4173-995a-d9a96e2a8556.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 7232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\807ccf25-e7a7-4519-952c-9eb1d1839856.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2cee97a5-748d-4f1b-95c0-72710e1968fa.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\138abff7-fca4-4aa5-80b5-e53f4e247e79.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\066ec2be-ec1b-4a9e-af06-99b839d87e64.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 7636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3bd384a-b093-4dee-9036-524a346b19cc.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980b47d6-e765-4c01-adda-79ccf3a70da2.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea35aed7-4cc4-459e-a260-3addb959b0f4.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 2812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9567dbcd-f954-4f8e-b5aa-683064a229ba.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\815884a9-0dd1-4907-8616-e9cf607804c6.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b20f5435-1ed4-4b02-8773-add688a8e000.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 4956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06c31405-ca17-4ec2-a554-ce18ae1eb836.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b8bf66c-7cd1-47bb-b40b-4eb8c10b49d9.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 3232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07b5e2ed-3007-40f0-bbef-f67c42f2b035.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 6808, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb9d9a2a-06bb-42f4-9ba8-dfd6e332dd48.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a844e2e4-e847-4062-90ca-918f16cacdff.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\760d2476-9572-4ce8-b099-5ef5e0077b42.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf463f13-f20d-4e85-9eca-8489ada204ff.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\700c93a9-987b-4ba9-a64d-f68868dd9e9c.tmp, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-12T23:32:47.724 ProcessImageName: updater.exe, Pid: 4784, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-12T23:32:56.661 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-12T23:32:56.677 [AutoExclusion] Applied roles from cache. 2026-04-12T23:32:56.677 [AutoExclusion] Started roles monitoring. 2026-04-12T23:32:56.677 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0E458020, lRefCount: 5, hr=0 2026-04-12T23:32:56.677 [Engine] New active engine 00007FFD0D2F8020 replacing engine 00007FFD0E458020. Number of active engines: 2 2026-04-12T23:32:56.677 EngineInit:Global ASOC is enabled 2026-04-12T23:32:56.677 EngineInit:ASOO is enabled for developer volumes 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-12T23:32:56.693 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-12T23:32:56.708 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-12T23:32:56.708 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-12T23:32:56.708 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-12T23:32:56.708 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-12T23:32:56.708 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-12T23:32:56.724 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-12T23:32:56.724 [Plugin] Initializing RTP plugin state... 2026-04-12T23:32:56.724 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-12T23:32:56.724 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎12‎-‎2026 01:32:47 Last Perf:‎04‎-‎12‎-‎2026 01:32:47 First RTP Scan:‎04‎-‎12‎-‎2026 01:32:48 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:391 Misses:2317 BM Queue:0,110,0 Proc:0,41,0 File:0,93,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1604243 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1882359736 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2824 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:325562 TotalHits:506939 InstanceCacheInserts:755074 InstanceCacheUpdates:0 InstanceCacheDeletes:131395 InstanceCacheHits:3130 InstanceCacheMisses:1104267 InstanceCacheOverflows:612357 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:0ms (274/276) Success: 276, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-12T23:32:56.724 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E} 2026-04-12T23:32:56.724 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0E5A9182-6B30-4E41-ADCC-6B199C3FA867}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0E5A9182-6B30-4E41-ADCC-6B199C3FA867}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-12T23:32:56.724 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-12T23:32:56.724 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-12T23:32:56.724 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-12T23:32:56.724 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-12T23:32:56.724 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-12T23:32:56.724 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-12-2026 23:32:56 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-12-2026 23:32:56 2026-04-12T23:32:56.724 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-12T23:32:56.724 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-12T23:32:56.724 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-12T23:32:56.724 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-12T23:32:56.724 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-12T23:32:56.724 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-12T23:32:56.724 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-12T23:32:56.724 MdCoreSvc is supported in this platform and OS 2026-04-12T23:32:56.724 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-12T23:32:56.724 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 04-12-2026 23:32:56 Product Version: 4.18.26020.6 Service Version: 4.18.26020.6 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.69.0 AV Signature Version: 1.449.69.0 ************************************************************ 2026-04-12T23:32:56.724 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-12T23:32:56.724 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\166A1CEB-A2C5-4570-8F52-50CEB613DF8911dc.1dccad4aa759a65 2026-04-12T23:32:56.786 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-12T23:32:56.786 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 04-12-2026 23:32:56 ************************************************************ 2026-04-12T23:32:56.802 Job Notification: Process exited from job (3784) 2026-04-12T23:32:56.802 Job Notification: Process exited from job (3272) 2026-04-12T23:32:56.911 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-12T23:32:56.911 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-12T23:32:56.911 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-12T23:32:56.911 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-12T23:32:56.911 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-12T23:32:56.927 [Engine] Engine 00007FFD0E458020 no longer in use. Number of active engines: 1 2026-04-12T23:32:56.927 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-12T23:32:56.927 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-12T23:32:57.208 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-12T23:32:57.208 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-12T23:32:57.208 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-12T23:32:57.304 Job Notification: Process exited from job (5656) 2026-04-12T23:32:57.304 Job Notification: Process exited from job (6620) 2026-04-12T23:32:57.790 Process scan (postsignatureupdatescan) started. 2026-04-12T23:32:57.868 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54064, Count: 6969, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-12T23:32:57.868 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8940, Count: 77679, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.QU4PX3, EstimatedImpact: 0% 2026-04-12T23:32:57.868 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 240, Count: 229, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826371_1.MAI, EstimatedImpact: 0% 2026-04-12T23:32:57.868 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-12T23:32:57.868 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-12T23:32:57.868 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57a4edc7-8235-47c9-9fd7-f491a5d1aee6.tmp, EstimatedImpact: 0% 2026-04-12T23:32:57.868 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90f06208-867d-479c-9523-54562583cc73.tmp, EstimatedImpact: 0% 2026-04-12T23:32:57.868 ProcessImageName: updater.exe, Pid: 4604, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d938d05-c84a-42ba-aa2f-3225f3db3312.tmp, EstimatedImpact: 0% 2026-04-12T23:32:57.868 ProcessImageName: updater.exe, Pid: 6520, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14174eb3-8bd6-4268-b803-eda76bd86674.tmp, EstimatedImpact: 0% 2026-04-12T23:32:57.868 ProcessImageName: updater.exe, Pid: 1952, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0848268-787a-46eb-afe6-e9f88aa8ccf9.tmp, EstimatedImpact: 0% 2026-04-12T23:32:57.868 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86dde535-0f97-4b37-b3c9-03bb88d37475.tmp, EstimatedImpact: 0% 2026-04-12T23:32:57.868 ProcessImageName: updater.exe, Pid: 7036, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-12T23:32:57.868 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\82d5b235-0f7c-4173-995a-d9a96e2a8556.tmp, EstimatedImpact: 0% 2026-04-12T23:32:57.915 [Engine] RSIG_UNLOADENGINE, 00007FFD0E458020, err=0x0 2026-04-12T23:32:57.931 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0E5A9182-6B30-4E41-ADCC-6B199C3FA867} removed 2026-04-12T23:33:03.618 Process scan (postsignatureupdatescan) completed. 2026-04-12T23:37:56.702 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-12T23:42:13.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-12T23:57:18.397 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T00:10:25.244 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1606412, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T00:10:25.259 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1606414, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T00:10:35.254 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1606427, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T00:10:35.254 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1606428, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T00:10:35.269 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1606430, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T00:12:23.399 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T00:27:28.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T00:42:33.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T00:57:38.397 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T01:10:26.201 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1609730, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T01:10:26.216 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1609732, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T01:10:36.209 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1609745, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T01:10:36.209 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1609747, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T01:12:43.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T01:27:48.406 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T01:32:56.688 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 960, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.RV3CX3, EstimatedImpact: 0% 2026-04-13T01:32:56.688 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 468, Count: 56, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-04-13T01:32:56.688 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890a7be7-afaa-47a0-b3f3-cb6799acd5a9.tmp, EstimatedImpact: 0% 2026-04-13T01:32:56.688 ProcessImageName: updater.exe, Pid: 2148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0dee35f2-468a-4666-987b-e3eb757b6c67.tmp, EstimatedImpact: 0% 2026-04-13T01:42:53.404 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T01:57:58.401 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T02:10:25.617 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1613318, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:10:25.617 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1613320, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:10:35.610 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1613333, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:10:35.625 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1613335, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:10:35.625 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1613337, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:13:03.396 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T02:14:51.864 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1613579, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:14:51.879 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1613581, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:14:54.947 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1613591, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:14:54.963 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1613594, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:14:54.963 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1613596, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:14:54.963 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1613598, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:15:04.952 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1613612, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:15:04.968 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1613615, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:28:08.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T02:43:13.403 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T02:51:17.781 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e7_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1616803, FileId: 0x2d77000000008530, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:51:29.610 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e8_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1617261, FileId: 0x560000000568e7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:51:29.625 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e7_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1617263, FileId: 0x352900000004c495, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T02:58:18.400 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T03:10:27.001 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1618381, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T03:10:27.016 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1618383, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T03:10:37.013 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1618396, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T03:10:37.013 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1618398, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T03:10:37.185 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1618402, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T03:10:37.185 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1618404, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T03:13:23.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T03:16:55.940 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:731B5565-417E-456D-8432-88745D559625, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-13T03:16:55.940 Scheduled scan with Id 731B5565-417E-456D-8432-88745D559625 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-13T03:16:55.940 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-13T03:16:55.940 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-13T03:16:55.940 [SFC] System file cache build is not needed (already completed) 2026-04-13T03:17:05.584 Engine:Triggered AR EMS scan 2026-04-13T03:17:05.584 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.600 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.631 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.646 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.693 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.709 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.725 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.740 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.771 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.787 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.818 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.834 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.850 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.865 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.881 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.896 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.928 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:05.990 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:06.006 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:06.021 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:06.053 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:06.100 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-13T03:17:06.131 Bm signature throttled:0x00002db31bed458f 2026-04-13T03:17:18.271 QuickScan:ScanID:731B5565-417E-456D-8432-88745D559625: Quick scan finished with error 0 2026-04-13T03:17:18.287 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-13T03:17:18.800 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-13T03:17:18.800 [RTP] Duplicating the current plugin configuration object... 2026-04-13T03:17:18.800 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-13T03:17:18.800 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-13T03:17:18.800 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-13T03:17:18.800 [RTP] No config change detected. Not updating plugin configuration. 2026-04-13T03:17:18.800 [RTP] No config changes found. No configuration switch. 2026-04-13T03:17:18.800 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-13T03:28:28.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T03:30:29.910 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e9_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1619649, FileId: 0x843f00000004c4a1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T03:30:30.520 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e9_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1619653, FileId: 0x844000000004c4a1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T03:32:56.688 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49204, Count: 6508, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-04-13T03:32:56.688 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1740, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.RV3CX3, EstimatedImpact: 0% 2026-04-13T03:32:56.688 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-13T03:32:56.688 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e7_1.MAI, EstimatedImpact: 0% 2026-04-13T03:32:56.688 ProcessImageName: updater.exe, Pid: 7088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\734bdf4c-4919-4a56-97e1-3dc3e74dd612.tmp, EstimatedImpact: 0% 2026-04-13T03:32:56.688 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890a7be7-afaa-47a0-b3f3-cb6799acd5a9.tmp, EstimatedImpact: 0% 2026-04-13T03:32:56.688 ProcessImageName: updater.exe, Pid: 6668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0dcbce0-390f-4494-ae7d-ac15b31b182a.tmp, EstimatedImpact: 0% 2026-04-13T03:32:56.688 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8cfd2cb-b34d-42c8-8137-194019e61029.tmp, EstimatedImpact: 0% 2026-04-13T03:32:56.688 ProcessImageName: updater.exe, Pid: 2148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0dee35f2-468a-4666-987b-e3eb757b6c67.tmp, EstimatedImpact: 0% 2026-04-13T03:43:33.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T03:58:38.399 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T04:10:27.032 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1621879, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T04:10:27.048 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1621881, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T04:10:37.035 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1621894, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T04:10:37.051 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1621896, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T04:10:37.051 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1621898, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T04:10:37.051 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1621900, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T04:13:43.401 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T04:28:48.407 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T04:43:53.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T04:58:58.407 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T05:10:24.880 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1625200, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T05:10:24.880 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1625202, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T05:10:34.900 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1625215, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T05:10:34.900 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1625218, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T05:14:03.397 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T05:29:08.397 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T05:32:56.697 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49234, Count: 6510, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-04-13T05:32:56.697 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2490, Count: 19422, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.RV3CX3, EstimatedImpact: 0% 2026-04-13T05:32:56.697 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-13T05:32:56.697 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e7_1.MAI, EstimatedImpact: 0% 2026-04-13T05:32:56.697 ProcessImageName: updater.exe, Pid: 7088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\734bdf4c-4919-4a56-97e1-3dc3e74dd612.tmp, EstimatedImpact: 0% 2026-04-13T05:32:56.697 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-13T05:32:56.697 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890a7be7-afaa-47a0-b3f3-cb6799acd5a9.tmp, EstimatedImpact: 0% 2026-04-13T05:32:56.697 ProcessImageName: updater.exe, Pid: 6668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0dcbce0-390f-4494-ae7d-ac15b31b182a.tmp, EstimatedImpact: 0% 2026-04-13T05:32:56.697 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d512880-0283-4427-9a6d-37680ceacb8b.tmp, EstimatedImpact: 0% 2026-04-13T05:32:56.697 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8cfd2cb-b34d-42c8-8137-194019e61029.tmp, EstimatedImpact: 0% 2026-04-13T05:32:56.697 ProcessImageName: updater.exe, Pid: 3560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f473dafa-57b1-4a93-a9ad-9e0365e31bcb.tmp, EstimatedImpact: 0% 2026-04-13T05:32:56.697 ProcessImageName: updater.exe, Pid: 2148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0dee35f2-468a-4666-987b-e3eb757b6c67.tmp, EstimatedImpact: 0% 2026-04-13T05:44:13.407 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T05:59:18.399 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T06:07:17.600 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263f4_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1628363, FileId: 0x85e300000004c4a1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T06:07:18.272 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263f4_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1628367, FileId: 0x85e400000004c4a1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T06:10:25.684 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1628540, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T06:10:25.699 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1628542, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T06:10:35.695 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1628555, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T06:10:35.695 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1628556, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T06:10:35.711 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1628558, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T06:14:23.394 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T06:29:28.406 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T06:44:33.395 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T06:59:38.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T07:10:27.327 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1631856, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T07:10:27.343 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1631858, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T07:10:37.331 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1631871, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T07:10:37.346 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1631874, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T07:10:37.346 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1631875, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T07:10:37.346 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1631877, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T07:14:43.401 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T07:14:55.059 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632119, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T07:14:55.090 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632121, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T07:14:59.328 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632131, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T07:14:59.343 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632135, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T07:15:09.346 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632149, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T07:15:09.346 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632150, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T07:15:09.361 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632153, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T07:29:48.406 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T07:32:56.702 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49947, Count: 6560, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-04-13T07:32:56.702 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3270, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.RV3CX3, EstimatedImpact: 0% 2026-04-13T07:32:56.702 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-13T07:32:56.702 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e7_1.MAI, EstimatedImpact: 0% 2026-04-13T07:32:56.702 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-13T07:32:56.702 ProcessImageName: updater.exe, Pid: 7088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\734bdf4c-4919-4a56-97e1-3dc3e74dd612.tmp, EstimatedImpact: 0% 2026-04-13T07:32:56.702 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890a7be7-afaa-47a0-b3f3-cb6799acd5a9.tmp, EstimatedImpact: 0% 2026-04-13T07:32:56.702 ProcessImageName: updater.exe, Pid: 8116, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ffceb4f-1bb9-4d02-8196-22e2bb8cd1bd.tmp, EstimatedImpact: 0% 2026-04-13T07:32:56.702 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25a5b500-5c2a-43d2-83cf-0ac11d79b492.tmp, EstimatedImpact: 0% 2026-04-13T07:32:56.702 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d512880-0283-4427-9a6d-37680ceacb8b.tmp, EstimatedImpact: 0% 2026-04-13T07:32:56.702 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8cfd2cb-b34d-42c8-8137-194019e61029.tmp, EstimatedImpact: 0% 2026-04-13T07:32:56.702 ProcessImageName: updater.exe, Pid: 6668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0dcbce0-390f-4494-ae7d-ac15b31b182a.tmp, EstimatedImpact: 0% 2026-04-13T07:32:56.702 ProcessImageName: updater.exe, Pid: 3560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f473dafa-57b1-4a93-a9ad-9e0365e31bcb.tmp, EstimatedImpact: 0% 2026-04-13T07:32:56.702 ProcessImageName: updater.exe, Pid: 2148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0dee35f2-468a-4666-987b-e3eb757b6c67.tmp, EstimatedImpact: 0% 2026-04-13T07:32:56.702 ProcessImageName: updater.exe, Pid: 308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c66c2c6d-d0e6-4c78-9195-8d385705a6ef.tmp, EstimatedImpact: 0% 2026-04-13T07:44:53.403 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T07:59:58.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T08:10:26.312 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1635205, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T08:10:26.328 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1635207, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T08:10:36.326 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1635220, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T08:10:36.326 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1635222, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T08:10:36.498 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1635226, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T08:10:36.513 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1635228, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T08:15:03.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T08:30:08.396 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T08:45:13.407 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T08:58:35.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T09:10:25.926 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1638611, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T09:10:25.941 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1638613, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T09:10:35.935 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1638626, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T09:10:35.935 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1638628, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T09:13:40.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T09:28:45.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T09:31:13.786 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50007, Count: 6567, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4065, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.RV3CX3, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e7_1.MAI, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e607f50c-26f0-47a8-b8c4-cb3a574f6b5e.tmp, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: updater.exe, Pid: 7088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\734bdf4c-4919-4a56-97e1-3dc3e74dd612.tmp, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890a7be7-afaa-47a0-b3f3-cb6799acd5a9.tmp, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: updater.exe, Pid: 8116, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ffceb4f-1bb9-4d02-8196-22e2bb8cd1bd.tmp, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d512880-0283-4427-9a6d-37680ceacb8b.tmp, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4429c76c-0be9-4602-98eb-0f48e9abefcb.tmp, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: updater.exe, Pid: 308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c66c2c6d-d0e6-4c78-9195-8d385705a6ef.tmp, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: updater.exe, Pid: 6668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0dcbce0-390f-4494-ae7d-ac15b31b182a.tmp, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25a5b500-5c2a-43d2-83cf-0ac11d79b492.tmp, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8cfd2cb-b34d-42c8-8137-194019e61029.tmp, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: updater.exe, Pid: 3560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f473dafa-57b1-4a93-a9ad-9e0365e31bcb.tmp, EstimatedImpact: 0% 2026-04-13T09:31:13.786 ProcessImageName: updater.exe, Pid: 2148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0dee35f2-468a-4666-987b-e3eb757b6c67.tmp, EstimatedImpact: 0% 2026-04-13T09:43:50.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T09:58:55.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T10:00:39.797 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826405_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1641385, FileId: 0x3136000000008530, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T10:00:40.406 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_826405_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1641389, FileId: 0x3137000000008530, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T10:10:26.328 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1641940, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T10:10:26.344 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1641942, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T10:10:36.338 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1641955, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T10:10:36.353 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1641957, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T10:14:00.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T10:29:05.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T10:44:10.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T10:49:22.534 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82640a_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1644088, FileId: 0x1740000000568ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T10:49:23.096 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82640a_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1644092, FileId: 0x1750000000568ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T10:59:15.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T11:10:25.543 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1645254, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T11:10:25.559 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1645256, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T11:10:35.558 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1645269, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T11:14:20.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T11:29:25.471 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T11:31:13.790 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50112, Count: 6584, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4695, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.RV3CX3, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e7_1.MAI, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e607f50c-26f0-47a8-b8c4-cb3a574f6b5e.tmp, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: updater.exe, Pid: 7088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\734bdf4c-4919-4a56-97e1-3dc3e74dd612.tmp, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890a7be7-afaa-47a0-b3f3-cb6799acd5a9.tmp, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: updater.exe, Pid: 8116, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ffceb4f-1bb9-4d02-8196-22e2bb8cd1bd.tmp, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58a6e218-bef8-4768-b35c-5691fadb601d.tmp, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4429c76c-0be9-4602-98eb-0f48e9abefcb.tmp, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: updater.exe, Pid: 308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c66c2c6d-d0e6-4c78-9195-8d385705a6ef.tmp, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: updater.exe, Pid: 6668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0dcbce0-390f-4494-ae7d-ac15b31b182a.tmp, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25a5b500-5c2a-43d2-83cf-0ac11d79b492.tmp, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d512880-0283-4427-9a6d-37680ceacb8b.tmp, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8cfd2cb-b34d-42c8-8137-194019e61029.tmp, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: updater.exe, Pid: 3560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f473dafa-57b1-4a93-a9ad-9e0365e31bcb.tmp, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e8b4d3-b9e1-4cab-a03d-dd84c6244cb9.tmp, EstimatedImpact: 0% 2026-04-13T11:31:13.790 ProcessImageName: updater.exe, Pid: 2148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0dee35f2-468a-4666-987b-e3eb757b6c67.tmp, EstimatedImpact: 0% 2026-04-13T11:44:30.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T11:59:35.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T12:10:25.215 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1648610, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T12:10:25.230 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1648612, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T12:10:35.220 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1648625, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T12:10:35.235 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1648628, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T12:13:16.517 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1648777, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T12:13:16.517 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1648780, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T12:13:20.748 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1648789, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T12:13:20.763 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1648792, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T12:13:20.763 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1648794, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T12:13:20.763 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1648796, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T12:13:30.762 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1648810, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T12:13:30.778 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1648813, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T12:14:40.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T12:29:45.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T12:44:50.476 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T12:59:55.480 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T13:10:25.006 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1651956, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T13:10:25.022 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1651958, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T13:10:35.018 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1651971, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T13:10:35.018 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1651973, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T13:15:00.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T13:30:05.480 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T13:31:13.801 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50142, Count: 6587, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5565, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.RV3CX3, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e7_1.MAI, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e607f50c-26f0-47a8-b8c4-cb3a574f6b5e.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fda1f284-428e-4b5c-9a5f-a584640e1ee0.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 7088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\734bdf4c-4919-4a56-97e1-3dc3e74dd612.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890a7be7-afaa-47a0-b3f3-cb6799acd5a9.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 8116, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ffceb4f-1bb9-4d02-8196-22e2bb8cd1bd.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 2148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0dee35f2-468a-4666-987b-e3eb757b6c67.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c66c2c6d-d0e6-4c78-9195-8d385705a6ef.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25a5b500-5c2a-43d2-83cf-0ac11d79b492.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d512880-0283-4427-9a6d-37680ceacb8b.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4429c76c-0be9-4602-98eb-0f48e9abefcb.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 3560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f473dafa-57b1-4a93-a9ad-9e0365e31bcb.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e415e89-23e0-4ac9-8329-8228dadba667.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58a6e218-bef8-4768-b35c-5691fadb601d.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 6668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0dcbce0-390f-4494-ae7d-ac15b31b182a.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e8b4d3-b9e1-4cab-a03d-dd84c6244cb9.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8cfd2cb-b34d-42c8-8137-194019e61029.tmp, EstimatedImpact: 0% 2026-04-13T13:31:13.801 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ef41eb2-c170-489e-916a-f492bc5811e5.tmp, EstimatedImpact: 0% 2026-04-13T13:45:10.475 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T14:00:15.475 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T14:15:20.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T14:30:25.473 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T14:45:30.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T15:00:35.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T15:10:35.620 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1658625, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T15:15:40.473 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T15:30:45.473 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T15:31:13.810 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50188, Count: 6589, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6495, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.RV3CX3, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e7_1.MAI, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e607f50c-26f0-47a8-b8c4-cb3a574f6b5e.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 7088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\734bdf4c-4919-4a56-97e1-3dc3e74dd612.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fda1f284-428e-4b5c-9a5f-a584640e1ee0.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890a7be7-afaa-47a0-b3f3-cb6799acd5a9.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 8116, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ffceb4f-1bb9-4d02-8196-22e2bb8cd1bd.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25a5b500-5c2a-43d2-83cf-0ac11d79b492.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58a6e218-bef8-4768-b35c-5691fadb601d.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4429c76c-0be9-4602-98eb-0f48e9abefcb.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e415e89-23e0-4ac9-8329-8228dadba667.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 3560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f473dafa-57b1-4a93-a9ad-9e0365e31bcb.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 6808, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\73469f82-1845-4b8c-8e10-c016256a308a.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 6716, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abc7bab6-0bd6-43d2-870d-5cac84a1d592.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 6668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0dcbce0-390f-4494-ae7d-ac15b31b182a.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d512880-0283-4427-9a6d-37680ceacb8b.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8cfd2cb-b34d-42c8-8137-194019e61029.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ef41eb2-c170-489e-916a-f492bc5811e5.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c66c2c6d-d0e6-4c78-9195-8d385705a6ef.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e8b4d3-b9e1-4cab-a03d-dd84c6244cb9.tmp, EstimatedImpact: 0% 2026-04-13T15:31:13.810 ProcessImageName: updater.exe, Pid: 2148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0dee35f2-468a-4666-987b-e3eb757b6c67.tmp, EstimatedImpact: 0% 2026-04-13T15:45:50.476 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T16:00:55.471 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T16:16:00.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T16:31:05.476 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T16:46:10.476 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T17:01:15.471 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T17:10:36.800 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1665254, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T17:13:35.802 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1665454, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T17:16:20.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T17:31:13.820 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50309, Count: 6600, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7155, Count: 58248, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.RV3CX3, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e7_1.MAI, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e607f50c-26f0-47a8-b8c4-cb3a574f6b5e.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 7088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\734bdf4c-4919-4a56-97e1-3dc3e74dd612.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fda1f284-428e-4b5c-9a5f-a584640e1ee0.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890a7be7-afaa-47a0-b3f3-cb6799acd5a9.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 8116, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ffceb4f-1bb9-4d02-8196-22e2bb8cd1bd.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 6808, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\73469f82-1845-4b8c-8e10-c016256a308a.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58a6e218-bef8-4768-b35c-5691fadb601d.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 6716, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abc7bab6-0bd6-43d2-870d-5cac84a1d592.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 6668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0dcbce0-390f-4494-ae7d-ac15b31b182a.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4429c76c-0be9-4602-98eb-0f48e9abefcb.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25a5b500-5c2a-43d2-83cf-0ac11d79b492.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c66c2c6d-d0e6-4c78-9195-8d385705a6ef.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e415e89-23e0-4ac9-8329-8228dadba667.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 4300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\27628883-7e59-4a6c-91da-0353055d510e.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d512880-0283-4427-9a6d-37680ceacb8b.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8cfd2cb-b34d-42c8-8137-194019e61029.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 3560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f473dafa-57b1-4a93-a9ad-9e0365e31bcb.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ef41eb2-c170-489e-916a-f492bc5811e5.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 3348, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87a8463e-dfd6-461b-ad1c-ea8af2b9ad21.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ee0ceef-1475-4de4-b661-801bff1cc6d3.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e8b4d3-b9e1-4cab-a03d-dd84c6244cb9.tmp, EstimatedImpact: 0% 2026-04-13T17:31:13.820 ProcessImageName: updater.exe, Pid: 2148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0dee35f2-468a-4666-987b-e3eb757b6c67.tmp, EstimatedImpact: 0% 2026-04-13T17:31:25.485 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T17:46:30.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T18:01:35.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T18:16:40.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T18:31:45.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T18:46:50.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T19:01:55.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T19:10:26.470 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1671915, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T19:17:00.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T19:31:13.819 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50417, Count: 6606, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8130, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.RV3CX3, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 26, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e7_1.MAI, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e607f50c-26f0-47a8-b8c4-cb3a574f6b5e.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 7088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\734bdf4c-4919-4a56-97e1-3dc3e74dd612.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2bec25ed-f352-4b04-b9a7-b555b6836b46.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fda1f284-428e-4b5c-9a5f-a584640e1ee0.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890a7be7-afaa-47a0-b3f3-cb6799acd5a9.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 8116, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ffceb4f-1bb9-4d02-8196-22e2bb8cd1bd.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8cfd2cb-b34d-42c8-8137-194019e61029.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 3560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f473dafa-57b1-4a93-a9ad-9e0365e31bcb.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ef41eb2-c170-489e-916a-f492bc5811e5.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 3348, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87a8463e-dfd6-461b-ad1c-ea8af2b9ad21.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ee0ceef-1475-4de4-b661-801bff1cc6d3.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4429c76c-0be9-4602-98eb-0f48e9abefcb.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e8b4d3-b9e1-4cab-a03d-dd84c6244cb9.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 7384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b00c00e2-fd16-4620-97f2-72257a9df70f.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25a5b500-5c2a-43d2-83cf-0ac11d79b492.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 2148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0dee35f2-468a-4666-987b-e3eb757b6c67.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58a6e218-bef8-4768-b35c-5691fadb601d.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e415e89-23e0-4ac9-8329-8228dadba667.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 6808, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\73469f82-1845-4b8c-8e10-c016256a308a.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c66c2c6d-d0e6-4c78-9195-8d385705a6ef.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 6716, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abc7bab6-0bd6-43d2-870d-5cac84a1d592.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 6668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0dcbce0-390f-4494-ae7d-ac15b31b182a.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 4300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\27628883-7e59-4a6c-91da-0353055d510e.tmp, EstimatedImpact: 0% 2026-04-13T19:31:13.819 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d512880-0283-4427-9a6d-37680ceacb8b.tmp, EstimatedImpact: 0% 2026-04-13T19:32:05.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T19:41:44.493 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827486_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1673726, FileId: 0x492700000004c4ca, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T19:41:46.098 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827486_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1673762, FileId: 0x493300000004c4ca, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T19:41:46.427 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827486_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1673792, FileId: 0x493d00000004c4ca, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T19:47:10.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T20:02:15.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T20:17:20.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T20:32:25.471 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T20:47:30.469 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T20:52:19.135 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827a91_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1677778, FileId: 0x3b4e00000004c4db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T20:52:20.950 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827a91_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1677811, FileId: 0x3b5900000004c4db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T20:52:21.215 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827a91_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1677841, FileId: 0x3b6300000004c4db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T21:02:35.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T21:10:35.241 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1678879, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T21:17:40.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T21:31:13.822 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54877, Count: 6973, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9075, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.RV3CX3, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 210, Count: 162, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8263e7_1.MAI, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpClient.dll, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 3304, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e607f50c-26f0-47a8-b8c4-cb3a574f6b5e.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2bec25ed-f352-4b04-b9a7-b555b6836b46.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 7088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\734bdf4c-4919-4a56-97e1-3dc3e74dd612.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fda1f284-428e-4b5c-9a5f-a584640e1ee0.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890a7be7-afaa-47a0-b3f3-cb6799acd5a9.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 8116, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ffceb4f-1bb9-4d02-8196-22e2bb8cd1bd.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 4300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\27628883-7e59-4a6c-91da-0353055d510e.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d512880-0283-4427-9a6d-37680ceacb8b.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 4124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8cfd2cb-b34d-42c8-8137-194019e61029.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 3560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f473dafa-57b1-4a93-a9ad-9e0365e31bcb.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ef41eb2-c170-489e-916a-f492bc5811e5.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4429c76c-0be9-4602-98eb-0f48e9abefcb.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 3348, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87a8463e-dfd6-461b-ad1c-ea8af2b9ad21.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c66c2c6d-d0e6-4c78-9195-8d385705a6ef.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 7384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b00c00e2-fd16-4620-97f2-72257a9df70f.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ee0ceef-1475-4de4-b661-801bff1cc6d3.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25a5b500-5c2a-43d2-83cf-0ac11d79b492.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8e8b4d3-b9e1-4cab-a03d-dd84c6244cb9.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 2148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0dee35f2-468a-4666-987b-e3eb757b6c67.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 5632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c7c4a9a7-76e7-4bd8-b66b-86c1f9dbd2b3.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 6808, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\73469f82-1845-4b8c-8e10-c016256a308a.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 6668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0dcbce0-390f-4494-ae7d-ac15b31b182a.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 6716, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abc7bab6-0bd6-43d2-870d-5cac84a1d592.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e415e89-23e0-4ac9-8329-8228dadba667.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58a6e218-bef8-4768-b35c-5691fadb601d.tmp, EstimatedImpact: 0% 2026-04-13T21:31:13.822 ProcessImageName: updater.exe, Pid: 7568, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-13T21:32:45.475 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T21:47:50.475 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T22:02:55.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T22:13:30.597 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1682380, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T22:18:00.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T22:33:05.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T22:48:10.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T23:03:15.473 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T23:10:37.244 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1685549, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-13T23:18:20.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T23:30:10.479 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-13T23:30:10.494 Job Notification: New process added to job (5956) 2026-04-13T23:30:10.510 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-13T23:30:10.510 Aggressive catchup quick scan threshold: 727945703155 / 25920000000000 2026-04-13T23:30:10.510 Job Notification: New process added to job (7452) 2026-04-13T23:30:10.510 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:5956] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7452]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-13T23:30:10.604 Job Notification: New process added to job (8032) 2026-04-13T23:30:10.604 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-13T23:30:10.604 Job Notification: New process added to job (4376) 2026-04-13T23:30:10.635 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26020.6-0\MpCmdRun.exe][Pid:8032] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4376]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-13T23:30:11.025 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-13T23:30:11.025 [RTP] Duplicating the current plugin configuration object... 2026-04-13T23:30:11.025 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-13T23:30:11.025 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-13T23:30:11.025 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-13T23:30:11.025 [RTP] No config change detected. Not updating plugin configuration. 2026-04-13T23:30:11.025 [RTP] No config changes found. No configuration switch. 2026-04-13T23:30:11.025 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-13T23:30:11.401 Job Notification: New process added to job (3972) 2026-04-13T23:30:11.416 Task(GetDeviceTicket -AccessKey 18BF5BDE-8500-28A6-38BE-78784F9FB443 ) launched as network service 2026-04-13T23:30:11.494 Job Notification: Process exited from job (3972) 2026-04-13T23:30:12.628 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-13T23:30:12.628 [Cloud] Start of cloud request. Passive mode: 0 2026-04-13T23:30:12.628 [Cloud] Queued cloud request. 2026-04-13T23:30:12.628 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-13T23:30:12.628 [Cloud] Dequeued cloud request. 2026-04-13T23:30:12.628 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-13T23:30:12.628 [Cloud] Start of cloud request. Passive mode: 0 2026-04-13T23:30:12.628 [Cloud] Queued cloud request. 2026-04-13T23:30:12.628 [Cloud] Dequeued cloud request. 2026-04-13T23:30:12.628 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-13T23:30:12.628 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-13T23:30:12.847 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-13T23:30:12.847 [Cloud] End of cloud request. 2026-04-13T23:30:12.862 [Cloud] End of cloud request. 2026-04-13T23:30:13.143 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-13T23:30:24.697 Job Notification: Process exited from job (3856) 2026-04-13T23:31:09.796 [PlatUpd] Purging orphaned platform update directories under C:\ProgramData\Microsoft\Windows Defender\Platform ... 2026-04-13T23:31:09.796 [PlatUpd] Not purging current location C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0 ... 2026-04-13T23:31:09.796 [PlatUpd] Not purging backup location C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0 ... 2026-04-13T23:31:09.796 [PlatUpd] Deleting orphaned platform update directory C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0 ... 2026-04-13T23:31:09.968 [PlatUpd] Deleting orphaned platform update directory C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25060.7-0 ... 2026-04-13T23:31:09.984 [PlatUpd] Purging orphaned platform update directories under C:\Program Files\Windows Defender\Platform ... 2026-04-13T23:31:09.984 [PlatUpd] Verified C:\Windows\TEMP\449B9E33-A74C-40E5-93B2-FEFAD5793E41\MpUpdate.dll. Calling MpUpdateStub(0) ... 2026-04-13T23:31:11.078 [PlatUpd] MpUpdateStub() succeeded. Stub DLL: C:\Windows\TEMP\449B9E33-A74C-40E5-93B2-FEFAD5793E41\MpUpdate.dll. 2026-04-13T23:31:11.078 [KSL] Entering CKSLEngine::DisableKSL. 2026-04-13T23:31:11.078 [KSL] Entering CKSLEngine::shutdownImpl. 2026-04-13T23:31:11.078 [KSL] Leaving CKSLEngine::shutdownImpl(0). 2026-04-13T23:31:11.078 [KSL] Leaving CKSLEngine::DisableKSL(0). 2026-04-13T23:31:11.078 [KSL] OnPlatformUpdate: hr=[0x8000000a] Type=[1] KslServiceExists=[1] KslActive=[1] KslState=[2] 2026-04-13T23:31:11.093 [PlatUpd] DlpActive 0, CopyAccActive 0 2026-04-13T23:31:11.093 [PlatUpd] PlatformUpdate is now allowed. Resuming platform update from C:\Windows\TEMP\449B9E33-A74C-40E5-93B2-FEFAD5793E41. 2026-04-13T23:31:11.093 [PlatUpd] NewLocation set to [C:\Windows\TEMP\449B9E33-A74C-40E5-93B2-FEFAD5793E41] to indicate we are in the middle of an update. 2026-04-13T23:31:11.093 Job Notification: New process added to job (2988) 2026-04-13T23:31:11.109 Task(-RestartService) launched as PPL process 2026-04-13T23:31:11.109 Job Notification: New process added to job (7944) -------------------------------------------------------------------------------- Windows Defender (77BDAF73-B396-481F-9042-AD358843EC24) Service Log Started On 04-13-2026 23:31:11 ************************************************************ OS install time: 05/14/2019 05:52:54.0 UTC Current time: 04/13/2026 23:31:11.570439100 UTC (56195833828 ms since boot) 2026-04-13T23:31:11.562 MpEnsureProcessMitigationPolicy(0x7) returns 0 2026-04-13T23:31:11.578 ProductId: 2, ProductFeature: 0, LaunchedProtected: 3, IsWcos: 0, IsContainerOs: 0, DirtyShutdownDetected: 0, PassiveRemediation: 0, IsHybridModePolicyEnabled: 0, IsVerifiedAndReputableTrustModeEnabled: 0 2026-04-13T23:31:11.578 [WPP] Starting WPP trace with buffersize 4MB, maxfilesize: 16MB, filename: MpWppTracing-20260413-233111-00000003-fffffffeffffffff.bin ... 2026-04-13T23:31:11.578 [WPP] Trace session started - MpWppTracing-20260413-233111-00000003-fffffffeffffffff.bin 2026-04-13T23:31:11.578 [RbM] Rollback manager succesfully initialized. 2026-04-13T23:31:11.578 [RbM] Rollback manager EnableRollbackManager called. 2026-04-13T23:31:11.578 [RbM] Rollback manager EnableRollbackManager completed. 2026-04-13T23:31:11.578 [PlatUpd] Stage 1 - Starting platform update from %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0 ... 2026-04-13T23:31:12.531 [PlatUpd] Updated service binary of WdNisSvc from "%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26020.6-0\NisSrv.exe" to "%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\NisSrv.exe" 2026-04-13T23:31:12.546 [PlatUpd] Updated driver binary link C:\Windows\system32\drivers\wd\WdBoot.sys to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\Drivers\WdBoot.sys 2026-04-13T23:31:12.546 [PlatUpd] Updated driver binary link C:\Windows\system32\drivers\wd\WdFilter.sys to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\Drivers\WdFilter.sys 2026-04-13T23:31:12.546 [PlatUpd] Updated driver binary link C:\Windows\system32\drivers\wd\WdNisDrv.sys to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\Drivers\WdNisDrv.sys 2026-04-13T23:31:12.625 [PlatUpd] Updated driver binary link C:\Windows\system32\drivers\wd\WdDevFlt.sys to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\Drivers\WdDevFlt.sys 2026-04-13T23:31:13.156 [PlatUpd] Updated SOFTWARE\Classes\CLSID\{2781761E-28E0-4109-99FE-B9D127C57AFE}\InprocServer32[(default)] from "%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpOav.dll" to "%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpOav.dll" 2026-04-13T23:31:13.156 [PlatUpd] Updated SOFTWARE\WOW6432Node\Classes\CLSID\{2781761E-28E0-4109-99FE-B9D127C57AFE}\InprocServer32[(default)] from "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\X86\MpOav.dll" to "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\X86\MpOav.dll" 2026-04-13T23:31:13.171 [PlatUpd] MpAddMpUxRegistration succeeded 2026-04-13T23:31:13.171 [PlatUpd] MpManagementUpdateHandler: starting update for install path %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0. 2026-04-13T23:31:13.171 [PlatUpd] MpManagementUpdateHandler: calling MpUpdateManagement() 2026-04-13T23:31:13.171 [PlatUpd] MpUpdateManagement: Management platform update started for components (3) 2026-04-13T23:31:13.171 [PlatUpd] Defender MDM CSP platform update not supported on Server SKUs 2026-04-13T23:31:13.171 [PlatUpd] WMI/PS provider platform update started 2026-04-13T23:31:13.171 [PlatUpd] Powershell module update started: ConfigDefender 2026-04-13T23:31:13.171 [PlatUpd] Powershell module update completed: ConfigDefender 2026-04-13T23:31:13.171 [PlatUpd] Powershell module update started: ConfigDefenderPerformance 2026-04-13T23:31:13.171 [PlatUpd] Powershell module update completed: ConfigDefenderPerformance 2026-04-13T23:31:13.375 [PlatUpd] WMI repository update completed 2026-04-13T23:31:13.375 [PlatUpd] Updated SOFTWARE\Classes\CLSID\{A7C452EF-8E9F-42EB-9F2B-245613CA0DC9}\InprocServer32[(default)] from "%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26020.6-0\ProtectionManagement.dll" to "%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\ProtectionManagement.dll" 2026-04-13T23:31:13.375 [PlatUpd] Unload current WMI provider so that new instance can be loaded 2026-04-13T23:31:13.453 [PlatUpd] WMI/PS provider platform update completed 2026-04-13T23:31:13.453 [PlatUpd] MpUpdateManagement: Management platform update completed 2026-04-13T23:31:13.453 [PlatUpd] Failed to read Misc config regarding new coreservice lifecycle management, using legacy core service lifecycle management anyway. hr = 0x80070002 2026-04-13T23:31:13.453 MdCoreSvc is supported in this platform and OS 2026-04-13T23:31:13.453 [PlatUpd] MDCoreSvc is supported by the version of the platform we are switching to. Making sure the service is registered with SCM 2026-04-13T23:31:13.453 [PlatUpd] Updated service binary of MDCoreSvc from "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpDefenderCoreService.exe" to "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpDefenderCoreService.exe" 2026-04-13T23:31:13.453 [PlatUpd] Because we updated service binary, and MdCoreSvc service was already running, we need to restart the service 2026-04-13T23:31:14.587 [PlatUpd] Firewall rules updated for %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MsMpEng.exe 2026-04-13T23:31:14.587 [PlatUpd] MpCheckAndUpdateBinaryLocationTo(%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0): 10 items checked, 8 required update. hrMui: 0x1 hrEtw: 0 2026-04-13T23:31:14.587 [PlatUpd] Stage 1 - NewLocation updated from C:\Windows\TEMP\449B9E33-A74C-40E5-93B2-FEFAD5793E41 to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0 to indicate we are in the middle of an update 2026-04-13T23:31:14.603 [PlatUpd] Stage 1 - Service binary path updated to "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MsMpEng.exe". 2026-04-13T23:31:14.603 [PlatUpd] Stage 1 - Removed BlockedLocation [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0] to indicate we are loaded successfully. 2026-04-13T23:31:14.619 Task(-RestartService) launched as PPL process 2026-04-13T23:31:14.619 MpPostPlatformUpdate is requesting a service restart. We will abort the current service start -------------------------------------------------------------------------------- Windows Defender (77BDAF73-B396-481F-9042-AD358843EC24) Service Log Started On 04-13-2026 23:31:14 ************************************************************ OS install time: 05/14/2019 05:52:54.0 UTC Current time: 04/13/2026 23:31:14.716162800 UTC (56195836984 ms since boot) 2026-04-13T23:31:14.712 MpEnsureProcessMitigationPolicy(0x7) returns 0 2026-04-13T23:31:14.712 ProductId: 2, ProductFeature: 0, LaunchedProtected: 3, IsWcos: 0, IsContainerOs: 0, DirtyShutdownDetected: 0, PassiveRemediation: 0, IsHybridModePolicyEnabled: 0, IsVerifiedAndReputableTrustModeEnabled: 0 2026-04-13T23:31:14.712 [WPP] Starting WPP trace with buffersize 4MB, maxfilesize: 16MB, filename: MpWppTracing-20260413-233114-00000003-fffffffeffffffff.bin ... 2026-04-13T23:31:14.712 [WPP] Trace session started - MpWppTracing-20260413-233114-00000003-fffffffeffffffff.bin 2026-04-13T23:31:14.712 [RbM] Rollback manager succesfully initialized. 2026-04-13T23:31:14.712 [RbM] Rollback manager EnableRollbackManager called. 2026-04-13T23:31:14.712 [RbM] Rollback manager EnableRollbackManager completed. 2026-04-13T23:31:14.712 [PlatUpd] Stage 2 - Service started from new location. Removed NewLocation value: C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0 2026-04-13T23:31:14.712 [PlatUpd] Stage 2 - Updated BackupLocation to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0. 2026-04-13T23:31:14.728 [PlatUpd] MpRemoveMpUxRegistration failed (Ignored). hr = 0x800401f0 2026-04-13T23:31:14.728 [RbM] Platform LKG candidate becoming LKG: C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0. 2026-04-13T23:31:15.075 EnsureProtectedFolderAcls(), hr = 0x0 2026-04-13T23:31:15.075 [PlatUpd] Stage 2 - ReinforceServiceAcl (hr = 0) 2026-04-13T23:31:15.075 [PlatUpd] Stage 2 - Readded platform files to MOAC after ACL and Trust Label enforcement. hr=0 2026-04-13T23:31:15.075 [PlatUpd] Failed to read Misc config regarding new coreservice lifecycle management, using legacy core service lifecycle management anyway. hr = 0x80070002 2026-04-13T23:31:15.669 [PlatUpd] MpAddMpUxRegistration succeeded 2026-04-13T23:31:15.669 [PlatUpd] MpManagementUpdateHandler: starting update for install path %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0. 2026-04-13T23:31:15.669 [PlatUpd] MpManagementUpdateHandler: calling MpUpdateManagement() 2026-04-13T23:31:15.669 [PlatUpd] MpUpdateManagement: Management platform update started for components (3) 2026-04-13T23:31:15.669 [PlatUpd] Defender MDM CSP platform update not supported on Server SKUs 2026-04-13T23:31:15.669 [PlatUpd] WMI/PS provider platform update started 2026-04-13T23:31:15.669 [PlatUpd] WMI/PS provider platform update not required 2026-04-13T23:31:15.669 [PlatUpd] MpUpdateManagement: Management platform update completed 2026-04-13T23:31:15.669 MdCoreSvc is supported in this platform and OS 2026-04-13T23:31:15.669 [PlatUpd] MDCoreSvc is supported by the version of the platform we are switching to. Making sure the service is registered with SCM 2026-04-13T23:31:15.669 [PlatUpd] Starting MdCoreSvc service 2026-04-13T23:31:15.747 [PlatUpd] Firewall rules updated for %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MsMpEng.exe 2026-04-13T23:31:15.747 [PlatUpd] MpCheckAndUpdateBinaryLocationTo(%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0): 10 items checked, 1 required update. hrMui: 0x1 hrEtw: 0 2026-04-13T23:31:15.747 [TS] Troublshooting mode is not available! 2026-04-13T23:31:15.747 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0, Scenario: Consumer, Source: Unknown, ConfigChange: Remove 2026-04-13T23:31:15.747 CheckProductDisabled(fWaitWSC: 1, fRemoveConfigs: 0) ... 2026-04-13T23:31:15.747 Service is asked to be reenabled. 2026-04-13T23:31:15.778 Task(-EnableService) launched as PPL process 2026-04-13T23:31:15.778 [Service] Enabling IOAV/IEV/ShellExt/EtwLogger registrations ... 2026-04-13T23:31:15.778 [Service] Enabling AutoLoggers ... 2026-04-13T23:31:15.778 [Service] Enabling AMSI registration ... 2026-04-13T23:31:15.778 [Service] Leaving EnableIOAVWorker(1, 0) with hr = 0 2026-04-13T23:31:15.778 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-13T23:31:15.778 Cache C:\ProgramData\Microsoft\Windows Defender\Scans\History\CacheManager\302F501F-0000-0000-0000-501F00000000-1.bin loaded.**********Cache stats************ No. Of buckets -> 39062 Each Bucket has max capacity of -> 1 entries number of Entries is 20805 Number of invalid entries is 0 Number of inserts issued is 720951 Number of replaces issued is 0 Number of insert failures is 5 Number of inserts with duplicate entries is 14510 Number of lookups is 69649749 Number of lookup misses is 2706368 Number of fast lookup misses is 46262845 Number of false fast lookups is 2706368 Number of invalidations is 462762 Number of maintenance invalidations is 119099 Current File Size is 958464 Journal ID = 1d50a16ac8ba444 Trusted image state = 4 USN = 12f847 Setup boot count = 2 2026-04-13T23:31:15.778 Verifying license file... 2026-04-13T23:31:15.778 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\msmplics.dll]. File not in cache (0x1) 2026-04-13T23:31:15.794 Verified [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\msmplics.dll] 2026-04-13T23:31:15.794 SharedSignatureRoot not configured. Disabling remote image load for msmpeng.exe. Once disabled, it can no longer be enabled without a service restart. hr=0 2026-04-13T23:31:15.794 Loaded module#0 MpComServer. 2026-04-13T23:31:15.794 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-13T23:31:15.794 Loaded module#1 StartupPolicies. 2026-04-13T23:31:15.794 MpRefreshDefenderCoreConfigs: failed because engine is not ready, we cannot let the process continue because we might start core service while its configuration is not ready. 2026-04-13T23:31:15.794 [Plugin] Verifying C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\mprtp.dll ... 2026-04-13T23:31:15.794 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\mprtp.dll] due to PPL. 2026-04-13T23:31:15.809 COM server initialized successfully. 2026-04-13T23:31:15.825 [RTP] [RTP] FilterCommunicator object 0x000001DB7B9E2870 initialized (\MicrosoftMalwareProtectionAsyncPortWD, , ), threads: 0 normal, 0 very low, 0 alt, thread pool threads: 4 normal, 0 very low, 0 alt 2026-04-13T23:31:15.840 [RTP] Setting DisableAsyncScanOnClose to 0 (hr=0). 2026-04-13T23:31:15.840 [RTP] Setting DisableAsyncScanOnOpen to 0 in wdfilter (hr=0). 2026-04-13T23:31:15.840 [RTP] Setting FilterExperimentMode to 0 (hr=0). 2026-04-13T23:31:15.840 [RTP] Setting DisableDriverUnload to 1 (hr=0). 2026-04-13T23:31:15.840 [RTP] Setting RegLinkHardeningMode to 0 (hr=0). 2026-04-13T23:31:15.840 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-13T23:31:15.840 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-13T23:31:15.840 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-13T23:31:15.840 [RTP] Setting PreventPagingFileAbuse to 1 (hr=0). 2026-04-13T23:31:15.840 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-13T23:31:15.840 [RTP] [RTP] LastAccessTimeSuppression for network files is enabled by configuration. 2026-04-13T23:31:15.840 [RTP] [RTP] FilterCommunicator object 0x000001DB7C045110 initialized (\MicrosoftMalwareProtectionPortWD, \MicrosoftMalwareProtectionVeryLowIoPortWD, \MicrosoftMalwareProtectionRemoteIoPortWD), threads: 6 normal, 2 very low, 0 alt, thread pool threads: 0 normal, 0 very low, 6 alt 2026-04-13T23:31:15.840 [RTP] SyncDssAvailableThreads cap limit initialized by MiscConfig to: 14 2026-04-13T23:31:15.840 [RTP] [RtpCopyAccelerator] Windows19H1 0, WindowsCobalt 0, IsServerSKU 1, IsPassiveOrSideBySidePassiveMode 0, IsDevMode 0, fIsWindowsInhouseBuild 0, BuildLabEx 14393.7070.amd64fre.rs1_release.240606-1636 2026-04-13T23:31:15.840 [RTP] [RTP] StartCommunication 0x000001DB7B9E2870 (\MicrosoftMalwareProtectionAsyncPortWD, ), threads: 0 normal, 0 very low, 0 alt, thread pool threads: 4 normal, 0 very low, 0 alt 2026-04-13T23:31:15.840 [init][RTP] RTPPlugin initialization completed 2026-04-13T23:31:15.840 OS boot count = 2 2026-04-13T23:31:15.840 OS Install = 0 2026-04-13T23:31:15.840 [init] MpAddMpUxRegistrationForToast failed (Ignored). hr = 0x8000401a 2026-04-13T23:31:15.840 [KSL] Entering CKSLEngine::Initialize. 2026-04-13T23:31:15.840 [KSL] Leaving CKSLEngine::Initialize(0). 2026-04-13T23:31:15.840 [KSL] Entering CKSLEngine::EnableKSL. State: [1] 2026-04-13T23:31:15.840 [KSL] MpInstallKslD: hr=0 2026-04-13T23:31:15.840 [KSL] MpRegisterKslD: hr=0 2026-04-13T23:31:15.840 [KSL] MpStartKslD: hr=0 2026-04-13T23:31:15.840 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-13T23:31:15.840 Loading engine... 2026-04-13T23:31:15.840 Verifying engine and signature files (source: 1) ... 2026-04-13T23:31:15.840 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E}\mpengine.dll] due to PPL. 2026-04-13T23:31:15.840 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E}\mpasbase.vdm] (file in cache) 2026-04-13T23:31:15.840 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E}\mpasdlta.vdm] (file in cache) 2026-04-13T23:31:15.840 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E}\mpavbase.vdm] (file in cache) 2026-04-13T23:31:15.840 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E}\mpavdlta.vdm] (file in cache) 2026-04-13T23:31:15.903 [Engine] IsHybridMode: 0 2026-04-13T23:31:15.903 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-13T23:31:15.903 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-FDA3BAD40F26E6D1F37410CF573560FC8152CB0E.bin): 0x00000002 2026-04-13T23:31:15.950 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-FDA3BAD40F26E6D1F37410CF573560FC8152CB0E.bin) 2026-04-13T23:31:15.950 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-13T23:31:15.950 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-13T23:31:15.950 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-13T23:31:15.950 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-13T23:31:24.279 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-13T23:31:24.279 [AutoExclusion] Applied roles from cache. 2026-04-13T23:31:24.279 [AutoExclusion] Started roles monitoring. 2026-04-13T23:31:24.279 [Engine] New active engine 00007FFD0EA68020 (no old engine). Number of active engines: 1 2026-04-13T23:31:24.295 EngineInit:Global ASOC is enabled 2026-04-13T23:31:24.295 EngineInit:ASOO is enabled for developer volumes 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:31:24.311 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:31:24.311 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-13T23:31:24.311 [SigStatUpd] CSignatureStatus: back to good 2026-04-13T23:31:24.311 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-13T23:31:24.311 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-13T23:31:24.311 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-13T23:31:24.311 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-13T23:31:24.311 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-13T23:31:24.326 Opening Sense registry key to get process path failed with hr=0x80070002. Fallback to programfiles. 2026-04-13T23:31:24.326 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-13T23:31:24.326 [Plugin] Initializing RTP plugin state... 2026-04-13T23:31:24.326 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-13T23:31:24.326 [RTP] ****************************RTP Perf Log*************************** RTP Start:N/A Last Perf:(null) First RTP Scan:N/A Plugin States: AV:2 AS:2 RTP:2 OA:2 BM:2 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:0 System File Cache: Hits:0 Misses:0 BM Queue:0,0,0 Proc:0,0,0 File:0,0,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,2,0 SetEngine:1,1,0 SetState:0,0,0 SetUser:0,2,0 Config:0,0,0 ProcExcl:0,0,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:0 Pending:0 RegSize:2882 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:2102 AsyncQCurrent:0 BMFlags:8 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:24 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:19 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:25 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:-1ms (0/0) Success: 0, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-13T23:31:24.326 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E} 2026-04-13T23:31:24.326 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-13T23:31:24.326 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-13T23:31:24.326 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-13T23:31:24.326 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-13T23:31:24.326 MdCoreSvc is supported in this platform and OS 2026-04-13T23:31:24.326 MdCoreSvc is supported in this platform and OS 2026-04-13T23:31:24.326 [PlatUpd] MDCoreSvc is supported by the version of the platform we are switching to. Making sure the service is registered with SCM 2026-04-13T23:31:24.326 [PlatUpd] Starting MdCoreSvc service 2026-04-13T23:31:24.326 Engine loaded! 2026-04-13T23:31:24.326 [DLP] Create FeatureControlState instance 2026-04-13T23:31:24.326 Engine:Failure in process enumeration: Image:, Error:GetImageNameConfigurationEx, 0x80078020, PID: 0 2026-04-13T23:31:24.326 Engine:Failure in process enumeration: Image:, Error:GetImageNameConfigurationEx, 0x80078020, PID: 4 2026-04-13T23:31:24.326 RegisterSModeChangeListener: hr = 0x1 2026-04-13T23:31:24.326 RegisterHybridModeChangeListener: hr = 0x1 2026-04-13T23:31:24.326 [PlatUpd] Updated install location from C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\ to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\ 2026-04-13T23:31:24.326 [AutoPurge] Auto purger task is scheduled to run in 600000(ms) from now with period 86400000(ms) 2026-04-13T23:31:24.326 [SigReleaseHb] Initialized with Stage 0 2026-04-13T23:31:24.326 [EmergencySigManager] Emergency sig checks are currently disabled. Timer interval: 15 minutes. 2026-04-13T23:31:24.326 [SCC][CID=56195846593_6264] Initializing ... 2026-04-13T23:31:24.326 [SCC][CID=56195846593_6264] SCC Initialize! The feature is OFF on this machine (E5 = 0), hr: 0x80004001 2026-04-13T23:31:24.326 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-13T23:31:24.326 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-13T23:31:24.342 [NRI] Stopping NIS service ... 2026-04-13T23:31:24.342 [RTP] [RTP] Killbits updated: 0x200000000000000 -> 0x4000000 2026-04-13T23:31:24.342 [RTP] [RTP] LastAccessTimeSuppression is enabled (default behavior). Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.69.0 AV Signature Version: 1.449.69.0 ************************************************************ 2026-04-13T23:31:24.342 Resource usage Monitoring is enabled 2026-04-13T23:31:24.342 Ci Endpoint Security Policy Installation: Unsupported, hr = 0x00000001 2026-04-13T23:31:24.342 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-13T23:31:24.342 Job Notification: New process added to job (2856) 2026-04-13T23:31:24.404 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-13T23:31:24.404 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-04-13T23:31:24.404 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-13T23:31:24.404 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-13T23:31:24.404 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-13T23:31:24.404 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-13T23:31:24.404 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-13T23:31:24.404 [RTP] Generating the base plugin configuration ... 2026-04-13T23:31:24.404 [RTP] Path exclusion changed, new size in bytes: 2 2026-04-13T23:31:24.404 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-13T23:31:24.404 [RTP] Calling GenerateEngineConfigStruct (0x3e) ... 2026-04-13T23:31:24.404 [RTP] [RTP] RTPPlugin state has changed as follow: ASStatus:0->1, AVStatus:0->1, RTPStatus:0->1 2026-04-13T23:31:24.404 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-13T23:31:24.404 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-13T23:31:24.404 [RTP] [RTP] StartCommunication 0x000001DB7C045110 (\MicrosoftMalwareProtectionPortWD, \MicrosoftMalwareProtectionVeryLowIoPortWD), threads: 6 normal, 2 very low, 0 alt, thread pool threads: 0 normal, 0 very low, 6 alt 2026-04-13T23:31:24.404 [RTP] [RTP] RTP worker threads ready [6 threads] 2026-04-13T23:31:24.420 [RTP] [Mini-filter] First scan on a volume: \Device\HarddiskVolume2\Windows\System32\drivers\wd\WdNisDrv.sys 2026-04-13T23:31:24.811 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-04-13T23:31:24.811 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-13T23:31:24.811 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-13T23:31:24.811 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-13T23:31:24.857 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-13T23:31:26.341 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-13T23:31:27.422 [RTP] Duplicating the current plugin configuration object... 2026-04-13T23:31:27.422 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-13T23:31:27.422 [RTP] Updating plugin configuration due to recent config changes (0x600) ... 2026-04-13T23:31:27.422 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-04-13T23:31:27.422 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x600, Changed: 0x218 2026-04-13T23:32:15.809 Process scan (poststartupscan) started. 2026-04-13T23:32:15.809 Process scan (poststartupscan) completed. 2026-04-13T23:32:16.319 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-04-13T23:32:16.319 [RTP] [RtpConfig] Config change detected, type: 1024 2026-04-13T23:32:18.868 [RTP] Duplicating the current plugin configuration object... 2026-04-13T23:32:18.868 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-13T23:32:18.868 [RTP] Updating plugin configuration due to recent config changes (0x400) ... 2026-04-13T23:32:18.868 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-04-13T23:32:18.868 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x400, Changed: 0x218 2026-04-13T23:36:24.299 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-13T23:36:24.330 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-13T23:41:24.340 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-13T23:41:24.340 Timer callback: Initializating/verifying scheduled tasks ... 2026-04-13T23:41:24.372 Job Notification: New process added to job (412) 2026-04-13T23:41:24.387 Job Notification: New process added to job (7696) 2026-04-13T23:41:24.387 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-13T23:41:24.403 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:412] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7696]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-13T23:41:24.403 [TaskUpdate] Run lost signature update scheduled job: SignatureUpdate -ScheduleJob -RestrictPrivileges 2026-04-13T23:41:24.403 [TaskUpdate] Run lost signature update scheduled job: SignatureUpdate -ScheduleJob -RestrictPrivileges 2026-04-13T23:41:24.419 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-13T23:41:24.434 Job Notification: New process added to job (6684) 2026-04-13T23:41:24.434 Job Notification: New process added to job (3220) 2026-04-13T23:41:24.450 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6684] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3220]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-13T23:41:24.481 Job Notification: Process exited from job (6684) 2026-04-13T23:41:24.481 Job Notification: Process exited from job (3220) 2026-04-13T23:41:24.497 [TaskUpdate] MpCmdRun process completed before completion signal is received 2026-04-13T23:41:24.528 Job Notification: New process added to job (6912) 2026-04-13T23:41:24.528 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-13T23:41:24.544 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6912] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7828]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-13T23:41:24.544 Job Notification: New process added to job (7828) 2026-04-13T23:41:24.606 Task(Scan -ScheduleJob -RestrictPrivileges -ScanType 2 -ScanTrigger 52) is scheduled to run in 7452194(ms) from now at 03:45 (01:45 UTC) with period 86400000(ms). Daily task start time is randomized to reduce spikes. 2026-04-13T23:41:28.075 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\BFD38973-AC60-423D-BB3F-638320676EFFd6c.1dccb9f0b69dd9f 2026-04-13T23:41:28.137 Verifying engine and signature files (source: 0) ... 2026-04-13T23:41:28.137 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1AAAD9F5-B444-4160-B1CB-CEC997FDB10E}\mpengine.dll] due to PPL. 2026-04-13T23:41:28.137 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1AAAD9F5-B444-4160-B1CB-CEC997FDB10E}\mpasbase.vdm] (file in cache) 2026-04-13T23:41:28.137 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1AAAD9F5-B444-4160-B1CB-CEC997FDB10E}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-13T23:41:28.137 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1AAAD9F5-B444-4160-B1CB-CEC997FDB10E}\mpasdlta.vdm] 2026-04-13T23:41:28.137 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1AAAD9F5-B444-4160-B1CB-CEC997FDB10E}\mpavbase.vdm] (file in cache) 2026-04-13T23:41:28.137 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1AAAD9F5-B444-4160-B1CB-CEC997FDB10E}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-13T23:41:28.153 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1AAAD9F5-B444-4160-B1CB-CEC997FDB10E}\mpavdlta.vdm] 2026-04-13T23:41:28.278 [Engine] IsHybridMode: 0 2026-04-13T23:41:28.278 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-13T23:41:28.278 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-BA7E5870819C104690B547FAA0FFBE2FB7222E5D.bin): 0x00000002 2026-04-13T23:41:28.294 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-BA7E5870819C104690B547FAA0FFBE2FB7222E5D.bin) 2026-04-13T23:41:28.294 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-13T23:41:28.294 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-13T23:41:28.294 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-13T23:41:28.294 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-13T23:41:37.431 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-13T23:41:37.431 [AutoExclusion] Applied roles from cache. 2026-04-13T23:41:37.431 [AutoExclusion] Started roles monitoring. 2026-04-13T23:41:37.431 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0EA68020, lRefCount: 5, hr=0 2026-04-13T23:41:37.431 [Engine] New active engine 00007FFD0D908020 replacing engine 00007FFD0EA68020. Number of active engines: 2 2026-04-13T23:41:37.446 EngineInit:Global ASOC is enabled 2026-04-13T23:41:37.446 EngineInit:ASOO is enabled for developer volumes 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:41:37.462 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-13T23:41:37.462 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-13T23:41:37.478 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-13T23:41:37.478 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-13T23:41:37.478 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-13T23:41:37.478 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-13T23:41:37.478 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-13T23:41:37.478 [Plugin] Initializing RTP plugin state... 2026-04-13T23:41:37.478 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-13T23:41:37.478 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎14‎-‎2026 01:31:24 Last Perf:‎04‎-‎14‎-‎2026 01:31:24 First RTP Scan:‎04‎-‎14‎-‎2026 01:31:24 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:80 Misses:63 BM Queue:0,30,0 Proc:0,30,0 File:0,13,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:711 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:717420 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:164 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:258 TotalHits:145 InstanceCacheInserts:326 InstanceCacheUpdates:0 InstanceCacheDeletes:50 InstanceCacheHits:0 InstanceCacheMisses:744 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:2ms (26/13) Success: 13, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-13T23:41:37.478 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1AAAD9F5-B444-4160-B1CB-CEC997FDB10E} 2026-04-13T23:41:37.478 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-13T23:41:37.478 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-13T23:41:37.478 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B4A97695-CCD1-410D-8593-1B5C20A8CF1F} removed 2026-04-13T23:41:37.478 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-13T23:41:37.478 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-13T23:41:37.478 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-13T23:41:37.478 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-13T23:41:37.478 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-13-2026 23:41:37 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-13-2026 23:41:37 2026-04-13T23:41:37.478 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-13T23:41:37.478 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-13T23:41:37.478 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-13T23:41:37.478 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-13T23:41:37.478 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-13T23:41:37.478 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-13T23:41:37.478 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-13T23:41:37.478 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-13T23:41:37.478 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-13T23:41:37.478 MdCoreSvc is supported in this platform and OS Signature updated on 04-13-2026 23:41:37 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.89.0 AV Signature Version: 1.449.89.0 ************************************************************ 2026-04-13T23:41:37.493 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-13T23:41:37.493 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\BFD38973-AC60-423D-BB3F-638320676EFFd6c.1dccb9f0b69dd9f 2026-04-13T23:41:37.540 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-13T23:41:37.540 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 04-13-2026 23:41:37 ************************************************************ 2026-04-13T23:41:37.556 Job Notification: Process exited from job (6912) 2026-04-13T23:41:37.556 Job Notification: Process exited from job (7828) 2026-04-13T23:41:37.556 Job Notification: Process exited from job (412) 2026-04-13T23:41:37.571 Job Notification: Process exited from job (7696) 2026-04-13T23:41:37.665 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-13T23:41:37.665 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-13T23:41:37.665 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-13T23:41:37.665 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-13T23:41:37.665 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-13T23:41:37.681 [Engine] Engine 00007FFD0EA68020 no longer in use. Number of active engines: 1 2026-04-13T23:41:37.681 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-13T23:41:37.681 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-13T23:41:37.775 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 106, Count: 549, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.HN8QX3, EstimatedImpact: 0% 2026-04-13T23:41:37.775 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance->(UTF-16LE), EstimatedImpact: 22% 2026-04-13T23:41:37.775 ProcessImageName: MpCmdRun.exe, Pid: 8032, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\MpCmdRun.log->(UTF-16LE), EstimatedImpact: 10% 2026-04-13T23:41:37.821 [Engine] RSIG_UNLOADENGINE, 00007FFD0EA68020, err=0x0 2026-04-13T23:41:37.837 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{601E56CD-94BE-40AD-91A6-FE4CE33A552E} removed 2026-04-13T23:41:37.962 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-13T23:41:37.962 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-13T23:41:37.962 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-13T23:42:15.811 Process scan (postsignatureupdatescan) started. 2026-04-13T23:42:21.529 Process scan (postsignatureupdatescan) completed. 2026-04-13T23:46:37.450 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-14T00:05:29.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T00:10:25.450 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1605, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T00:10:25.465 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1607, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T00:10:35.458 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1621, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T00:10:35.474 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1623, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T00:20:34.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T00:35:39.399 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T00:50:44.403 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T01:05:49.399 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T01:10:25.110 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5034, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T01:10:25.125 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5036, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T01:10:35.114 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5049, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T01:10:35.129 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5051, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T01:20:54.393 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T01:35:59.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T01:51:04.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T01:55:37.504 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 856, Count: 6471, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.Z2H8W3, EstimatedImpact: 0% 2026-04-14T01:55:37.504 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 559, Count: 59, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-04-14T01:55:37.504 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-14T01:55:37.504 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T02:01:53.747 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:F2568E3F-84AD-4E55-9F76-7DA90BFFD707, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-14T02:01:53.747 Scheduled scan with Id F2568E3F-84AD-4E55-9F76-7DA90BFFD707 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-14T02:01:53.747 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-14T02:01:53.747 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-14T02:01:53.747 [SFC] System file cache build is not needed (already completed) 2026-04-14T02:02:03.219 Engine:Triggered AR EMS scan 2026-04-14T02:02:03.219 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.235 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.266 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.297 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.329 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.344 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.360 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.391 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.407 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.438 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.454 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.469 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.485 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.516 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.532 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.547 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.579 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.641 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.657 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.672 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.704 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.751 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-14T02:02:03.782 Bm signature throttled:0x00002db31bed458f 2026-04-14T02:02:21.610 QuickScan:ScanID:F2568E3F-84AD-4E55-9F76-7DA90BFFD707: Quick scan finished with error 0 2026-04-14T02:02:21.610 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-14T02:02:22.129 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-14T02:02:22.129 [RTP] Duplicating the current plugin configuration object... 2026-04-14T02:02:22.129 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-14T02:02:22.129 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-14T02:02:22.129 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-14T02:02:22.129 [RTP] No config change detected. Not updating plugin configuration. 2026-04-14T02:02:22.129 [RTP] No config changes found. No configuration switch. 2026-04-14T02:02:22.129 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-14T02:06:09.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T02:10:27.435 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #8522, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T02:10:27.450 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #8524, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T02:10:37.443 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #8538, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T02:10:37.443 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #8541, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T02:21:14.402 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T02:36:19.390 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T02:51:24.396 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T03:06:29.401 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T03:10:25.204 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #12027, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:10:25.219 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #12029, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:10:35.209 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #12043, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:10:35.209 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #12045, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:10:35.209 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #12047, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:10:35.209 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #12049, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:21:34.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T03:27:30.744 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #12997, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:27:30.759 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #12999, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:27:35.253 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #13009, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:27:35.268 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #13012, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:27:35.268 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #13013, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:27:35.268 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #13015, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:27:45.263 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #13028, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:27:45.278 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #13030, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:27:45.278 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #13031, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T03:36:39.395 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T03:51:44.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T03:55:37.514 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1486, Count: 12951, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.Z2H8W3, EstimatedImpact: 0% 2026-04-14T03:55:37.514 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 681, Count: 73, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-04-14T03:55:37.514 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 108, Count: 3, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe, EstimatedImpact: 0% 2026-04-14T03:55:37.514 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-14T03:55:37.514 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-14T03:55:37.514 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48c668dc-ae9e-478e-ba3b-2dc01b3fd49d.tmp, EstimatedImpact: 0% 2026-04-14T03:55:37.514 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54160216-3e76-4538-9fff-b20d43d8e58c.tmp, EstimatedImpact: 0% 2026-04-14T03:55:37.514 ProcessImageName: updater.exe, Pid: 3220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T03:55:37.514 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T04:06:49.394 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T04:10:25.564 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #15387, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T04:10:25.579 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #15389, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T04:10:35.571 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #15402, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T04:10:35.571 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #15404, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T04:10:35.728 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #15408, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T04:10:35.728 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #15410, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T04:21:54.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T04:36:59.399 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T04:52:04.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T05:07:09.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T05:10:25.257 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #18735, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T05:10:25.272 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #18737, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T05:10:35.264 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #18751, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T05:10:35.279 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #18754, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T05:22:14.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T05:37:19.396 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T05:52:24.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T05:55:37.529 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2116, Count: 19422, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.Z2H8W3, EstimatedImpact: 0% 2026-04-14T05:55:37.529 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 1918, Count: 191, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-14T05:55:37.529 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 123, Count: 5, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe, EstimatedImpact: 0% 2026-04-14T05:55:37.529 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-14T05:55:37.529 ProcessImageName: updater.exe, Pid: 7968, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7e01fd5-0bec-4699-a4c8-9207f2866a1d.tmp, EstimatedImpact: 0% 2026-04-14T05:55:37.529 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-14T05:55:37.529 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\999d1f7d-5e7a-42d2-9f55-986325d0b9cc.tmp, EstimatedImpact: 0% 2026-04-14T05:55:37.529 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48c668dc-ae9e-478e-ba3b-2dc01b3fd49d.tmp, EstimatedImpact: 0% 2026-04-14T05:55:37.529 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54160216-3e76-4538-9fff-b20d43d8e58c.tmp, EstimatedImpact: 0% 2026-04-14T05:55:37.529 ProcessImageName: updater.exe, Pid: 3220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T05:55:37.529 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T06:07:29.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T06:10:26.790 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22103, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:10:26.821 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22106, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:10:36.798 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22120, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:10:36.798 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22122, FileId: 0x557000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:10:36.814 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22124, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:22:34.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T06:37:39.396 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T06:52:44.399 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T06:58:11.958 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #25908, FileId: 0x41d200000004c4a0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:24.459 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26425, FileId: 0x3cb200000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:24.506 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26428, FileId: 0x3cb300000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:24.756 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26450, FileId: 0x3cba00000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:24.818 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26456, FileId: 0x3cbc00000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:25.425 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26460, FileId: 0x3cbd00000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:26.301 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26466, FileId: 0x3cbf00000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:26.364 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26472, FileId: 0x3cc100000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:26.379 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26475, FileId: 0x3cc200000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:26.395 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26478, FileId: 0x3cc300000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:26.411 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26481, FileId: 0x3cc400000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:26.442 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26484, FileId: 0x3cc500000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:26.457 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26487, FileId: 0x3cc600000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:26.504 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26490, FileId: 0x3cc700000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:26.661 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26505, FileId: 0x3ccc00000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T06:58:27.457 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #26530, FileId: 0x3ccf00000001baba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T07:07:49.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T07:10:25.439 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #27238, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T07:10:25.454 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #27240, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T07:10:35.447 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #27255, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T07:10:35.447 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #27254, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T07:10:35.463 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #27258, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T07:22:54.396 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T07:37:59.400 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T07:53:04.397 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T07:55:37.536 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49643, Count: 6754, MaxTime: 937, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-14T07:55:37.536 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2941, Count: 25893, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.Z2H8W3, EstimatedImpact: 0% 2026-04-14T07:55:37.536 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 138, Count: 7, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe, EstimatedImpact: 0% 2026-04-14T07:55:37.536 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 81, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_3.MAI, EstimatedImpact: 0% 2026-04-14T07:55:37.536 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-14T07:55:37.536 ProcessImageName: updater.exe, Pid: 7968, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7e01fd5-0bec-4699-a4c8-9207f2866a1d.tmp, EstimatedImpact: 0% 2026-04-14T07:55:37.536 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-14T07:55:37.536 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\999d1f7d-5e7a-42d2-9f55-986325d0b9cc.tmp, EstimatedImpact: 0% 2026-04-14T07:55:37.536 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dadd3440-2d20-4721-b8c9-e5150068e5f8.tmp, EstimatedImpact: 0% 2026-04-14T07:55:37.536 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48c668dc-ae9e-478e-ba3b-2dc01b3fd49d.tmp, EstimatedImpact: 0% 2026-04-14T07:55:37.536 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\76936e04-0787-470b-8b6c-dae4c52a41ad.tmp, EstimatedImpact: 0% 2026-04-14T07:55:37.536 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54160216-3e76-4538-9fff-b20d43d8e58c.tmp, EstimatedImpact: 0% 2026-04-14T07:55:37.536 ProcessImageName: updater.exe, Pid: 3220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T07:55:37.536 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T08:08:09.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T08:10:26.018 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #30557, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T08:10:26.018 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #30559, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T08:10:36.027 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #30573, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T08:10:36.043 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #30576, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T08:23:14.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T08:25:55.041 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-14T08:25:55.041 [Cloud] Start of cloud request. Passive mode: 0 2026-04-14T08:25:55.041 [Cloud] Queued cloud request. 2026-04-14T08:25:55.041 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-14T08:25:55.072 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey AC708C74-4636-872F-A825-F9B724E45BD6) launched 2026-04-14T08:25:55.072 Job Notification: New process added to job (6460) 2026-04-14T08:25:55.088 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6460] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5060]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-14T08:25:55.088 Job Notification: New process added to job (5060) 2026-04-14T08:25:55.119 Job Notification: New process added to job (3636) 2026-04-14T08:25:55.119 Job Notification: Process exited from job (6460) 2026-04-14T08:25:55.135 Job Notification: Process exited from job (5060) 2026-04-14T08:25:55.135 [Cloud] Dequeued cloud request. 2026-04-14T08:25:55.135 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-14T08:25:55.612 [Cloud] End of cloud request. 2026-04-14T08:25:56.188 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-14T08:27:35.499 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31907, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T08:27:35.499 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31909, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T08:27:39.312 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31930, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T08:27:39.312 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31932, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T08:27:39.327 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31934, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T08:27:39.327 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31936, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T08:27:49.327 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31948, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T08:27:49.343 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31950, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T08:27:49.343 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31952, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T08:38:19.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T08:53:24.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T09:08:29.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T09:10:27.900 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #34752, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T09:10:27.915 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #34755, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T09:10:34.198 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #34770, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T09:10:34.198 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #34773, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T09:10:53.698 ReportLowfi(c:\program files (x86)\google\chrome\application\147.0.7727.56\installer\chrmstp.exe, 0x437a0835) from 0x0006b6bd6566d2d9 Internal signature match:subtype=Lowfi, sigseq=0x000005550240CBF2, sigsha=e39a25e9b19899abbd79ec872fd8aeabe27e140d, cached=false, source=0, resourceid=0xb9ab3a18 2026-04-14T09:10:54.120 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #35089, FileId: 0x1f0000000568a5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T09:10:54.308 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #35093, FileId: 0x1f0000000568a5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T09:10:56.655 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #35100, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T09:10:56.671 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #35102, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T09:11:06.663 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #35141, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T09:11:06.663 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #35143, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T09:11:06.851 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #35147, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T09:11:06.851 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #35149, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T09:23:34.396 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T09:36:01.014 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827af4_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #36530, FileId: 0x3130000000568e6, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T09:36:02.391 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827af4_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #36534, FileId: 0x3140000000568e6, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T09:38:39.397 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T09:53:44.401 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T09:55:37.538 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49703, Count: 6759, MaxTime: 937, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: updater.exe, Pid: 376, TotalTime: 5306, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping376_1680452698\147.0.7727.56_chrome_installer_uncompressed.exe, EstimatedImpact: 11% 2026-04-14T09:55:37.538 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3661, Count: 32364, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.Z2H8W3, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 153, Count: 9, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 85, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_3.MAI, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: setup.exe, Pid: 6844, TotalTime: 124, Count: 3, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 2% 2026-04-14T09:55:37.538 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 121, Count: 10, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: updater.exe, Pid: 7968, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7e01fd5-0bec-4699-a4c8-9207f2866a1d.tmp, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: updater.exe, Pid: 7520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb31cf15-20a3-44cf-aecb-8f26d089f60c.tmp, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\76936e04-0787-470b-8b6c-dae4c52a41ad.tmp, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54160216-3e76-4538-9fff-b20d43d8e58c.tmp, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dadd3440-2d20-4721-b8c9-e5150068e5f8.tmp, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a0315b44-0a94-4d82-9470-a47ffa6ee3f3.tmp, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48c668dc-ae9e-478e-ba3b-2dc01b3fd49d.tmp, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\999d1f7d-5e7a-42d2-9f55-986325d0b9cc.tmp, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: setup.exe, Pid: 5640, TotalTime: 0, Count: 3, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: updater.exe, Pid: 3220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T09:55:37.538 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T10:08:49.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T10:10:26.521 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #38477, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T10:10:26.537 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #38479, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T10:10:36.529 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #38492, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T10:10:36.545 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #38495, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T10:23:54.396 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T10:38:59.385 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T10:54:04.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T10:59:37.380 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827afb_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #41204, FileId: 0x4a8e00000004c4ca, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T10:59:37.990 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827afb_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #41208, FileId: 0x4a8f00000004c4ca, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T11:02:30.470 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827afc_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #41370, FileId: 0x1c40000000568e7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T11:02:31.032 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827afc_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #41374, FileId: 0x1c50000000568e7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T11:09:09.395 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T11:10:24.631 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #41812, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T11:10:24.647 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #41814, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T11:24:14.395 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T11:39:19.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T11:54:24.396 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T11:55:37.543 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53578, Count: 6977, MaxTime: 937, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: updater.exe, Pid: 376, TotalTime: 5306, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping376_1680452698\147.0.7727.56_chrome_installer_uncompressed.exe, EstimatedImpact: 11% 2026-04-14T11:55:37.543 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4276, Count: 38835, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.Z2H8W3, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 168, Count: 11, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 93, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_3.MAI, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 136, Count: 11, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: setup.exe, Pid: 6844, TotalTime: 124, Count: 3, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 2% 2026-04-14T11:55:37.543 ProcessImageName: updater.exe, Pid: 7968, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7e01fd5-0bec-4699-a4c8-9207f2866a1d.tmp, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: updater.exe, Pid: 7520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb31cf15-20a3-44cf-aecb-8f26d089f60c.tmp, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54160216-3e76-4538-9fff-b20d43d8e58c.tmp, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\76936e04-0787-470b-8b6c-dae4c52a41ad.tmp, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dadd3440-2d20-4721-b8c9-e5150068e5f8.tmp, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a0315b44-0a94-4d82-9470-a47ffa6ee3f3.tmp, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48c668dc-ae9e-478e-ba3b-2dc01b3fd49d.tmp, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2f1cb4-6379-46b1-8a3a-0defbd93fff6.tmp, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: updater.exe, Pid: 4604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59393a84-5d25-4304-8cd8-aa75ffe7cd52.tmp, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\999d1f7d-5e7a-42d2-9f55-986325d0b9cc.tmp, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: setup.exe, Pid: 5640, TotalTime: 0, Count: 3, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: updater.exe, Pid: 3220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T11:55:37.543 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T12:09:29.399 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T12:24:34.397 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T12:39:39.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T12:54:44.394 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T13:09:49.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T13:10:36.157 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #48465, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T13:24:54.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T13:27:54.356 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #49442, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T13:39:59.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T13:55:04.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T13:55:37.547 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53714, Count: 6992, MaxTime: 937, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 376, TotalTime: 5306, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping376_1680452698\147.0.7727.56_chrome_installer_uncompressed.exe, EstimatedImpact: 11% 2026-04-14T13:55:37.547 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4951, Count: 45306, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.Z2H8W3, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 168, Count: 11, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 93, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_3.MAI, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 136, Count: 12, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: setup.exe, Pid: 6844, TotalTime: 124, Count: 3, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 2% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 7968, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7e01fd5-0bec-4699-a4c8-9207f2866a1d.tmp, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\999d1f7d-5e7a-42d2-9f55-986325d0b9cc.tmp, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40b96442-7909-43a7-991e-ff765dfdf61d.tmp, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a0315b44-0a94-4d82-9470-a47ffa6ee3f3.tmp, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dadd3440-2d20-4721-b8c9-e5150068e5f8.tmp, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\76936e04-0787-470b-8b6c-dae4c52a41ad.tmp, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\972f278a-e7a0-4615-a353-950d728c80e2.tmp, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2f1cb4-6379-46b1-8a3a-0defbd93fff6.tmp, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 7520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb31cf15-20a3-44cf-aecb-8f26d089f60c.tmp, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48c668dc-ae9e-478e-ba3b-2dc01b3fd49d.tmp, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54160216-3e76-4538-9fff-b20d43d8e58c.tmp, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 4604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59393a84-5d25-4304-8cd8-aa75ffe7cd52.tmp, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: setup.exe, Pid: 5640, TotalTime: 0, Count: 3, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 3220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T13:55:37.547 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T14:10:09.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T14:25:14.397 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T14:40:19.396 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T14:55:24.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T15:10:29.393 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T15:10:35.623 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #55153, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T15:25:34.393 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T15:40:39.384 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T15:55:37.556 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53714, Count: 6992, MaxTime: 937, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5566, Count: 51786, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.Z2H8W3, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 376, TotalTime: 5306, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping376_1680452698\147.0.7727.56_chrome_installer_uncompressed.exe, EstimatedImpact: 11% 2026-04-14T15:55:37.556 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 168, Count: 11, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 93, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_3.MAI, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 136, Count: 12, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: setup.exe, Pid: 6844, TotalTime: 124, Count: 3, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 2% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 7248, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60491b39-27b1-424f-b18b-364bbb158958.tmp, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 7968, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7e01fd5-0bec-4699-a4c8-9207f2866a1d.tmp, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40b96442-7909-43a7-991e-ff765dfdf61d.tmp, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a0315b44-0a94-4d82-9470-a47ffa6ee3f3.tmp, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\76936e04-0787-470b-8b6c-dae4c52a41ad.tmp, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\972f278a-e7a0-4615-a353-950d728c80e2.tmp, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54160216-3e76-4538-9fff-b20d43d8e58c.tmp, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 7520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb31cf15-20a3-44cf-aecb-8f26d089f60c.tmp, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2f1cb4-6379-46b1-8a3a-0defbd93fff6.tmp, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 5996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7aca4ed7-4b72-4af1-a77c-6389f8442722.tmp, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\999d1f7d-5e7a-42d2-9f55-986325d0b9cc.tmp, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 4604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59393a84-5d25-4304-8cd8-aa75ffe7cd52.tmp, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48c668dc-ae9e-478e-ba3b-2dc01b3fd49d.tmp, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dadd3440-2d20-4721-b8c9-e5150068e5f8.tmp, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: setup.exe, Pid: 5640, TotalTime: 0, Count: 3, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 3220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T15:55:37.556 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T15:55:44.393 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T16:10:49.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T16:25:54.395 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T16:40:59.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T16:56:04.388 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T17:10:24.082 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #61823, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T17:11:09.393 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T17:26:14.394 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T17:41:19.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T17:55:37.564 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54005, Count: 7028, MaxTime: 937, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6226, Count: 58257, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.Z2H8W3, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 376, TotalTime: 5306, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping376_1680452698\147.0.7727.56_chrome_installer_uncompressed.exe, EstimatedImpact: 11% 2026-04-14T17:55:37.564 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 195, Count: 97, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_3.MAI, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 168, Count: 11, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 136, Count: 13, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: setup.exe, Pid: 6844, TotalTime: 124, Count: 3, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 2% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 7968, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7e01fd5-0bec-4699-a4c8-9207f2866a1d.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 7248, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60491b39-27b1-424f-b18b-364bbb158958.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dadd3440-2d20-4721-b8c9-e5150068e5f8.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\999d1f7d-5e7a-42d2-9f55-986325d0b9cc.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48c668dc-ae9e-478e-ba3b-2dc01b3fd49d.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2f1cb4-6379-46b1-8a3a-0defbd93fff6.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\af80c1f8-fecf-492f-8c9c-9844cda257c9.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40b96442-7909-43a7-991e-ff765dfdf61d.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a0315b44-0a94-4d82-9470-a47ffa6ee3f3.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3b5fef1-f06e-46f5-b404-5b02e4b2d973.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\76936e04-0787-470b-8b6c-dae4c52a41ad.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\972f278a-e7a0-4615-a353-950d728c80e2.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 5996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7aca4ed7-4b72-4af1-a77c-6389f8442722.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 7520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb31cf15-20a3-44cf-aecb-8f26d089f60c.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54160216-3e76-4538-9fff-b20d43d8e58c.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 4604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59393a84-5d25-4304-8cd8-aa75ffe7cd52.tmp, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: setup.exe, Pid: 5640, TotalTime: 0, Count: 3, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 3220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T17:55:37.564 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T17:56:24.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T18:10:37.026 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #65164, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T18:11:29.396 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T18:26:34.385 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T18:41:39.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T18:56:44.390 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T19:10:26.404 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68491, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T19:11:49.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T19:20:55.088 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b2b_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #69160, FileId: 0xdc0000000567a1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T19:20:56.731 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b2b_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #69194, FileId: 0xe70000000567a1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T19:20:57.012 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b2b_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #69224, FileId: 0xf10000000567a1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T19:26:54.385 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T19:41:59.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T19:55:37.571 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55940, Count: 7155, MaxTime: 937, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6766, Count: 64728, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.Z2H8W3, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 376, TotalTime: 5306, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping376_1680452698\147.0.7727.56_chrome_installer_uncompressed.exe, EstimatedImpact: 11% 2026-04-14T19:55:37.571 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 240, Count: 163, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_3.MAI, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 168, Count: 11, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 136, Count: 13, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: setup.exe, Pid: 6844, TotalTime: 124, Count: 3, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 2% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\239e22e2-86f9-49cf-b3f3-e4754b7f393a.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 7968, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7e01fd5-0bec-4699-a4c8-9207f2866a1d.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 7248, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60491b39-27b1-424f-b18b-364bbb158958.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 5996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7aca4ed7-4b72-4af1-a77c-6389f8442722.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2f1cb4-6379-46b1-8a3a-0defbd93fff6.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dadd3440-2d20-4721-b8c9-e5150068e5f8.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 6492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13f2cba4-666e-4e77-b8b8-517b2ad5aa09.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 7520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb31cf15-20a3-44cf-aecb-8f26d089f60c.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48c668dc-ae9e-478e-ba3b-2dc01b3fd49d.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\af80c1f8-fecf-492f-8c9c-9844cda257c9.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40b96442-7909-43a7-991e-ff765dfdf61d.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a0315b44-0a94-4d82-9470-a47ffa6ee3f3.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\76936e04-0787-470b-8b6c-dae4c52a41ad.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\972f278a-e7a0-4615-a353-950d728c80e2.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c4d510da-cd32-4c3d-85ea-c6504209649a.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3b5fef1-f06e-46f5-b404-5b02e4b2d973.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\999d1f7d-5e7a-42d2-9f55-986325d0b9cc.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54160216-3e76-4538-9fff-b20d43d8e58c.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 4604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59393a84-5d25-4304-8cd8-aa75ffe7cd52.tmp, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: setup.exe, Pid: 5640, TotalTime: 0, Count: 3, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 3220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T19:55:37.571 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T19:57:04.394 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T20:10:37.187 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72040, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T20:12:09.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T20:27:14.397 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T20:42:19.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T20:57:24.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T21:12:29.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T21:27:34.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T21:42:39.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T21:55:37.580 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55940, Count: 7156, MaxTime: 937, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7471, Count: 71199, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.Z2H8W3, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 376, TotalTime: 5306, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping376_1680452698\147.0.7727.56_chrome_installer_uncompressed.exe, EstimatedImpact: 11% 2026-04-14T21:55:37.580 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 255, Count: 168, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_3.MAI, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 168, Count: 11, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 136, Count: 13, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: setup.exe, Pid: 6844, TotalTime: 124, Count: 3, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 2% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\239e22e2-86f9-49cf-b3f3-e4754b7f393a.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 7968, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7e01fd5-0bec-4699-a4c8-9207f2866a1d.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 7248, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60491b39-27b1-424f-b18b-364bbb158958.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3b5fef1-f06e-46f5-b404-5b02e4b2d973.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89e33966-f3ca-4b62-8803-7020a1a1ccaa.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2f1cb4-6379-46b1-8a3a-0defbd93fff6.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 5996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7aca4ed7-4b72-4af1-a77c-6389f8442722.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48c668dc-ae9e-478e-ba3b-2dc01b3fd49d.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\af80c1f8-fecf-492f-8c9c-9844cda257c9.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c4d510da-cd32-4c3d-85ea-c6504209649a.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40b96442-7909-43a7-991e-ff765dfdf61d.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a0315b44-0a94-4d82-9470-a47ffa6ee3f3.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dadd3440-2d20-4721-b8c9-e5150068e5f8.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\76936e04-0787-470b-8b6c-dae4c52a41ad.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\972f278a-e7a0-4615-a353-950d728c80e2.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 6492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13f2cba4-666e-4e77-b8b8-517b2ad5aa09.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a18c453-adf1-4b96-ac7c-707c332e441a.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\999d1f7d-5e7a-42d2-9f55-986325d0b9cc.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 7520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb31cf15-20a3-44cf-aecb-8f26d089f60c.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54160216-3e76-4538-9fff-b20d43d8e58c.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 4604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59393a84-5d25-4304-8cd8-aa75ffe7cd52.tmp, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: setup.exe, Pid: 5640, TotalTime: 0, Count: 3, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 3220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T21:55:37.580 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T21:57:44.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T22:10:36.206 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #78678, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T22:12:49.394 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T22:27:54.398 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T22:42:59.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T22:58:04.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T23:13:09.384 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T23:27:52.641 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82966, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-14T23:28:14.395 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T23:43:19.384 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-14T23:55:24.385 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-14T23:55:24.416 Job Notification: New process added to job (1820) 2026-04-14T23:55:24.432 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-14T23:55:24.432 Job Notification: New process added to job (6684) 2026-04-14T23:55:24.432 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:1820] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6684]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-14T23:55:24.448 [TaskUpdate] Run lost signature update scheduled job: SignatureUpdate -ScheduleJob -RestrictPrivileges 2026-04-14T23:55:24.448 [TaskUpdate] Run lost signature update scheduled job: SignatureUpdate -ScheduleJob -RestrictPrivileges 2026-04-14T23:55:24.463 Job Notification: New process added to job (5764) 2026-04-14T23:55:24.463 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-14T23:55:24.463 Job Notification: New process added to job (7136) 2026-04-14T23:55:24.479 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:5764] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7136]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-14T23:55:24.494 [TaskUpdate] MpCmdRun process completed before completion signal is received 2026-04-14T23:55:24.494 Job Notification: Process exited from job (5764) 2026-04-14T23:55:24.494 Aggressive catchup quick scan threshold: 788107621481 / 25920000000000 2026-04-14T23:55:24.510 Job Notification: Process exited from job (7136) 2026-04-14T23:55:24.510 Job Notification: New process added to job (2140) 2026-04-14T23:55:24.510 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-14T23:55:24.510 Job Notification: New process added to job (5900) 2026-04-14T23:55:24.510 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:2140] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5900]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-14T23:55:25.010 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-14T23:55:25.010 [RTP] Duplicating the current plugin configuration object... 2026-04-14T23:55:25.010 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-14T23:55:25.010 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-14T23:55:25.010 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-14T23:55:25.010 [RTP] No config change detected. Not updating plugin configuration. 2026-04-14T23:55:25.010 [RTP] No config changes found. No configuration switch. 2026-04-14T23:55:25.010 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-14T23:55:25.057 Task(GetDeviceTicket -AccessKey 95583347-CC12-8E2A-A934-D9553AF45F15 ) launched as network service 2026-04-14T23:55:25.057 Job Notification: New process added to job (7440) 2026-04-14T23:55:26.289 Job Notification: Process exited from job (7440) 2026-04-14T23:55:27.464 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-14T23:55:27.464 [Cloud] Start of cloud request. Passive mode: 0 2026-04-14T23:55:27.464 [Cloud] Queued cloud request. 2026-04-14T23:55:27.464 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-14T23:55:27.464 [Cloud] Dequeued cloud request. 2026-04-14T23:55:27.464 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-14T23:55:27.480 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-14T23:55:27.480 [Cloud] Start of cloud request. Passive mode: 0 2026-04-14T23:55:27.480 [Cloud] Queued cloud request. 2026-04-14T23:55:27.480 [Cloud] Dequeued cloud request. 2026-04-14T23:55:27.480 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-14T23:55:27.683 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-14T23:55:27.683 [Cloud] End of cloud request. 2026-04-14T23:55:27.683 [Cloud] End of cloud request. 2026-04-14T23:55:27.982 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-14T23:55:37.592 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 56356, Count: 7166, MaxTime: 937, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8191, Count: 77670, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.Z2H8W3, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 376, TotalTime: 5306, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping376_1680452698\147.0.7727.56_chrome_installer_uncompressed.exe, EstimatedImpact: 11% 2026-04-14T23:55:37.592 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 255, Count: 168, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_3.MAI, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 168, Count: 11, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 136, Count: 13, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: setup.exe, Pid: 6844, TotalTime: 124, Count: 3, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 2% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\239e22e2-86f9-49cf-b3f3-e4754b7f393a.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 7968, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7e01fd5-0bec-4699-a4c8-9207f2866a1d.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 7248, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60491b39-27b1-424f-b18b-364bbb158958.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 5996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7aca4ed7-4b72-4af1-a77c-6389f8442722.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dadd3440-2d20-4721-b8c9-e5150068e5f8.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89e33966-f3ca-4b62-8803-7020a1a1ccaa.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2f1cb4-6379-46b1-8a3a-0defbd93fff6.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 7520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb31cf15-20a3-44cf-aecb-8f26d089f60c.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a18c453-adf1-4b96-ac7c-707c332e441a.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6f96c67-ec76-41d7-a3dd-10aa8765cc4a.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 4604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59393a84-5d25-4304-8cd8-aa75ffe7cd52.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48c668dc-ae9e-478e-ba3b-2dc01b3fd49d.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\af80c1f8-fecf-492f-8c9c-9844cda257c9.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40b96442-7909-43a7-991e-ff765dfdf61d.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a0315b44-0a94-4d82-9470-a47ffa6ee3f3.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3b5fef1-f06e-46f5-b404-5b02e4b2d973.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\972f278a-e7a0-4615-a353-950d728c80e2.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c4d510da-cd32-4c3d-85ea-c6504209649a.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 6492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13f2cba4-666e-4e77-b8b8-517b2ad5aa09.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\999d1f7d-5e7a-42d2-9f55-986325d0b9cc.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a199f96e-573e-4525-b88c-77c2f54372e9.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\96c47700-3bc8-4a92-a69d-038e07dda0a4.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\54160216-3e76-4538-9fff-b20d43d8e58c.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\76936e04-0787-470b-8b6c-dae4c52a41ad.tmp, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: setup.exe, Pid: 5640, TotalTime: 0, Count: 3, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 3220, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T23:55:37.592 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-14T23:56:24.031 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\A7242574-A7BA-4C40-8949-2B04C6535D011550.1dccc6a4bad2fdc 2026-04-14T23:56:24.094 Verifying engine and signature files (source: 0) ... 2026-04-14T23:56:24.094 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B7BDBB0F-169E-42D4-914B-E07E468E205A}\mpengine.dll] due to PPL. 2026-04-14T23:56:24.094 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B7BDBB0F-169E-42D4-914B-E07E468E205A}\mpasbase.vdm] (file in cache) 2026-04-14T23:56:24.094 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B7BDBB0F-169E-42D4-914B-E07E468E205A}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-14T23:56:24.109 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B7BDBB0F-169E-42D4-914B-E07E468E205A}\mpasdlta.vdm] 2026-04-14T23:56:24.109 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B7BDBB0F-169E-42D4-914B-E07E468E205A}\mpavbase.vdm] (file in cache) 2026-04-14T23:56:24.109 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B7BDBB0F-169E-42D4-914B-E07E468E205A}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-14T23:56:24.125 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B7BDBB0F-169E-42D4-914B-E07E468E205A}\mpavdlta.vdm] 2026-04-14T23:56:24.308 [Engine] IsHybridMode: 0 2026-04-14T23:56:24.308 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-14T23:56:24.371 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-B6E1F4E8A3FC4879F6AD80FDC7836B32E5FB90F0.bin): 0x00000002 2026-04-14T23:56:24.371 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-B6E1F4E8A3FC4879F6AD80FDC7836B32E5FB90F0.bin) 2026-04-14T23:56:24.371 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-14T23:56:24.371 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-14T23:56:24.371 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-14T23:56:24.371 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-14T23:56:33.191 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-14T23:56:33.191 [AutoExclusion] Applied roles from cache. 2026-04-14T23:56:33.191 [AutoExclusion] Started roles monitoring. 2026-04-14T23:56:33.206 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D908020, lRefCount: 5, hr=0 2026-04-14T23:56:33.206 [Engine] New active engine 00007FFD0EA68020 replacing engine 00007FFD0D908020. Number of active engines: 2 2026-04-14T23:56:33.206 EngineInit:Global ASOC is enabled 2026-04-14T23:56:33.206 EngineInit:ASOO is enabled for developer volumes 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-14T23:56:33.222 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-14T23:56:33.238 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-14T23:56:33.238 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-14T23:56:33.238 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-14T23:56:33.238 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-14T23:56:33.238 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-14T23:56:33.253 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-14T23:56:33.253 [Plugin] Initializing RTP plugin state... 2026-04-14T23:56:33.253 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-14T23:56:33.253 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎14‎-‎2026 01:41:37 Last Perf:‎04‎-‎14‎-‎2026 01:41:37 First RTP Scan:‎04‎-‎14‎-‎2026 01:41:38 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:706 Misses:2785 BM Queue:0,181,0 Proc:0,48,0 File:0,181,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:84634 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:93071898 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2637 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:6945 TotalHits:23461 InstanceCacheInserts:46117 InstanceCacheUpdates:0 InstanceCacheDeletes:327 InstanceCacheHits:1770 InstanceCacheMisses:49416 InstanceCacheOverflows:35828 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (542/324) Success: 324, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-14T23:56:33.253 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B7BDBB0F-169E-42D4-914B-E07E468E205A} 2026-04-14T23:56:33.253 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1AAAD9F5-B444-4160-B1CB-CEC997FDB10E}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1AAAD9F5-B444-4160-B1CB-CEC997FDB10E}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-14T23:56:33.253 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-14T23:56:33.253 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6F6DDD9F-1B45-4084-9416-5E12920A7B5E} removed 2026-04-14T23:56:33.253 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-14T23:56:33.253 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-14T23:56:33.253 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-14T23:56:33.253 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-14T23:56:33.253 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-14-2026 23:56:33 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-14-2026 23:56:33 2026-04-14T23:56:33.253 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-14T23:56:33.253 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-14T23:56:33.253 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-14T23:56:33.253 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-14T23:56:33.253 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-14T23:56:33.253 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-14T23:56:33.253 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-14T23:56:33.253 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-14T23:56:33.253 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-14T23:56:33.253 MdCoreSvc is supported in this platform and OS Signature updated on 04-14-2026 23:56:33 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.106.0 AV Signature Version: 1.449.106.0 ************************************************************ 2026-04-14T23:56:33.253 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-14T23:56:33.253 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\A7242574-A7BA-4C40-8949-2B04C6535D011550.1dccc6a4bad2fdc 2026-04-14T23:56:33.284 Process scan (postsignatureupdatescan) started. 2026-04-14T23:56:33.316 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-14T23:56:33.316 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 04-14-2026 23:56:33 ************************************************************ 2026-04-14T23:56:33.519 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-14T23:56:33.519 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-14T23:56:33.519 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-14T23:56:33.519 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-14T23:56:33.519 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-14T23:56:33.519 Job Notification: Process exited from job (1820) 2026-04-14T23:56:33.534 [Engine] Engine 00007FFD0D908020 no longer in use. Number of active engines: 1 2026-04-14T23:56:33.534 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-14T23:56:33.534 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-14T23:56:33.534 Job Notification: Process exited from job (2140) 2026-04-14T23:56:33.534 Job Notification: Process exited from job (5900) 2026-04-14T23:56:33.534 Job Notification: Process exited from job (6684) 2026-04-14T23:56:33.738 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-14T23:56:33.738 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-14T23:56:33.738 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-14T23:56:34.441 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 56356, Count: 7166, MaxTime: 937, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-14T23:56:34.441 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8191, Count: 77724, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.Z2H8W3, EstimatedImpact: 0% 2026-04-14T23:56:34.441 ProcessImageName: updater.exe, Pid: 376, TotalTime: 5306, Count: 13, MaxTime: 5156, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping376_1680452698\147.0.7727.56_chrome_installer_uncompressed.exe, EstimatedImpact: 11% 2026-04-14T23:56:34.441 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 255, Count: 168, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ae9_3.MAI, EstimatedImpact: 0% 2026-04-14T23:56:34.441 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 168, Count: 11, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe, EstimatedImpact: 0% 2026-04-14T23:56:34.441 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-14T23:56:34.441 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 136, Count: 13, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 0% 2026-04-14T23:56:34.441 ProcessImageName: setup.exe, Pid: 6844, TotalTime: 124, Count: 3, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 2% 2026-04-14T23:56:34.441 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\239e22e2-86f9-49cf-b3f3-e4754b7f393a.tmp, EstimatedImpact: 0% 2026-04-14T23:56:34.441 ProcessImageName: updater.exe, Pid: 7968, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7e01fd5-0bec-4699-a4c8-9207f2866a1d.tmp, EstimatedImpact: 0% 2026-04-14T23:56:34.441 ProcessImageName: updater.exe, Pid: 7248, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60491b39-27b1-424f-b18b-364bbb158958.tmp, EstimatedImpact: 0% 2026-04-14T23:56:34.441 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-14T23:56:34.503 [Engine] RSIG_UNLOADENGINE, 00007FFD0D908020, err=0x0 2026-04-14T23:56:34.503 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1AAAD9F5-B444-4160-B1CB-CEC997FDB10E} removed 2026-04-14T23:56:40.488 Process scan (postsignatureupdatescan) completed. 2026-04-14T23:58:24.394 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T00:01:33.263 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-15T00:10:25.332 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85474, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T00:10:25.332 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85476, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T00:10:35.340 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85489, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T00:10:35.340 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85491, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T00:10:35.496 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85495, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T00:10:35.496 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85497, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T00:13:29.393 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T00:28:34.396 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T00:43:39.393 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T00:58:44.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T01:10:26.210 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88833, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T01:10:26.226 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88835, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T01:10:36.237 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88848, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T01:10:36.237 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88850, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T01:13:49.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T01:28:54.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T01:43:59.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T01:56:33.213 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 705, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3X0JX3, EstimatedImpact: 0% 2026-04-15T01:56:33.213 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 542, Count: 59, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-04-15T01:56:33.213 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8e678e6d-acf7-4169-b3cf-f261db41a91e.tmp, EstimatedImpact: 0% 2026-04-15T01:56:33.213 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925fae7c-7944-4667-81df-a12eee08178b.tmp, EstimatedImpact: 0% 2026-04-15T01:59:04.395 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T02:01:53.658 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:68D070FA-730D-4C61-8A8C-B74FC0945E72, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-15T02:01:53.658 Scheduled scan with Id 68D070FA-730D-4C61-8A8C-B74FC0945E72 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-15T02:01:53.658 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-15T02:01:53.658 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-15T02:01:53.658 [SFC] System file cache build is not needed (already completed) 2026-04-15T02:02:05.712 Engine:Triggered AR EMS scan 2026-04-15T02:02:05.728 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:05.744 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:05.775 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:05.791 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:05.822 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:05.837 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:05.853 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:05.884 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:05.916 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:05.931 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:05.947 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:05.962 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:05.994 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:06.009 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:06.025 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:06.056 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:06.072 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:06.134 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:06.166 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:06.181 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:06.212 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:06.259 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-15T02:02:06.291 Bm signature throttled:0x00002db31bed458f 2026-04-15T02:02:54.407 QuickScan:ScanID:68D070FA-730D-4C61-8A8C-B74FC0945E72: Quick scan finished with error 0 2026-04-15T02:02:54.423 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-15T02:02:54.932 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-15T02:02:54.932 [RTP] Duplicating the current plugin configuration object... 2026-04-15T02:02:54.932 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-15T02:02:54.932 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-15T02:02:54.932 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-15T02:02:54.932 [RTP] No config change detected. Not updating plugin configuration. 2026-04-15T02:02:54.932 [RTP] No config changes found. No configuration switch. 2026-04-15T02:02:54.932 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-15T02:10:25.930 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92408, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T02:10:25.945 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92410, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T02:10:35.942 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92423, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T02:10:35.958 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92426, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T02:14:09.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T02:29:14.396 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T02:44:19.394 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T02:59:24.390 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T03:10:27.382 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #95963, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T03:10:27.397 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #95965, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T03:10:37.398 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #95977, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T03:10:37.398 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #95978, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T03:10:37.413 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #95981, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T03:14:29.396 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T03:17:13.826 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b4f_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97548, FileId: 0x91f000000008ed6, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T03:17:24.529 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b4f_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #98003, FileId: 0xbc20000000568d2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T03:29:34.388 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T03:32:34.541 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b55_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #98857, FileId: 0x4fc0000000090ad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T03:32:34.557 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b55_a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #98860, FileId: 0x4fd0000000090ad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T03:44:39.393 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T03:56:33.217 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 44149, Count: 6313, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-15T03:56:33.217 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1425, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3X0JX3, EstimatedImpact: 0% 2026-04-15T03:56:33.217 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 108, Count: 2, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-15T03:56:33.217 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b4f_1.MAD, EstimatedImpact: 0% 2026-04-15T03:56:33.217 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8e678e6d-acf7-4169-b3cf-f261db41a91e.tmp, EstimatedImpact: 0% 2026-04-15T03:56:33.217 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925fae7c-7944-4667-81df-a12eee08178b.tmp, EstimatedImpact: 0% 2026-04-15T03:56:33.217 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916e8803-8d22-456f-ae84-3a314220c0ba.tmp, EstimatedImpact: 0% 2026-04-15T03:56:33.217 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7af1665b-2634-4dd0-823e-e4c751d2fae5.tmp, EstimatedImpact: 0% 2026-04-15T03:59:44.394 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T04:10:25.897 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #100943, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T04:10:25.912 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #100945, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T04:10:35.904 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #100958, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T04:10:35.920 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #100961, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T04:14:49.384 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T04:27:30.510 [RTP] [Mini-filter] OpenWithoutRead notification (4515, 10001, \Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-04-15T04:27:52.713 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #130173, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T04:27:52.713 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #130178, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T04:27:56.509 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #134492, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T04:27:56.509 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #134498, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T04:27:56.525 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #134500, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T04:27:56.525 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #134502, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T04:28:06.516 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #145389, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T04:28:06.531 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #145392, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T04:29:54.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T04:44:59.393 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T05:00:04.383 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T05:10:25.590 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #147751, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T05:10:25.606 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #147753, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T05:10:35.599 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #147766, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T05:10:35.599 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #147768, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T05:10:35.771 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #147772, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T05:10:35.771 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #147774, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T05:15:09.394 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T05:30:14.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T05:45:19.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T05:56:33.224 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45263, Count: 6378, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-15T05:56:33.224 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2160, Count: 19413, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3X0JX3, EstimatedImpact: 0% 2026-04-15T05:56:33.224 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 108, Count: 2, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-15T05:56:33.224 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b4f_1.MAD, EstimatedImpact: 0% 2026-04-15T05:56:33.224 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8e678e6d-acf7-4169-b3cf-f261db41a91e.tmp, EstimatedImpact: 0% 2026-04-15T05:56:33.224 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95101c2f-8c5a-4a77-b303-9bc107cc15f9.tmp, EstimatedImpact: 0% 2026-04-15T05:56:33.224 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-15T05:56:33.224 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925fae7c-7944-4667-81df-a12eee08178b.tmp, EstimatedImpact: 0% 2026-04-15T05:56:33.224 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f41f8dcc-655a-4f2f-840c-1d4256d4b48e.tmp, EstimatedImpact: 0% 2026-04-15T05:56:33.224 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916e8803-8d22-456f-ae84-3a314220c0ba.tmp, EstimatedImpact: 0% 2026-04-15T05:56:33.224 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7af1665b-2634-4dd0-823e-e4c751d2fae5.tmp, EstimatedImpact: 0% 2026-04-15T05:56:33.224 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T06:00:24.393 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T06:10:26.615 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #151101, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T06:10:26.630 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #151103, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T06:10:36.639 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #151116, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T06:10:36.639 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #151119, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T06:15:29.380 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T06:30:34.380 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T06:42:00.969 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b62_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #152846, FileId: 0xe200000002c1c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T06:42:01.531 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b62_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #152850, FileId: 0xe300000002c1c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T06:45:39.395 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T07:00:44.394 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T07:10:25.515 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #154415, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T07:10:25.530 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #154417, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T07:10:35.548 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #154430, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T07:10:35.548 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #154433, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T07:15:49.385 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T07:30:54.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T07:45:59.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T07:56:33.226 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45263, Count: 6379, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-15T07:56:33.226 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2880, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3X0JX3, EstimatedImpact: 0% 2026-04-15T07:56:33.226 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 108, Count: 2, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-15T07:56:33.226 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b4f_1.MAD, EstimatedImpact: 0% 2026-04-15T07:56:33.226 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-15T07:56:33.226 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8e678e6d-acf7-4169-b3cf-f261db41a91e.tmp, EstimatedImpact: 0% 2026-04-15T07:56:33.226 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95101c2f-8c5a-4a77-b303-9bc107cc15f9.tmp, EstimatedImpact: 0% 2026-04-15T07:56:33.226 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd18f0ce-81a5-4932-b9c2-02a3381931e0.tmp, EstimatedImpact: 0% 2026-04-15T07:56:33.226 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925fae7c-7944-4667-81df-a12eee08178b.tmp, EstimatedImpact: 0% 2026-04-15T07:56:33.226 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f41f8dcc-655a-4f2f-840c-1d4256d4b48e.tmp, EstimatedImpact: 0% 2026-04-15T07:56:33.226 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7af1665b-2634-4dd0-823e-e4c751d2fae5.tmp, EstimatedImpact: 0% 2026-04-15T07:56:33.226 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dabf91c6-fd59-46d5-be23-157150200d04.tmp, EstimatedImpact: 0% 2026-04-15T07:56:33.226 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916e8803-8d22-456f-ae84-3a314220c0ba.tmp, EstimatedImpact: 0% 2026-04-15T07:56:33.226 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T08:01:04.380 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T08:10:26.104 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #157763, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T08:10:26.119 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #157765, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T08:10:36.111 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #157778, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T08:10:36.111 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #157781, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T08:16:09.393 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T08:26:06.925 Job Notification: Process exited from job (3636) 2026-04-15T08:31:14.388 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T08:46:19.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T09:01:24.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T09:10:25.923 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #161099, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T09:10:25.923 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #161101, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T09:10:35.928 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #161114, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T09:10:35.944 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #161117, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T09:16:29.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T09:27:56.590 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #162075, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T09:27:56.605 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #162077, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T09:28:02.421 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #162096, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T09:28:02.437 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #162099, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T09:28:02.437 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #162101, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T09:28:12.431 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #162115, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T09:28:12.431 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #162114, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T09:28:12.431 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #162116, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T09:31:34.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T09:46:39.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T09:56:33.227 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45278, Count: 6380, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3615, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3X0JX3, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 108, Count: 2, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b4f_1.MAD, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8e678e6d-acf7-4169-b3cf-f261db41a91e.tmp, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95101c2f-8c5a-4a77-b303-9bc107cc15f9.tmp, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c3bceb4-8f69-4a51-ba57-105b9cab2b25.tmp, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6f430a7-874c-4f72-afaf-fdeb5ab12027.tmp, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7af1665b-2634-4dd0-823e-e4c751d2fae5.tmp, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dabf91c6-fd59-46d5-be23-157150200d04.tmp, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd18f0ce-81a5-4932-b9c2-02a3381931e0.tmp, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925fae7c-7944-4667-81df-a12eee08178b.tmp, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f41f8dcc-655a-4f2f-840c-1d4256d4b48e.tmp, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bad1098a-d6f7-4ad4-99d1-48a4ad2d8662.tmp, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916e8803-8d22-456f-ae84-3a314220c0ba.tmp, EstimatedImpact: 0% 2026-04-15T09:56:33.227 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T10:01:44.380 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T10:10:27.056 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #164446, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T10:10:27.072 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #164448, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T10:10:37.063 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #164461, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T10:10:37.063 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #164463, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T10:10:37.219 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #164467, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T10:10:37.234 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #164469, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T10:16:49.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T10:31:54.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T10:46:59.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T11:02:04.390 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T11:10:26.999 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #167769, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T11:10:27.015 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #167771, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T11:10:37.023 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #167784, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T11:10:37.023 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #167787, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T11:14:49.933 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b69_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #168024, FileId: 0x19c00000002c21a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T11:17:09.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T11:32:14.388 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T11:47:19.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T11:56:33.236 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45278, Count: 6382, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4395, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3X0JX3, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 108, Count: 2, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 23, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b4f_1.MAD, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8e678e6d-acf7-4169-b3cf-f261db41a91e.tmp, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7dca3659-a873-4ffb-ba4c-338e4aa83e78.tmp, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95101c2f-8c5a-4a77-b303-9bc107cc15f9.tmp, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c3bceb4-8f69-4a51-ba57-105b9cab2b25.tmp, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6f430a7-874c-4f72-afaf-fdeb5ab12027.tmp, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7af1665b-2634-4dd0-823e-e4c751d2fae5.tmp, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dabf91c6-fd59-46d5-be23-157150200d04.tmp, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd18f0ce-81a5-4932-b9c2-02a3381931e0.tmp, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925fae7c-7944-4667-81df-a12eee08178b.tmp, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f41f8dcc-655a-4f2f-840c-1d4256d4b48e.tmp, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916e8803-8d22-456f-ae84-3a314220c0ba.tmp, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bad1098a-d6f7-4ad4-99d1-48a4ad2d8662.tmp, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c48fa15e-4c5f-426e-ae0c-ccd6161f498e.tmp, EstimatedImpact: 0% 2026-04-15T11:56:33.236 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T12:02:24.383 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T12:10:26.828 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #171083, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T12:10:26.844 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #171085, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T12:10:36.840 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #171098, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T12:10:36.840 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #171100, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T12:10:36.856 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #171102, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T12:17:29.388 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T12:32:34.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T12:47:39.381 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T13:02:44.388 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T13:10:24.669 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #174402, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T13:10:24.685 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #174404, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T13:10:34.678 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #174417, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T13:10:34.678 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #174419, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T13:10:34.693 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #174421, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T13:17:49.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T13:32:54.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T13:47:59.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T13:56:33.243 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45278, Count: 6382, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5115, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3X0JX3, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 108, Count: 2, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 23, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b4f_1.MAD, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8e678e6d-acf7-4169-b3cf-f261db41a91e.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7dca3659-a873-4ffb-ba4c-338e4aa83e78.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95101c2f-8c5a-4a77-b303-9bc107cc15f9.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c3bceb4-8f69-4a51-ba57-105b9cab2b25.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6f430a7-874c-4f72-afaf-fdeb5ab12027.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916e8803-8d22-456f-ae84-3a314220c0ba.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dabf91c6-fd59-46d5-be23-157150200d04.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd18f0ce-81a5-4932-b9c2-02a3381931e0.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925fae7c-7944-4667-81df-a12eee08178b.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f41f8dcc-655a-4f2f-840c-1d4256d4b48e.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7af1665b-2634-4dd0-823e-e4c751d2fae5.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bad1098a-d6f7-4ad4-99d1-48a4ad2d8662.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2076504e-f6fe-401b-a496-ad29bc2556a3.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c48fa15e-4c5f-426e-ae0c-ccd6161f498e.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bceccfe3-1a90-4521-a457-db6210aeb1b4.tmp, EstimatedImpact: 0% 2026-04-15T13:56:33.243 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T14:03:04.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T14:10:24.749 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177737, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T14:10:24.765 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177739, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T14:10:34.764 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177751, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T14:10:34.779 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177753, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T14:18:09.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T14:28:02.518 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #178720, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T14:28:02.534 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #178722, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T14:28:07.159 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #178732, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T14:28:07.175 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #178735, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T14:28:07.175 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #178737, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T14:28:17.170 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #178750, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T14:28:17.185 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #178753, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T14:33:14.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T14:48:19.385 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T15:03:24.385 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T15:10:24.719 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #181082, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T15:18:29.384 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T15:33:34.383 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T15:48:39.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T15:56:33.249 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45293, Count: 6383, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5700, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3X0JX3, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 108, Count: 2, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 23, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b4f_1.MAD, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8e678e6d-acf7-4169-b3cf-f261db41a91e.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7dca3659-a873-4ffb-ba4c-338e4aa83e78.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\328a8a13-af0d-4fd5-923c-b57832eb5c5c.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95101c2f-8c5a-4a77-b303-9bc107cc15f9.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c3bceb4-8f69-4a51-ba57-105b9cab2b25.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6f430a7-874c-4f72-afaf-fdeb5ab12027.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 5960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e99a10cb-43ab-4a01-86bd-88aaf7c874f6.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dabf91c6-fd59-46d5-be23-157150200d04.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd18f0ce-81a5-4932-b9c2-02a3381931e0.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925fae7c-7944-4667-81df-a12eee08178b.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f41f8dcc-655a-4f2f-840c-1d4256d4b48e.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2076504e-f6fe-401b-a496-ad29bc2556a3.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916e8803-8d22-456f-ae84-3a314220c0ba.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7af1665b-2634-4dd0-823e-e4c751d2fae5.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bad1098a-d6f7-4ad4-99d1-48a4ad2d8662.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c48fa15e-4c5f-426e-ae0c-ccd6161f498e.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bceccfe3-1a90-4521-a457-db6210aeb1b4.tmp, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 7960, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T15:56:33.249 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T16:03:44.393 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T16:10:36.442 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #184423, FileId: 0xc00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T16:18:49.384 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T16:33:54.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T16:48:59.383 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T17:04:04.393 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T17:19:09.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T17:34:14.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T17:49:19.392 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T17:56:33.250 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45293, Count: 6383, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6360, Count: 58248, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3X0JX3, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 108, Count: 2, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 23, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b4f_1.MAD, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8e678e6d-acf7-4169-b3cf-f261db41a91e.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7dca3659-a873-4ffb-ba4c-338e4aa83e78.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\328a8a13-af0d-4fd5-923c-b57832eb5c5c.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95101c2f-8c5a-4a77-b303-9bc107cc15f9.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c3bceb4-8f69-4a51-ba57-105b9cab2b25.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6f430a7-874c-4f72-afaf-fdeb5ab12027.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2076504e-f6fe-401b-a496-ad29bc2556a3.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dabf91c6-fd59-46d5-be23-157150200d04.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd18f0ce-81a5-4932-b9c2-02a3381931e0.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925fae7c-7944-4667-81df-a12eee08178b.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f41f8dcc-655a-4f2f-840c-1d4256d4b48e.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7af1665b-2634-4dd0-823e-e4c751d2fae5.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 6896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37af0c79-f368-49a6-b7c6-b6049b6daec7.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ec047d28-7221-4c0e-abda-0924d899dc2d.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916e8803-8d22-456f-ae84-3a314220c0ba.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 5960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e99a10cb-43ab-4a01-86bd-88aaf7c874f6.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bad1098a-d6f7-4ad4-99d1-48a4ad2d8662.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c48fa15e-4c5f-426e-ae0c-ccd6161f498e.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bceccfe3-1a90-4521-a457-db6210aeb1b4.tmp, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 7960, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T17:56:33.250 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T18:04:24.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T18:10:34.255 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #191048, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T18:19:29.385 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T18:34:34.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T18:49:39.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T19:04:44.384 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T19:19:49.388 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T19:28:07.300 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #195347, FileId: 0x56d0000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T19:34:54.384 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T19:49:59.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T19:56:33.260 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49119, Count: 6604, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6870, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3X0JX3, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 108, Count: 2, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 32, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b4f_1.MAD, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8e678e6d-acf7-4169-b3cf-f261db41a91e.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7dca3659-a873-4ffb-ba4c-338e4aa83e78.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\328a8a13-af0d-4fd5-923c-b57832eb5c5c.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95101c2f-8c5a-4a77-b303-9bc107cc15f9.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2076504e-f6fe-401b-a496-ad29bc2556a3.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6f430a7-874c-4f72-afaf-fdeb5ab12027.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dabf91c6-fd59-46d5-be23-157150200d04.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd18f0ce-81a5-4932-b9c2-02a3381931e0.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925fae7c-7944-4667-81df-a12eee08178b.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f41f8dcc-655a-4f2f-840c-1d4256d4b48e.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bad1098a-d6f7-4ad4-99d1-48a4ad2d8662.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c48fa15e-4c5f-426e-ae0c-ccd6161f498e.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 5960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e99a10cb-43ab-4a01-86bd-88aaf7c874f6.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916e8803-8d22-456f-ae84-3a314220c0ba.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7af1665b-2634-4dd0-823e-e4c751d2fae5.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bceccfe3-1a90-4521-a457-db6210aeb1b4.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ec047d28-7221-4c0e-abda-0924d899dc2d.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1161747a-85d6-4747-a81f-923689027940.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 6896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37af0c79-f368-49a6-b7c6-b6049b6daec7.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\27442182-9756-427a-a885-919ce1143881.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c3bceb4-8f69-4a51-ba57-105b9cab2b25.tmp, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 7960, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T19:56:33.260 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T20:05:04.383 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T20:10:36.308 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197722, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T20:20:09.383 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T20:35:14.388 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T20:50:19.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T21:05:24.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T21:10:35.579 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #201055, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T21:20:29.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T21:35:34.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T21:50:39.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T21:56:33.268 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50154, Count: 6676, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7456, Count: 71199, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{22BBF5DF-8BAD-4C94-A3BE-D946F6176CDF}.info, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 41, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b4f_1.MAD, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 108, Count: 2, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8e678e6d-acf7-4169-b3cf-f261db41a91e.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7dca3659-a873-4ffb-ba4c-338e4aa83e78.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 5692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48d17d8a-c366-42d1-9411-f15fb53d4504.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\328a8a13-af0d-4fd5-923c-b57832eb5c5c.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95101c2f-8c5a-4a77-b303-9bc107cc15f9.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ec047d28-7221-4c0e-abda-0924d899dc2d.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 5960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e99a10cb-43ab-4a01-86bd-88aaf7c874f6.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916e8803-8d22-456f-ae84-3a314220c0ba.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\27442182-9756-427a-a885-919ce1143881.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2076504e-f6fe-401b-a496-ad29bc2556a3.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c3bceb4-8f69-4a51-ba57-105b9cab2b25.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c48fa15e-4c5f-426e-ae0c-ccd6161f498e.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 6896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37af0c79-f368-49a6-b7c6-b6049b6daec7.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6f430a7-874c-4f72-afaf-fdeb5ab12027.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bceccfe3-1a90-4521-a457-db6210aeb1b4.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14531759-b5b9-4717-9700-3f2c28a4012d.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7af1665b-2634-4dd0-823e-e4c751d2fae5.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dabf91c6-fd59-46d5-be23-157150200d04.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1161747a-85d6-4747-a81f-923689027940.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd18f0ce-81a5-4932-b9c2-02a3381931e0.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\925fae7c-7944-4667-81df-a12eee08178b.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f41f8dcc-655a-4f2f-840c-1d4256d4b48e.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bad1098a-d6f7-4ad4-99d1-48a4ad2d8662.tmp, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 7960, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T21:56:33.268 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-15T22:05:44.388 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T22:20:49.391 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T22:35:54.385 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T22:50:59.377 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T23:06:04.388 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T23:10:34.754 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #207683, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-15T23:21:09.383 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T23:36:14.376 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T23:51:19.388 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-15T23:55:24.378 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-15T23:55:24.409 Job Notification: New process added to job (6672) 2026-04-15T23:55:24.409 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-15T23:55:24.409 Job Notification: New process added to job (5460) 2026-04-15T23:55:24.409 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6672] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5460]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-15T23:55:24.456 Job Notification: New process added to job (1404) 2026-04-15T23:55:24.456 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-15T23:55:24.456 Job Notification: New process added to job (6956) 2026-04-15T23:55:24.472 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:1404] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6956]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-15T23:55:24.487 Aggressive catchup quick scan threshold: 788108295912 / 25920000000000 2026-04-15T23:55:24.847 Job Notification: New process added to job (2196) 2026-04-15T23:55:24.878 Task(GetDeviceTicket -AccessKey B7D68272-183A-9744-1B76-E25D009C9BA5 ) launched as network service 2026-04-15T23:55:24.956 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-15T23:55:24.972 [RTP] Duplicating the current plugin configuration object... 2026-04-15T23:55:24.972 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-15T23:55:24.972 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-15T23:55:24.972 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-15T23:55:24.972 [RTP] No config change detected. Not updating plugin configuration. 2026-04-15T23:55:24.972 [RTP] No config changes found. No configuration switch. 2026-04-15T23:55:24.972 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-15T23:55:25.597 Job Notification: Process exited from job (2196) 2026-04-15T23:55:26.737 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-15T23:55:26.737 [Cloud] Start of cloud request. Passive mode: 0 2026-04-15T23:55:26.737 [Cloud] Queued cloud request. 2026-04-15T23:55:26.737 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-15T23:55:26.737 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-15T23:55:26.737 [Cloud] Start of cloud request. Passive mode: 0 2026-04-15T23:55:26.737 [Cloud] Queued cloud request. 2026-04-15T23:55:26.769 Job Notification: New process added to job (6668) 2026-04-15T23:55:26.769 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 39028F10-C9AE-DBA4-04A9-9476A77F23A7) launched 2026-04-15T23:55:26.769 Job Notification: New process added to job (3648) 2026-04-15T23:55:26.784 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6668] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3648]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-15T23:55:26.784 Job Notification: New process added to job (4240) 2026-04-15T23:55:26.800 Job Notification: Process exited from job (6668) 2026-04-15T23:55:26.800 Job Notification: Process exited from job (3648) 2026-04-15T23:55:26.800 [Cloud] Dequeued cloud request. 2026-04-15T23:55:26.800 [Cloud] Dequeued cloud request. 2026-04-15T23:55:26.800 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-15T23:55:26.816 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-15T23:55:27.034 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-15T23:55:27.034 [Cloud] End of cloud request. 2026-04-15T23:55:27.051 [Cloud] End of cloud request. 2026-04-15T23:55:27.254 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-15T23:56:13.620 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\2AAC55E4-ADAD-4425-A19F-0A9AA0EC9F511880.1dccd337005f848 2026-04-15T23:56:13.667 Verifying engine and signature files (source: 0) ... 2026-04-15T23:56:13.667 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{85216A30-966A-4EB5-88C8-5C6338E3E55E}\mpengine.dll] due to PPL. 2026-04-15T23:56:13.667 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{85216A30-966A-4EB5-88C8-5C6338E3E55E}\mpasbase.vdm] (file in cache) 2026-04-15T23:56:13.667 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{85216A30-966A-4EB5-88C8-5C6338E3E55E}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-15T23:56:13.683 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{85216A30-966A-4EB5-88C8-5C6338E3E55E}\mpasdlta.vdm] 2026-04-15T23:56:13.683 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{85216A30-966A-4EB5-88C8-5C6338E3E55E}\mpavbase.vdm] (file in cache) 2026-04-15T23:56:13.683 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{85216A30-966A-4EB5-88C8-5C6338E3E55E}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-15T23:56:13.683 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{85216A30-966A-4EB5-88C8-5C6338E3E55E}\mpavdlta.vdm] 2026-04-15T23:56:13.901 [Engine] IsHybridMode: 0 2026-04-15T23:56:13.901 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-15T23:56:13.964 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-6D1B984A489F10F1ABF19A04BBB5E34A3D96F229.bin): 0x00000002 2026-04-15T23:56:13.964 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-6D1B984A489F10F1ABF19A04BBB5E34A3D96F229.bin) 2026-04-15T23:56:13.964 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-15T23:56:13.964 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-15T23:56:13.964 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-15T23:56:13.964 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-15T23:56:22.935 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-15T23:56:22.935 [AutoExclusion] Applied roles from cache. 2026-04-15T23:56:22.935 [AutoExclusion] Started roles monitoring. 2026-04-15T23:56:22.951 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0EA68020, lRefCount: 5, hr=0 2026-04-15T23:56:22.951 [Engine] New active engine 00007FFD0D908020 replacing engine 00007FFD0EA68020. Number of active engines: 2 2026-04-15T23:56:22.951 EngineInit:Global ASOC is enabled 2026-04-15T23:56:22.951 EngineInit:ASOO is enabled for developer volumes 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-15T23:56:22.966 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-15T23:56:22.982 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-15T23:56:22.982 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-15T23:56:22.982 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-15T23:56:22.982 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-15T23:56:22.982 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-15T23:56:22.998 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-15T23:56:22.998 [Plugin] Initializing RTP plugin state... 2026-04-15T23:56:22.998 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-15T23:56:22.998 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎15‎-‎2026 01:56:33 Last Perf:‎04‎-‎15‎-‎2026 01:56:33 First RTP Scan:‎04‎-‎15‎-‎2026 01:56:34 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:411 Misses:45543 BM Queue:0,42,0 Proc:0,41,0 File:0,23,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:210293 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:219615488 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2824 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:54523 TotalHits:47856 InstanceCacheInserts:89650 InstanceCacheUpdates:0 InstanceCacheDeletes:8519 InstanceCacheHits:1832 InstanceCacheMisses:137409 InstanceCacheOverflows:71107 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (322/269) Success: 269, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-15T23:56:22.998 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{85216A30-966A-4EB5-88C8-5C6338E3E55E} 2026-04-15T23:56:22.998 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2927AF0C-7D68-400E-A776-2BB1FAB13D62} removed 2026-04-15T23:56:22.998 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B7BDBB0F-169E-42D4-914B-E07E468E205A}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B7BDBB0F-169E-42D4-914B-E07E468E205A}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-15T23:56:22.998 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-15T23:56:22.998 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-15T23:56:22.998 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-15T23:56:22.998 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-15T23:56:22.998 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-15T23:56:22.998 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-15-2026 23:56:22 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-15-2026 23:56:22 2026-04-15T23:56:22.998 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-15T23:56:22.998 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-15T23:56:22.998 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-15T23:56:22.998 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-15T23:56:22.998 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-15T23:56:22.998 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-15T23:56:22.998 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-15T23:56:22.998 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-15T23:56:22.998 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-15T23:56:22.998 MdCoreSvc is supported in this platform and OS Signature updated on 04-15-2026 23:56:22 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.123.0 AV Signature Version: 1.449.123.0 ************************************************************ 2026-04-15T23:56:22.998 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-15T23:56:22.998 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\2AAC55E4-ADAD-4425-A19F-0A9AA0EC9F511880.1dccd337005f848 2026-04-15T23:56:23.013 Process scan (postsignatureupdatescan) started. 2026-04-15T23:56:23.060 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-15T23:56:23.060 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 04-15-2026 23:56:23 ************************************************************ 2026-04-15T23:56:23.232 Job Notification: Process exited from job (1404) 2026-04-15T23:56:23.232 Job Notification: Process exited from job (6956) 2026-04-15T23:56:23.248 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-15T23:56:23.248 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-15T23:56:23.248 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-15T23:56:23.248 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-15T23:56:23.248 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-15T23:56:23.248 [Engine] Engine 00007FFD0EA68020 no longer in use. Number of active engines: 1 2026-04-15T23:56:23.248 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-15T23:56:23.248 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-15T23:56:23.263 Job Notification: Process exited from job (6672) 2026-04-15T23:56:23.263 Job Notification: Process exited from job (5460) 2026-04-15T23:56:23.498 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-15T23:56:23.498 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-15T23:56:23.498 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-15T23:56:24.091 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50154, Count: 6676, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-04-15T23:56:24.091 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8071, Count: 77661, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{22BBF5DF-8BAD-4C94-A3BE-D946F6176CDF}.info, EstimatedImpact: 0% 2026-04-15T23:56:24.091 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 41, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b4f_1.MAD, EstimatedImpact: 0% 2026-04-15T23:56:24.091 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 108, Count: 2, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-15T23:56:24.091 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-15T23:56:24.091 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8e678e6d-acf7-4169-b3cf-f261db41a91e.tmp, EstimatedImpact: 0% 2026-04-15T23:56:24.091 ProcessImageName: updater.exe, Pid: 7632, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7dca3659-a873-4ffb-ba4c-338e4aa83e78.tmp, EstimatedImpact: 0% 2026-04-15T23:56:24.091 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\328a8a13-af0d-4fd5-923c-b57832eb5c5c.tmp, EstimatedImpact: 0% 2026-04-15T23:56:24.091 ProcessImageName: updater.exe, Pid: 5692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48d17d8a-c366-42d1-9411-f15fb53d4504.tmp, EstimatedImpact: 0% 2026-04-15T23:56:24.091 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95101c2f-8c5a-4a77-b303-9bc107cc15f9.tmp, EstimatedImpact: 0% 2026-04-15T23:56:24.091 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\27442182-9756-427a-a885-919ce1143881.tmp, EstimatedImpact: 0% 2026-04-15T23:56:24.091 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6f430a7-874c-4f72-afaf-fdeb5ab12027.tmp, EstimatedImpact: 0% 2026-04-15T23:56:24.091 ProcessImageName: updater.exe, Pid: 5960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e99a10cb-43ab-4a01-86bd-88aaf7c874f6.tmp, EstimatedImpact: 0% 2026-04-15T23:56:24.154 [Engine] RSIG_UNLOADENGINE, 00007FFD0EA68020, err=0x0 2026-04-15T23:56:24.169 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B7BDBB0F-169E-42D4-914B-E07E468E205A} removed 2026-04-15T23:56:29.787 Process scan (postsignatureupdatescan) completed. 2026-04-16T00:01:22.979 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-16T00:06:24.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T00:10:25.429 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #211126, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T00:10:25.445 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #211128, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T00:10:35.433 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #211141, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T00:10:35.433 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #211143, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T00:10:35.448 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #211145, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T00:10:35.448 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #211147, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T00:21:29.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T00:28:11.488 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #212125, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T00:28:11.488 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #212128, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T00:28:16.009 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #212140, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T00:28:16.025 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #212143, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T00:28:16.025 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #212145, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T00:28:26.014 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #212158, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T00:28:26.029 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #212161, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T00:36:34.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T00:51:39.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T01:06:44.385 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T01:10:25.180 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #214531, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T01:10:25.195 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #214533, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T01:10:35.197 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #214546, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T01:10:35.212 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #214548, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T01:10:35.384 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #214552, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T01:10:35.384 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #214554, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T01:21:49.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T01:36:54.376 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T01:51:59.385 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T01:56:22.959 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 646, Count: 6471, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-16T01:56:22.959 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 527, Count: 65, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-04-16T01:56:22.959 ProcessImageName: updater.exe, Pid: 980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba26bb5b-089b-48f9-a732-b649c25ea43a.tmp, EstimatedImpact: 0% 2026-04-16T01:56:22.959 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d72af138-05a1-4e56-b6da-577cf07274c1.tmp, EstimatedImpact: 0% 2026-04-16T01:56:22.959 ProcessImageName: updater.exe, Pid: 5480, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a0659c2-f9fb-4a15-8275-0ef67a1a2ac5.tmp, EstimatedImpact: 0% 2026-04-16T02:01:53.670 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:A007DCFB-EE6D-43D0-8B90-E985CB0F0767, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-16T02:01:53.670 Scheduled scan with Id A007DCFB-EE6D-43D0-8B90-E985CB0F0767 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-16T02:01:53.670 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-16T02:01:53.670 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-16T02:01:53.670 [SFC] System file cache build is not needed (already completed) 2026-04-16T02:02:04.488 Engine:Triggered AR EMS scan 2026-04-16T02:02:04.488 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.503 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.519 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.550 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.566 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.597 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.597 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.628 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.644 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.675 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.691 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.706 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.738 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.753 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.785 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.800 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.816 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.878 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.910 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.925 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:04.956 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:05.003 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-16T02:02:05.019 Bm signature throttled:0x00002db31bed458f 2026-04-16T02:02:19.628 QuickScan:ScanID:A007DCFB-EE6D-43D0-8B90-E985CB0F0767: Quick scan finished with error 0 2026-04-16T02:02:19.628 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-16T02:02:20.128 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-16T02:02:20.128 [RTP] Duplicating the current plugin configuration object... 2026-04-16T02:02:20.128 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-16T02:02:20.128 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-16T02:02:20.128 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-16T02:02:20.128 [RTP] No config change detected. Not updating plugin configuration. 2026-04-16T02:02:20.128 [RTP] No config changes found. No configuration switch. 2026-04-16T02:02:20.128 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-16T02:07:04.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T02:10:26.830 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #218108, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T02:10:26.846 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #218110, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T02:10:36.848 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #218123, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T02:10:36.848 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #218126, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T02:10:36.848 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #218128, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T02:10:36.848 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #218130, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T02:22:09.385 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T02:37:14.390 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T02:52:19.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T03:07:24.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T03:10:25.091 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #221621, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T03:10:25.091 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #221623, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T03:10:35.108 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #221636, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T03:10:35.123 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #221639, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T03:22:29.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T03:37:34.388 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T03:38:20.790 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #224366, FileId: 0xd7300000002bc48, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T03:38:31.962 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #224823, FileId: 0x3f500000002c1de, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T03:38:31.962 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #224824, FileId: 0x3f500000002c1de, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T03:39:46.388 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b92_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #224904, FileId: 0x27900000002c224, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T03:39:46.966 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b92_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #224908, FileId: 0x27a00000002c224, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T03:52:39.388 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T03:56:22.971 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 44622, Count: 6307, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-16T03:56:22.971 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1396, Count: 12942, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-16T03:56:22.971 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-16T03:56:22.971 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_1.MAD, EstimatedImpact: 0% 2026-04-16T03:56:22.971 ProcessImageName: updater.exe, Pid: 980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba26bb5b-089b-48f9-a732-b649c25ea43a.tmp, EstimatedImpact: 0% 2026-04-16T03:56:22.971 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d72af138-05a1-4e56-b6da-577cf07274c1.tmp, EstimatedImpact: 0% 2026-04-16T03:56:22.971 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b5e9e05-79ca-440d-b36f-7b19cb9455bf.tmp, EstimatedImpact: 0% 2026-04-16T03:56:22.971 ProcessImageName: updater.exe, Pid: 5480, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a0659c2-f9fb-4a15-8275-0ef67a1a2ac5.tmp, EstimatedImpact: 0% 2026-04-16T03:56:22.971 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5ea8610-3e12-4af4-a1b0-00c67915c9df.tmp, EstimatedImpact: 0% 2026-04-16T04:07:44.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T04:10:25.905 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #226602, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T04:10:25.921 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #226604, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T04:10:35.930 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #226616, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T04:10:35.930 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #226618, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T04:22:49.383 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T04:37:54.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T04:52:59.377 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T05:08:04.381 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T05:10:25.194 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #229937, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:10:25.210 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #229939, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:10:35.204 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #229952, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:10:35.219 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #229954, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:17:53.641 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b95_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #230362, FileId: 0x5aa00000002aea9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:17:54.266 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b95_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #230366, FileId: 0x5ab00000002aea9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:23:09.376 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T05:28:16.100 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230937, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:28:16.116 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230939, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:28:20.159 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230949, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:28:20.174 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230952, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:28:20.174 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230954, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:28:30.162 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230967, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:28:30.162 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230969, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:28:30.177 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230971, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:28:30.177 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230973, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:38:14.386 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T05:53:19.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T05:54:02.987 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b96_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #232393, FileId: 0x45300000002c058, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T05:56:22.979 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45319, Count: 6362, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-16T05:56:22.979 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2056, Count: 19420, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-16T05:56:22.979 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_1.MAD, EstimatedImpact: 0% 2026-04-16T05:56:22.979 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-16T05:56:22.979 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-16T05:56:22.979 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\856a42fd-9fbb-4da5-af39-2beb370eefd2.tmp, EstimatedImpact: 0% 2026-04-16T05:56:22.979 ProcessImageName: updater.exe, Pid: 980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba26bb5b-089b-48f9-a732-b649c25ea43a.tmp, EstimatedImpact: 0% 2026-04-16T05:56:22.979 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d72af138-05a1-4e56-b6da-577cf07274c1.tmp, EstimatedImpact: 0% 2026-04-16T05:56:22.979 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b5e9e05-79ca-440d-b36f-7b19cb9455bf.tmp, EstimatedImpact: 0% 2026-04-16T05:56:22.979 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5ea8610-3e12-4af4-a1b0-00c67915c9df.tmp, EstimatedImpact: 0% 2026-04-16T05:56:22.979 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ad00179-d47a-4565-a231-65a98f8134d3.tmp, EstimatedImpact: 0% 2026-04-16T05:56:22.979 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1447166f-5e81-4732-9f0d-eba0334f1534.tmp, EstimatedImpact: 0% 2026-04-16T05:56:22.979 ProcessImageName: updater.exe, Pid: 5480, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a0659c2-f9fb-4a15-8275-0ef67a1a2ac5.tmp, EstimatedImpact: 0% 2026-04-16T06:08:24.380 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T06:10:25.746 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #233326, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T06:10:25.762 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #233328, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T06:10:35.766 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #233341, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T06:10:35.782 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #233343, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T06:10:35.906 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #233347, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T06:10:35.922 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #233349, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T06:23:29.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T06:38:34.385 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T06:53:39.374 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T07:08:44.389 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T07:10:25.803 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #236640, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T07:10:25.803 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #236642, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T07:10:35.815 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #236655, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T07:10:35.831 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #236658, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T07:23:49.383 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T07:38:54.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T07:53:59.383 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T07:56:22.986 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45319, Count: 6362, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-16T07:56:22.986 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2911, Count: 25893, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-16T07:56:22.986 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_1.MAD, EstimatedImpact: 0% 2026-04-16T07:56:22.986 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-16T07:56:22.986 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-16T07:56:22.986 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99b6fb77-1a8d-4492-90ad-9c9e70eb1520.tmp, EstimatedImpact: 0% 2026-04-16T07:56:22.986 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\856a42fd-9fbb-4da5-af39-2beb370eefd2.tmp, EstimatedImpact: 0% 2026-04-16T07:56:22.986 ProcessImageName: updater.exe, Pid: 980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba26bb5b-089b-48f9-a732-b649c25ea43a.tmp, EstimatedImpact: 0% 2026-04-16T07:56:22.986 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d72af138-05a1-4e56-b6da-577cf07274c1.tmp, EstimatedImpact: 0% 2026-04-16T07:56:22.986 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5ea8610-3e12-4af4-a1b0-00c67915c9df.tmp, EstimatedImpact: 0% 2026-04-16T07:56:22.986 ProcessImageName: updater.exe, Pid: 5480, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a0659c2-f9fb-4a15-8275-0ef67a1a2ac5.tmp, EstimatedImpact: 0% 2026-04-16T07:56:22.986 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b5e9e05-79ca-440d-b36f-7b19cb9455bf.tmp, EstimatedImpact: 0% 2026-04-16T07:56:22.986 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e407f02-4517-40c6-950e-3fc743889c59.tmp, EstimatedImpact: 0% 2026-04-16T07:56:22.986 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ad00179-d47a-4565-a231-65a98f8134d3.tmp, EstimatedImpact: 0% 2026-04-16T07:56:22.986 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1447166f-5e81-4732-9f0d-eba0334f1534.tmp, EstimatedImpact: 0% 2026-04-16T08:09:04.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T08:10:26.801 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #239987, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T08:10:26.817 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #239989, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T08:10:36.818 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #240001, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T08:10:36.818 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #240002, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T08:10:36.834 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #240003, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T08:24:09.388 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T08:39:14.381 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T08:54:19.377 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T09:09:24.381 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T09:10:26.027 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #243294, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T09:10:26.027 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #243296, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T09:10:36.029 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #243309, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T09:10:36.029 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #243310, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T09:10:36.045 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #243311, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T09:24:29.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T09:39:34.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T09:54:39.374 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T09:56:22.996 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45319, Count: 6362, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3646, Count: 32364, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_1.MAD, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99b6fb77-1a8d-4492-90ad-9c9e70eb1520.tmp, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\856a42fd-9fbb-4da5-af39-2beb370eefd2.tmp, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: updater.exe, Pid: 980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba26bb5b-089b-48f9-a732-b649c25ea43a.tmp, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d72af138-05a1-4e56-b6da-577cf07274c1.tmp, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: updater.exe, Pid: 5480, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a0659c2-f9fb-4a15-8275-0ef67a1a2ac5.tmp, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e407f02-4517-40c6-950e-3fc743889c59.tmp, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b5e9e05-79ca-440d-b36f-7b19cb9455bf.tmp, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5ea8610-3e12-4af4-a1b0-00c67915c9df.tmp, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: updater.exe, Pid: 3484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a2e974-15bd-46bc-b515-3acb4eeaf200.tmp, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ad00179-d47a-4565-a231-65a98f8134d3.tmp, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1447166f-5e81-4732-9f0d-eba0334f1534.tmp, EstimatedImpact: 0% 2026-04-16T09:56:22.996 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-16T10:09:44.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T10:10:25.141 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246613, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T10:10:25.157 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246615, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T10:10:35.156 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246628, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T10:10:35.172 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246631, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T10:24:49.380 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T10:28:20.248 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247607, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T10:28:20.248 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247609, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T10:28:26.309 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247628, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T10:28:26.325 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247630, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T10:28:26.325 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247632, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T10:28:36.323 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247645, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T10:28:36.339 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247648, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T10:39:54.374 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T10:54:59.374 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T11:10:04.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T11:10:25.939 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #249958, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T11:10:25.954 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #249960, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T11:10:35.957 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #249973, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T11:10:35.957 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #249975, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T11:10:36.144 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #249979, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T11:10:36.144 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #249981, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T11:25:09.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T11:40:14.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T11:55:19.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T11:56:23.006 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45319, Count: 6362, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4351, Count: 38835, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_1.MAD, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99b6fb77-1a8d-4492-90ad-9c9e70eb1520.tmp, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\856a42fd-9fbb-4da5-af39-2beb370eefd2.tmp, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b62563-4339-404a-8065-50c7ed40201d.tmp, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba26bb5b-089b-48f9-a732-b649c25ea43a.tmp, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d72af138-05a1-4e56-b6da-577cf07274c1.tmp, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\850a501a-e3c6-499f-87c8-07ce09eb5a15.tmp, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b1d69f3-6377-4385-bd79-6c91a33b8286.tmp, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 5480, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a0659c2-f9fb-4a15-8275-0ef67a1a2ac5.tmp, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b5e9e05-79ca-440d-b36f-7b19cb9455bf.tmp, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5ea8610-3e12-4af4-a1b0-00c67915c9df.tmp, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e407f02-4517-40c6-950e-3fc743889c59.tmp, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 3484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a2e974-15bd-46bc-b515-3acb4eeaf200.tmp, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ad00179-d47a-4565-a231-65a98f8134d3.tmp, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1447166f-5e81-4732-9f0d-eba0334f1534.tmp, EstimatedImpact: 0% 2026-04-16T11:56:23.006 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-16T11:57:50.656 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b9b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #252583, FileId: 0x3e7f00000000586e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T12:10:24.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T12:10:25.853 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #253282, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T12:10:25.869 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #253284, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T12:10:35.860 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #253297, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T12:10:35.860 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #253298, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T12:10:35.875 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #253299, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T12:25:29.381 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T12:40:34.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T12:55:39.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T13:10:24.762 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #256605, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T13:10:24.762 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #256607, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T13:10:34.776 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #256620, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T13:10:44.376 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T13:25:49.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T13:40:54.380 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T13:55:59.385 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T13:56:23.019 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49149, Count: 6580, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4996, Count: 45306, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_1.MAD, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99b6fb77-1a8d-4492-90ad-9c9e70eb1520.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\856a42fd-9fbb-4da5-af39-2beb370eefd2.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b62563-4339-404a-8065-50c7ed40201d.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba26bb5b-089b-48f9-a732-b649c25ea43a.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d72af138-05a1-4e56-b6da-577cf07274c1.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 5480, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a0659c2-f9fb-4a15-8275-0ef67a1a2ac5.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b1d69f3-6377-4385-bd79-6c91a33b8286.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34373fea-f5fb-4c87-ad50-6bfb66d861f0.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5ea8610-3e12-4af4-a1b0-00c67915c9df.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\850a501a-e3c6-499f-87c8-07ce09eb5a15.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b5e9e05-79ca-440d-b36f-7b19cb9455bf.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e407f02-4517-40c6-950e-3fc743889c59.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 3484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a2e974-15bd-46bc-b515-3acb4eeaf200.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ad00179-d47a-4565-a231-65a98f8134d3.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1447166f-5e81-4732-9f0d-eba0334f1534.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab52b322-25ec-49f8-97fb-619152466818.tmp, EstimatedImpact: 0% 2026-04-16T13:56:23.019 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-16T14:11:04.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T14:26:09.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T14:41:14.372 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T14:56:19.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T15:10:25.658 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #263264, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T15:11:24.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T15:26:29.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T15:28:41.257 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #264298, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T15:41:34.372 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T15:56:23.029 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49149, Count: 6581, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5791, Count: 51777, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 120, Count: 26, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_1.MAD, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99b6fb77-1a8d-4492-90ad-9c9e70eb1520.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\856a42fd-9fbb-4da5-af39-2beb370eefd2.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b62563-4339-404a-8065-50c7ed40201d.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba26bb5b-089b-48f9-a732-b649c25ea43a.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d72af138-05a1-4e56-b6da-577cf07274c1.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cfafb9d-abac-40d5-8359-9fade6c93422.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b5e9e05-79ca-440d-b36f-7b19cb9455bf.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b1d69f3-6377-4385-bd79-6c91a33b8286.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34373fea-f5fb-4c87-ad50-6bfb66d861f0.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5ea8610-3e12-4af4-a1b0-00c67915c9df.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 5480, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a0659c2-f9fb-4a15-8275-0ef67a1a2ac5.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\850a501a-e3c6-499f-87c8-07ce09eb5a15.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e407f02-4517-40c6-950e-3fc743889c59.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 3484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a2e974-15bd-46bc-b515-3acb4eeaf200.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 2948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93735f58-93ab-40df-a47b-bbbff5210dc9.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ad00179-d47a-4565-a231-65a98f8134d3.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1447166f-5e81-4732-9f0d-eba0334f1534.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab52b322-25ec-49f8-97fb-619152466818.tmp, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-16T15:56:23.029 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-16T15:56:39.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T16:11:44.387 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T16:26:49.381 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T16:41:54.381 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T16:56:59.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T17:10:37.097 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #269936, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T17:12:04.381 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T17:27:09.381 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T17:42:14.374 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T17:56:23.033 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49149, Count: 6581, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6376, Count: 58257, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 120, Count: 26, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_1.MAD, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99b6fb77-1a8d-4492-90ad-9c9e70eb1520.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0024f849-d9f3-4cc4-a5ce-39ca79cca337.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\856a42fd-9fbb-4da5-af39-2beb370eefd2.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b62563-4339-404a-8065-50c7ed40201d.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba26bb5b-089b-48f9-a732-b649c25ea43a.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d72af138-05a1-4e56-b6da-577cf07274c1.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4272ef2e-d4dc-4326-ae10-3452a08473f8.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cfafb9d-abac-40d5-8359-9fade6c93422.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5ea8610-3e12-4af4-a1b0-00c67915c9df.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b5e9e05-79ca-440d-b36f-7b19cb9455bf.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b1d69f3-6377-4385-bd79-6c91a33b8286.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34373fea-f5fb-4c87-ad50-6bfb66d861f0.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1447166f-5e81-4732-9f0d-eba0334f1534.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 5480, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a0659c2-f9fb-4a15-8275-0ef67a1a2ac5.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\850a501a-e3c6-499f-87c8-07ce09eb5a15.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e407f02-4517-40c6-950e-3fc743889c59.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 3484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a2e974-15bd-46bc-b515-3acb4eeaf200.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 2948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93735f58-93ab-40df-a47b-bbbff5210dc9.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ad00179-d47a-4565-a231-65a98f8134d3.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab52b322-25ec-49f8-97fb-619152466818.tmp, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-16T17:56:23.033 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-16T17:57:19.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T18:12:24.380 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T18:27:29.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T18:42:34.384 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T18:57:39.384 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T19:10:35.518 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #276567, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T19:12:44.384 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T19:27:49.384 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T19:42:54.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T19:56:23.038 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49149, Count: 6581, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6931, Count: 64728, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 120, Count: 26, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_1.MAD, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99b6fb77-1a8d-4492-90ad-9c9e70eb1520.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0024f849-d9f3-4cc4-a5ce-39ca79cca337.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\856a42fd-9fbb-4da5-af39-2beb370eefd2.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b62563-4339-404a-8065-50c7ed40201d.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba26bb5b-089b-48f9-a732-b649c25ea43a.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d72af138-05a1-4e56-b6da-577cf07274c1.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 6016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56697d8b-260c-4cae-becc-e08092175d69.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cfafb9d-abac-40d5-8359-9fade6c93422.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b1d69f3-6377-4385-bd79-6c91a33b8286.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e95c22d-2c93-44f6-a13e-8b80cdaa57bb.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b5e9e05-79ca-440d-b36f-7b19cb9455bf.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34373fea-f5fb-4c87-ad50-6bfb66d861f0.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4272ef2e-d4dc-4326-ae10-3452a08473f8.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 5480, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a0659c2-f9fb-4a15-8275-0ef67a1a2ac5.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\850a501a-e3c6-499f-87c8-07ce09eb5a15.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5ea8610-3e12-4af4-a1b0-00c67915c9df.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e407f02-4517-40c6-950e-3fc743889c59.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 3484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a2e974-15bd-46bc-b515-3acb4eeaf200.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 2948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93735f58-93ab-40df-a47b-bbbff5210dc9.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ad00179-d47a-4565-a231-65a98f8134d3.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1447166f-5e81-4732-9f0d-eba0334f1534.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab52b322-25ec-49f8-97fb-619152466818.tmp, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-16T19:56:23.038 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-16T19:57:59.372 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T20:13:04.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T20:28:09.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T20:28:36.168 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #280898, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T20:41:57.195 [NRI] Successfully updated NIS service with platform settings for enforcement level Log IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-04-16T20:41:57.210 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-16T20:41:57.210 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-16T20:41:57.210 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-16T20:41:57.210 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-16T20:41:57.210 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-16T20:41:57.210 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-16T20:41:57.210 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-16T20:41:57.210 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-16T20:41:57.210 MdCoreSvc is supported in this platform and OS 2026-04-16T20:41:57.710 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-16T20:41:57.710 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-16T20:41:57.710 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-16T20:43:14.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T20:58:19.385 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T21:13:24.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T21:14:03.999 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ba7_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #283428, FileId: 0xcdc00000004a7ba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T21:28:29.376 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T21:43:34.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T21:56:23.049 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49844, Count: 6645, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7606, Count: 71199, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 31, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_1.MAD, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0024f849-d9f3-4cc4-a5ce-39ca79cca337.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99b6fb77-1a8d-4492-90ad-9c9e70eb1520.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\856a42fd-9fbb-4da5-af39-2beb370eefd2.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b62563-4339-404a-8065-50c7ed40201d.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba26bb5b-089b-48f9-a732-b649c25ea43a.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d72af138-05a1-4e56-b6da-577cf07274c1.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cfafb9d-abac-40d5-8359-9fade6c93422.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 6016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56697d8b-260c-4cae-becc-e08092175d69.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e95c22d-2c93-44f6-a13e-8b80cdaa57bb.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b1d69f3-6377-4385-bd79-6c91a33b8286.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5ea8610-3e12-4af4-a1b0-00c67915c9df.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e407f02-4517-40c6-950e-3fc743889c59.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 3484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a2e974-15bd-46bc-b515-3acb4eeaf200.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\850a501a-e3c6-499f-87c8-07ce09eb5a15.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ffb74ea-595d-4d8a-9c9b-b1b56742e9e3.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 2948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93735f58-93ab-40df-a47b-bbbff5210dc9.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 5480, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a0659c2-f9fb-4a15-8275-0ef67a1a2ac5.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ad00179-d47a-4565-a231-65a98f8134d3.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 2196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\08433bbf-ee35-4529-8cec-1e13135b30c6.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1447166f-5e81-4732-9f0d-eba0334f1534.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 6040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6dc25a2-facb-4e48-9d34-8cfbe31d26c3.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34373fea-f5fb-4c87-ad50-6bfb66d861f0.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab52b322-25ec-49f8-97fb-619152466818.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b5e9e05-79ca-440d-b36f-7b19cb9455bf.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4272ef2e-d4dc-4326-ae10-3452a08473f8.tmp, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-16T21:56:23.049 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-16T21:58:39.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T22:13:44.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T22:28:49.374 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T22:43:54.384 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T22:58:59.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T23:10:37.526 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #289877, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-16T23:14:04.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T23:29:09.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T23:44:14.383 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-16T23:55:24.376 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-16T23:55:24.391 Job Notification: New process added to job (1848) 2026-04-16T23:55:24.407 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-16T23:55:24.407 Job Notification: New process added to job (7872) 2026-04-16T23:55:24.407 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:1848] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7872]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-16T23:55:24.423 Aggressive catchup quick scan threshold: 788107530561 / 25920000000000 2026-04-16T23:55:24.470 Job Notification: New process added to job (6532) 2026-04-16T23:55:24.470 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-16T23:55:24.470 Job Notification: New process added to job (2308) 2026-04-16T23:55:24.485 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6532] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2308]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-16T23:55:24.657 Job Notification: New process added to job (3020) 2026-04-16T23:55:24.735 Task(GetDeviceTicket -AccessKey 6E1ED2AD-E0DA-4EA6-07AB-E78E4D27536D ) launched as network service 2026-04-16T23:55:24.954 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-16T23:55:24.954 [RTP] Duplicating the current plugin configuration object... 2026-04-16T23:55:24.954 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-16T23:55:24.954 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-16T23:55:24.954 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-16T23:55:24.954 [RTP] No config change detected. Not updating plugin configuration. 2026-04-16T23:55:24.954 [RTP] No config changes found. No configuration switch. 2026-04-16T23:55:24.954 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-16T23:55:25.440 Job Notification: Process exited from job (3020) 2026-04-16T23:55:26.568 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-16T23:55:26.568 [Cloud] Start of cloud request. Passive mode: 0 2026-04-16T23:55:26.568 [Cloud] Queued cloud request. 2026-04-16T23:55:26.568 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-16T23:55:26.568 [Cloud] Dequeued cloud request. 2026-04-16T23:55:26.568 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-16T23:55:26.568 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-16T23:55:26.568 [Cloud] Start of cloud request. Passive mode: 0 2026-04-16T23:55:26.568 [Cloud] Queued cloud request. 2026-04-16T23:55:26.568 [Cloud] Dequeued cloud request. 2026-04-16T23:55:26.584 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-16T23:55:26.879 [Cloud] End of cloud request. 2026-04-16T23:55:26.893 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-16T23:55:26.893 [Cloud] End of cloud request. 2026-04-16T23:55:27.071 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-16T23:55:38.547 Job Notification: Process exited from job (4240) 2026-04-16T23:56:23.054 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49844, Count: 6646, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8281, Count: 77670, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 37, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_1.MAD, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0024f849-d9f3-4cc4-a5ce-39ca79cca337.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99b6fb77-1a8d-4492-90ad-9c9e70eb1520.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\856a42fd-9fbb-4da5-af39-2beb370eefd2.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba26bb5b-089b-48f9-a732-b649c25ea43a.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 684, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\badde394-682e-49de-a0a6-5bff6e76735e.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b62563-4339-404a-8065-50c7ed40201d.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d72af138-05a1-4e56-b6da-577cf07274c1.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4272ef2e-d4dc-4326-ae10-3452a08473f8.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cfafb9d-abac-40d5-8359-9fade6c93422.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 6040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6dc25a2-facb-4e48-9d34-8cfbe31d26c3.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e95c22d-2c93-44f6-a13e-8b80cdaa57bb.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 6016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56697d8b-260c-4cae-becc-e08092175d69.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b5e9e05-79ca-440d-b36f-7b19cb9455bf.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e407f02-4517-40c6-950e-3fc743889c59.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 3484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a2e974-15bd-46bc-b515-3acb4eeaf200.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1447166f-5e81-4732-9f0d-eba0334f1534.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 2948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93735f58-93ab-40df-a47b-bbbff5210dc9.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\850a501a-e3c6-499f-87c8-07ce09eb5a15.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 2404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1189ed9b-ddf7-458f-940c-1836af9586e2.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 2288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ad00179-d47a-4565-a231-65a98f8134d3.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 2196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\08433bbf-ee35-4529-8cec-1e13135b30c6.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ffb74ea-595d-4d8a-9c9b-b1b56742e9e3.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 5480, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a0659c2-f9fb-4a15-8275-0ef67a1a2ac5.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab52b322-25ec-49f8-97fb-619152466818.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5ea8610-3e12-4af4-a1b0-00c67915c9df.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b1d69f3-6377-4385-bd79-6c91a33b8286.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34373fea-f5fb-4c87-ad50-6bfb66d861f0.tmp, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-16T23:56:23.054 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-16T23:56:28.206 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\9E0D3198-0BD4-49C0-BE78-A97D48742DD513fc.1dccdfca31f79ce 2026-04-16T23:56:28.253 Verifying engine and signature files (source: 0) ... 2026-04-16T23:56:28.253 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EBDC52C4-7659-4DD0-A7AF-215309291093}\mpengine.dll] due to PPL. 2026-04-16T23:56:28.253 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EBDC52C4-7659-4DD0-A7AF-215309291093}\mpasbase.vdm] (file in cache) 2026-04-16T23:56:28.253 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EBDC52C4-7659-4DD0-A7AF-215309291093}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-16T23:56:28.284 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EBDC52C4-7659-4DD0-A7AF-215309291093}\mpasdlta.vdm] 2026-04-16T23:56:28.284 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EBDC52C4-7659-4DD0-A7AF-215309291093}\mpavbase.vdm] (file in cache) 2026-04-16T23:56:28.284 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EBDC52C4-7659-4DD0-A7AF-215309291093}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-16T23:56:28.300 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EBDC52C4-7659-4DD0-A7AF-215309291093}\mpavdlta.vdm] 2026-04-16T23:56:28.487 [Engine] IsHybridMode: 0 2026-04-16T23:56:28.487 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-16T23:56:28.581 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-62A28164660E144C18E154EF8AD0CED0D293BE0B.bin): 0x00000002 2026-04-16T23:56:28.581 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-62A28164660E144C18E154EF8AD0CED0D293BE0B.bin) 2026-04-16T23:56:28.581 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-16T23:56:28.581 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-16T23:56:28.597 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-16T23:56:28.597 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-16T23:56:38.017 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-16T23:56:38.017 [AutoExclusion] Applied roles from cache. 2026-04-16T23:56:38.017 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-04-16T23:56:38.033 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D908020, lRefCount: 5, hr=0 2026-04-16T23:56:38.033 [Engine] New active engine 00007FFD0EA68020 replacing engine 00007FFD0D908020. Number of active engines: 2 2026-04-16T23:56:38.048 EngineInit:Global ASOC is enabled 2026-04-16T23:56:38.048 EngineInit:ASOO is enabled for developer volumes 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-16T23:56:38.080 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-16T23:56:38.095 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-16T23:56:38.095 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-16T23:56:38.111 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-16T23:56:38.111 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-16T23:56:38.111 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-16T23:56:38.111 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-16T23:56:38.111 [Plugin] Initializing RTP plugin state... 2026-04-16T23:56:38.111 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-16T23:56:38.111 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎16‎-‎2026 01:56:23 Last Perf:‎04‎-‎16‎-‎2026 01:56:22 First RTP Scan:‎04‎-‎16‎-‎2026 01:56:24 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:402 Misses:2070 BM Queue:0,43,0 Proc:0,42,0 File:0,23,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:292487 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:309381578 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2841 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:58929 TotalHits:68591 InstanceCacheInserts:133175 InstanceCacheUpdates:0 InstanceCacheDeletes:16711 InstanceCacheHits:1878 InstanceCacheMisses:181693 InstanceCacheOverflows:106394 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (342/281) Success: 281, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-16T23:56:38.111 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EBDC52C4-7659-4DD0-A7AF-215309291093} 2026-04-16T23:56:38.111 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1F75F074-8AD5-4994-834B-63A3C5897982} removed 2026-04-16T23:56:38.111 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{85216A30-966A-4EB5-88C8-5C6338E3E55E}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{85216A30-966A-4EB5-88C8-5C6338E3E55E}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-16T23:56:38.111 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-16T23:56:38.111 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-16T23:56:38.111 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-16T23:56:38.111 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-16T23:56:38.111 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-16T23:56:38.111 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-16-2026 23:56:38 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-16-2026 23:56:38 2026-04-16T23:56:38.111 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-16T23:56:38.111 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-16T23:56:38.111 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-16T23:56:38.111 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-16T23:56:38.111 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-16T23:56:38.111 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-16T23:56:38.111 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-16T23:56:38.111 MdCoreSvc is supported in this platform and OS 2026-04-16T23:56:38.111 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-16T23:56:38.111 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 04-16-2026 23:56:38 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.142.0 AV Signature Version: 1.449.142.0 ************************************************************ 2026-04-16T23:56:38.126 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-16T23:56:38.126 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\9E0D3198-0BD4-49C0-BE78-A97D48742DD513fc.1dccdfca31f79ce 2026-04-16T23:56:38.142 Process scan (postsignatureupdatescan) started. 2026-04-16T23:56:38.173 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-16T23:56:38.173 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 04-16-2026 23:56:38 ************************************************************ 2026-04-16T23:56:38.376 Job Notification: Process exited from job (6532) 2026-04-16T23:56:38.376 Job Notification: Process exited from job (1848) 2026-04-16T23:56:38.376 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-16T23:56:38.376 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-16T23:56:38.392 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-16T23:56:38.392 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-16T23:56:38.392 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-16T23:56:38.392 Job Notification: Process exited from job (7872) 2026-04-16T23:56:38.392 Job Notification: Process exited from job (2308) 2026-04-16T23:56:38.392 [Engine] Engine 00007FFD0D908020 no longer in use. Number of active engines: 1 2026-04-16T23:56:38.392 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-16T23:56:38.392 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-16T23:56:38.595 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-16T23:56:38.595 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-16T23:56:38.595 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-16T23:56:39.392 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49844, Count: 6646, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-16T23:56:39.392 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8281, Count: 77688, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-16T23:56:39.392 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 37, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827b91_1.MAD, EstimatedImpact: 0% 2026-04-16T23:56:39.392 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-16T23:56:39.392 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-16T23:56:39.392 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0024f849-d9f3-4cc4-a5ce-39ca79cca337.tmp, EstimatedImpact: 0% 2026-04-16T23:56:39.392 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99b6fb77-1a8d-4492-90ad-9c9e70eb1520.tmp, EstimatedImpact: 0% 2026-04-16T23:56:39.392 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\856a42fd-9fbb-4da5-af39-2beb370eefd2.tmp, EstimatedImpact: 0% 2026-04-16T23:56:39.392 ProcessImageName: updater.exe, Pid: 980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba26bb5b-089b-48f9-a732-b649c25ea43a.tmp, EstimatedImpact: 0% 2026-04-16T23:56:39.392 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b62563-4339-404a-8065-50c7ed40201d.tmp, EstimatedImpact: 0% 2026-04-16T23:56:39.392 ProcessImageName: updater.exe, Pid: 684, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\badde394-682e-49de-a0a6-5bff6e76735e.tmp, EstimatedImpact: 0% 2026-04-16T23:56:39.392 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d72af138-05a1-4e56-b6da-577cf07274c1.tmp, EstimatedImpact: 0% 2026-04-16T23:56:39.392 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4272ef2e-d4dc-4326-ae10-3452a08473f8.tmp, EstimatedImpact: 0% 2026-04-16T23:56:39.455 [Engine] RSIG_UNLOADENGINE, 00007FFD0D908020, err=0x0 2026-04-16T23:56:39.455 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{85216A30-966A-4EB5-88C8-5C6338E3E55E} removed 2026-04-16T23:56:44.970 Process scan (postsignatureupdatescan) completed. 2026-04-16T23:59:19.384 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T00:01:38.060 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-17T00:10:26.234 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #293300, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T00:10:26.250 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #293302, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T00:10:36.260 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #293315, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T00:10:36.260 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #293317, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T00:10:36.260 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #293319, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T00:14:24.381 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T00:29:29.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T00:44:34.381 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T00:59:39.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T01:10:23.637 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #296646, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T01:10:23.652 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #296648, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T01:10:33.644 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #296661, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T01:10:33.644 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #296664, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T01:14:44.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T01:28:36.271 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #297668, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T01:28:36.302 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #297671, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T01:28:40.741 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #297682, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T01:28:40.757 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #297685, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T01:28:40.757 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #297687, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T01:28:50.744 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #297700, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T01:28:50.744 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #297702, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T01:28:50.760 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #297704, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T01:28:50.760 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #297706, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T01:29:49.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T01:44:54.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T01:56:38.032 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 601, Count: 6471, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.O2A0X3, EstimatedImpact: 0% 2026-04-17T01:56:38.032 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 559, Count: 54, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-04-17T01:56:38.032 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f894fef1-dd6d-45eb-b554-6c1938453273.tmp, EstimatedImpact: 0% 2026-04-17T01:56:38.032 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d383593a-70a1-45e9-b6e9-11a962387090.tmp, EstimatedImpact: 0% 2026-04-17T01:56:38.032 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2deb020b-c296-4455-8b3b-6a59301ccb55.tmp, EstimatedImpact: 0% 2026-04-17T01:59:59.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T02:01:53.683 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:7C40EB1C-61EF-40C6-8B6E-55DABE59EA3A, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-17T02:01:53.683 Scheduled scan with Id 7C40EB1C-61EF-40C6-8B6E-55DABE59EA3A configured CPU priority: normal (LowCpuPriority: 0) 2026-04-17T02:01:53.683 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-17T02:01:53.683 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-17T02:01:53.683 [SFC] System file cache build is not needed (already completed) 2026-04-17T02:02:04.365 Engine:Triggered AR EMS scan 2026-04-17T02:02:04.365 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.396 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.443 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.459 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.490 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.506 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.521 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.553 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.568 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.599 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.615 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.631 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.662 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.678 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.709 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.724 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.756 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.818 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.834 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.849 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.881 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.928 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-17T02:02:04.959 Bm signature throttled:0x00002db31bed458f 2026-04-17T02:02:19.365 QuickScan:ScanID:7C40EB1C-61EF-40C6-8B6E-55DABE59EA3A: Quick scan finished with error 0 2026-04-17T02:02:19.365 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-17T02:02:19.869 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-17T02:02:19.869 [RTP] Duplicating the current plugin configuration object... 2026-04-17T02:02:19.869 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-17T02:02:19.869 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-17T02:02:19.869 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-17T02:02:19.869 [RTP] No config change detected. Not updating plugin configuration. 2026-04-17T02:02:19.869 [RTP] No config changes found. No configuration switch. 2026-04-17T02:02:19.869 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-17T02:10:26.313 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #300291, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T02:10:26.313 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #300293, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T02:10:36.325 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #300305, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T02:10:36.341 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #300307, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T02:15:04.376 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T02:20:27.564 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bad_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #302048, FileId: 0x1047000000038bf5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T02:26:52.776 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bae_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #302847, FileId: 0xcf00000004c473, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T02:26:53.292 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bae_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #302851, FileId: 0xd000000004c473, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T02:30:09.369 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T02:45:14.372 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T03:00:19.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T03:10:26.929 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #305426, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T03:10:26.945 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #305428, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T03:10:36.945 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #305441, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T03:10:36.945 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #305443, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T03:10:37.101 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #305446, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T03:10:37.101 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #305448, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T03:15:24.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T03:30:29.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T03:45:34.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T03:56:38.043 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47177, Count: 6372, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\life\feed\a78e5c567f0283482d7c6c00dfe63036.html, EstimatedImpact: 0% 2026-04-17T03:56:38.043 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1201, Count: 12942, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.O2A0X3, EstimatedImpact: 0% 2026-04-17T03:56:38.043 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-17T03:56:38.043 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0bd1d6b2-0392-47db-8fdf-10c6f7fb790c.tmp, EstimatedImpact: 0% 2026-04-17T03:56:38.043 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bad_1.MAD, EstimatedImpact: 0% 2026-04-17T03:56:38.043 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f894fef1-dd6d-45eb-b554-6c1938453273.tmp, EstimatedImpact: 0% 2026-04-17T03:56:38.043 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d383593a-70a1-45e9-b6e9-11a962387090.tmp, EstimatedImpact: 0% 2026-04-17T03:56:38.043 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2deb020b-c296-4455-8b3b-6a59301ccb55.tmp, EstimatedImpact: 0% 2026-04-17T03:56:38.043 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T04:00:39.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T04:10:25.579 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #308754, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T04:10:25.579 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #308756, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T04:10:35.593 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #308769, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T04:10:35.608 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #308772, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T04:15:44.372 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T04:27:20.698 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bb1_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #309718, FileId: 0xff3000000023f12, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T04:27:21.292 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bb1_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #309722, FileId: 0xff4000000023f12, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T04:30:49.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T04:45:54.374 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T05:00:59.368 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T05:10:26.409 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #312131, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T05:10:26.425 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #312134, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T05:10:36.418 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #312147, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T05:10:36.434 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #312149, FileId: 0x558000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T05:16:04.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T05:31:09.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T05:46:14.368 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T05:56:38.051 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51700, Count: 6645, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-17T05:56:38.051 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1786, Count: 19413, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.O2A0X3, EstimatedImpact: 0% 2026-04-17T05:56:38.051 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-17T05:56:38.051 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bad_1.MAD, EstimatedImpact: 0% 2026-04-17T05:56:38.051 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-17T05:56:38.051 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0bd1d6b2-0392-47db-8fdf-10c6f7fb790c.tmp, EstimatedImpact: 0% 2026-04-17T05:56:38.051 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f894fef1-dd6d-45eb-b554-6c1938453273.tmp, EstimatedImpact: 0% 2026-04-17T05:56:38.051 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2a8d41-a475-4622-8cec-4f4a230be324.tmp, EstimatedImpact: 0% 2026-04-17T05:56:38.051 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d383593a-70a1-45e9-b6e9-11a962387090.tmp, EstimatedImpact: 0% 2026-04-17T05:56:38.051 ProcessImageName: updater.exe, Pid: 6672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8bfba8f3-e1c3-43e0-a467-3ff4cee7f6cd.tmp, EstimatedImpact: 0% 2026-04-17T05:56:38.051 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2deb020b-c296-4455-8b3b-6a59301ccb55.tmp, EstimatedImpact: 0% 2026-04-17T05:56:38.051 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T06:01:19.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T06:10:26.541 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #315476, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T06:10:26.556 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #315478, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T06:10:36.561 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #315491, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T06:10:36.561 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #315494, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T06:16:24.369 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T06:28:40.836 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #316487, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T06:28:40.836 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #316489, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T06:28:45.702 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #316508, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T06:28:45.718 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #316511, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T06:28:45.718 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #316512, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T06:28:45.718 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #316514, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T06:28:55.715 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #316527, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T06:28:55.715 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #316528, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T06:28:55.731 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #316529, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T06:31:29.374 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T06:46:34.380 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T07:01:39.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T07:10:27.662 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #318822, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T07:10:27.677 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #318824, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T07:10:37.669 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #318837, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T07:10:37.685 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #318839, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T07:16:44.382 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T07:31:49.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T07:46:54.383 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T07:56:38.062 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51730, Count: 6650, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-17T07:56:38.062 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2461, Count: 25884, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.O2A0X3, EstimatedImpact: 0% 2026-04-17T07:56:38.062 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-17T07:56:38.062 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-17T07:56:38.062 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bad_1.MAD, EstimatedImpact: 0% 2026-04-17T07:56:38.062 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0bd1d6b2-0392-47db-8fdf-10c6f7fb790c.tmp, EstimatedImpact: 0% 2026-04-17T07:56:38.062 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f894fef1-dd6d-45eb-b554-6c1938453273.tmp, EstimatedImpact: 0% 2026-04-17T07:56:38.062 ProcessImageName: updater.exe, Pid: 6672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8bfba8f3-e1c3-43e0-a467-3ff4cee7f6cd.tmp, EstimatedImpact: 0% 2026-04-17T07:56:38.062 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2a8d41-a475-4622-8cec-4f4a230be324.tmp, EstimatedImpact: 0% 2026-04-17T07:56:38.062 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d383593a-70a1-45e9-b6e9-11a962387090.tmp, EstimatedImpact: 0% 2026-04-17T07:56:38.062 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\143fb104-4a25-48d2-8b43-52acdf673d0a.tmp, EstimatedImpact: 0% 2026-04-17T07:56:38.062 ProcessImageName: updater.exe, Pid: 6236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6017e089-7bcf-4c78-8faa-597dea44d622.tmp, EstimatedImpact: 0% 2026-04-17T07:56:38.062 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50d88fbd-4885-468b-b5c6-16cff649cd33.tmp, EstimatedImpact: 0% 2026-04-17T07:56:38.062 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2deb020b-c296-4455-8b3b-6a59301ccb55.tmp, EstimatedImpact: 0% 2026-04-17T07:56:38.062 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T08:01:59.381 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T08:10:25.571 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #322135, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T08:10:25.586 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #322137, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T08:10:35.586 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #322150, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T08:10:35.602 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #322152, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T08:10:35.758 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #322156, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T08:10:35.758 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #322158, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T08:17:04.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T08:32:09.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T08:47:14.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T09:02:19.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T09:10:25.467 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #325458, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T09:10:25.482 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #325460, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T09:10:35.478 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #325472, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T09:10:35.493 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #325475, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T09:17:24.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T09:32:29.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T09:47:34.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T09:56:38.076 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51836, Count: 6661, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3256, Count: 32364, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.O2A0X3, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bad_1.MAD, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0bd1d6b2-0392-47db-8fdf-10c6f7fb790c.tmp, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: updater.exe, Pid: 7292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad1e8c0f-472c-46ca-966c-41380b4e6c5e.tmp, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f894fef1-dd6d-45eb-b554-6c1938453273.tmp, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: updater.exe, Pid: 6236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6017e089-7bcf-4c78-8faa-597dea44d622.tmp, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2a8d41-a475-4622-8cec-4f4a230be324.tmp, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d383593a-70a1-45e9-b6e9-11a962387090.tmp, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50d88fbd-4885-468b-b5c6-16cff649cd33.tmp, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: updater.exe, Pid: 6672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8bfba8f3-e1c3-43e0-a467-3ff4cee7f6cd.tmp, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\143fb104-4a25-48d2-8b43-52acdf673d0a.tmp, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2deb020b-c296-4455-8b3b-6a59301ccb55.tmp, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T09:56:38.076 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T10:02:39.377 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T10:03:59.371 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\ProgramData\USOShared\Logs\System\NotificationUxBroker.002.etl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #328412, FileId: 0x1274000000005794, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x2020, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T10:10:26.682 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #328768, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T10:10:26.698 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #328770, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T10:10:36.687 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #328783, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T10:10:36.687 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #328785, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T10:10:36.702 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #328787, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T10:10:36.702 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #328789, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T10:17:44.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T10:32:49.376 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T10:47:54.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T10:49:20.806 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bc1_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #330937, FileId: 0x4c200000002c325, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T11:02:59.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T11:10:26.465 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #332099, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T11:10:26.481 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #332101, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T11:10:36.476 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #332114, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T11:10:36.492 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #332117, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T11:18:04.368 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T11:28:45.807 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #333119, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T11:28:45.822 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #333121, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T11:28:50.382 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #333131, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T11:28:50.398 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #333134, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T11:28:50.398 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #333136, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T11:29:00.392 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #333149, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T11:29:00.392 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #333150, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T11:29:00.408 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #333153, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T11:33:09.372 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T11:48:14.380 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T11:56:38.089 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51881, Count: 6671, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3826, Count: 38835, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.O2A0X3, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bad_1.MAD, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0bd1d6b2-0392-47db-8fdf-10c6f7fb790c.tmp, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 7292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad1e8c0f-472c-46ca-966c-41380b4e6c5e.tmp, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f894fef1-dd6d-45eb-b554-6c1938453273.tmp, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 6236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6017e089-7bcf-4c78-8faa-597dea44d622.tmp, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2a8d41-a475-4622-8cec-4f4a230be324.tmp, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d383593a-70a1-45e9-b6e9-11a962387090.tmp, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50d88fbd-4885-468b-b5c6-16cff649cd33.tmp, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 6672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8bfba8f3-e1c3-43e0-a467-3ff4cee7f6cd.tmp, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c85f18c-8783-4ea2-9d0b-eaac503a9fe4.tmp, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a96b94b-ee9b-4b22-a492-b13d8c4ea602.tmp, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\143fb104-4a25-48d2-8b43-52acdf673d0a.tmp, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2deb020b-c296-4455-8b3b-6a59301ccb55.tmp, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee1edc73-e797-4862-b9bb-ae790ce67925.tmp, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T11:56:38.089 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T12:03:19.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T12:10:26.853 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #335444, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T12:10:26.853 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #335446, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T12:10:36.859 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #335459, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T12:10:36.875 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #335462, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T12:18:24.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T12:33:29.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T12:48:34.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T13:03:39.376 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T13:10:26.155 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #338754, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T13:10:26.170 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #338756, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T13:10:36.169 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #338768, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T13:10:36.169 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #338770, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T13:10:36.356 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #338774, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T13:10:36.372 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #338776, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T13:18:44.376 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T13:33:49.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T13:48:54.380 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T13:56:38.092 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51881, Count: 6673, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4621, Count: 45306, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.O2A0X3, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bad_1.MAD, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffa45949-ee14-4742-bfdb-6573e662c362.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0bd1d6b2-0392-47db-8fdf-10c6f7fb790c.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 7292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad1e8c0f-472c-46ca-966c-41380b4e6c5e.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f894fef1-dd6d-45eb-b554-6c1938453273.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2deb020b-c296-4455-8b3b-6a59301ccb55.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee1edc73-e797-4862-b9bb-ae790ce67925.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2a8d41-a475-4622-8cec-4f4a230be324.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d383593a-70a1-45e9-b6e9-11a962387090.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c85f18c-8783-4ea2-9d0b-eaac503a9fe4.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 6272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44ff4fea-5035-4bdf-8e90-83fd014fd079.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 6672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8bfba8f3-e1c3-43e0-a467-3ff4cee7f6cd.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 6236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6017e089-7bcf-4c78-8faa-597dea44d622.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a96b94b-ee9b-4b22-a492-b13d8c4ea602.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50d88fbd-4885-468b-b5c6-16cff649cd33.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\143fb104-4a25-48d2-8b43-52acdf673d0a.tmp, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T13:56:38.092 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T14:03:59.380 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T14:10:25.203 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #342093, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T14:10:25.203 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #342095, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T14:19:04.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T14:34:09.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T14:49:14.365 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T15:04:19.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T15:19:24.372 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T15:34:29.376 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T15:49:34.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T15:56:38.091 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51881, Count: 6675, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5461, Count: 51777, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.O2A0X3, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bad_1.MAD, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0bd1d6b2-0392-47db-8fdf-10c6f7fb790c.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 7292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad1e8c0f-472c-46ca-966c-41380b4e6c5e.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffa45949-ee14-4742-bfdb-6573e662c362.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f894fef1-dd6d-45eb-b554-6c1938453273.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 6272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44ff4fea-5035-4bdf-8e90-83fd014fd079.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2a8d41-a475-4622-8cec-4f4a230be324.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d383593a-70a1-45e9-b6e9-11a962387090.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 6740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50cef601-bba4-408d-8244-e497820fb77e.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 6672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8bfba8f3-e1c3-43e0-a467-3ff4cee7f6cd.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a96b94b-ee9b-4b22-a492-b13d8c4ea602.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 6236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6017e089-7bcf-4c78-8faa-597dea44d622.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c85f18c-8783-4ea2-9d0b-eaac503a9fe4.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 6896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fd1380de-fee5-4626-9c96-0ac88a0ebf1b.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\143fb104-4a25-48d2-8b43-52acdf673d0a.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50d88fbd-4885-468b-b5c6-16cff649cd33.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2deb020b-c296-4455-8b3b-6a59301ccb55.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee1edc73-e797-4862-b9bb-ae790ce67925.tmp, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T15:56:38.091 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T16:04:39.381 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T16:10:34.875 [RTP] [Mini-filter] Unsuccessful scan status(#111): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #348740, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T16:19:44.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T16:34:49.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T16:49:54.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T17:04:59.365 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T17:10:26.777 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #352067, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T17:20:04.365 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T17:35:09.369 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T17:50:14.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T17:56:38.101 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51911, Count: 6679, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6331, Count: 58248, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.O2A0X3, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 23, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bad_1.MAD, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0bd1d6b2-0392-47db-8fdf-10c6f7fb790c.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 7292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad1e8c0f-472c-46ca-966c-41380b4e6c5e.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffa45949-ee14-4742-bfdb-6573e662c362.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f894fef1-dd6d-45eb-b554-6c1938453273.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 6896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fd1380de-fee5-4626-9c96-0ac88a0ebf1b.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2a8d41-a475-4622-8cec-4f4a230be324.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d383593a-70a1-45e9-b6e9-11a962387090.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 6272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44ff4fea-5035-4bdf-8e90-83fd014fd079.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 6740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50cef601-bba4-408d-8244-e497820fb77e.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 6672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8bfba8f3-e1c3-43e0-a467-3ff4cee7f6cd.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a96b94b-ee9b-4b22-a492-b13d8c4ea602.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\416d349f-ee71-4947-8f60-52c51ffa4ff9.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 6236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6017e089-7bcf-4c78-8faa-597dea44d622.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c85f18c-8783-4ea2-9d0b-eaac503a9fe4.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\143fb104-4a25-48d2-8b43-52acdf673d0a.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50d88fbd-4885-468b-b5c6-16cff649cd33.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2deb020b-c296-4455-8b3b-6a59301ccb55.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2cb3130a-4023-4145-8125-270cde500691.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee1edc73-e797-4862-b9bb-ae790ce67925.tmp, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T17:56:38.101 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T18:05:19.379 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T18:10:36.902 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #355416, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T18:20:24.374 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T18:35:29.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T18:50:34.368 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T19:05:39.368 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T19:20:44.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T19:35:49.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T19:50:54.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T19:56:38.105 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52063, Count: 6687, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7081, Count: 64719, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.O2A0X3, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 23, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bad_1.MAD, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 3636, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fa601518-a97e-4521-8efc-70f29a0e0be6.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffa45949-ee14-4742-bfdb-6573e662c362.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 7292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad1e8c0f-472c-46ca-966c-41380b4e6c5e.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0bd1d6b2-0392-47db-8fdf-10c6f7fb790c.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f894fef1-dd6d-45eb-b554-6c1938453273.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 6896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fd1380de-fee5-4626-9c96-0ac88a0ebf1b.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2a8d41-a475-4622-8cec-4f4a230be324.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d383593a-70a1-45e9-b6e9-11a962387090.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\143fb104-4a25-48d2-8b43-52acdf673d0a.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c85f18c-8783-4ea2-9d0b-eaac503a9fe4.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 6236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6017e089-7bcf-4c78-8faa-597dea44d622.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50d88fbd-4885-468b-b5c6-16cff649cd33.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\416d349f-ee71-4947-8f60-52c51ffa4ff9.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a96b94b-ee9b-4b22-a492-b13d8c4ea602.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2deb020b-c296-4455-8b3b-6a59301ccb55.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2cb3130a-4023-4145-8125-270cde500691.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee1edc73-e797-4862-b9bb-ae790ce67925.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 6672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8bfba8f3-e1c3-43e0-a467-3ff4cee7f6cd.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 6740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50cef601-bba4-408d-8244-e497820fb77e.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 6272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44ff4fea-5035-4bdf-8e90-83fd014fd079.tmp, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T19:56:38.105 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T20:05:59.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T20:21:04.365 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T20:36:09.364 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T20:51:14.376 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T21:06:19.369 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T21:10:24.701 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #365345, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T21:21:24.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T21:29:07.788 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #366414, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T21:36:29.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T21:51:34.374 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T21:56:38.110 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52078, Count: 6689, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7846, Count: 71190, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.O2A0X3, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 120, Count: 28, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bad_1.MAD, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 7292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad1e8c0f-472c-46ca-966c-41380b4e6c5e.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0bd1d6b2-0392-47db-8fdf-10c6f7fb790c.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffa45949-ee14-4742-bfdb-6573e662c362.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 3636, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fa601518-a97e-4521-8efc-70f29a0e0be6.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f894fef1-dd6d-45eb-b554-6c1938453273.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\416d349f-ee71-4947-8f60-52c51ffa4ff9.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 6896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fd1380de-fee5-4626-9c96-0ac88a0ebf1b.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2a8d41-a475-4622-8cec-4f4a230be324.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 7728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d383593a-70a1-45e9-b6e9-11a962387090.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 6272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44ff4fea-5035-4bdf-8e90-83fd014fd079.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 6740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50cef601-bba4-408d-8244-e497820fb77e.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 6708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0583719f-b60c-49c7-8185-3262266f023e.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 6672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8bfba8f3-e1c3-43e0-a467-3ff4cee7f6cd.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\38740fa6-bb26-49e0-9935-9be427413c27.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 6236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6017e089-7bcf-4c78-8faa-597dea44d622.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50d88fbd-4885-468b-b5c6-16cff649cd33.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\143fb104-4a25-48d2-8b43-52acdf673d0a.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 3172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2deb020b-c296-4455-8b3b-6a59301ccb55.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2cb3130a-4023-4145-8125-270cde500691.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee1edc73-e797-4862-b9bb-ae790ce67925.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a96b94b-ee9b-4b22-a492-b13d8c4ea602.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c85f18c-8783-4ea2-9d0b-eaac503a9fe4.tmp, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T21:56:38.110 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-17T22:06:39.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T22:21:44.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T22:36:49.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T22:51:54.378 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T23:06:59.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T23:10:25.055 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #372016, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-17T23:22:04.377 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T23:37:09.372 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T23:52:14.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-17T23:55:24.368 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-17T23:55:24.384 Job Notification: New process added to job (6224) 2026-04-17T23:55:24.399 Job Notification: New process added to job (5708) 2026-04-17T23:55:24.399 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-17T23:55:24.415 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6224] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5708]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-17T23:55:24.415 Aggressive catchup quick scan threshold: 788107361225 / 25920000000000 2026-04-17T23:55:24.462 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-17T23:55:24.462 Job Notification: New process added to job (6952) 2026-04-17T23:55:24.462 Job Notification: New process added to job (2064) 2026-04-17T23:55:24.477 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6952] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2064]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-17T23:55:24.634 Job Notification: New process added to job (5480) 2026-04-17T23:55:24.681 Task(GetDeviceTicket -AccessKey 741F0642-54DD-17AA-ADD3-D34E9A6AEE93 ) launched as network service 2026-04-17T23:55:24.977 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-17T23:55:24.993 [RTP] Duplicating the current plugin configuration object... 2026-04-17T23:55:24.993 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-17T23:55:24.993 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-17T23:55:24.993 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-17T23:55:24.993 [RTP] No config change detected. Not updating plugin configuration. 2026-04-17T23:55:24.993 [RTP] No config changes found. No configuration switch. 2026-04-17T23:55:24.993 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-17T23:55:25.227 Job Notification: Process exited from job (5480) 2026-04-17T23:55:26.402 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-17T23:55:26.402 [Cloud] Start of cloud request. Passive mode: 0 2026-04-17T23:55:26.402 [Cloud] Queued cloud request. 2026-04-17T23:55:26.402 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-17T23:55:26.402 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-17T23:55:26.402 [Cloud] Start of cloud request. Passive mode: 0 2026-04-17T23:55:26.402 [Cloud] Queued cloud request. 2026-04-17T23:55:26.434 Job Notification: New process added to job (6684) 2026-04-17T23:55:26.449 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey B533EDAD-EE3E-2399-1235-CEEA6BB364A3) launched 2026-04-17T23:55:26.449 Job Notification: New process added to job (4204) 2026-04-17T23:55:26.449 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6684] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4204]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-17T23:55:26.465 Job Notification: New process added to job (3772) 2026-04-17T23:55:26.481 Job Notification: Process exited from job (6684) 2026-04-17T23:55:26.481 Job Notification: Process exited from job (4204) 2026-04-17T23:55:26.481 [Cloud] Dequeued cloud request. 2026-04-17T23:55:26.481 [Cloud] Dequeued cloud request. 2026-04-17T23:55:26.481 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-17T23:55:26.481 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-17T23:55:26.793 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-17T23:55:26.793 [Cloud] End of cloud request. 2026-04-17T23:55:26.809 [Cloud] End of cloud request. 2026-04-17T23:55:26.902 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-17T23:56:18.841 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\7034181B-832F-437B-89A6-D4D3A3CEE1951f90.1dccec5c7f263da 2026-04-17T23:56:18.888 Verifying engine and signature files (source: 0) ... 2026-04-17T23:56:18.888 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F88AEA27-E3FF-436D-B200-BFBE26C63BF8}\mpengine.dll] due to PPL. 2026-04-17T23:56:18.888 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F88AEA27-E3FF-436D-B200-BFBE26C63BF8}\mpasbase.vdm] (file in cache) 2026-04-17T23:56:18.888 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F88AEA27-E3FF-436D-B200-BFBE26C63BF8}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-17T23:56:18.903 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F88AEA27-E3FF-436D-B200-BFBE26C63BF8}\mpasdlta.vdm] 2026-04-17T23:56:18.903 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F88AEA27-E3FF-436D-B200-BFBE26C63BF8}\mpavbase.vdm] (file in cache) 2026-04-17T23:56:18.903 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F88AEA27-E3FF-436D-B200-BFBE26C63BF8}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-17T23:56:18.919 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F88AEA27-E3FF-436D-B200-BFBE26C63BF8}\mpavdlta.vdm] 2026-04-17T23:56:19.093 [Engine] IsHybridMode: 0 2026-04-17T23:56:19.093 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-17T23:56:19.171 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-6D4137E4B49E5C4BCC8590723C02CEAC990E50D7.bin): 0x00000002 2026-04-17T23:56:19.171 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-6D4137E4B49E5C4BCC8590723C02CEAC990E50D7.bin) 2026-04-17T23:56:19.171 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-17T23:56:19.171 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-17T23:56:19.171 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-17T23:56:19.171 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-17T23:56:28.213 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-17T23:56:28.213 [AutoExclusion] Applied roles from cache. 2026-04-17T23:56:28.213 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-04-17T23:56:28.229 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0EA68020, lRefCount: 5, hr=0 2026-04-17T23:56:28.229 [Engine] New active engine 00007FFD0D908020 replacing engine 00007FFD0EA68020. Number of active engines: 2 2026-04-17T23:56:28.245 EngineInit:Global ASOC is enabled 2026-04-17T23:56:28.245 EngineInit:ASOO is enabled for developer volumes 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-17T23:56:28.276 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-17T23:56:28.276 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-17T23:56:28.291 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-17T23:56:28.291 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-17T23:56:28.291 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-17T23:56:28.291 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-17T23:56:28.307 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-17T23:56:28.307 [Plugin] Initializing RTP plugin state... 2026-04-17T23:56:28.307 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-17T23:56:28.307 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎17‎-‎2026 01:56:38 Last Perf:‎04‎-‎17‎-‎2026 01:56:38 First RTP Scan:‎04‎-‎17‎-‎2026 01:56:47 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:403 Misses:2080 BM Queue:0,44,0 Proc:0,43,0 File:0,24,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:374640 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:398821728 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2879 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:62954 TotalHits:88206 InstanceCacheInserts:176656 InstanceCacheUpdates:0 InstanceCacheDeletes:24903 InstanceCacheHits:1915 InstanceCacheMisses:225895 InstanceCacheOverflows:141646 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (298/274) Success: 274, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-17T23:56:28.307 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F88AEA27-E3FF-436D-B200-BFBE26C63BF8} 2026-04-17T23:56:28.307 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EBDC52C4-7659-4DD0-A7AF-215309291093}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EBDC52C4-7659-4DD0-A7AF-215309291093}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-17T23:56:28.307 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F07AC0C5-4BA8-4C5A-BE18-ED57BD60A5EC} removed 2026-04-17T23:56:28.307 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-17T23:56:28.307 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-17T23:56:28.307 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-17T23:56:28.307 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-17T23:56:28.307 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-17-2026 23:56:28 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-17-2026 23:56:28 2026-04-17T23:56:28.307 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-17T23:56:28.307 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-17T23:56:28.307 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-17T23:56:28.307 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-17T23:56:28.307 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-17T23:56:28.307 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-17T23:56:28.307 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-17T23:56:28.307 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-17T23:56:28.307 MdCoreSvc is supported in this platform and OS 2026-04-17T23:56:28.307 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-17T23:56:28.307 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 04-17-2026 23:56:28 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.159.0 AV Signature Version: 1.449.159.0 ************************************************************ 2026-04-17T23:56:28.307 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-17T23:56:28.307 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\7034181B-832F-437B-89A6-D4D3A3CEE1951f90.1dccec5c7f263da 2026-04-17T23:56:28.338 Process scan (postsignatureupdatescan) started. 2026-04-17T23:56:28.369 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-17T23:56:28.369 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-04-17T23:56:28.619 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-17T23:56:28.619 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-17T23:56:28.619 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-17T23:56:28.619 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-17T23:56:28.619 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). Signature updated via MicrosoftUpdateServer on 04-17-2026 23:56:28 ************************************************************ 2026-04-17T23:56:28.635 [Engine] Engine 00007FFD0EA68020 no longer in use. Number of active engines: 1 2026-04-17T23:56:28.635 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-17T23:56:28.635 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-17T23:56:28.651 Job Notification: Process exited from job (6952) 2026-04-17T23:56:28.651 Job Notification: Process exited from job (6224) 2026-04-17T23:56:28.651 Job Notification: Process exited from job (5708) 2026-04-17T23:56:28.651 Job Notification: Process exited from job (2064) 2026-04-17T23:56:28.791 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-17T23:56:28.791 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-17T23:56:28.791 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-17T23:56:29.635 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52198, Count: 6704, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-17T23:56:29.635 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8506, Count: 77661, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.O2A0X3, EstimatedImpact: 0% 2026-04-17T23:56:29.635 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 120, Count: 28, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bad_1.MAD, EstimatedImpact: 0% 2026-04-17T23:56:29.635 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-17T23:56:29.635 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-17T23:56:29.635 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\525f0e5a-efbe-4c1c-8b9c-f7ebfc0a8480.tmp, EstimatedImpact: 0% 2026-04-17T23:56:29.635 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffa45949-ee14-4742-bfdb-6573e662c362.tmp, EstimatedImpact: 0% 2026-04-17T23:56:29.635 ProcessImageName: updater.exe, Pid: 3636, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fa601518-a97e-4521-8efc-70f29a0e0be6.tmp, EstimatedImpact: 0% 2026-04-17T23:56:29.635 ProcessImageName: updater.exe, Pid: 7292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad1e8c0f-472c-46ca-966c-41380b4e6c5e.tmp, EstimatedImpact: 0% 2026-04-17T23:56:29.635 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0bd1d6b2-0392-47db-8fdf-10c6f7fb790c.tmp, EstimatedImpact: 0% 2026-04-17T23:56:29.635 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f894fef1-dd6d-45eb-b554-6c1938453273.tmp, EstimatedImpact: 0% 2026-04-17T23:56:29.635 ProcessImageName: updater.exe, Pid: 6272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44ff4fea-5035-4bdf-8e90-83fd014fd079.tmp, EstimatedImpact: 0% 2026-04-17T23:56:29.635 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d2a8d41-a475-4622-8cec-4f4a230be324.tmp, EstimatedImpact: 0% 2026-04-17T23:56:29.697 [Engine] RSIG_UNLOADENGINE, 00007FFD0EA68020, err=0x0 2026-04-17T23:56:29.729 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EBDC52C4-7659-4DD0-A7AF-215309291093} removed 2026-04-17T23:56:35.166 Process scan (postsignatureupdatescan) completed. 2026-04-18T00:01:28.245 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-18T00:07:19.374 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T00:10:26.123 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #375459, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T00:10:26.139 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #375461, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T00:10:36.131 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #375474, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T00:10:36.147 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #375477, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T00:22:24.376 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T00:37:29.376 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T00:52:34.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T01:07:39.365 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T01:10:25.669 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #378846, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T01:10:25.684 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #378848, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T01:10:35.688 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #378861, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T01:10:35.688 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #378864, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T01:22:44.364 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T01:37:49.368 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T01:52:54.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T01:56:28.231 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 841, Count: 6471, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2FR5X3, EstimatedImpact: 0% 2026-04-18T01:56:28.231 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 558, Count: 56, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\index.php, EstimatedImpact: 0% 2026-04-18T01:56:28.231 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a72f1df1-0482-4d3c-a1fd-d24fa090cbca.tmp, EstimatedImpact: 0% 2026-04-18T01:56:28.231 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b5e27da-5bbc-4b6b-a022-cb4ca846707b.tmp, EstimatedImpact: 0% 2026-04-18T01:59:10.301 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bde_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #382837, FileId: 0x9d500000002c140, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T01:59:21.150 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bde_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #383293, FileId: 0x65b00000002c244, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T02:01:53.683 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:24845397-9123-46B9-9929-977D41F10863, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-18T02:01:53.683 Scheduled scan with Id 24845397-9123-46B9-9929-977D41F10863 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-18T02:01:53.683 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-18T02:01:53.683 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-18T02:01:53.683 [SFC] System file cache build is not needed (already completed) 2026-04-18T02:02:04.246 Engine:Triggered AR EMS scan 2026-04-18T02:02:04.261 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.277 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.308 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.324 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.339 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.371 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.386 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.402 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.433 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.449 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.480 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.496 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.511 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.527 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.543 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.574 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.589 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.652 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.668 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.699 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.730 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.777 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-18T02:02:04.793 Bm signature throttled:0x00002db31bed458f 2026-04-18T02:02:19.027 QuickScan:ScanID:24845397-9123-46B9-9929-977D41F10863: Quick scan finished with error 0 2026-04-18T02:02:19.027 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-18T02:02:19.541 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-18T02:02:19.541 [RTP] Duplicating the current plugin configuration object... 2026-04-18T02:02:19.541 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-18T02:02:19.541 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-18T02:02:19.541 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-18T02:02:19.541 [RTP] No config change detected. Not updating plugin configuration. 2026-04-18T02:02:19.541 [RTP] No config changes found. No configuration switch. 2026-04-18T02:02:19.541 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-18T02:07:59.372 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T02:10:26.099 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #384070, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T02:10:26.099 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #384072, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T02:10:36.103 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #384085, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T02:10:36.103 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #384088, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T02:23:04.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T02:28:57.858 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #385153, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T02:28:57.874 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #385155, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T02:29:00.344 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #385165, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T02:29:00.360 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #385168, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T02:29:00.360 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #385170, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T02:29:10.352 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #385183, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T02:29:10.368 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #385186, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T02:38:09.368 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T02:53:14.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T03:08:19.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T03:10:25.946 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #387463, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T03:10:25.962 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #387465, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T03:10:35.952 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #387478, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T03:10:35.967 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #387481, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T03:23:24.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T03:38:29.377 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T03:53:34.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T03:56:28.239 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 44343, Count: 6290, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-18T03:56:28.239 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1726, Count: 12942, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2FR5X3, EstimatedImpact: 0% 2026-04-18T03:56:28.239 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bde_1.MAI, EstimatedImpact: 0% 2026-04-18T03:56:28.239 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a72f1df1-0482-4d3c-a1fd-d24fa090cbca.tmp, EstimatedImpact: 0% 2026-04-18T03:56:28.239 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b5e27da-5bbc-4b6b-a022-cb4ca846707b.tmp, EstimatedImpact: 0% 2026-04-18T03:56:28.239 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\806743ed-e68f-4d6b-8bb1-8cfacfb31724.tmp, EstimatedImpact: 0% 2026-04-18T03:56:28.239 ProcessImageName: updater.exe, Pid: 972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\832892d7-f4b3-4d8b-a5f2-fc28e0104019.tmp, EstimatedImpact: 0% 2026-04-18T03:56:28.239 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T04:08:39.376 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T04:10:24.994 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #390788, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T04:10:25.009 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #390790, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T04:10:35.002 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #390803, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T04:10:35.002 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #390805, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T04:10:35.158 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #390809, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T04:10:35.174 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #390811, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T04:23:44.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T04:38:49.364 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T04:53:54.375 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T05:08:59.365 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T05:10:26.506 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #394264, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T05:10:26.522 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #394266, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T05:10:36.516 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #394279, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T05:10:36.531 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #394281, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T05:24:04.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T05:39:09.374 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T05:49:35.693 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bef_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #396430, FileId: 0x16b0000000023f12, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T05:49:36.365 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bef_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #396434, FileId: 0x16b1000000023f12, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T05:54:14.372 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T05:56:28.244 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45101, Count: 6343, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-18T05:56:28.244 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2761, Count: 19413, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2FR5X3, EstimatedImpact: 0% 2026-04-18T05:56:28.244 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-18T05:56:28.244 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bde_1.MAI, EstimatedImpact: 0% 2026-04-18T05:56:28.244 ProcessImageName: updater.exe, Pid: 4720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d123703-7ecc-44ad-ba92-c4bee30bc17b.tmp, EstimatedImpact: 0% 2026-04-18T05:56:28.244 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a72f1df1-0482-4d3c-a1fd-d24fa090cbca.tmp, EstimatedImpact: 0% 2026-04-18T05:56:28.244 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b5e27da-5bbc-4b6b-a022-cb4ca846707b.tmp, EstimatedImpact: 0% 2026-04-18T05:56:28.244 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\806743ed-e68f-4d6b-8bb1-8cfacfb31724.tmp, EstimatedImpact: 0% 2026-04-18T05:56:28.244 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a33eda5-a539-4749-9cc8-5918513563ed.tmp, EstimatedImpact: 0% 2026-04-18T05:56:28.244 ProcessImageName: updater.exe, Pid: 972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\832892d7-f4b3-4d8b-a5f2-fc28e0104019.tmp, EstimatedImpact: 0% 2026-04-18T05:56:28.244 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T06:09:19.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T06:10:26.172 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #397615, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T06:10:26.187 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #397617, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T06:10:36.188 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #397629, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T06:10:36.188 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #397630, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T06:10:36.203 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #397631, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T06:24:24.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T06:39:29.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T06:54:34.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T07:09:39.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T07:10:25.908 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #400951, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T07:10:25.923 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #400953, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T07:10:35.922 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #400966, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T07:10:35.938 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #400968, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T07:24:44.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T07:29:00.434 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #401990, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T07:29:00.450 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #401992, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T07:29:04.419 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #402002, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T07:29:04.435 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #402005, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T07:29:04.435 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #402006, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T07:29:04.435 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #402008, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T07:29:14.432 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #402020, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T07:29:14.447 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #402024, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T07:39:49.362 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T07:54:54.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T07:56:28.250 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45236, Count: 6359, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-18T07:56:28.250 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3646, Count: 25884, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2FR5X3, EstimatedImpact: 0% 2026-04-18T07:56:28.250 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-18T07:56:28.250 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bde_1.MAI, EstimatedImpact: 0% 2026-04-18T07:56:28.250 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-18T07:56:28.250 ProcessImageName: updater.exe, Pid: 4720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d123703-7ecc-44ad-ba92-c4bee30bc17b.tmp, EstimatedImpact: 0% 2026-04-18T07:56:28.250 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a72f1df1-0482-4d3c-a1fd-d24fa090cbca.tmp, EstimatedImpact: 0% 2026-04-18T07:56:28.250 ProcessImageName: updater.exe, Pid: 8044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91ac37e5-e9bf-416c-b053-8dc1ac6ee473.tmp, EstimatedImpact: 0% 2026-04-18T07:56:28.250 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b5e27da-5bbc-4b6b-a022-cb4ca846707b.tmp, EstimatedImpact: 0% 2026-04-18T07:56:28.250 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\806743ed-e68f-4d6b-8bb1-8cfacfb31724.tmp, EstimatedImpact: 0% 2026-04-18T07:56:28.250 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a33eda5-a539-4749-9cc8-5918513563ed.tmp, EstimatedImpact: 0% 2026-04-18T07:56:28.250 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47cd94a4-f8aa-4092-81fb-9ab53f6db4d5.tmp, EstimatedImpact: 0% 2026-04-18T07:56:28.250 ProcessImageName: updater.exe, Pid: 972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\832892d7-f4b3-4d8b-a5f2-fc28e0104019.tmp, EstimatedImpact: 0% 2026-04-18T07:56:28.250 ProcessImageName: updater.exe, Pid: 7900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T07:56:28.250 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T08:09:59.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T08:10:24.532 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #404299, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T08:10:24.547 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #404301, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T08:10:34.538 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #404314, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T08:10:34.554 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #404316, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T08:25:04.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T08:40:09.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T08:55:14.364 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T09:10:19.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T09:10:27.712 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #407619, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T09:10:27.727 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #407621, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T09:10:37.731 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #407634, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T09:10:37.731 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #407636, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T09:10:37.930 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #407640, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T09:10:37.945 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #407642, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T09:25:24.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T09:40:29.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T09:55:34.360 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T09:56:28.261 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45327, Count: 6366, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4426, Count: 32355, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2FR5X3, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bde_1.MAI, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: updater.exe, Pid: 376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca364278-03f8-4bfe-9729-6f85fa6927c9.tmp, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: updater.exe, Pid: 4720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d123703-7ecc-44ad-ba92-c4bee30bc17b.tmp, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a72f1df1-0482-4d3c-a1fd-d24fa090cbca.tmp, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b5e27da-5bbc-4b6b-a022-cb4ca846707b.tmp, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: updater.exe, Pid: 8044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91ac37e5-e9bf-416c-b053-8dc1ac6ee473.tmp, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a33eda5-a539-4749-9cc8-5918513563ed.tmp, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\806743ed-e68f-4d6b-8bb1-8cfacfb31724.tmp, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47cd94a4-f8aa-4092-81fb-9ab53f6db4d5.tmp, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: updater.exe, Pid: 972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\832892d7-f4b3-4d8b-a5f2-fc28e0104019.tmp, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: updater.exe, Pid: 684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\27ee062f-f365-488e-bce2-53c3a46c2b2c.tmp, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: updater.exe, Pid: 7900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T09:56:28.261 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T09:56:52.519 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c00_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #410185, FileId: 0x3d300000004c473, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T09:56:53.333 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c00_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #410191, FileId: 0x3d400000004c473, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T10:10:26.010 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #410941, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T10:10:26.025 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #410943, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T10:10:36.042 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #410955, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T10:10:36.042 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #410958, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T10:10:39.360 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T10:25:44.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T10:40:49.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T10:55:54.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T11:10:26.479 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #414257, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T11:10:26.479 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #414259, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T11:10:36.488 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #414272, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T11:10:36.503 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #414274, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T11:10:59.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T11:26:04.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T11:41:09.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T11:56:14.368 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T11:56:28.265 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45388, Count: 6370, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5131, Count: 38835, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2FR5X3, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bde_1.MAI, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: updater.exe, Pid: 376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca364278-03f8-4bfe-9729-6f85fa6927c9.tmp, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: updater.exe, Pid: 4720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d123703-7ecc-44ad-ba92-c4bee30bc17b.tmp, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a72f1df1-0482-4d3c-a1fd-d24fa090cbca.tmp, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: updater.exe, Pid: 8044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91ac37e5-e9bf-416c-b053-8dc1ac6ee473.tmp, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b5e27da-5bbc-4b6b-a022-cb4ca846707b.tmp, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\806743ed-e68f-4d6b-8bb1-8cfacfb31724.tmp, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a33eda5-a539-4749-9cc8-5918513563ed.tmp, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92e2e679-6cc8-414a-a7b0-84176b25df57.tmp, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75dc552f-0a13-4a82-8a3c-1b2dd9d96f3e.tmp, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47cd94a4-f8aa-4092-81fb-9ab53f6db4d5.tmp, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: updater.exe, Pid: 972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\832892d7-f4b3-4d8b-a5f2-fc28e0104019.tmp, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: updater.exe, Pid: 684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\27ee062f-f365-488e-bce2-53c3a46c2b2c.tmp, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: updater.exe, Pid: 7900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T11:56:28.265 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T12:10:27.084 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #417574, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:10:27.099 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #417576, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:10:37.091 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #417589, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:10:37.106 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #417592, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:11:19.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T12:26:24.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T12:29:04.509 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #418603, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:29:04.509 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #418605, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:29:09.474 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #418624, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:29:09.474 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #418627, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:29:09.490 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #418628, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:29:09.490 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #418629, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:29:19.483 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #418642, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:29:19.483 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #418643, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:29:19.499 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #418644, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:29:22.508 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c09_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #418649, FileId: 0x571900000004c454, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:29:23.179 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c09_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #418653, FileId: 0x571a00000004c454, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T12:41:29.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T12:56:34.368 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T13:10:25.299 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #420915, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T13:10:25.315 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #420917, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T13:10:35.312 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #420930, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T13:10:35.328 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #420931, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T13:10:35.328 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #420932, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T13:11:39.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T13:19:23.595 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c0a_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #421427, FileId: 0x6f2000000020079, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T13:26:44.364 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T13:41:49.369 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T13:56:28.265 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49514, Count: 6588, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6061, Count: 45306, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2FR5X3, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 21, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bde_1.MAI, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca364278-03f8-4bfe-9729-6f85fa6927c9.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 4720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d123703-7ecc-44ad-ba92-c4bee30bc17b.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a72f1df1-0482-4d3c-a1fd-d24fa090cbca.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc24cd13-b9bb-4c3a-bba6-935125cd405b.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 8044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91ac37e5-e9bf-416c-b053-8dc1ac6ee473.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\593b4f1c-9882-4758-b593-25f02817deb7.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b5e27da-5bbc-4b6b-a022-cb4ca846707b.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\806743ed-e68f-4d6b-8bb1-8cfacfb31724.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a33eda5-a539-4749-9cc8-5918513563ed.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92e2e679-6cc8-414a-a7b0-84176b25df57.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75dc552f-0a13-4a82-8a3c-1b2dd9d96f3e.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 3672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f162440-4fdd-4ab9-a6eb-a74461a27c32.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47cd94a4-f8aa-4092-81fb-9ab53f6db4d5.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\832892d7-f4b3-4d8b-a5f2-fc28e0104019.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\27ee062f-f365-488e-bce2-53c3a46c2b2c.tmp, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T13:56:28.265 ProcessImageName: updater.exe, Pid: 7900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T13:56:54.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T14:10:25.352 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #424268, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T14:10:25.367 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #424270, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T14:10:35.362 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #424283, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T14:10:35.362 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #424285, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T14:10:35.533 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #424289, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T14:11:59.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T14:27:04.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T14:42:09.368 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T14:57:14.362 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T15:12:19.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T15:27:24.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T15:42:29.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T15:56:28.279 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49514, Count: 6588, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6796, Count: 51777, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2FR5X3, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 21, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bde_1.MAI, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca364278-03f8-4bfe-9729-6f85fa6927c9.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 4720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d123703-7ecc-44ad-ba92-c4bee30bc17b.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 6828, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2bf0ab14-b7e5-4d38-8d00-e0a00ac93f7f.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a72f1df1-0482-4d3c-a1fd-d24fa090cbca.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15a9b067-cd5b-4871-af57-823863ad655e.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 3672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f162440-4fdd-4ab9-a6eb-a74461a27c32.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b5e27da-5bbc-4b6b-a022-cb4ca846707b.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 8044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91ac37e5-e9bf-416c-b053-8dc1ac6ee473.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a33eda5-a539-4749-9cc8-5918513563ed.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\806743ed-e68f-4d6b-8bb1-8cfacfb31724.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92e2e679-6cc8-414a-a7b0-84176b25df57.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc24cd13-b9bb-4c3a-bba6-935125cd405b.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75dc552f-0a13-4a82-8a3c-1b2dd9d96f3e.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\832892d7-f4b3-4d8b-a5f2-fc28e0104019.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\27ee062f-f365-488e-bce2-53c3a46c2b2c.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47cd94a4-f8aa-4092-81fb-9ab53f6db4d5.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\593b4f1c-9882-4758-b593-25f02817deb7.tmp, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 7900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T15:56:28.279 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T15:57:34.372 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T16:10:36.274 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #430916, FileId: 0xc10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T16:12:39.360 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T16:27:44.364 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T16:42:49.365 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T16:57:54.365 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T17:12:59.368 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T17:28:04.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T17:29:14.317 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #435277, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T17:43:09.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T17:56:28.289 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49514, Count: 6589, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7696, Count: 58248, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2FR5X3, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 25, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bde_1.MAI, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca364278-03f8-4bfe-9729-6f85fa6927c9.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 6828, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2bf0ab14-b7e5-4d38-8d00-e0a00ac93f7f.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 4720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d123703-7ecc-44ad-ba92-c4bee30bc17b.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a72f1df1-0482-4d3c-a1fd-d24fa090cbca.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15a9b067-cd5b-4871-af57-823863ad655e.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\adc6b630-97ef-41cb-b196-db25f553eeac.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b5e27da-5bbc-4b6b-a022-cb4ca846707b.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 8044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91ac37e5-e9bf-416c-b053-8dc1ac6ee473.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a33eda5-a539-4749-9cc8-5918513563ed.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2a8f866-d0ff-40ef-9e59-00beec17c4e9.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\806743ed-e68f-4d6b-8bb1-8cfacfb31724.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92e2e679-6cc8-414a-a7b0-84176b25df57.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc24cd13-b9bb-4c3a-bba6-935125cd405b.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 3672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f162440-4fdd-4ab9-a6eb-a74461a27c32.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47cd94a4-f8aa-4092-81fb-9ab53f6db4d5.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\832892d7-f4b3-4d8b-a5f2-fc28e0104019.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\27ee062f-f365-488e-bce2-53c3a46c2b2c.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a343f17f-7d95-472b-bc44-482542a92c11.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75dc552f-0a13-4a82-8a3c-1b2dd9d96f3e.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\593b4f1c-9882-4758-b593-25f02817deb7.tmp, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T17:56:28.289 ProcessImageName: updater.exe, Pid: 7900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T17:58:14.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T18:10:36.744 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #437585, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T18:13:19.372 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T18:28:24.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T18:43:29.373 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T18:58:34.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T19:13:39.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T19:28:44.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T19:43:49.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T19:56:28.294 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49514, Count: 6590, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8581, Count: 64719, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2FR5X3, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 31, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bde_1.MAI, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8a617104-1fdc-475a-9c62-7ef02a46eea7.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca364278-03f8-4bfe-9729-6f85fa6927c9.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 6828, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2bf0ab14-b7e5-4d38-8d00-e0a00ac93f7f.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 4720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d123703-7ecc-44ad-ba92-c4bee30bc17b.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a72f1df1-0482-4d3c-a1fd-d24fa090cbca.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15a9b067-cd5b-4871-af57-823863ad655e.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a33eda5-a539-4749-9cc8-5918513563ed.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2a8f866-d0ff-40ef-9e59-00beec17c4e9.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 8044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91ac37e5-e9bf-416c-b053-8dc1ac6ee473.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\806743ed-e68f-4d6b-8bb1-8cfacfb31724.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92e2e679-6cc8-414a-a7b0-84176b25df57.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75dc552f-0a13-4a82-8a3c-1b2dd9d96f3e.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 3924, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7300dc60-f84b-4a6a-a43b-471a8d38988b.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 3672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f162440-4fdd-4ab9-a6eb-a74461a27c32.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47cd94a4-f8aa-4092-81fb-9ab53f6db4d5.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\832892d7-f4b3-4d8b-a5f2-fc28e0104019.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\27ee062f-f365-488e-bce2-53c3a46c2b2c.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a343f17f-7d95-472b-bc44-482542a92c11.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\593b4f1c-9882-4758-b593-25f02817deb7.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc24cd13-b9bb-4c3a-bba6-935125cd405b.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\adc6b630-97ef-41cb-b196-db25f553eeac.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b5e27da-5bbc-4b6b-a022-cb4ca846707b.tmp, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T19:56:28.294 ProcessImageName: updater.exe, Pid: 7900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T19:58:54.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T20:10:35.323 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #444217, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T20:13:59.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T20:29:04.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T20:44:09.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T20:59:14.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T21:14:19.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T21:29:24.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T21:43:39.866 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c13_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #449427, FileId: 0x596300000004c454, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T21:43:41.495 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c13_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #449457, FileId: 0x596d00000004c454, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T21:43:41.729 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c13_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #449485, FileId: 0x597600000004c454, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T21:44:29.362 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T21:48:39.505 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c15_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #449845, FileId: 0x599f00000004c454, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T21:48:40.239 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c15_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #449875, FileId: 0x59a900000004c454, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T21:48:41.255 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c15_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #449905, FileId: 0x59b300000004c454, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T21:56:28.294 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53353, Count: 6933, MaxTime: 937, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9271, Count: 71199, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2FR5X3, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 300, Count: 164, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bde_1.MAI, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8a617104-1fdc-475a-9c62-7ef02a46eea7.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca364278-03f8-4bfe-9729-6f85fa6927c9.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 4720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d123703-7ecc-44ad-ba92-c4bee30bc17b.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 6828, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2bf0ab14-b7e5-4d38-8d00-e0a00ac93f7f.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a72f1df1-0482-4d3c-a1fd-d24fa090cbca.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15a9b067-cd5b-4871-af57-823863ad655e.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\adc6b630-97ef-41cb-b196-db25f553eeac.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2a8f866-d0ff-40ef-9e59-00beec17c4e9.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\806743ed-e68f-4d6b-8bb1-8cfacfb31724.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 8044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91ac37e5-e9bf-416c-b053-8dc1ac6ee473.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a33eda5-a539-4749-9cc8-5918513563ed.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 4952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c7fb9138-4f21-49d1-950f-54b1b4f6ade8.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 7144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4d7e029e-90c7-4dac-be74-c8074eccbfe2.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92e2e679-6cc8-414a-a7b0-84176b25df57.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc24cd13-b9bb-4c3a-bba6-935125cd405b.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75dc552f-0a13-4a82-8a3c-1b2dd9d96f3e.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 3672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f162440-4fdd-4ab9-a6eb-a74461a27c32.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47cd94a4-f8aa-4092-81fb-9ab53f6db4d5.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\832892d7-f4b3-4d8b-a5f2-fc28e0104019.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\27ee062f-f365-488e-bce2-53c3a46c2b2c.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a343f17f-7d95-472b-bc44-482542a92c11.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 3924, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7300dc60-f84b-4a6a-a43b-471a8d38988b.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\593b4f1c-9882-4758-b593-25f02817deb7.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b5e27da-5bbc-4b6b-a022-cb4ca846707b.tmp, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 7900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T21:56:28.294 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T21:59:34.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T22:10:25.193 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #451136, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T22:14:39.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T22:29:29.688 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #452226, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-18T22:29:44.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T22:44:49.372 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T22:59:54.364 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T23:14:59.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T23:30:04.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T23:45:09.372 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-18T23:55:24.372 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-18T23:55:24.387 Job Notification: New process added to job (6920) 2026-04-18T23:55:24.403 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-18T23:55:24.403 Job Notification: New process added to job (3672) 2026-04-18T23:55:24.403 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6920] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3672]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-18T23:55:24.419 Aggressive catchup quick scan threshold: 788107361237 / 25920000000000 2026-04-18T23:55:24.450 Job Notification: New process added to job (5468) 2026-04-18T23:55:24.450 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-18T23:55:24.450 Job Notification: New process added to job (6504) 2026-04-18T23:55:24.466 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:5468] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6504]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-18T23:55:24.716 Job Notification: New process added to job (8056) 2026-04-18T23:55:24.747 Task(GetDeviceTicket -AccessKey 9C06643D-168D-D3FB-B825-B9DEBE503291 ) launched as network service 2026-04-18T23:55:24.981 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-18T23:55:24.997 [RTP] Duplicating the current plugin configuration object... 2026-04-18T23:55:24.997 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-18T23:55:24.997 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-18T23:55:24.997 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-18T23:55:24.997 [RTP] No config change detected. Not updating plugin configuration. 2026-04-18T23:55:24.997 [RTP] No config changes found. No configuration switch. 2026-04-18T23:55:24.997 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-18T23:55:25.341 Job Notification: Process exited from job (8056) 2026-04-18T23:55:26.477 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-18T23:55:26.477 [Cloud] Start of cloud request. Passive mode: 0 2026-04-18T23:55:26.477 [Cloud] Queued cloud request. 2026-04-18T23:55:26.477 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-18T23:55:26.477 [Cloud] Dequeued cloud request. 2026-04-18T23:55:26.477 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-18T23:55:26.477 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-18T23:55:26.477 [Cloud] Start of cloud request. Passive mode: 0 2026-04-18T23:55:26.477 [Cloud] Queued cloud request. 2026-04-18T23:55:26.477 [Cloud] Dequeued cloud request. 2026-04-18T23:55:26.493 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-18T23:55:26.836 [Cloud] End of cloud request. 2026-04-18T23:55:26.852 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-18T23:55:26.852 [Cloud] End of cloud request. 2026-04-18T23:55:27.008 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-18T23:55:38.369 Job Notification: Process exited from job (3772) 2026-04-18T23:56:28.293 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53353, Count: 6933, MaxTime: 937, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 10186, Count: 77670, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2FR5X3, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 300, Count: 164, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bde_1.MAI, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8a617104-1fdc-475a-9c62-7ef02a46eea7.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca364278-03f8-4bfe-9729-6f85fa6927c9.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 4720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d123703-7ecc-44ad-ba92-c4bee30bc17b.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 6828, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2bf0ab14-b7e5-4d38-8d00-e0a00ac93f7f.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a72f1df1-0482-4d3c-a1fd-d24fa090cbca.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 8080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15a9b067-cd5b-4871-af57-823863ad655e.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2a8f866-d0ff-40ef-9e59-00beec17c4e9.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\adc6b630-97ef-41cb-b196-db25f553eeac.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a33eda5-a539-4749-9cc8-5918513563ed.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 8044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91ac37e5-e9bf-416c-b053-8dc1ac6ee473.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 5068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\789f89f3-905e-4623-bfb0-7ef19a54fc63.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 7144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4d7e029e-90c7-4dac-be74-c8074eccbfe2.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92e2e679-6cc8-414a-a7b0-84176b25df57.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75dc552f-0a13-4a82-8a3c-1b2dd9d96f3e.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 3924, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7300dc60-f84b-4a6a-a43b-471a8d38988b.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc24cd13-b9bb-4c3a-bba6-935125cd405b.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\806743ed-e68f-4d6b-8bb1-8cfacfb31724.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb0022d4-bb33-4c11-9fc6-53a07af1c701.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 3672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f162440-4fdd-4ab9-a6eb-a74461a27c32.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47cd94a4-f8aa-4092-81fb-9ab53f6db4d5.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\832892d7-f4b3-4d8b-a5f2-fc28e0104019.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\593b4f1c-9882-4758-b593-25f02817deb7.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed9c7d54-025b-4acf-bcd5-dba6aaf86564.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\27ee062f-f365-488e-bce2-53c3a46c2b2c.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a343f17f-7d95-472b-bc44-482542a92c11.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b5e27da-5bbc-4b6b-a022-cb4ca846707b.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 4952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c7fb9138-4f21-49d1-950f-54b1b4f6ade8.tmp, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T23:56:28.293 ProcessImageName: updater.exe, Pid: 7900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-18T23:56:31.494 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\707D0677-C33F-4F84-92A8-12FA02E37D2C195c.1dccf8ef9e16c7b 2026-04-18T23:56:31.557 Verifying engine and signature files (source: 0) ... 2026-04-18T23:56:31.557 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B0FE0873-A65D-4057-84AD-F79492C1DB4D}\mpengine.dll] due to PPL. 2026-04-18T23:56:31.557 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B0FE0873-A65D-4057-84AD-F79492C1DB4D}\mpasbase.vdm] (file in cache) 2026-04-18T23:56:31.557 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B0FE0873-A65D-4057-84AD-F79492C1DB4D}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-18T23:56:31.575 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B0FE0873-A65D-4057-84AD-F79492C1DB4D}\mpasdlta.vdm] 2026-04-18T23:56:31.575 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B0FE0873-A65D-4057-84AD-F79492C1DB4D}\mpavbase.vdm] (file in cache) 2026-04-18T23:56:31.575 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B0FE0873-A65D-4057-84AD-F79492C1DB4D}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-18T23:56:31.588 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B0FE0873-A65D-4057-84AD-F79492C1DB4D}\mpavdlta.vdm] 2026-04-18T23:56:31.760 [Engine] IsHybridMode: 0 2026-04-18T23:56:31.760 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-18T23:56:31.822 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-5D17645A06F2B3B53453712EA4720E1530486644.bin): 0x00000002 2026-04-18T23:56:31.822 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-5D17645A06F2B3B53453712EA4720E1530486644.bin) 2026-04-18T23:56:31.822 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-18T23:56:31.822 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-18T23:56:31.822 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-18T23:56:31.822 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-18T23:56:41.064 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-18T23:56:41.064 [AutoExclusion] Applied roles from cache. 2026-04-18T23:56:41.064 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-04-18T23:56:41.080 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D908020, lRefCount: 5, hr=0 2026-04-18T23:56:41.080 [Engine] New active engine 00007FFD0EA68020 replacing engine 00007FFD0D908020. Number of active engines: 2 2026-04-18T23:56:41.095 EngineInit:Global ASOC is enabled 2026-04-18T23:56:41.095 EngineInit:ASOO is enabled for developer volumes 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-18T23:56:41.111 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-18T23:56:41.126 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-18T23:56:41.126 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-18T23:56:41.126 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-18T23:56:41.126 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-18T23:56:41.126 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-18T23:56:41.142 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-18T23:56:41.142 [Plugin] Initializing RTP plugin state... 2026-04-18T23:56:41.142 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-18T23:56:41.142 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎18‎-‎2026 01:56:28 Last Perf:‎04‎-‎18‎-‎2026 01:56:28 First RTP Scan:‎04‎-‎18‎-‎2026 01:56:37 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:402 Misses:2258 BM Queue:0,48,0 Proc:0,48,0 File:0,35,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:457125 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:488829276 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2901 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:67222 TotalHits:112464 InstanceCacheInserts:220242 InstanceCacheUpdates:0 InstanceCacheDeletes:33095 InstanceCacheHits:1972 InstanceCacheMisses:270411 InstanceCacheOverflows:176983 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (291/279) Success: 279, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-18T23:56:41.142 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B0FE0873-A65D-4057-84AD-F79492C1DB4D} 2026-04-18T23:56:41.142 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CD4A480A-0D95-4BC9-9275-F33AA331BB93} removed 2026-04-18T23:56:41.142 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F88AEA27-E3FF-436D-B200-BFBE26C63BF8}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F88AEA27-E3FF-436D-B200-BFBE26C63BF8}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-18T23:56:41.142 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-18T23:56:41.142 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-18T23:56:41.142 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-18T23:56:41.142 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-18T23:56:41.142 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-18T23:56:41.142 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-18-2026 23:56:41 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-18-2026 23:56:41 2026-04-18T23:56:41.142 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-18T23:56:41.142 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-18T23:56:41.142 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-18T23:56:41.142 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-18T23:56:41.142 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-18T23:56:41.142 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-18T23:56:41.142 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-18T23:56:41.142 MdCoreSvc is supported in this platform and OS 2026-04-18T23:56:41.142 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-18T23:56:41.142 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 04-18-2026 23:56:41 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.177.0 AV Signature Version: 1.449.177.0 ************************************************************ 2026-04-18T23:56:41.142 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-18T23:56:41.142 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\707D0677-C33F-4F84-92A8-12FA02E37D2C195c.1dccf8ef9e16c7b 2026-04-18T23:56:41.158 Process scan (postsignatureupdatescan) started. 2026-04-18T23:56:41.205 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-18T23:56:41.205 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 04-18-2026 23:56:41 ************************************************************ 2026-04-18T23:56:41.423 Job Notification: Process exited from job (5468) 2026-04-18T23:56:41.439 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-18T23:56:41.439 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-18T23:56:41.439 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-18T23:56:41.439 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-18T23:56:41.439 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-18T23:56:41.439 Job Notification: Process exited from job (6504) 2026-04-18T23:56:41.439 [Engine] Engine 00007FFD0D908020 no longer in use. Number of active engines: 1 2026-04-18T23:56:41.439 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-18T23:56:41.439 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-18T23:56:41.439 Job Notification: Process exited from job (6920) 2026-04-18T23:56:41.439 Job Notification: Process exited from job (3672) 2026-04-18T23:56:41.626 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-18T23:56:41.626 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-18T23:56:41.626 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-18T23:56:42.189 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53353, Count: 6933, MaxTime: 937, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-18T23:56:42.189 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 10186, Count: 77679, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.2FR5X3, EstimatedImpact: 0% 2026-04-18T23:56:42.189 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 300, Count: 164, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827bde_1.MAI, EstimatedImpact: 0% 2026-04-18T23:56:42.189 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-18T23:56:42.189 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8a617104-1fdc-475a-9c62-7ef02a46eea7.tmp, EstimatedImpact: 0% 2026-04-18T23:56:42.189 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-18T23:56:42.189 ProcessImageName: updater.exe, Pid: 376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca364278-03f8-4bfe-9729-6f85fa6927c9.tmp, EstimatedImpact: 0% 2026-04-18T23:56:42.189 ProcessImageName: updater.exe, Pid: 6828, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2bf0ab14-b7e5-4d38-8d00-e0a00ac93f7f.tmp, EstimatedImpact: 0% 2026-04-18T23:56:42.189 ProcessImageName: updater.exe, Pid: 4720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d123703-7ecc-44ad-ba92-c4bee30bc17b.tmp, EstimatedImpact: 0% 2026-04-18T23:56:42.189 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a72f1df1-0482-4d3c-a1fd-d24fa090cbca.tmp, EstimatedImpact: 0% 2026-04-18T23:56:42.189 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b5e27da-5bbc-4b6b-a022-cb4ca846707b.tmp, EstimatedImpact: 0% 2026-04-18T23:56:42.189 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc24cd13-b9bb-4c3a-bba6-935125cd405b.tmp, EstimatedImpact: 0% 2026-04-18T23:56:42.189 ProcessImageName: updater.exe, Pid: 7252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\806743ed-e68f-4d6b-8bb1-8cfacfb31724.tmp, EstimatedImpact: 0% 2026-04-18T23:56:42.189 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2a8f866-d0ff-40ef-9e59-00beec17c4e9.tmp, EstimatedImpact: 0% 2026-04-18T23:56:42.236 [Engine] RSIG_UNLOADENGINE, 00007FFD0D908020, err=0x0 2026-04-18T23:56:42.267 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F88AEA27-E3FF-436D-B200-BFBE26C63BF8} removed 2026-04-18T23:56:48.095 Process scan (postsignatureupdatescan) completed. 2026-04-19T00:00:14.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T00:01:41.099 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-19T00:10:25.605 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #457959, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T00:10:25.620 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #457961, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T00:10:35.621 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #457975, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T00:10:35.621 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #457977, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T00:10:35.783 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #457981, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T00:10:35.783 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #457983, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T00:15:19.362 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T00:30:24.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T00:45:29.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T01:00:34.360 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T01:10:25.350 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #461319, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T01:10:25.366 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #461321, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T01:10:35.367 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #461335, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T01:10:35.382 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #461338, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T01:15:39.360 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T01:30:44.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T01:45:49.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T01:56:41.079 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 840, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.ISY0X3, EstimatedImpact: 0% 2026-04-19T01:56:41.079 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 107, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-04-19T01:56:41.079 ProcessImageName: updater.exe, Pid: 7800, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-19T01:56:41.079 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T02:00:54.368 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T02:01:53.694 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:1E04AE7B-AE41-4EAB-A688-F16B560638F6, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-19T02:01:53.694 Scheduled scan with Id 1E04AE7B-AE41-4EAB-A688-F16B560638F6 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-19T02:01:53.694 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-19T02:01:53.694 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-19T02:01:53.694 [SFC] System file cache build is not needed (already completed) 2026-04-19T02:02:04.135 Engine:Triggered AR EMS scan 2026-04-19T02:02:04.135 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.150 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.182 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.197 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.228 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.244 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.260 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.291 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.307 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.322 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.353 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.369 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.385 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.416 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.432 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.447 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.478 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.541 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.557 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.588 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.619 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.666 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-19T02:02:04.682 Bm signature throttled:0x00002db31bed458f 2026-04-19T02:02:18.769 QuickScan:ScanID:1E04AE7B-AE41-4EAB-A688-F16B560638F6: Quick scan finished with error 0 2026-04-19T02:02:18.769 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-19T02:02:19.272 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-19T02:02:19.272 [RTP] Duplicating the current plugin configuration object... 2026-04-19T02:02:19.272 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-19T02:02:19.272 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-19T02:02:19.272 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-19T02:02:19.272 [RTP] No config change detected. Not updating plugin configuration. 2026-04-19T02:02:19.272 [RTP] No config changes found. No configuration switch. 2026-04-19T02:02:19.272 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-19T02:10:26.105 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #464885, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T02:10:26.120 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #464887, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T02:10:36.111 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #464901, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T02:10:36.127 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #464904, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T02:10:36.127 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #464905, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T02:15:59.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T02:31:04.357 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T02:35:59.838 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c18_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #467496, FileId: 0x316d0000000082f6, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T02:36:11.562 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c18_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #467951, FileId: 0xc5000000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T02:46:09.371 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T02:59:19.159 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c19_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #469236, FileId: 0x4cf8000000009d23, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T02:59:19.674 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c19_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #469240, FileId: 0x4cf9000000009d23, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:01:14.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T03:10:25.858 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #469853, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:10:25.874 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #469855, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:10:35.862 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #469869, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:10:35.862 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #469871, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:10:35.878 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #469873, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:10:35.878 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #469875, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:16:19.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T03:29:19.755 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #470921, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:29:19.770 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #470923, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:29:23.271 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #470933, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:29:23.287 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #470936, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:29:23.287 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #470938, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:29:33.291 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #470952, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:29:33.291 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #470954, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:29:33.291 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #470956, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T03:31:24.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T03:46:29.357 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T03:56:41.090 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47408, Count: 6237, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-19T03:56:41.090 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1665, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.ISY0X3, EstimatedImpact: 0% 2026-04-19T03:56:41.090 ProcessImageName: updater.exe, Pid: 7800, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-19T03:56:41.090 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T03:56:41.090 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175f5ccd-9493-4afc-8686-471a0e98219e.tmp, EstimatedImpact: 0% 2026-04-19T03:56:41.090 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fabefaaa-de1e-4dd0-84ad-b6635647ce82.tmp, EstimatedImpact: 0% 2026-04-19T03:56:41.090 ProcessImageName: updater.exe, Pid: 384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d931fac-78a0-451d-a50a-1415290188a1.tmp, EstimatedImpact: 0% 2026-04-19T03:56:41.090 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 0, Count: 8, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c18_1.MAI, EstimatedImpact: 0% 2026-04-19T04:01:34.365 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T04:10:24.704 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #473209, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T04:10:24.720 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #473211, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T04:10:34.707 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #473224, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T04:10:34.707 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #473226, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T04:10:34.722 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #473228, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T04:10:34.738 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #473230, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T04:16:39.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T04:31:44.368 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T04:46:49.360 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T05:01:54.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T05:10:25.843 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #476521, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T05:10:25.858 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #476523, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T05:10:35.857 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #476537, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T05:10:35.857 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #476539, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T05:10:36.028 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #476552, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T05:10:36.044 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #476554, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T05:16:59.364 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T05:32:04.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T05:47:09.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T05:50:53.329 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1a_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #478961, FileId: 0xe2a00000003d06d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T05:50:53.923 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1a_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #478965, FileId: 0xe2b00000003d06d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T05:54:40.995 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #479179, FileId: 0xd8b000000020079, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T05:54:41.589 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #479183, FileId: 0xd8c000000020079, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T05:56:41.104 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52727, Count: 6504, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-19T05:56:41.104 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2400, Count: 19422, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.ISY0X3, EstimatedImpact: 0% 2026-04-19T05:56:41.104 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-19T05:56:41.104 ProcessImageName: updater.exe, Pid: 7800, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-19T05:56:41.104 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e18d59-d218-489c-ba33-77a1f7dc6103.tmp, EstimatedImpact: 0% 2026-04-19T05:56:41.104 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T05:56:41.104 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 15, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1b_1.MAI, EstimatedImpact: 0% 2026-04-19T05:56:41.104 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175f5ccd-9493-4afc-8686-471a0e98219e.tmp, EstimatedImpact: 0% 2026-04-19T05:56:41.104 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fabefaaa-de1e-4dd0-84ad-b6635647ce82.tmp, EstimatedImpact: 0% 2026-04-19T05:56:41.104 ProcessImageName: updater.exe, Pid: 384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d931fac-78a0-451d-a50a-1415290188a1.tmp, EstimatedImpact: 0% 2026-04-19T05:56:41.104 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T06:02:14.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T06:10:24.751 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #480099, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T06:10:24.766 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #480101, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T06:10:34.758 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #480115, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T06:10:34.758 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #480116, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T06:10:34.758 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #480118, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T06:17:19.357 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T06:32:24.355 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T06:44:43.386 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #482000, FileId: 0x82f00000004c542, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T06:47:29.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T07:02:34.364 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T07:10:26.388 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #483423, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T07:10:26.403 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #483425, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T07:10:36.408 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #483439, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T07:10:36.408 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #483442, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T07:17:39.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T07:32:44.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T07:47:49.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T07:56:41.109 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53302, Count: 6557, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-19T07:56:41.109 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3300, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.ISY0X3, EstimatedImpact: 0% 2026-04-19T07:56:41.109 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-19T07:56:41.109 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-19T07:56:41.109 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 21, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1b_1.MAI, EstimatedImpact: 0% 2026-04-19T07:56:41.109 ProcessImageName: updater.exe, Pid: 7800, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-19T07:56:41.109 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e18d59-d218-489c-ba33-77a1f7dc6103.tmp, EstimatedImpact: 0% 2026-04-19T07:56:41.109 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T07:56:41.109 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b2c035f-c281-460e-8c32-476733a19e13.tmp, EstimatedImpact: 0% 2026-04-19T07:56:41.109 ProcessImageName: updater.exe, Pid: 384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d931fac-78a0-451d-a50a-1415290188a1.tmp, EstimatedImpact: 0% 2026-04-19T07:56:41.109 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ad3f69-c4ff-4a0d-a429-0c3a4c14da7f.tmp, EstimatedImpact: 0% 2026-04-19T07:56:41.109 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fabefaaa-de1e-4dd0-84ad-b6635647ce82.tmp, EstimatedImpact: 0% 2026-04-19T07:56:41.109 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175f5ccd-9493-4afc-8686-471a0e98219e.tmp, EstimatedImpact: 0% 2026-04-19T07:56:41.109 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T08:02:54.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T08:10:26.339 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #486758, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T08:10:26.339 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #486760, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T08:10:36.342 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #486773, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T08:10:36.358 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #486776, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T08:17:59.364 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T08:29:23.359 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #487815, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T08:29:23.375 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #487817, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T08:29:28.280 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #487827, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T08:29:28.296 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #487830, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T08:29:28.296 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #487832, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T08:29:38.293 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #487846, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T08:29:38.309 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #487849, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T08:33:04.370 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T08:48:09.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T09:03:14.354 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T09:10:25.787 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #490101, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T09:10:25.803 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #490103, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T09:10:35.804 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #490116, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T09:10:35.804 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #490117, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T09:10:35.820 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #490118, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T09:18:19.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T09:33:24.369 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T09:48:29.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T09:54:27.733 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c29_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #492532, FileId: 0x3cd100000004c455, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T09:54:28.341 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c29_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #492536, FileId: 0x3cd200000004c455, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T09:56:41.118 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53332, Count: 6561, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4080, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.ISY0X3, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 25, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1b_1.MAI, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: updater.exe, Pid: 7800, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e18d59-d218-489c-ba33-77a1f7dc6103.tmp, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\80af2c3b-c2a3-454b-973e-e3786b66c2df.tmp, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b2c035f-c281-460e-8c32-476733a19e13.tmp, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175f5ccd-9493-4afc-8686-471a0e98219e.tmp, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ad3f69-c4ff-4a0d-a429-0c3a4c14da7f.tmp, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fabefaaa-de1e-4dd0-84ad-b6635647ce82.tmp, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: updater.exe, Pid: 384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d931fac-78a0-451d-a50a-1415290188a1.tmp, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: updater.exe, Pid: 6168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T09:56:41.118 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T10:03:34.362 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T10:10:25.582 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #493416, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T10:10:25.582 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #493418, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T10:10:35.596 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #493432, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T10:10:35.596 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #493434, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T10:10:35.783 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #493438, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T10:10:35.799 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #493440, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T10:18:39.360 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T10:33:44.357 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T10:48:49.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T11:03:54.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T11:09:10.099 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c32_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #496667, FileId: 0xa9e00000004c4fd, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T11:10:24.935 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #496747, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T11:10:24.951 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #496749, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T11:10:34.959 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #496763, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T11:10:34.959 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #496765, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T11:18:59.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T11:34:04.364 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T11:49:09.362 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T11:56:41.122 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53423, Count: 6568, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4740, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.ISY0X3, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 30, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1b_1.MAI, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: updater.exe, Pid: 7800, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b1f76f6f-b0b4-40dd-8b62-edece12b2b8a.tmp, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e18d59-d218-489c-ba33-77a1f7dc6103.tmp, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b2c035f-c281-460e-8c32-476733a19e13.tmp, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\80af2c3b-c2a3-454b-973e-e3786b66c2df.tmp, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175f5ccd-9493-4afc-8686-471a0e98219e.tmp, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ad3f69-c4ff-4a0d-a429-0c3a4c14da7f.tmp, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fabefaaa-de1e-4dd0-84ad-b6635647ce82.tmp, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: updater.exe, Pid: 384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d931fac-78a0-451d-a50a-1415290188a1.tmp, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b15b355c-5dd0-4477-8882-c418fec8eb68.tmp, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: updater.exe, Pid: 6168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T11:56:41.122 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T12:04:14.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T12:10:26.278 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #500063, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T12:10:26.293 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #500065, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T12:10:36.282 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #500079, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T12:10:36.282 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #500081, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T12:10:36.297 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #500083, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T12:10:36.297 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #500085, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T12:19:19.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T12:34:24.364 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T12:49:29.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T13:04:34.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T13:10:27.414 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #503374, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T13:10:27.429 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #503376, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T13:10:37.443 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #503389, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T13:10:37.458 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #503391, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T13:19:39.364 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T13:29:28.370 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #504431, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T13:29:28.385 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #504433, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T13:34:44.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T13:49:49.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T13:56:41.133 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53423, Count: 6568, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5460, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.ISY0X3, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 30, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1b_1.MAI, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 7800, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b1f76f6f-b0b4-40dd-8b62-edece12b2b8a.tmp, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e18d59-d218-489c-ba33-77a1f7dc6103.tmp, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 7644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5131d96b-ed12-41ca-a09a-9791814507ac.tmp, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b2c035f-c281-460e-8c32-476733a19e13.tmp, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\80af2c3b-c2a3-454b-973e-e3786b66c2df.tmp, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d931fac-78a0-451d-a50a-1415290188a1.tmp, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175f5ccd-9493-4afc-8686-471a0e98219e.tmp, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 6076, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd9a18fc-6fa1-4cb4-820d-126021d7f56c.tmp, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ad3f69-c4ff-4a0d-a429-0c3a4c14da7f.tmp, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fabefaaa-de1e-4dd0-84ad-b6635647ce82.tmp, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b15b355c-5dd0-4477-8882-c418fec8eb68.tmp, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 6168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T13:56:41.133 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T14:04:54.357 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T14:10:35.055 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #506759, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T14:15:39.501 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c35_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #507122, FileId: 0xe3600000002c325, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T14:15:41.065 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c35_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #507153, FileId: 0xe4000000002c325, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T14:15:41.736 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c35_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #507196, FileId: 0xe4b00000002c325, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T14:19:59.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T14:35:04.354 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T14:50:09.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T15:05:14.365 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T15:20:19.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T15:35:24.365 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T15:50:29.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T15:56:41.143 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 57555, Count: 6915, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6285, Count: 51786, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.ISY0X3, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 97, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1b_1.MAI, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 7800, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b1f76f6f-b0b4-40dd-8b62-edece12b2b8a.tmp, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e18d59-d218-489c-ba33-77a1f7dc6103.tmp, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 7644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5131d96b-ed12-41ca-a09a-9791814507ac.tmp, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b2c035f-c281-460e-8c32-476733a19e13.tmp, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 6076, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd9a18fc-6fa1-4cb4-820d-126021d7f56c.tmp, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\80af2c3b-c2a3-454b-973e-e3786b66c2df.tmp, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175f5ccd-9493-4afc-8686-471a0e98219e.tmp, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ad3f69-c4ff-4a0d-a429-0c3a4c14da7f.tmp, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fabefaaa-de1e-4dd0-84ad-b6635647ce82.tmp, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d931fac-78a0-451d-a50a-1415290188a1.tmp, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b15b355c-5dd0-4477-8882-c418fec8eb68.tmp, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 8160, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 6168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T15:56:41.143 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T16:05:34.362 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T16:10:35.473 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #513598, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T16:20:39.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T16:35:44.360 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T16:50:49.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T17:05:54.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T17:20:59.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T17:36:04.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T17:51:09.365 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T17:56:41.148 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 57555, Count: 6915, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7215, Count: 58257, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.ISY0X3, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 97, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1b_1.MAI, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 7800, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b1f76f6f-b0b4-40dd-8b62-edece12b2b8a.tmp, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e18d59-d218-489c-ba33-77a1f7dc6103.tmp, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1e8ff7b-f87d-463b-8b32-b9b3a2ffdeef.tmp, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 6076, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd9a18fc-6fa1-4cb4-820d-126021d7f56c.tmp, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175f5ccd-9493-4afc-8686-471a0e98219e.tmp, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\80af2c3b-c2a3-454b-973e-e3786b66c2df.tmp, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 7644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5131d96b-ed12-41ca-a09a-9791814507ac.tmp, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b2c035f-c281-460e-8c32-476733a19e13.tmp, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ad3f69-c4ff-4a0d-a429-0c3a4c14da7f.tmp, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fabefaaa-de1e-4dd0-84ad-b6635647ce82.tmp, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 280, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1f3369e-1ab4-46ca-89db-9c637d8ab01c.tmp, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b15b355c-5dd0-4477-8882-c418fec8eb68.tmp, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d931fac-78a0-451d-a50a-1415290188a1.tmp, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 8160, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 6168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T17:56:41.148 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T18:06:14.362 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T18:21:19.357 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T18:29:31.925 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #521274, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T18:36:24.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T18:51:29.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T19:06:34.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T19:10:34.592 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #523569, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T19:21:39.367 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T19:36:44.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T19:51:49.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T19:56:41.148 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 57600, Count: 6922, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7980, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.ISY0X3, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 97, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1b_1.MAI, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 7800, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b1f76f6f-b0b4-40dd-8b62-edece12b2b8a.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e18d59-d218-489c-ba33-77a1f7dc6103.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1e8ff7b-f87d-463b-8b32-b9b3a2ffdeef.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 6076, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd9a18fc-6fa1-4cb4-820d-126021d7f56c.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175f5ccd-9493-4afc-8686-471a0e98219e.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\80af2c3b-c2a3-454b-973e-e3786b66c2df.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 7644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5131d96b-ed12-41ca-a09a-9791814507ac.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 7208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fc60eb7a-ac23-4772-9284-3c48cfdf72fd.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b2c035f-c281-460e-8c32-476733a19e13.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 4592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06a273f4-be0b-4a50-b12a-01195c518d5a.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ad3f69-c4ff-4a0d-a429-0c3a4c14da7f.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fabefaaa-de1e-4dd0-84ad-b6635647ce82.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 280, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1f3369e-1ab4-46ca-89db-9c637d8ab01c.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b15b355c-5dd0-4477-8882-c418fec8eb68.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d931fac-78a0-451d-a50a-1415290188a1.tmp, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 8160, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 6168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T19:56:41.148 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T20:06:54.354 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T20:21:59.362 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T20:37:04.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T20:52:09.357 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T21:07:14.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T21:10:36.494 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #530224, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T21:22:19.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T21:37:24.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T21:52:29.354 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T21:56:41.151 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 57600, Count: 6922, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8655, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.ISY0X3, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 100, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1b_1.MAI, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 7800, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 6240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\df435817-9f01-4744-ad7b-2d074a169dc5.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b1f76f6f-b0b4-40dd-8b62-edece12b2b8a.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e18d59-d218-489c-ba33-77a1f7dc6103.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1e8ff7b-f87d-463b-8b32-b9b3a2ffdeef.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175f5ccd-9493-4afc-8686-471a0e98219e.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b2c035f-c281-460e-8c32-476733a19e13.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 7208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fc60eb7a-ac23-4772-9284-3c48cfdf72fd.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\80af2c3b-c2a3-454b-973e-e3786b66c2df.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 7644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5131d96b-ed12-41ca-a09a-9791814507ac.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 6076, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd9a18fc-6fa1-4cb4-820d-126021d7f56c.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 280, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1f3369e-1ab4-46ca-89db-9c637d8ab01c.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 4952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8f01f586-5001-4437-81dd-9e5ee18786fc.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 4592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06a273f4-be0b-4a50-b12a-01195c518d5a.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ad3f69-c4ff-4a0d-a429-0c3a4c14da7f.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fabefaaa-de1e-4dd0-84ad-b6635647ce82.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b15b355c-5dd0-4477-8882-c418fec8eb68.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d931fac-78a0-451d-a50a-1415290188a1.tmp, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 6168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 8160, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T21:56:41.151 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T22:07:34.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T22:22:39.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T22:37:44.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T22:52:49.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T23:07:54.366 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T23:10:36.282 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #536856, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-19T23:22:59.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T23:38:04.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T23:53:09.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-19T23:55:24.355 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-19T23:55:24.370 Job Notification: New process added to job (5952) 2026-04-19T23:55:24.370 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-19T23:55:24.370 Aggressive catchup quick scan threshold: 788106897236 / 25920000000000 2026-04-19T23:55:24.370 Job Notification: New process added to job (2820) 2026-04-19T23:55:24.386 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:5952] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2820]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-19T23:55:24.433 Job Notification: New process added to job (6952) 2026-04-19T23:55:24.433 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-19T23:55:24.433 Job Notification: New process added to job (6016) 2026-04-19T23:55:24.449 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6952] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6016]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-19T23:55:24.620 Job Notification: New process added to job (5880) 2026-04-19T23:55:24.636 Task(GetDeviceTicket -AccessKey 6E2D3CAB-01CC-173E-5E80-E4E8DCDCB70D ) launched as network service 2026-04-19T23:55:24.870 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-19T23:55:24.886 [RTP] Duplicating the current plugin configuration object... 2026-04-19T23:55:24.886 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-19T23:55:24.886 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-19T23:55:24.886 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-19T23:55:24.886 [RTP] No config change detected. Not updating plugin configuration. 2026-04-19T23:55:24.886 [RTP] No config changes found. No configuration switch. 2026-04-19T23:55:24.886 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-19T23:55:25.152 Job Notification: Process exited from job (5880) 2026-04-19T23:55:26.265 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-19T23:55:26.265 [Cloud] Start of cloud request. Passive mode: 0 2026-04-19T23:55:26.265 [Cloud] Queued cloud request. 2026-04-19T23:55:26.265 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-19T23:55:26.265 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-19T23:55:26.265 [Cloud] Start of cloud request. Passive mode: 0 2026-04-19T23:55:26.265 [Cloud] Queued cloud request. 2026-04-19T23:55:26.281 Job Notification: New process added to job (7088) 2026-04-19T23:55:26.281 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey E9555FE2-A6BE-C134-3821-748A1E9AE08D) launched 2026-04-19T23:55:26.296 Job Notification: New process added to job (4260) 2026-04-19T23:55:26.296 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:7088] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4260]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-19T23:55:26.312 Job Notification: New process added to job (3716) 2026-04-19T23:55:26.328 Job Notification: Process exited from job (7088) 2026-04-19T23:55:26.328 Job Notification: Process exited from job (4260) 2026-04-19T23:55:26.328 [Cloud] Dequeued cloud request. 2026-04-19T23:55:26.328 [Cloud] Dequeued cloud request. 2026-04-19T23:55:26.328 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-19T23:55:26.328 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-19T23:55:26.562 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-19T23:55:26.562 [Cloud] End of cloud request. 2026-04-19T23:55:26.578 [Cloud] End of cloud request. 2026-04-19T23:55:26.781 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-19T23:56:06.081 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\189B8753-5AF4-4F1B-B514-A68875B9D2DF1c1c.1dcd0581526bc0a 2026-04-19T23:56:06.144 Verifying engine and signature files (source: 0) ... 2026-04-19T23:56:06.144 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B2F3DAB9-D10B-4E95-91EF-839B76D50CD1}\mpengine.dll] due to PPL. 2026-04-19T23:56:06.144 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B2F3DAB9-D10B-4E95-91EF-839B76D50CD1}\mpasbase.vdm] (file in cache) 2026-04-19T23:56:06.144 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B2F3DAB9-D10B-4E95-91EF-839B76D50CD1}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-19T23:56:06.144 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B2F3DAB9-D10B-4E95-91EF-839B76D50CD1}\mpasdlta.vdm] 2026-04-19T23:56:06.144 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B2F3DAB9-D10B-4E95-91EF-839B76D50CD1}\mpavbase.vdm] (file in cache) 2026-04-19T23:56:06.144 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B2F3DAB9-D10B-4E95-91EF-839B76D50CD1}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-19T23:56:06.159 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B2F3DAB9-D10B-4E95-91EF-839B76D50CD1}\mpavdlta.vdm] 2026-04-19T23:56:06.347 [Engine] IsHybridMode: 0 2026-04-19T23:56:06.347 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-19T23:56:06.409 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-2280C2BB55BEB514617F2B847313AD39D1284663.bin): 0x00000002 2026-04-19T23:56:06.409 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-2280C2BB55BEB514617F2B847313AD39D1284663.bin) 2026-04-19T23:56:06.409 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-19T23:56:06.409 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-19T23:56:06.409 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-19T23:56:06.409 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-19T23:56:15.732 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-19T23:56:15.732 [AutoExclusion] Applied roles from cache. 2026-04-19T23:56:15.732 [AutoExclusion] Started roles monitoring. 2026-04-19T23:56:15.732 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0EA68020, lRefCount: 5, hr=0 2026-04-19T23:56:15.732 [Engine] New active engine 00007FFD0D908020 replacing engine 00007FFD0EA68020. Number of active engines: 2 2026-04-19T23:56:15.748 EngineInit:Global ASOC is enabled 2026-04-19T23:56:15.748 EngineInit:ASOO is enabled for developer volumes 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-19T23:56:15.764 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-19T23:56:15.764 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-19T23:56:15.779 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-19T23:56:15.779 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-19T23:56:15.779 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-19T23:56:15.779 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-19T23:56:15.779 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-19T23:56:15.779 [Plugin] Initializing RTP plugin state... 2026-04-19T23:56:15.779 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-19T23:56:15.779 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎19‎-‎2026 01:56:41 Last Perf:‎04‎-‎19‎-‎2026 01:56:41 First RTP Scan:‎04‎-‎19‎-‎2026 01:56:45 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:402 Misses:2209 BM Queue:0,42,0 Proc:0,40,0 File:0,26,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:539474 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:578691802 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2920 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:71499 TotalHits:134905 InstanceCacheInserts:263773 InstanceCacheUpdates:0 InstanceCacheDeletes:41287 InstanceCacheHits:2023 InstanceCacheMisses:314847 InstanceCacheOverflows:212271 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (332/285) Success: 285, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-19T23:56:15.779 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B2F3DAB9-D10B-4E95-91EF-839B76D50CD1} 2026-04-19T23:56:15.779 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B0FE0873-A65D-4057-84AD-F79492C1DB4D}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B0FE0873-A65D-4057-84AD-F79492C1DB4D}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-19T23:56:15.779 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E9386769-BCBE-48FF-8BFA-2CF87DC694CE} removed 2026-04-19T23:56:15.779 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-19T23:56:15.779 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-19T23:56:15.779 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-19T23:56:15.779 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-19T23:56:15.779 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-19T23:56:15.779 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-19-2026 23:56:15 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-19-2026 23:56:15 2026-04-19T23:56:15.795 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-19T23:56:15.795 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-19T23:56:15.795 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-19T23:56:15.795 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-19T23:56:15.795 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-19T23:56:15.795 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-19T23:56:15.795 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-19T23:56:15.795 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-19T23:56:15.795 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-19T23:56:15.795 MdCoreSvc is supported in this platform and OS Signature updated on 04-19-2026 23:56:15 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.192.0 AV Signature Version: 1.449.192.0 ************************************************************ 2026-04-19T23:56:15.795 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-19T23:56:15.795 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\189B8753-5AF4-4F1B-B514-A68875B9D2DF1c1c.1dcd0581526bc0a 2026-04-19T23:56:15.810 Process scan (postsignatureupdatescan) started. 2026-04-19T23:56:15.842 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-19T23:56:15.842 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 04-19-2026 23:56:15 ************************************************************ 2026-04-19T23:56:15.889 Job Notification: Process exited from job (6952) 2026-04-19T23:56:15.889 Job Notification: Process exited from job (6016) 2026-04-19T23:56:15.904 Job Notification: Process exited from job (5952) 2026-04-19T23:56:15.904 Job Notification: Process exited from job (2820) 2026-04-19T23:56:16.076 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-19T23:56:16.076 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-19T23:56:16.076 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-19T23:56:16.076 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-19T23:56:16.076 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-19T23:56:16.092 [Engine] Engine 00007FFD0EA68020 no longer in use. Number of active engines: 1 2026-04-19T23:56:16.092 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-19T23:56:16.092 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-19T23:56:16.279 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-19T23:56:16.279 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-19T23:56:16.279 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-19T23:56:17.270 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 57600, Count: 6922, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-19T23:56:17.270 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9571, Count: 77652, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-19T23:56:17.270 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 100, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c1b_1.MAI, EstimatedImpact: 0% 2026-04-19T23:56:17.270 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-19T23:56:17.270 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-19T23:56:17.270 ProcessImageName: updater.exe, Pid: 7800, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-19T23:56:17.270 ProcessImageName: updater.exe, Pid: 6240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\df435817-9f01-4744-ad7b-2d074a169dc5.tmp, EstimatedImpact: 0% 2026-04-19T23:56:17.270 ProcessImageName: updater.exe, Pid: 1352, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e18d59-d218-489c-ba33-77a1f7dc6103.tmp, EstimatedImpact: 0% 2026-04-19T23:56:17.270 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b1f76f6f-b0b4-40dd-8b62-edece12b2b8a.tmp, EstimatedImpact: 0% 2026-04-19T23:56:17.270 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1e8ff7b-f87d-463b-8b32-b9b3a2ffdeef.tmp, EstimatedImpact: 0% 2026-04-19T23:56:17.270 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-19T23:56:17.270 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\80af2c3b-c2a3-454b-973e-e3786b66c2df.tmp, EstimatedImpact: 0% 2026-04-19T23:56:17.270 ProcessImageName: updater.exe, Pid: 7644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5131d96b-ed12-41ca-a09a-9791814507ac.tmp, EstimatedImpact: 0% 2026-04-19T23:56:17.317 [Engine] RSIG_UNLOADENGINE, 00007FFD0EA68020, err=0x0 2026-04-19T23:56:17.332 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B0FE0873-A65D-4057-84AD-F79492C1DB4D} removed 2026-04-19T23:56:22.504 Process scan (postsignatureupdatescan) completed. 2026-04-20T00:01:15.762 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-20T00:08:14.355 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T00:10:26.706 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #540309, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T00:10:26.721 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #540311, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T00:10:36.712 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #540324, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T00:10:36.728 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #540326, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T00:23:19.354 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T00:38:24.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T00:53:29.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T01:08:34.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T01:10:25.549 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #543653, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T01:10:25.565 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #543655, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T01:10:35.553 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #543668, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T01:10:35.553 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #543670, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T01:10:35.568 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #543672, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T01:10:35.568 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #543674, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T01:13:34.405 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c43_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #545151, FileId: 0x2bd000000053133, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T01:13:45.189 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c43_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #545607, FileId: 0x180c000000027b5a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T01:23:39.357 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T01:38:44.365 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T01:53:49.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T01:56:15.743 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 43763, Count: 6301, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 1% 2026-04-20T01:56:15.743 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 885, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-20T01:56:15.743 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c43_1.MAI, EstimatedImpact: 0% 2026-04-20T01:56:15.743 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-20T01:56:15.743 ProcessImageName: updater.exe, Pid: 7784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4928b5ea-3c77-44ed-ae9c-fa4643568f25.tmp, EstimatedImpact: 0% 2026-04-20T02:01:53.700 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:4A621ABF-B9E0-4210-8CE4-386E919DBFDD, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-20T02:01:53.700 Scheduled scan with Id 4A621ABF-B9E0-4210-8CE4-386E919DBFDD configured CPU priority: normal (LowCpuPriority: 0) 2026-04-20T02:01:53.700 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-20T02:01:53.700 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-20T02:01:53.700 [SFC] System file cache build is not needed (already completed) 2026-04-20T02:02:04.217 Engine:Triggered AR EMS scan 2026-04-20T02:02:04.217 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.232 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.264 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.279 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.311 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.326 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.342 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.373 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.389 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.404 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.436 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.451 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.467 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.498 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.514 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.529 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.561 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.623 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.639 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.654 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.686 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.732 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-20T02:02:04.764 Bm signature throttled:0x00002db31bed458f 2026-04-20T02:02:19.279 QuickScan:ScanID:4A621ABF-B9E0-4210-8CE4-386E919DBFDD: Quick scan finished with error 0 2026-04-20T02:02:19.295 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-20T02:02:19.805 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-20T02:02:19.805 [RTP] Duplicating the current plugin configuration object... 2026-04-20T02:02:19.805 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-20T02:02:19.805 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-20T02:02:19.805 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-20T02:02:19.805 [RTP] No config change detected. Not updating plugin configuration. 2026-04-20T02:02:19.805 [RTP] No config changes found. No configuration switch. 2026-04-20T02:02:19.805 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-20T02:08:54.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T02:10:25.540 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #548910, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T02:10:25.556 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #548912, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T02:10:35.556 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #548925, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T02:10:35.556 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #548927, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T02:10:35.712 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #548931, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T02:10:35.727 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #548933, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T02:23:59.355 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T02:39:04.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T02:54:09.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T03:09:14.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T03:10:25.476 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #552245, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T03:10:25.491 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #552247, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T03:10:35.490 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #552260, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T03:10:35.490 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #552262, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T03:24:19.354 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T03:39:24.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T03:54:29.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T03:56:15.754 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 43899, Count: 6317, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-20T03:56:15.754 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1590, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-20T03:56:15.754 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c5caea0-d94e-4a05-965c-1c37c974a241.tmp, EstimatedImpact: 0% 2026-04-20T03:56:15.754 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c43_1.MAI, EstimatedImpact: 0% 2026-04-20T03:56:15.754 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-20T03:56:15.754 ProcessImageName: updater.exe, Pid: 7784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4928b5ea-3c77-44ed-ae9c-fa4643568f25.tmp, EstimatedImpact: 0% 2026-04-20T03:56:15.754 ProcessImageName: updater.exe, Pid: 5060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41e38bc6-3d43-4c41-94fa-4b859112ddd4.tmp, EstimatedImpact: 0% 2026-04-20T04:09:34.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T04:10:25.008 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #555561, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T04:10:25.024 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #555563, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T04:10:35.014 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #555576, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T04:10:35.014 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #555577, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T04:10:35.029 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #555578, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T04:24:39.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T04:29:40.546 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #556638, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T04:29:40.562 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #556640, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T04:29:45.879 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #556651, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T04:29:45.895 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #556654, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T04:29:45.895 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #556656, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T04:29:55.883 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #556669, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T04:29:55.883 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #556671, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T04:29:55.898 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #556673, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T04:29:55.898 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #556675, FileId: 0x559000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T04:39:44.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T04:54:49.354 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T05:09:54.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T05:10:25.474 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #558911, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T05:10:25.474 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #558913, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T05:10:35.493 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #558926, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T05:10:35.493 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #558929, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T05:24:59.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T05:40:04.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T05:51:23.160 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827cb4_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #561171, FileId: 0x18bf000000027b5a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T05:55:09.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T05:56:15.754 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45032, Count: 6367, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-20T05:56:15.754 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2475, Count: 19422, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-20T05:56:15.754 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c43_1.MAI, EstimatedImpact: 0% 2026-04-20T05:56:15.754 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c5caea0-d94e-4a05-965c-1c37c974a241.tmp, EstimatedImpact: 0% 2026-04-20T05:56:15.754 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-04-20T05:56:15.754 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-20T05:56:15.754 ProcessImageName: updater.exe, Pid: 7784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4928b5ea-3c77-44ed-ae9c-fa4643568f25.tmp, EstimatedImpact: 0% 2026-04-20T05:56:15.754 ProcessImageName: updater.exe, Pid: 5060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41e38bc6-3d43-4c41-94fa-4b859112ddd4.tmp, EstimatedImpact: 0% 2026-04-20T05:56:15.754 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4b8f5ee-2542-447d-9f3a-76b1b4653f62.tmp, EstimatedImpact: 0% 2026-04-20T05:56:15.754 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6836ecd3-3ca7-492f-8ce8-34e58c11a523.tmp, EstimatedImpact: 0% 2026-04-20T06:10:14.362 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T06:10:24.929 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #562265, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T06:10:24.945 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #562267, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T06:10:34.946 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #562279, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T06:10:34.946 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #562282, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T06:25:19.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T06:40:24.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T06:55:29.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T07:10:26.130 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #565788, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T07:10:26.130 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #565790, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T07:10:34.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T07:10:36.147 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #565803, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T07:10:36.163 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #565805, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T07:10:36.335 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #565809, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T07:10:36.350 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #565811, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T07:25:39.355 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T07:40:44.360 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T07:55:49.354 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T07:56:15.756 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45063, Count: 6368, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-20T07:56:15.756 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3345, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-20T07:56:15.756 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-20T07:56:15.756 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c43_1.MAI, EstimatedImpact: 0% 2026-04-20T07:56:15.756 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c5caea0-d94e-4a05-965c-1c37c974a241.tmp, EstimatedImpact: 0% 2026-04-20T07:56:15.756 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\439e1410-790e-472f-b8eb-13777f1c0138.tmp, EstimatedImpact: 0% 2026-04-20T07:56:15.756 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-20T07:56:15.756 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-20T07:56:15.756 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-04-20T07:56:15.756 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4b8f5ee-2542-447d-9f3a-76b1b4653f62.tmp, EstimatedImpact: 0% 2026-04-20T07:56:15.756 ProcessImageName: updater.exe, Pid: 7784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4928b5ea-3c77-44ed-ae9c-fa4643568f25.tmp, EstimatedImpact: 0% 2026-04-20T07:56:15.756 ProcessImageName: updater.exe, Pid: 5060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41e38bc6-3d43-4c41-94fa-4b859112ddd4.tmp, EstimatedImpact: 0% 2026-04-20T07:56:15.756 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6836ecd3-3ca7-492f-8ce8-34e58c11a523.tmp, EstimatedImpact: 0% 2026-04-20T07:56:15.756 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T08:10:26.511 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #569111, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T08:10:26.527 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #569113, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T08:10:36.544 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #569126, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T08:10:36.544 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #569129, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T08:10:54.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T08:25:59.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T08:41:04.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T08:56:09.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T09:10:26.454 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #572444, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:10:26.470 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #572446, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:10:36.458 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #572459, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:10:36.458 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #572461, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:10:36.473 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #572463, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:10:36.473 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #572465, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:11:14.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T09:26:19.363 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T09:29:45.980 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #573524, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:29:45.995 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #573526, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:29:49.623 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #573536, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:29:49.639 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #573539, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:29:49.639 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #573541, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:29:49.639 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #573543, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:29:59.638 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #573556, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:29:59.654 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #573558, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:29:59.654 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #573560, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T09:41:24.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T09:56:15.760 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45109, Count: 6369, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4365, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c43_1.MAI, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c5caea0-d94e-4a05-965c-1c37c974a241.tmp, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\439e1410-790e-472f-b8eb-13777f1c0138.tmp, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d15779d4-328b-46d4-94ae-2dfbadd3be87.tmp, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: updater.exe, Pid: 5696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14335405-c27a-497b-82de-0443f4d64103.tmp, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: updater.exe, Pid: 7784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4928b5ea-3c77-44ed-ae9c-fa4643568f25.tmp, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: updater.exe, Pid: 6276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1efeff98-54e1-46ed-bb34-8067cf1a3c10.tmp, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: updater.exe, Pid: 5060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41e38bc6-3d43-4c41-94fa-4b859112ddd4.tmp, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4b8f5ee-2542-447d-9f3a-76b1b4653f62.tmp, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6836ecd3-3ca7-492f-8ce8-34e58c11a523.tmp, EstimatedImpact: 0% 2026-04-20T09:56:15.760 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T09:56:29.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T10:10:28.257 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #575796, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T10:10:28.272 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #575798, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T10:10:38.260 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #575811, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T10:10:38.260 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #575813, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T10:10:38.276 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #575815, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T10:10:38.276 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #575817, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T10:11:34.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T10:26:39.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T10:41:44.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T10:56:49.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T11:10:27.010 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #579119, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T11:10:27.025 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #579121, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T11:10:37.024 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #579133, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T11:10:37.024 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl.old. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #579134, FileId: 0x46530000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T11:10:37.040 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #579135, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T11:10:37.040 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #579138, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T11:11:54.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T11:26:59.360 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T11:42:04.354 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T11:56:15.767 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45215, Count: 6377, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5010, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c43_1.MAI, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\439e1410-790e-472f-b8eb-13777f1c0138.tmp, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c5caea0-d94e-4a05-965c-1c37c974a241.tmp, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d15779d4-328b-46d4-94ae-2dfbadd3be87.tmp, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: updater.exe, Pid: 7784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4928b5ea-3c77-44ed-ae9c-fa4643568f25.tmp, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: updater.exe, Pid: 6276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1efeff98-54e1-46ed-bb34-8067cf1a3c10.tmp, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: updater.exe, Pid: 5060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41e38bc6-3d43-4c41-94fa-4b859112ddd4.tmp, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4b8f5ee-2542-447d-9f3a-76b1b4653f62.tmp, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: updater.exe, Pid: 5696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14335405-c27a-497b-82de-0443f4d64103.tmp, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b863f6be-0bf5-4cc7-aacc-425253d8aae4.tmp, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6836ecd3-3ca7-492f-8ce8-34e58c11a523.tmp, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T11:56:15.767 ProcessImageName: updater.exe, Pid: 7616, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T11:57:09.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T12:10:27.139 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #582429, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T12:10:27.155 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #582431, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T12:10:37.150 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #582444, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T12:10:37.150 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #582446, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T12:10:37.337 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #582450, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T12:10:37.337 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #582452, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T12:12:14.360 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T12:27:19.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T12:42:24.347 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T12:57:29.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T13:10:25.910 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #585751, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T13:10:25.910 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #585753, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T13:10:35.906 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #585766, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T13:10:35.921 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #585769, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T13:12:34.362 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T13:27:39.347 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T13:42:44.347 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T13:56:15.777 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45215, Count: 6377, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5685, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c43_1.MAI, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\439e1410-790e-472f-b8eb-13777f1c0138.tmp, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 6096, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6106889f-7535-49be-bf01-effa100f2724.tmp, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c5caea0-d94e-4a05-965c-1c37c974a241.tmp, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d15779d4-328b-46d4-94ae-2dfbadd3be87.tmp, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 6276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1efeff98-54e1-46ed-bb34-8067cf1a3c10.tmp, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 7364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5efaca2-f51f-426a-b57c-fb4ba6f1809d.tmp, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 7784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4928b5ea-3c77-44ed-ae9c-fa4643568f25.tmp, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 5696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14335405-c27a-497b-82de-0443f4d64103.tmp, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 5060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41e38bc6-3d43-4c41-94fa-4b859112ddd4.tmp, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4b8f5ee-2542-447d-9f3a-76b1b4653f62.tmp, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b863f6be-0bf5-4cc7-aacc-425253d8aae4.tmp, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6836ecd3-3ca7-492f-8ce8-34e58c11a523.tmp, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T13:56:15.777 ProcessImageName: updater.exe, Pid: 7616, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T13:57:49.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T14:10:26.657 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #589087, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T14:10:26.673 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #589089, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T14:10:36.689 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #589102, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T14:10:36.689 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #589105, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T14:12:54.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T14:27:59.357 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T14:29:49.716 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #590164, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T14:29:49.732 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #590166, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T14:29:53.048 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #590185, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T14:29:53.064 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #590188, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T14:43:04.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T14:58:09.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T15:13:14.354 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T15:28:19.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T15:43:24.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T15:56:15.779 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49038, Count: 6599, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6480, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827c43_1.MAI, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\439e1410-790e-472f-b8eb-13777f1c0138.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 6096, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6106889f-7535-49be-bf01-effa100f2724.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c5caea0-d94e-4a05-965c-1c37c974a241.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d15779d4-328b-46d4-94ae-2dfbadd3be87.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 5060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41e38bc6-3d43-4c41-94fa-4b859112ddd4.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4b8f5ee-2542-447d-9f3a-76b1b4653f62.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 7364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5efaca2-f51f-426a-b57c-fb4ba6f1809d.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b863f6be-0bf5-4cc7-aacc-425253d8aae4.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f26c8b96-e3ad-41a6-960f-be4e57d4b4cb.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 7784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4928b5ea-3c77-44ed-ae9c-fa4643568f25.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6836ecd3-3ca7-492f-8ce8-34e58c11a523.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 8124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9af4609-008c-427e-99d4-b340aab3dcdb.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 6276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1efeff98-54e1-46ed-bb34-8067cf1a3c10.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\220287b7-fb26-4c21-b3ee-b7d32bf44bb7.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 5696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14335405-c27a-497b-82de-0443f4d64103.tmp, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 7616, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T15:56:15.779 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T15:58:29.354 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T16:10:26.228 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #595753, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T16:13:34.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T16:28:39.355 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T16:43:44.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T16:58:49.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T17:10:38.454 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #599095, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:13:54.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T17:28:59.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T17:29:19.342 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827cf1_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600153, FileId: 0xfc600000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:29:26.662 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827d05_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600192, FileId: 0x10a700000002c390, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:30:04.503 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827d4d_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600259, FileId: 0x17de00000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:30:10.537 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827d61_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600289, FileId: 0x17e800000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:30:16.439 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827d75_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600328, FileId: 0xfd600000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:30:21.497 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827d89_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600358, FileId: 0xfe000000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:30:50.787 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827d9d_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600416, FileId: 0x4c0000000053145, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:30:56.606 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827db1_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600455, FileId: 0x1bcf00000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:31:01.337 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827dc5_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600485, FileId: 0x1bd900000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:31:06.023 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827dd9_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600524, FileId: 0x17f700000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:31:15.415 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ded_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600563, FileId: 0xfee00000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:31:20.511 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827e01_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600593, FileId: 0xff800000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:31:28.014 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827e1b_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600641, FileId: 0x10bc00000002c390, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:31:34.406 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827e39_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600695, FileId: 0xce400000002c410, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:31:41.832 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827e55_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600737, FileId: 0xcf200000002c410, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:32:35.358 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827e6f_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600831, FileId: 0xcfd00000002c410, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:32:42.001 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827e89_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600870, FileId: 0xd0a00000002c410, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:32:56.896 [RTP] [Mini-filter] Unsuccessful scan status(#300): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827eaf_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #600931, FileId: 0x1bea00000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:34:31.057 [RTP] [Mini-filter] Unsuccessful scan status(#310): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827f77_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601052, FileId: 0x10e000000002c390, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:34:46.599 [RTP] [Mini-filter] Unsuccessful scan status(#320): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827f8f_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601107, FileId: 0x29b00000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:34:55.936 [RTP] [Mini-filter] Unsuccessful scan status(#330): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827fb1_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601167, FileId: 0x1c0000000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:35:01.058 [RTP] [Mini-filter] Unsuccessful scan status(#340): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827fc7_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601200, FileId: 0x1c0b00000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:35:08.063 [RTP] [Mini-filter] Unsuccessful scan status(#350): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827fe1_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601249, FileId: 0x181b00000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:35:13.908 [RTP] [Mini-filter] Unsuccessful scan status(#360): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_827ffd_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601301, FileId: 0x101400000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:35:40.244 [RTP] [Mini-filter] Unsuccessful scan status(#370): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828017_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601358, FileId: 0xd2200000002c410, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:36:01.677 [RTP] [Mini-filter] Unsuccessful scan status(#380): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828033_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601419, FileId: 0x1c1b00000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:36:06.772 [RTP] [Mini-filter] Unsuccessful scan status(#390): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82804d_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601467, FileId: 0x183700000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:36:11.864 [RTP] [Mini-filter] Unsuccessful scan status(#400): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828063_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601500, FileId: 0x184200000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:36:20.288 [RTP] [Mini-filter] Unsuccessful scan status(#410): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828087_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601563, FileId: 0x102d00000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:36:39.141 [RTP] [Mini-filter] Unsuccessful scan status(#420): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82809f_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601614, FileId: 0xd3000000002c410, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:36:47.047 [RTP] [Mini-filter] Unsuccessful scan status(#430): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8280bf_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601672, FileId: 0x2b600000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:36:55.264 [RTP] [Mini-filter] Unsuccessful scan status(#440): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8280df_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601729, FileId: 0x1c3f00000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:37:01.031 [RTP] [Mini-filter] Unsuccessful scan status(#450): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8280f7_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601765, FileId: 0x1c4b00000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:37:11.491 [RTP] [Mini-filter] Unsuccessful scan status(#460): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82810d_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601807, FileId: 0x185200000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:37:16.596 [RTP] [Mini-filter] Unsuccessful scan status(#470): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828123_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601849, FileId: 0x103e00000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:37:24.137 [RTP] [Mini-filter] Unsuccessful scan status(#480): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828145_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601909, FileId: 0x10f600000002c390, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:37:28.394 [RTP] [Mini-filter] Unsuccessful scan status(#490): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82815d_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601945, FileId: 0x110200000002c390, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:37:36.115 [RTP] [Mini-filter] Unsuccessful scan status(#500): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82817b_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #601999, FileId: 0xd4400000002c410, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:37:43.879 [RTP] [Mini-filter] Unsuccessful scan status(#510): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82819b_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602056, FileId: 0x2c800000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:37:54.101 [RTP] [Mini-filter] Unsuccessful scan status(#520): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8281bd_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602117, FileId: 0x1c5500000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:38:01.660 [RTP] [Mini-filter] Unsuccessful scan status(#530): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8281d9_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602159, FileId: 0x1c6300000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:38:07.478 [RTP] [Mini-filter] Unsuccessful scan status(#540): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8281f3_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602207, FileId: 0x186600000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:38:24.970 [RTP] [Mini-filter] Unsuccessful scan status(#550): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828209_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602258, FileId: 0x111100000002c390, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:38:41.211 [RTP] [Mini-filter] Unsuccessful scan status(#560): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828223_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602306, FileId: 0xd5f00000002c410, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:39:18.315 [RTP] [Mini-filter] Unsuccessful scan status(#570): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82823b_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602379, FileId: 0x106000000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:39:24.466 [RTP] [Mini-filter] Unsuccessful scan status(#580): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828253_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602424, FileId: 0x111e00000002c390, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:39:36.955 [RTP] [Mini-filter] Unsuccessful scan status(#590): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828271_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602478, FileId: 0xd6d00000002c410, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:39:43.766 [RTP] [Mini-filter] Unsuccessful scan status(#600): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82828d_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602529, FileId: 0x2e200000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:39:50.858 [RTP] [Mini-filter] Unsuccessful scan status(#610): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8282ad_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602578, FileId: 0x2f200000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:39:57.292 [RTP] [Mini-filter] Unsuccessful scan status(#620): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8282c3_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602620, FileId: 0x1c7800000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:40:02.331 [RTP] [Mini-filter] Unsuccessful scan status(#630): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8282d9_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602653, FileId: 0x1c8300000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:40:12.347 [RTP] [Mini-filter] Unsuccessful scan status(#640): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8282ef_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602695, FileId: 0x188400000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:40:19.834 [RTP] [Mini-filter] Unsuccessful scan status(#650): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828309_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602743, FileId: 0x107b00000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:40:25.639 [RTP] [Mini-filter] Unsuccessful scan status(#660): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828321_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602788, FileId: 0x113100000002c390, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:40:53.436 [RTP] [Mini-filter] Unsuccessful scan status(#670): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82833d_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602849, FileId: 0x2ff00000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:41:04.870 [RTP] [Mini-filter] Unsuccessful scan status(#680): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828353_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602900, FileId: 0x188a00000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:41:16.417 [RTP] [Mini-filter] Unsuccessful scan status(#690): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82836f_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602951, FileId: 0x108e00000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:41:22.179 [RTP] [Mini-filter] Unsuccessful scan status(#700): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828387_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #602987, FileId: 0x109a00000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:41:32.854 [RTP] [Mini-filter] Unsuccessful scan status(#710): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8283a3_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603038, FileId: 0x114b00000002c390, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:41:39.730 [RTP] [Mini-filter] Unsuccessful scan status(#720): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8283c5_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603098, FileId: 0xd9400000002c410, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:41:47.899 [RTP] [Mini-filter] Unsuccessful scan status(#730): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8283e1_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603150, FileId: 0x1c9e00000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:41:53.299 [RTP] [Mini-filter] Unsuccessful scan status(#740): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8283f9_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603186, FileId: 0x1caa00000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:42:00.589 [RTP] [Mini-filter] Unsuccessful scan status(#750): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828419_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603243, FileId: 0x115e00000002c390, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:42:08.904 [RTP] [Mini-filter] Unsuccessful scan status(#760): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82843d_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603306, FileId: 0x18a400000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:42:19.641 [RTP] [Mini-filter] Unsuccessful scan status(#770): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82845b_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603360, FileId: 0x10ac00000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:42:27.202 [RTP] [Mini-filter] Unsuccessful scan status(#780): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828477_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603412, FileId: 0x32500000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:42:38.918 [RTP] [Mini-filter] Unsuccessful scan status(#790): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828497_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603469, FileId: 0xdac00000002c410, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:43:04.352 [RTP] [Mini-filter] Unsuccessful scan status(#800): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8284ad_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603530, FileId: 0x18af00000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:43:12.980 [RTP] [Mini-filter] Unsuccessful scan status(#810): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8284c9_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603572, FileId: 0x18bd00000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:43:42.824 [RTP] [Mini-filter] Unsuccessful scan status(#820): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8284ed_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603653, FileId: 0xdc300000002c410, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:43:49.579 [RTP] [Mini-filter] Unsuccessful scan status(#830): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828505_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603699, FileId: 0x1cbf00000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:44:04.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T17:44:05.734 [RTP] [Mini-filter] Unsuccessful scan status(#840): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82851f_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603756, FileId: 0x18c600000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:44:11.057 [RTP] [Mini-filter] Unsuccessful scan status(#850): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828535_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603789, FileId: 0x18d100000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:44:25.389 [RTP] [Mini-filter] Unsuccessful scan status(#860): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82854f_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603846, FileId: 0x1ccf00000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:44:53.927 [RTP] [Mini-filter] Unsuccessful scan status(#870): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82856b_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603916, FileId: 0x18db00000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:45:02.653 [RTP] [Mini-filter] Unsuccessful scan status(#880): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82858b_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #603964, FileId: 0x18eb00000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:45:08.362 [RTP] [Mini-filter] Unsuccessful scan status(#890): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8285a5_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #604012, FileId: 0x10d100000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:45:22.658 [RTP] [Mini-filter] Unsuccessful scan status(#900): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8285bd_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #604057, FileId: 0x34900000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:45:58.369 [RTP] [Mini-filter] Unsuccessful scan status(#910): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8285dd_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #604142, FileId: 0x18f600000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:46:05.064 [RTP] [Mini-filter] Unsuccessful scan status(#920): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828601_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #604190, FileId: 0x10dd00000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:46:12.491 [RTP] [Mini-filter] Unsuccessful scan status(#930): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82861d_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #604232, FileId: 0x10eb00000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:46:32.403 [RTP] [Mini-filter] Unsuccessful scan status(#940): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828637_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #604289, FileId: 0x1ce700000003cac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:46:41.890 [RTP] [Mini-filter] Unsuccessful scan status(#950): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828659_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #604349, FileId: 0x36300000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:46:49.576 [RTP] [Mini-filter] Unsuccessful scan status(#960): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828679_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #604407, FileId: 0x119b00000002c390, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:46:58.671 [RTP] [Mini-filter] Unsuccessful scan status(#970): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82869b_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #604467, FileId: 0x190e00000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:47:07.815 [RTP] [Mini-filter] Unsuccessful scan status(#980): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8286c1_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #604533, FileId: 0x10f900000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:47:17.851 [RTP] [Mini-filter] Unsuccessful scan status(#990): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8286dd_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #604584, FileId: 0xde500000002c410, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:48:05.934 [RTP] [Mini-filter] Unsuccessful scan status(#1000): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8286f3_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #604663, FileId: 0x110800000002a397, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:51:03.551 [RTP] [Mini-filter] Unsuccessful scan status(#1100): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828847_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #605230, FileId: 0x196200000002c0ff, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:53:27.403 [RTP] [Mini-filter] Unsuccessful scan status(#1200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82895d_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #605784, FileId: 0xe22000000023503, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-20T17:56:15.787 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49038, Count: 6599, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7185, Count: 58257, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 7096, Count: 3410, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8284c1_0.MAI, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c5caea0-d94e-4a05-965c-1c37c974a241.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 6096, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6106889f-7535-49be-bf01-effa100f2724.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\439e1410-790e-472f-b8eb-13777f1c0138.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 3044, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8642d85-e386-4934-a5d5-0261e8045720.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d15779d4-328b-46d4-94ae-2dfbadd3be87.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25229ba5-6400-4d52-ba88-2c3cb7956884.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\220287b7-fb26-4c21-b3ee-b7d32bf44bb7.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 5696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14335405-c27a-497b-82de-0443f4d64103.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 5060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41e38bc6-3d43-4c41-94fa-4b859112ddd4.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 7784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4928b5ea-3c77-44ed-ae9c-fa4643568f25.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 8124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9af4609-008c-427e-99d4-b340aab3dcdb.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 7364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5efaca2-f51f-426a-b57c-fb4ba6f1809d.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4b8f5ee-2542-447d-9f3a-76b1b4653f62.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f26c8b96-e3ad-41a6-960f-be4e57d4b4cb.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b863f6be-0bf5-4cc7-aacc-425253d8aae4.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6836ecd3-3ca7-492f-8ce8-34e58c11a523.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 6276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1efeff98-54e1-46ed-bb34-8067cf1a3c10.tmp, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 7616, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T17:56:15.787 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T17:59:09.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T18:14:14.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T18:29:19.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T18:44:24.357 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T18:59:29.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T19:14:34.360 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T19:29:39.361 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T19:44:44.355 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T19:56:15.796 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49038, Count: 6601, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7650, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 7126, Count: 3419, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8284c1_0.MAI, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c5caea0-d94e-4a05-965c-1c37c974a241.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\439e1410-790e-472f-b8eb-13777f1c0138.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 3044, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8642d85-e386-4934-a5d5-0261e8045720.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 6096, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6106889f-7535-49be-bf01-effa100f2724.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d15779d4-328b-46d4-94ae-2dfbadd3be87.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25229ba5-6400-4d52-ba88-2c3cb7956884.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 8124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9af4609-008c-427e-99d4-b340aab3dcdb.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 7364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5efaca2-f51f-426a-b57c-fb4ba6f1809d.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f26c8b96-e3ad-41a6-960f-be4e57d4b4cb.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 7784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4928b5ea-3c77-44ed-ae9c-fa4643568f25.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\220287b7-fb26-4c21-b3ee-b7d32bf44bb7.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 7140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\971413b8-a1f9-4603-ab0a-81a6a1fcbe19.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 6276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1efeff98-54e1-46ed-bb34-8067cf1a3c10.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 5696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14335405-c27a-497b-82de-0443f4d64103.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 5060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41e38bc6-3d43-4c41-94fa-4b859112ddd4.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4b8f5ee-2542-447d-9f3a-76b1b4653f62.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24e00234-2a21-4a60-91d8-30434ff55a7a.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b863f6be-0bf5-4cc7-aacc-425253d8aae4.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6836ecd3-3ca7-492f-8ce8-34e58c11a523.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 6852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebd29188-db1f-4333-91d1-617ec543c367.tmp, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 7616, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T19:56:15.796 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T19:59:49.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T20:14:54.346 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T20:29:59.357 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T20:45:04.359 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T21:00:09.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T21:15:14.358 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T21:30:19.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T21:45:24.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T21:56:15.806 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49038, Count: 6603, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8445, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 7156, Count: 3424, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8284c1_0.MAI, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c5caea0-d94e-4a05-965c-1c37c974a241.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\439e1410-790e-472f-b8eb-13777f1c0138.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 3044, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8642d85-e386-4934-a5d5-0261e8045720.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 6096, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6106889f-7535-49be-bf01-effa100f2724.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d15779d4-328b-46d4-94ae-2dfbadd3be87.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25229ba5-6400-4d52-ba88-2c3cb7956884.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 7364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5efaca2-f51f-426a-b57c-fb4ba6f1809d.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 6276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1efeff98-54e1-46ed-bb34-8067cf1a3c10.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 7784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4928b5ea-3c77-44ed-ae9c-fa4643568f25.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f26c8b96-e3ad-41a6-960f-be4e57d4b4cb.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 8124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9af4609-008c-427e-99d4-b340aab3dcdb.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 5060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41e38bc6-3d43-4c41-94fa-4b859112ddd4.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4b8f5ee-2542-447d-9f3a-76b1b4653f62.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24e00234-2a21-4a60-91d8-30434ff55a7a.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b863f6be-0bf5-4cc7-aacc-425253d8aae4.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6836ecd3-3ca7-492f-8ce8-34e58c11a523.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 5696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14335405-c27a-497b-82de-0443f4d64103.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\220287b7-fb26-4c21-b3ee-b7d32bf44bb7.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\79b36b62-a1c8-4d0e-8dcc-3253e7a1ccd8.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 7140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\971413b8-a1f9-4603-ab0a-81a6a1fcbe19.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 6852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebd29188-db1f-4333-91d1-617ec543c367.tmp, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 7616, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T21:56:15.806 ProcessImageName: updater.exe, Pid: 3392, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T22:00:29.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T22:10:55.279 ReportLowfi(c:\program files (x86)\google\chrome\application\147.0.7727.102\installer\chrmstp.exe, 0x437a0835) from 0x0006b6bd6566d2d9 Internal signature match:subtype=Lowfi, sigseq=0x000005550240CBF2, sigsha=e39a25e9b19899abbd79ec872fd8aeabe27e140d, cached=false, source=0, resourceid=0xc8ace34a 2026-04-20T22:15:34.346 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T22:30:39.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T22:45:44.345 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T23:00:49.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T23:15:54.355 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T23:30:59.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T23:46:04.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-20T23:55:24.351 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-20T23:55:24.367 Job Notification: New process added to job (8080) 2026-04-20T23:55:24.383 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-20T23:55:24.383 Job Notification: New process added to job (6756) 2026-04-20T23:55:24.383 Aggressive catchup quick scan threshold: 788106940492 / 25920000000000 2026-04-20T23:55:24.383 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:8080] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6756]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-20T23:55:24.445 Job Notification: New process added to job (7396) 2026-04-20T23:55:24.445 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-20T23:55:24.445 Job Notification: New process added to job (6280) 2026-04-20T23:55:24.461 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:7396] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6280]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-20T23:55:24.773 Task(GetDeviceTicket -AccessKey 1E5EE129-811F-329A-12F6-A8E29D5FB32C ) launched as network service 2026-04-20T23:55:24.773 Job Notification: New process added to job (3172) 2026-04-20T23:55:24.898 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-20T23:55:24.914 [RTP] Duplicating the current plugin configuration object... 2026-04-20T23:55:24.914 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-20T23:55:24.914 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-20T23:55:24.914 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-20T23:55:24.914 [RTP] No config change detected. Not updating plugin configuration. 2026-04-20T23:55:24.914 [RTP] No config changes found. No configuration switch. 2026-04-20T23:55:24.914 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-20T23:55:25.463 Job Notification: Process exited from job (3172) 2026-04-20T23:55:26.629 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-20T23:55:26.629 [Cloud] Start of cloud request. Passive mode: 0 2026-04-20T23:55:26.629 [Cloud] Queued cloud request. 2026-04-20T23:55:26.629 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-20T23:55:26.629 [Cloud] Dequeued cloud request. 2026-04-20T23:55:26.629 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-20T23:55:26.645 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-20T23:55:26.645 [Cloud] Start of cloud request. Passive mode: 0 2026-04-20T23:55:26.645 [Cloud] Queued cloud request. 2026-04-20T23:55:26.645 [Cloud] Dequeued cloud request. 2026-04-20T23:55:26.645 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-20T23:55:26.911 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-20T23:55:26.911 [Cloud] End of cloud request. 2026-04-20T23:55:26.942 [Cloud] End of cloud request. 2026-04-20T23:55:27.145 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-20T23:55:37.914 Job Notification: Process exited from job (3716) 2026-04-20T23:56:08.217 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\0A7C0890-7086-48C9-A64E-9D2BD28BA25F180.1dcd12140d36438 2026-04-20T23:56:08.280 Verifying engine and signature files (source: 0) ... 2026-04-20T23:56:08.280 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{666F4AB4-FF6E-4752-AF1D-C47919FC44C4}\mpengine.dll] due to PPL. 2026-04-20T23:56:08.280 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{666F4AB4-FF6E-4752-AF1D-C47919FC44C4}\mpasbase.vdm] (file in cache) 2026-04-20T23:56:08.280 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{666F4AB4-FF6E-4752-AF1D-C47919FC44C4}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-20T23:56:08.295 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{666F4AB4-FF6E-4752-AF1D-C47919FC44C4}\mpasdlta.vdm] 2026-04-20T23:56:08.295 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{666F4AB4-FF6E-4752-AF1D-C47919FC44C4}\mpavbase.vdm] (file in cache) 2026-04-20T23:56:08.295 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{666F4AB4-FF6E-4752-AF1D-C47919FC44C4}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-20T23:56:08.311 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{666F4AB4-FF6E-4752-AF1D-C47919FC44C4}\mpavdlta.vdm] 2026-04-20T23:56:08.483 [Engine] IsHybridMode: 0 2026-04-20T23:56:08.483 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-20T23:56:08.608 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-D1758880DC571C06AFB6C2CE14B7C6808C0FDB71.bin): 0x00000002 2026-04-20T23:56:08.608 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-D1758880DC571C06AFB6C2CE14B7C6808C0FDB71.bin) 2026-04-20T23:56:08.608 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-20T23:56:08.608 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-20T23:56:08.608 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-20T23:56:08.608 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-04-20T23:56:15.815 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49038, Count: 6603, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9285, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 7156, Count: 3424, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8284c1_0.MAI, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 5184, Count: 13, MaxTime: 5109, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping8024_491881750\147.0.7727.102_chrome_installer_uncompressed.exe, EstimatedImpact: 11% 2026-04-20T23:56:15.815 ProcessImageName: setup.exe, Pid: 5832, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 2% 2026-04-20T23:56:15.815 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 6096, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6106889f-7535-49be-bf01-effa100f2724.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c5caea0-d94e-4a05-965c-1c37c974a241.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\439e1410-790e-472f-b8eb-13777f1c0138.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 3044, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8642d85-e386-4934-a5d5-0261e8045720.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d15779d4-328b-46d4-94ae-2dfbadd3be87.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 1% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 8124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9af4609-008c-427e-99d4-b340aab3dcdb.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 5060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41e38bc6-3d43-4c41-94fa-4b859112ddd4.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4b8f5ee-2542-447d-9f3a-76b1b4653f62.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 7372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25229ba5-6400-4d52-ba88-2c3cb7956884.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24e00234-2a21-4a60-91d8-30434ff55a7a.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b863f6be-0bf5-4cc7-aacc-425253d8aae4.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6836ecd3-3ca7-492f-8ce8-34e58c11a523.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 7364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5efaca2-f51f-426a-b57c-fb4ba6f1809d.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 3648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a0f38afa-6158-48a9-a068-ce0723c61450.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 7220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f26c8b96-e3ad-41a6-960f-be4e57d4b4cb.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\220287b7-fb26-4c21-b3ee-b7d32bf44bb7.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 7784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4928b5ea-3c77-44ed-ae9c-fa4643568f25.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 7140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\971413b8-a1f9-4603-ab0a-81a6a1fcbe19.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 5696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14335405-c27a-497b-82de-0443f4d64103.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 6276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1efeff98-54e1-46ed-bb34-8067cf1a3c10.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 6852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebd29188-db1f-4333-91d1-617ec543c367.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\79b36b62-a1c8-4d0e-8dcc-3253e7a1ccd8.tmp, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 7616, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-20T23:56:15.815 ProcessImageName: updater.exe, Pid: 3392, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-20T23:56:17.567 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-20T23:56:17.567 [AutoExclusion] Applied roles from cache. 2026-04-20T23:56:17.567 [AutoExclusion] Started roles monitoring. 2026-04-20T23:56:17.567 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D908020, lRefCount: 5, hr=0 2026-04-20T23:56:17.567 [Engine] New active engine 00007FFD0EA68020 replacing engine 00007FFD0D908020. Number of active engines: 2 2026-04-20T23:56:17.583 EngineInit:Global ASOC is enabled 2026-04-20T23:56:17.583 EngineInit:ASOO is enabled for developer volumes 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-20T23:56:17.598 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-20T23:56:17.598 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-20T23:56:17.614 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-20T23:56:17.614 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-20T23:56:17.614 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-20T23:56:17.614 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-20T23:56:17.614 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-20T23:56:17.614 [Plugin] Initializing RTP plugin state... 2026-04-20T23:56:17.614 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-20T23:56:17.614 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎20‎-‎2026 01:56:16 Last Perf:‎04‎-‎20‎-‎2026 01:56:15 First RTP Scan:‎04‎-‎20‎-‎2026 01:56:16 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:416 Misses:3640 BM Queue:0,182,0 Proc:0,40,0 File:0,182,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:626535 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:674260116 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2609 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:77655 TotalHits:174878 InstanceCacheInserts:309155 InstanceCacheUpdates:0 InstanceCacheDeletes:49479 InstanceCacheHits:2064 InstanceCacheMisses:362831 InstanceCacheOverflows:249420 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (281/278) Success: 278, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-20T23:56:17.614 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{666F4AB4-FF6E-4752-AF1D-C47919FC44C4} 2026-04-20T23:56:17.614 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B2F3DAB9-D10B-4E95-91EF-839B76D50CD1}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B2F3DAB9-D10B-4E95-91EF-839B76D50CD1}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-20T23:56:17.614 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-20T23:56:17.614 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F96B8BDA-588A-4523-A8B0-9CB0DA4CDD4C} removed 2026-04-20T23:56:17.614 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-20T23:56:17.614 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-20T23:56:17.614 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-20T23:56:17.614 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-20T23:56:17.614 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-20-2026 23:56:17 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-20-2026 23:56:17 2026-04-20T23:56:17.614 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-20T23:56:17.614 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-20T23:56:17.614 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-20T23:56:17.614 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-20T23:56:17.614 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-20T23:56:17.614 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-20T23:56:17.614 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-20T23:56:17.614 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-20T23:56:17.614 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-20T23:56:17.614 MdCoreSvc is supported in this platform and OS Signature updated on 04-20-2026 23:56:17 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.218.0 AV Signature Version: 1.449.218.0 ************************************************************ 2026-04-20T23:56:17.614 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-20T23:56:17.614 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\0A7C0890-7086-48C9-A64E-9D2BD28BA25F180.1dcd12140d36438 2026-04-20T23:56:17.630 Process scan (postsignatureupdatescan) started. Signature updated via MicrosoftUpdateServer on 04-20-2026 23:56:17 ************************************************************ 2026-04-20T23:56:17.692 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-20T23:56:17.692 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-04-20T23:56:17.692 Job Notification: Process exited from job (7396) 2026-04-20T23:56:17.692 Job Notification: Process exited from job (6280) 2026-04-20T23:56:17.708 Job Notification: Process exited from job (8080) 2026-04-20T23:56:17.708 Job Notification: Process exited from job (6756) 2026-04-20T23:56:17.864 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-20T23:56:17.864 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-20T23:56:17.864 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-20T23:56:17.864 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-20T23:56:17.864 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-20T23:56:17.864 [Engine] Engine 00007FFD0D908020 no longer in use. Number of active engines: 1 2026-04-20T23:56:17.864 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-20T23:56:17.864 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-20T23:56:18.114 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-20T23:56:18.114 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-20T23:56:18.114 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-20T23:56:18.739 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49038, Count: 6603, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-20T23:56:18.739 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9285, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.info, EstimatedImpact: 0% 2026-04-20T23:56:18.739 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 7156, Count: 3424, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8284c1_0.MAI, EstimatedImpact: 0% 2026-04-20T23:56:18.739 ProcessImageName: updater.exe, Pid: 8024, TotalTime: 5184, Count: 13, MaxTime: 5109, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping8024_491881750\147.0.7727.102_chrome_installer_uncompressed.exe, EstimatedImpact: 11% 2026-04-20T23:56:18.739 ProcessImageName: setup.exe, Pid: 5832, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 2% 2026-04-20T23:56:18.739 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-20T23:56:18.739 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-20T23:56:18.739 ProcessImageName: updater.exe, Pid: 6096, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6106889f-7535-49be-bf01-effa100f2724.tmp, EstimatedImpact: 0% 2026-04-20T23:56:18.739 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c5caea0-d94e-4a05-965c-1c37c974a241.tmp, EstimatedImpact: 0% 2026-04-20T23:56:18.739 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\439e1410-790e-472f-b8eb-13777f1c0138.tmp, EstimatedImpact: 0% 2026-04-20T23:56:18.739 ProcessImageName: updater.exe, Pid: 3044, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8642d85-e386-4934-a5d5-0261e8045720.tmp, EstimatedImpact: 0% 2026-04-20T23:56:18.739 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d15779d4-328b-46d4-94ae-2dfbadd3be87.tmp, EstimatedImpact: 0% 2026-04-20T23:56:18.786 [Engine] RSIG_UNLOADENGINE, 00007FFD0D908020, err=0x0 2026-04-20T23:56:18.802 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B2F3DAB9-D10B-4E95-91EF-839B76D50CD1} removed 2026-04-20T23:56:24.380 Process scan (postsignatureupdatescan) completed. 2026-04-21T00:01:09.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T00:01:17.598 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-21T00:10:26.050 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #627372, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T00:10:26.066 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #627374, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T00:10:36.061 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #627387, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T00:10:36.061 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #627389, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T00:10:36.061 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #627390, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T00:16:14.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T00:29:56.876 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #628478, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T00:29:56.876 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #628480, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T00:30:01.890 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #628502, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T00:30:01.905 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #628505, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T00:30:01.905 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #628507, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T00:30:11.920 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #628521, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T00:30:11.920 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #628524, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T00:31:19.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T00:46:24.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T01:01:29.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T01:10:26.486 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #630751, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T01:10:26.502 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #630753, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T01:10:36.498 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #630766, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T01:10:36.498 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #630768, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T01:10:36.498 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #630770, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T01:10:36.514 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #630772, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T01:16:34.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T01:31:39.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T01:46:44.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T01:56:17.576 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1006, Count: 6480, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\tab_order, EstimatedImpact: 0% 2026-04-21T01:56:17.576 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 637, Count: 62, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin\php\inc\db\db.php, EstimatedImpact: 0% 2026-04-21T01:56:17.576 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42daf394-f27f-4f88-9772-fb1987be1857.tmp, EstimatedImpact: 0% 2026-04-21T01:56:17.576 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0266b70f-0036-40fd-9645-394f1d800a6d.tmp, EstimatedImpact: 0% 2026-04-21T01:56:17.576 ProcessImageName: updater.exe, Pid: 7420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9fcc7f5-f06e-454a-a6ea-25dc6278d1e7.tmp, EstimatedImpact: 0% 2026-04-21T02:01:49.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T02:01:53.708 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:C2D52D51-C649-4D72-9D2C-32BABCE5D4D8, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-21T02:01:53.708 Scheduled scan with Id C2D52D51-C649-4D72-9D2C-32BABCE5D4D8 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-21T02:01:53.708 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-21T02:01:53.708 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-21T02:01:53.708 [SFC] System file cache build is not needed (already completed) 2026-04-21T02:02:04.320 Engine:Triggered AR EMS scan 2026-04-21T02:02:04.320 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.336 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.352 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.383 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.398 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.430 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.445 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.477 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.492 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.508 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.539 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.555 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.586 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.602 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.633 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.664 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.680 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.742 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.758 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.789 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.805 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.852 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-21T02:02:04.883 Bm signature throttled:0x00002db31bed458f 2026-04-21T02:02:28.207 QuickScan:ScanID:C2D52D51-C649-4D72-9D2C-32BABCE5D4D8: Quick scan finished with error 0 2026-04-21T02:02:28.223 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-21T02:02:28.729 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-21T02:02:28.729 [RTP] Duplicating the current plugin configuration object... 2026-04-21T02:02:28.729 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-21T02:02:28.729 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-21T02:02:28.729 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-21T02:02:28.729 [RTP] No config change detected. Not updating plugin configuration. 2026-04-21T02:02:28.729 [RTP] No config changes found. No configuration switch. 2026-04-21T02:02:28.729 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-21T02:10:24.952 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #634259, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T02:10:24.968 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #634261, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T02:10:34.980 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #634274, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T02:10:34.980 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #634277, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T02:16:54.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T02:31:59.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T02:47:04.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T03:02:09.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T03:10:27.043 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #637664, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T03:10:27.059 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #637666, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T03:10:37.047 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #637679, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T03:10:37.047 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #637681, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T03:10:37.063 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #637683, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T03:10:37.063 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #637685, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T03:17:14.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T03:32:19.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T03:47:24.347 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T03:56:17.576 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1816, Count: 12951, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\tab_order, EstimatedImpact: 0% 2026-04-21T03:56:17.576 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 652, Count: 65, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin\php\inc\db\db.php, EstimatedImpact: 0% 2026-04-21T03:56:17.576 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42daf394-f27f-4f88-9772-fb1987be1857.tmp, EstimatedImpact: 0% 2026-04-21T03:56:17.576 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0266b70f-0036-40fd-9645-394f1d800a6d.tmp, EstimatedImpact: 0% 2026-04-21T03:56:17.576 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b33ed962-b9c8-42af-9db3-219eb4665888.tmp, EstimatedImpact: 0% 2026-04-21T03:56:17.576 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aec5eaa6-51d4-41a4-94b0-827c6f2e6c9a.tmp, EstimatedImpact: 0% 2026-04-21T03:56:17.576 ProcessImageName: updater.exe, Pid: 7420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9fcc7f5-f06e-454a-a6ea-25dc6278d1e7.tmp, EstimatedImpact: 0% 2026-04-21T04:02:29.354 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T04:10:27.174 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #640994, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T04:10:27.189 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #640996, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T04:10:37.182 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #641009, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T04:10:37.198 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #641011, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T04:10:37.338 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #641015, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T04:10:37.354 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #641017, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T04:17:34.354 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T04:32:39.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T04:47:44.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T05:02:49.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T05:10:27.448 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #644308, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T05:10:27.464 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #644310, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T05:10:37.452 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #644323, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T05:10:37.452 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #644324, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T05:10:37.468 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #644325, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T05:17:54.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T05:30:01.969 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #645403, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T05:30:01.969 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #645405, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T05:30:05.308 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #645415, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T05:30:05.323 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #645418, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T05:30:05.323 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #645420, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T05:30:15.313 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #645433, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T05:30:15.313 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #645436, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T05:32:59.357 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T05:48:04.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T05:56:17.580 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2701, Count: 19422, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\tab_order, EstimatedImpact: 0% 2026-04-21T05:56:17.580 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 683, Count: 66, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin\php\inc\db\db.php, EstimatedImpact: 0% 2026-04-21T05:56:17.580 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f46611ed-9f3a-4f95-a337-b89c753d79fc.tmp, EstimatedImpact: 0% 2026-04-21T05:56:17.580 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42daf394-f27f-4f88-9772-fb1987be1857.tmp, EstimatedImpact: 0% 2026-04-21T05:56:17.580 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0266b70f-0036-40fd-9645-394f1d800a6d.tmp, EstimatedImpact: 0% 2026-04-21T05:56:17.580 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b33ed962-b9c8-42af-9db3-219eb4665888.tmp, EstimatedImpact: 0% 2026-04-21T05:56:17.580 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aec5eaa6-51d4-41a4-94b0-827c6f2e6c9a.tmp, EstimatedImpact: 0% 2026-04-21T05:56:17.580 ProcessImageName: updater.exe, Pid: 7420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9fcc7f5-f06e-454a-a6ea-25dc6278d1e7.tmp, EstimatedImpact: 0% 2026-04-21T05:56:17.580 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66e5bae9-a063-4ab8-9b1f-13af7c2c636f.tmp, EstimatedImpact: 0% 2026-04-21T05:56:17.580 ProcessImageName: updater.exe, Pid: 4288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5efd2607-4dae-4b6c-b860-940c7e6ec2e4.tmp, EstimatedImpact: 0% 2026-04-21T06:00:57.022 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8289f5_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #648350, FileId: 0x1a9d00000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T06:01:07.758 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8289f5_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #648805, FileId: 0x173800000004c52e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T06:03:09.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T06:10:26.356 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #649339, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T06:10:26.371 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #649341, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T06:10:36.358 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #649354, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T06:10:36.358 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #649356, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T06:10:36.374 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #649358, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T06:10:36.374 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #649360, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T06:18:14.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T06:33:19.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T06:48:24.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T07:03:29.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T07:10:26.201 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #652656, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T07:10:26.217 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #652658, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T07:10:36.203 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #652670, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T07:10:36.219 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #652672, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T07:10:36.219 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #652674, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T07:10:36.219 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #652676, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T07:18:34.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T07:27:16.856 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8289f6_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #653601, FileId: 0x2b40000000534cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T07:33:39.343 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T07:48:44.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T07:56:17.591 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49620, Count: 6565, MaxTime: 203, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-21T07:56:17.591 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3481, Count: 25893, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\tab_order, EstimatedImpact: 0% 2026-04-21T07:56:17.591 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-21T07:56:17.591 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f46611ed-9f3a-4f95-a337-b89c753d79fc.tmp, EstimatedImpact: 0% 2026-04-21T07:56:17.591 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8289f6_1.MAI, EstimatedImpact: 0% 2026-04-21T07:56:17.591 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42daf394-f27f-4f88-9772-fb1987be1857.tmp, EstimatedImpact: 0% 2026-04-21T07:56:17.591 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0266b70f-0036-40fd-9645-394f1d800a6d.tmp, EstimatedImpact: 0% 2026-04-21T07:56:17.591 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b33ed962-b9c8-42af-9db3-219eb4665888.tmp, EstimatedImpact: 0% 2026-04-21T07:56:17.591 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aec5eaa6-51d4-41a4-94b0-827c6f2e6c9a.tmp, EstimatedImpact: 0% 2026-04-21T07:56:17.591 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66e5bae9-a063-4ab8-9b1f-13af7c2c636f.tmp, EstimatedImpact: 0% 2026-04-21T07:56:17.591 ProcessImageName: updater.exe, Pid: 7420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9fcc7f5-f06e-454a-a6ea-25dc6278d1e7.tmp, EstimatedImpact: 0% 2026-04-21T07:56:17.591 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d17e5d97-178e-4f80-b964-fa805a1ffe0f.tmp, EstimatedImpact: 0% 2026-04-21T07:56:17.591 ProcessImageName: updater.exe, Pid: 4288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5efd2607-4dae-4b6c-b860-940c7e6ec2e4.tmp, EstimatedImpact: 0% 2026-04-21T07:56:17.591 ProcessImageName: updater.exe, Pid: 4180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9924090-51f7-4c47-a0a1-a3271aec8194.tmp, EstimatedImpact: 0% 2026-04-21T08:03:49.343 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T08:10:26.586 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #656177, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T08:10:26.602 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #656179, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T08:10:36.598 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #656191, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T08:10:36.614 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #656194, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T08:18:54.347 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T08:33:59.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T08:49:04.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T09:04:09.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T09:10:27.307 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #659499, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T09:10:27.322 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #659501, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T09:10:37.319 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #659513, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T09:10:37.334 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #659515, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T09:10:37.490 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #659519, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T09:10:37.490 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #659521, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T09:19:14.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T09:34:19.346 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T09:49:24.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T09:56:17.596 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50234, Count: 6588, MaxTime: 203, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4216, Count: 32364, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\tab_order, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f46611ed-9f3a-4f95-a337-b89c753d79fc.tmp, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8289f6_1.MAI, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\388e8d8a-15fe-44eb-8bfe-eef67d7c64db.tmp, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42daf394-f27f-4f88-9772-fb1987be1857.tmp, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0266b70f-0036-40fd-9645-394f1d800a6d.tmp, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b33ed962-b9c8-42af-9db3-219eb4665888.tmp, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d17e5d97-178e-4f80-b964-fa805a1ffe0f.tmp, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aec5eaa6-51d4-41a4-94b0-827c6f2e6c9a.tmp, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: updater.exe, Pid: 4180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9924090-51f7-4c47-a0a1-a3271aec8194.tmp, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66e5bae9-a063-4ab8-9b1f-13af7c2c636f.tmp, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: updater.exe, Pid: 4288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5efd2607-4dae-4b6c-b860-940c7e6ec2e4.tmp, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: updater.exe, Pid: 7420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9fcc7f5-f06e-454a-a6ea-25dc6278d1e7.tmp, EstimatedImpact: 0% 2026-04-21T09:56:17.596 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T10:04:29.356 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T10:10:26.579 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #662852, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:10:26.579 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #662854, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:10:36.583 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #662866, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:10:36.598 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #662869, FileId: 0xc20000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:38.762 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a18_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663154, FileId: 0x10f10000000243ba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:39.737 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a1a_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663157, FileId: 0x10f20000000243ba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:40.317 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a1c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663169, FileId: 0x39c700000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:40.645 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a1e_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663172, FileId: 0x39c800000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:43.024 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a24_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663181, FileId: 0x39cb00000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:45.100 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a2a_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663190, FileId: 0x39ce00000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:45.867 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a2c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663193, FileId: 0x39cf00000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:46.265 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a2e_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663196, FileId: 0x39d000000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:47.888 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a32_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663202, FileId: 0x39d200000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:48.376 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a34_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663205, FileId: 0x39d300000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:49.133 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a38_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663211, FileId: 0x39d500000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:49.740 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a3c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663217, FileId: 0x39d700000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:50.396 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a40_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663232, FileId: 0x100500000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:51.413 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a42_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663235, FileId: 0x100600000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:53.322 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a48_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663244, FileId: 0x100900000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:54.426 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a4a_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663248, FileId: 0x100a00000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:55.176 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a4c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663251, FileId: 0x100b00000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:55.654 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a4e_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663254, FileId: 0x100c00000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:56.310 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a50_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663257, FileId: 0x100d00000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:56.797 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a52_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663260, FileId: 0x100e00000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:57.175 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a54_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663263, FileId: 0x100f00000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:57.473 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a56_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663266, FileId: 0x101000000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:15:59.035 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a5a_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663272, FileId: 0x101200000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:16:13.529 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a92_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663296, FileId: 0x1f9a00000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:16:13.732 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828a94_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663299, FileId: 0x1f9b00000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:16:20.782 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828aae_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663347, FileId: 0x7ba00000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:16:34.241 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828ad2_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663410, FileId: 0x10f80000000243ba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:16:39.911 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828af0_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663455, FileId: 0x11070000000243ba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:16:44.072 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828b04_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663494, FileId: 0x39e600000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:16:50.186 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828b1e_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663533, FileId: 0x39f300000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:16:55.434 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828b38_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663582, FileId: 0x102400000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:17:00.330 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828b52_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663630, FileId: 0xa4800000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:17:27.235 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828b6e_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663690, FileId: 0x7dd00000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:17:38.143 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828b8a_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663741, FileId: 0x111b0000000243ba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:17:42.153 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828ba2_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663786, FileId: 0x39ff00000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:17:46.672 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828bb8_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663819, FileId: 0x3a0a00000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:17:57.006 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828bd8_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663877, FileId: 0x104400000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:18:23.560 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828bf6_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663934, FileId: 0x7e800000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:18:30.581 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828c0e_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #663979, FileId: 0x11260000000243ba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:18:36.505 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828c22_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664009, FileId: 0x11300000000243ba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:19:17.484 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828ce8_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664085, FileId: 0x1fbf00000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:19:22.522 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828d06_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664139, FileId: 0x7fe00000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:19:34.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T10:19:49.558 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828d22_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664199, FileId: 0x3a2000000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:19:53.398 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828d38_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664241, FileId: 0x105900000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:19:58.432 [RTP] [Mini-filter] Unsuccessful scan status(#300): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828d52_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664281, FileId: 0x106600000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:20:03.010 [RTP] [Mini-filter] Unsuccessful scan status(#310): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828d68_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664323, FileId: 0xa5f00000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:20:09.664 [RTP] [Mini-filter] Unsuccessful scan status(#320): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828d7e_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664356, FileId: 0xa6a00000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:20:14.268 [RTP] [Mini-filter] Unsuccessful scan status(#330): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828d94_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664398, FileId: 0x1fd600000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:20:18.778 [RTP] [Mini-filter] Unsuccessful scan status(#340): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828dac_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664434, FileId: 0x1fe200000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:20:23.991 [RTP] [Mini-filter] Unsuccessful scan status(#350): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828dcc_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664491, FileId: 0x81100000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:20:29.930 [RTP] [Mini-filter] Unsuccessful scan status(#360): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828de6_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664530, FileId: 0x81e00000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:20:32.846 [RTP] [Mini-filter] Unsuccessful scan status(#370): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828dfc_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664572, FileId: 0x142000000053f82, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:20:36.277 [RTP] [Mini-filter] Unsuccessful scan status(#380): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828e14_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664608, FileId: 0x14e000000053f82, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:20:43.796 [RTP] [Mini-filter] Unsuccessful scan status(#390): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828e3c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664677, FileId: 0x3a3100000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:20:49.577 [RTP] [Mini-filter] Unsuccessful scan status(#400): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828e5c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664725, FileId: 0x3a4100000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:20:54.218 [RTP] [Mini-filter] Unsuccessful scan status(#410): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828e76_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664774, FileId: 0x107800000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:20:58.551 [RTP] [Mini-filter] Unsuccessful scan status(#420): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828e8c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664807, FileId: 0x108300000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:21:01.796 [RTP] [Mini-filter] Unsuccessful scan status(#430): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828ea4_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664852, FileId: 0xa7400000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:21:08.659 [RTP] [Mini-filter] Unsuccessful scan status(#440): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828ec0_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664894, FileId: 0xa8200000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:21:15.368 [RTP] [Mini-filter] Unsuccessful scan status(#450): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828ede_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #664948, FileId: 0x1ff900000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:21:21.536 [RTP] [Mini-filter] Unsuccessful scan status(#460): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828efe_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665005, FileId: 0x82800000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:21:26.937 [RTP] [Mini-filter] Unsuccessful scan status(#470): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828f1c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665050, FileId: 0x83700000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:21:32.004 [RTP] [Mini-filter] Unsuccessful scan status(#480): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828f36_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665098, FileId: 0x163000000053f82, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:21:37.794 [RTP] [Mini-filter] Unsuccessful scan status(#490): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828f54_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665143, FileId: 0x172000000053f82, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:22:03.713 [RTP] [Mini-filter] Unsuccessful scan status(#500): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828f6e_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665210, FileId: 0xa9300000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:22:09.312 [RTP] [Mini-filter] Unsuccessful scan status(#510): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828f8e_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665259, FileId: 0xaa300000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:22:13.990 [RTP] [Mini-filter] Unsuccessful scan status(#520): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828fa8_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665307, FileId: 0x201600000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:22:31.861 [RTP] [Mini-filter] Unsuccessful scan status(#530): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828fc0_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665361, FileId: 0x6ff000000053145, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:22:36.362 [RTP] [Mini-filter] Unsuccessful scan status(#540): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828fd8_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665397, FileId: 0x70b000000053145, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:22:45.684 [RTP] [Mini-filter] Unsuccessful scan status(#550): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_828ff0_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665442, FileId: 0x3a5800000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:22:50.319 [RTP] [Mini-filter] Unsuccessful scan status(#560): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82900c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665484, FileId: 0x3a6600000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:22:55.636 [RTP] [Mini-filter] Unsuccessful scan status(#570): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82902a_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665539, FileId: 0x10a700000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:23:02.840 [RTP] [Mini-filter] Unsuccessful scan status(#580): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82904a_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665596, FileId: 0xab000000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:23:07.095 [RTP] [Mini-filter] Unsuccessful scan status(#590): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829064_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665635, FileId: 0xabd00000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:23:13.502 [RTP] [Mini-filter] Unsuccessful scan status(#600): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829080_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665686, FileId: 0x202c00000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:23:20.700 [RTP] [Mini-filter] Unsuccessful scan status(#610): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8290a0_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665743, FileId: 0x84900000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:23:26.477 [RTP] [Mini-filter] Unsuccessful scan status(#620): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8290ba_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665782, FileId: 0x85600000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:23:47.026 [RTP] [Mini-filter] Unsuccessful scan status(#630): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8290d8_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665845, FileId: 0x3a7100000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:23:52.180 [RTP] [Mini-filter] Unsuccessful scan status(#640): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8290f0_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665890, FileId: 0x10bc00000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:23:58.257 [RTP] [Mini-filter] Unsuccessful scan status(#650): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829108_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665927, FileId: 0x10c800000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:24:03.911 [RTP] [Mini-filter] Unsuccessful scan status(#660): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829124_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #665978, FileId: 0xace00000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:24:51.041 [RTP] [Mini-filter] Unsuccessful scan status(#670): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82913c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666059, FileId: 0x10d500000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:24:53.816 [RTP] [Mini-filter] Unsuccessful scan status(#680): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829150_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666089, FileId: 0x10df00000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:24:58.828 [RTP] [Mini-filter] Unsuccessful scan status(#690): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829168_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666126, FileId: 0x10eb00000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:25:06.183 [RTP] [Mini-filter] Unsuccessful scan status(#700): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829184_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666177, FileId: 0xae100000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:25:10.586 [RTP] [Mini-filter] Unsuccessful scan status(#710): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82919c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666213, FileId: 0xaed00000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:25:15.820 [RTP] [Mini-filter] Unsuccessful scan status(#720): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8291b8_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666264, FileId: 0x205300000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:25:20.018 [RTP] [Mini-filter] Unsuccessful scan status(#730): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8291d2_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666303, FileId: 0x206000000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:25:26.106 [RTP] [Mini-filter] Unsuccessful scan status(#740): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8291f4_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666363, FileId: 0x87b00000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:25:33.113 [RTP] [Mini-filter] Unsuccessful scan status(#750): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829216_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666423, FileId: 0x724000000053145, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:25:38.867 [RTP] [Mini-filter] Unsuccessful scan status(#760): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82922e_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666459, FileId: 0x730000000053145, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:26:05.610 [RTP] [Mini-filter] Unsuccessful scan status(#770): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82924c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666532, FileId: 0xaf800000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:26:09.836 [RTP] [Mini-filter] Unsuccessful scan status(#780): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829264_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666568, FileId: 0xb0400000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:26:15.652 [RTP] [Mini-filter] Unsuccessful scan status(#790): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829280_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666619, FileId: 0x207400000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:26:23.301 [RTP] [Mini-filter] Unsuccessful scan status(#800): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8292a2_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666679, FileId: 0x89100000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:26:32.713 [RTP] [Mini-filter] Unsuccessful scan status(#810): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8292c6_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666742, FileId: 0x73d000000053145, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:26:38.850 [RTP] [Mini-filter] Unsuccessful scan status(#820): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8292de_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666778, FileId: 0x749000000053145, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:26:42.683 [RTP] [Mini-filter] Unsuccessful scan status(#830): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8292fa_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666829, FileId: 0x3a9600000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:26:51.744 [RTP] [Mini-filter] Unsuccessful scan status(#840): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829314_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666877, FileId: 0x10fc00000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:26:55.419 [RTP] [Mini-filter] Unsuccessful scan status(#850): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82932a_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666911, FileId: 0x110700000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:26:58.061 [RTP] [Mini-filter] Unsuccessful scan status(#860): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829340_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #666944, FileId: 0x111200000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:27:35.181 [RTP] [Mini-filter] Unsuccessful scan status(#870): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82935a_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #667019, FileId: 0x756000000053145, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:27:38.573 [RTP] [Mini-filter] Unsuccessful scan status(#880): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829372_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #667055, FileId: 0x762000000053145, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:27:50.573 [RTP] [Mini-filter] Unsuccessful scan status(#890): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829394_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #667115, FileId: 0x3ab200000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:27:55.290 [RTP] [Mini-filter] Unsuccessful scan status(#900): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8293ae_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #667164, FileId: 0x112d00000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:28:00.252 [RTP] [Mini-filter] Unsuccessful scan status(#910): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8293c6_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #667200, FileId: 0x113900000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:28:05.899 [RTP] [Mini-filter] Unsuccessful scan status(#920): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8293e6_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #667257, FileId: 0xb1e00000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:28:12.793 [RTP] [Mini-filter] Unsuccessful scan status(#930): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829408_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #667317, FileId: 0x209200000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:28:17.493 [RTP] [Mini-filter] Unsuccessful scan status(#940): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829422_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #667356, FileId: 0x209f00000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:28:21.690 [RTP] [Mini-filter] Unsuccessful scan status(#950): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829438_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #667398, FileId: 0x8ab00000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:28:27.562 [RTP] [Mini-filter] Unsuccessful scan status(#960): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829456_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #667443, FileId: 0x8ba00000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:28:31.019 [RTP] [Mini-filter] Unsuccessful scan status(#970): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82946a_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #667473, FileId: 0x8c400000005348a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:28:36.868 [RTP] [Mini-filter] Unsuccessful scan status(#980): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82948e_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #667521, FileId: 0x778000000053145, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:28:41.995 [RTP] [Mini-filter] Unsuccessful scan status(#990): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8294a8_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #667569, FileId: 0x3abc00000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:28:46.356 [RTP] [Mini-filter] Unsuccessful scan status(#1000): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8294c2_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #667608, FileId: 0x3ac900000000a12e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:30:21.102 [RTP] [Mini-filter] Unsuccessful scan status(#1100): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829600_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #668100, FileId: 0x3ea700000004c485, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:31:20.546 [RTP] [Mini-filter] Unsuccessful scan status(#1200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82971c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #668581, FileId: 0x3ec200000004c485, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T10:34:39.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T10:49:44.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T11:04:49.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T11:19:54.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T11:34:59.355 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T11:50:04.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T11:56:17.602 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50234, Count: 6588, MaxTime: 203, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 6105, Count: 3522, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8289f6_1.MAI, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5101, Count: 38844, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\tab_order, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f46611ed-9f3a-4f95-a337-b89c753d79fc.tmp, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\388e8d8a-15fe-44eb-8bfe-eef67d7c64db.tmp, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42daf394-f27f-4f88-9772-fb1987be1857.tmp, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0266b70f-0036-40fd-9645-394f1d800a6d.tmp, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b33ed962-b9c8-42af-9db3-219eb4665888.tmp, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66e5bae9-a063-4ab8-9b1f-13af7c2c636f.tmp, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aec5eaa6-51d4-41a4-94b0-827c6f2e6c9a.tmp, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e73be993-c74e-4ffd-8209-a8a3077a45cd.tmp, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 4288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5efd2607-4dae-4b6c-b860-940c7e6ec2e4.tmp, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 7420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9fcc7f5-f06e-454a-a6ea-25dc6278d1e7.tmp, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d1f8596-914a-4d95-96c7-fd60f84e2a0c.tmp, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d17e5d97-178e-4f80-b964-fa805a1ffe0f.tmp, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 4180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9924090-51f7-4c47-a0a1-a3271aec8194.tmp, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 7492, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T11:56:17.602 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T12:05:09.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T12:20:14.343 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T12:35:19.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T12:50:24.343 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T13:05:29.347 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T13:20:34.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T13:35:39.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T13:50:44.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T13:56:17.616 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50265, Count: 6589, MaxTime: 203, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 6105, Count: 3522, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8289f6_1.MAI, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5881, Count: 45315, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\tab_order, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f46611ed-9f3a-4f95-a337-b89c753d79fc.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\388e8d8a-15fe-44eb-8bfe-eef67d7c64db.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42daf394-f27f-4f88-9772-fb1987be1857.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ec9523d-19fe-4f94-aef1-8951356007f2.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0266b70f-0036-40fd-9645-394f1d800a6d.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b33ed962-b9c8-42af-9db3-219eb4665888.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66e5bae9-a063-4ab8-9b1f-13af7c2c636f.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aec5eaa6-51d4-41a4-94b0-827c6f2e6c9a.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e73be993-c74e-4ffd-8209-a8a3077a45cd.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d17e5d97-178e-4f80-b964-fa805a1ffe0f.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d1f8596-914a-4d95-96c7-fd60f84e2a0c.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 7420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9fcc7f5-f06e-454a-a6ea-25dc6278d1e7.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 7064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f365fbec-9b54-48b7-a725-f8eb1a59623b.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 4288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5efd2607-4dae-4b6c-b860-940c7e6ec2e4.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 4180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9924090-51f7-4c47-a0a1-a3271aec8194.tmp, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 7492, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T13:56:17.616 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T14:05:49.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T14:20:54.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T14:35:59.346 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T14:51:04.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T15:06:09.355 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T15:21:14.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T15:36:19.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T15:51:24.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T15:56:17.619 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50265, Count: 6589, MaxTime: 203, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6661, Count: 51786, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\tab_order, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 6105, Count: 3522, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8289f6_1.MAI, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\28492ada-d76d-412f-96d6-4d72fb9bcaba.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f46611ed-9f3a-4f95-a337-b89c753d79fc.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\388e8d8a-15fe-44eb-8bfe-eef67d7c64db.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42daf394-f27f-4f88-9772-fb1987be1857.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66e5bae9-a063-4ab8-9b1f-13af7c2c636f.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e73be993-c74e-4ffd-8209-a8a3077a45cd.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d1f8596-914a-4d95-96c7-fd60f84e2a0c.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0266b70f-0036-40fd-9645-394f1d800a6d.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b33ed962-b9c8-42af-9db3-219eb4665888.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ec9523d-19fe-4f94-aef1-8951356007f2.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aec5eaa6-51d4-41a4-94b0-827c6f2e6c9a.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 7064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f365fbec-9b54-48b7-a725-f8eb1a59623b.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 7420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9fcc7f5-f06e-454a-a6ea-25dc6278d1e7.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d17e5d97-178e-4f80-b964-fa805a1ffe0f.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 4288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5efd2607-4dae-4b6c-b860-940c7e6ec2e4.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 4180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9924090-51f7-4c47-a0a1-a3271aec8194.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 3456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abbf19d9-0154-42f4-8915-3e523307b081.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 2988, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3811a76-edcb-4360-ae96-e10746cc7245.tmp, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T15:56:17.619 ProcessImageName: updater.exe, Pid: 7492, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T16:06:29.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T16:21:34.345 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T16:36:39.347 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T16:51:44.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T17:06:49.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T17:21:54.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T17:36:59.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T17:52:04.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T17:56:17.624 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50265, Count: 6589, MaxTime: 203, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7516, Count: 58257, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\tab_order, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 6105, Count: 3522, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8289f6_1.MAI, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\28492ada-d76d-412f-96d6-4d72fb9bcaba.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f46611ed-9f3a-4f95-a337-b89c753d79fc.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\388e8d8a-15fe-44eb-8bfe-eef67d7c64db.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42daf394-f27f-4f88-9772-fb1987be1857.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 7064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f365fbec-9b54-48b7-a725-f8eb1a59623b.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ec9523d-19fe-4f94-aef1-8951356007f2.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66e5bae9-a063-4ab8-9b1f-13af7c2c636f.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d17e5d97-178e-4f80-b964-fa805a1ffe0f.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0266b70f-0036-40fd-9645-394f1d800a6d.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b33ed962-b9c8-42af-9db3-219eb4665888.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 2988, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3811a76-edcb-4360-ae96-e10746cc7245.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aec5eaa6-51d4-41a4-94b0-827c6f2e6c9a.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 7600, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d78e945f-2063-4611-93b1-6c8e5c59a74c.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 3456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abbf19d9-0154-42f4-8915-3e523307b081.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 4180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9924090-51f7-4c47-a0a1-a3271aec8194.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 7420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9fcc7f5-f06e-454a-a6ea-25dc6278d1e7.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e73be993-c74e-4ffd-8209-a8a3077a45cd.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 4288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5efd2607-4dae-4b6c-b860-940c7e6ec2e4.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67cd9353-cd94-4456-ab4d-699f0790f2af.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d1f8596-914a-4d95-96c7-fd60f84e2a0c.tmp, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 7492, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T17:56:17.624 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T18:07:09.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T18:22:14.345 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T18:37:19.343 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T18:52:24.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T19:07:29.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T19:22:34.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T19:37:39.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T19:52:44.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T19:56:17.628 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50295, Count: 6591, MaxTime: 203, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8386, Count: 64728, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\tab_order, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 6105, Count: 3522, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8289f6_1.MAI, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 5792, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fbd3fa59-72d5-4db8-92f7-23d0df5635b8.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\28492ada-d76d-412f-96d6-4d72fb9bcaba.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f46611ed-9f3a-4f95-a337-b89c753d79fc.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\388e8d8a-15fe-44eb-8bfe-eef67d7c64db.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42daf394-f27f-4f88-9772-fb1987be1857.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 7600, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d78e945f-2063-4611-93b1-6c8e5c59a74c.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ec9523d-19fe-4f94-aef1-8951356007f2.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66e5bae9-a063-4ab8-9b1f-13af7c2c636f.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e73be993-c74e-4ffd-8209-a8a3077a45cd.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 3456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abbf19d9-0154-42f4-8915-3e523307b081.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0266b70f-0036-40fd-9645-394f1d800a6d.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b33ed962-b9c8-42af-9db3-219eb4665888.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d17e5d97-178e-4f80-b964-fa805a1ffe0f.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 4288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5efd2607-4dae-4b6c-b860-940c7e6ec2e4.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aec5eaa6-51d4-41a4-94b0-827c6f2e6c9a.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 7180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2dd8bd31-a5ab-45fa-b5a4-cafaea563963.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 7064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f365fbec-9b54-48b7-a725-f8eb1a59623b.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 4180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9924090-51f7-4c47-a0a1-a3271aec8194.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 2988, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3811a76-edcb-4360-ae96-e10746cc7245.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67cd9353-cd94-4456-ab4d-699f0790f2af.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 7420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9fcc7f5-f06e-454a-a6ea-25dc6278d1e7.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d1f8596-914a-4d95-96c7-fd60f84e2a0c.tmp, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 7492, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T19:56:17.628 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T20:07:49.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T20:22:54.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T20:37:59.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T20:53:04.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T21:08:09.347 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T21:23:14.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T21:38:19.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T21:51:34.046 [RTP] [Mini-filter] Unsuccessful scan status(#1300): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82978a_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #706399, FileId: 0x50f00000005312a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-21T21:53:24.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T21:56:17.628 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54119, Count: 6949, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9391, Count: 71199, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\tab_order, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 6540, Count: 3771, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8289f6_1.MAI, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f46611ed-9f3a-4f95-a337-b89c753d79fc.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 5792, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fbd3fa59-72d5-4db8-92f7-23d0df5635b8.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\28492ada-d76d-412f-96d6-4d72fb9bcaba.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\388e8d8a-15fe-44eb-8bfe-eef67d7c64db.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42daf394-f27f-4f88-9772-fb1987be1857.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 7180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2dd8bd31-a5ab-45fa-b5a4-cafaea563963.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aec5eaa6-51d4-41a4-94b0-827c6f2e6c9a.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 7600, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d78e945f-2063-4611-93b1-6c8e5c59a74c.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e73be993-c74e-4ffd-8209-a8a3077a45cd.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d1f8596-914a-4d95-96c7-fd60f84e2a0c.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 7064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f365fbec-9b54-48b7-a725-f8eb1a59623b.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67cd9353-cd94-4456-ab4d-699f0790f2af.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d17e5d97-178e-4f80-b964-fa805a1ffe0f.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 4288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5efd2607-4dae-4b6c-b860-940c7e6ec2e4.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 7420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9fcc7f5-f06e-454a-a6ea-25dc6278d1e7.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 4180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9924090-51f7-4c47-a0a1-a3271aec8194.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 2024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cee4378-19d7-4207-b7f6-a8cea85a10f0.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 3456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abbf19d9-0154-42f4-8915-3e523307b081.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 2988, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3811a76-edcb-4360-ae96-e10746cc7245.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a016da1-dbe0-4e07-8dee-c6fcd5d80e5c.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ec9523d-19fe-4f94-aef1-8951356007f2.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0266b70f-0036-40fd-9645-394f1d800a6d.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f188ae14-2459-4984-9d25-67e9f6488881.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b33ed962-b9c8-42af-9db3-219eb4665888.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66e5bae9-a063-4ab8-9b1f-13af7c2c636f.tmp, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T21:56:17.628 ProcessImageName: updater.exe, Pid: 7492, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T22:08:29.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T22:23:34.345 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T22:38:39.343 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T22:53:44.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T23:08:49.347 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T23:23:54.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T23:38:59.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T23:54:04.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-21T23:55:24.338 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-21T23:55:24.353 Job Notification: New process added to job (7792) 2026-04-21T23:55:24.369 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-21T23:55:24.369 Job Notification: New process added to job (3204) 2026-04-21T23:55:24.369 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:7792] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3204]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-21T23:55:24.384 Aggressive catchup quick scan threshold: 788106767024 / 25920000000000 2026-04-21T23:55:24.416 Job Notification: New process added to job (3500) 2026-04-21T23:55:24.416 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-21T23:55:24.416 Job Notification: New process added to job (8064) 2026-04-21T23:55:24.431 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3500] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:8064]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-21T23:55:24.697 Job Notification: New process added to job (2520) 2026-04-21T23:55:24.744 Task(GetDeviceTicket -AccessKey 0BAE4A66-A9EA-AF17-A7AD-462ED77ACA4A ) launched as network service 2026-04-21T23:55:24.931 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-21T23:55:24.963 [RTP] Duplicating the current plugin configuration object... 2026-04-21T23:55:24.963 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-21T23:55:24.963 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-21T23:55:24.963 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-21T23:55:24.963 [RTP] No config change detected. Not updating plugin configuration. 2026-04-21T23:55:24.963 [RTP] No config changes found. No configuration switch. 2026-04-21T23:55:24.963 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-21T23:55:25.291 Job Notification: Process exited from job (2520) 2026-04-21T23:55:26.390 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-21T23:55:26.390 [Cloud] Start of cloud request. Passive mode: 0 2026-04-21T23:55:26.390 [Cloud] Queued cloud request. 2026-04-21T23:55:26.390 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-21T23:55:26.390 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-21T23:55:26.390 [Cloud] Start of cloud request. Passive mode: 0 2026-04-21T23:55:26.390 [Cloud] Queued cloud request. 2026-04-21T23:55:26.421 Job Notification: New process added to job (3520) 2026-04-21T23:55:26.421 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 23A05014-EAD1-08D7-FF79-633769D81A5F) launched 2026-04-21T23:55:26.421 Job Notification: New process added to job (2988) 2026-04-21T23:55:26.437 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3520] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2988]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-21T23:55:26.453 Job Notification: New process added to job (6940) 2026-04-21T23:55:26.453 Job Notification: Process exited from job (3520) 2026-04-21T23:55:26.453 Job Notification: Process exited from job (2988) 2026-04-21T23:55:26.468 [Cloud] Dequeued cloud request. 2026-04-21T23:55:26.468 [Cloud] Dequeued cloud request. 2026-04-21T23:55:26.468 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-21T23:55:26.468 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-21T23:55:26.703 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-21T23:55:26.703 [Cloud] End of cloud request. 2026-04-21T23:55:26.718 [Cloud] End of cloud request. 2026-04-21T23:55:26.890 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-21T23:56:17.636 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54119, Count: 6950, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 10036, Count: 77679, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\tab_order, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 6570, Count: 3775, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8289f6_1.MAI, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\28492ada-d76d-412f-96d6-4d72fb9bcaba.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f46611ed-9f3a-4f95-a337-b89c753d79fc.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 5792, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fbd3fa59-72d5-4db8-92f7-23d0df5635b8.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\388e8d8a-15fe-44eb-8bfe-eef67d7c64db.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42daf394-f27f-4f88-9772-fb1987be1857.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b33ed962-b9c8-42af-9db3-219eb4665888.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 6436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ec9523d-19fe-4f94-aef1-8951356007f2.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 7784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3449ed8-29db-49d4-b8b4-e676a5d45b30.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aec5eaa6-51d4-41a4-94b0-827c6f2e6c9a.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 7180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2dd8bd31-a5ab-45fa-b5a4-cafaea563963.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66e5bae9-a063-4ab8-9b1f-13af7c2c636f.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e73be993-c74e-4ffd-8209-a8a3077a45cd.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 7600, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d78e945f-2063-4611-93b1-6c8e5c59a74c.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d17e5d97-178e-4f80-b964-fa805a1ffe0f.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 4288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5efd2607-4dae-4b6c-b860-940c7e6ec2e4.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 4180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9924090-51f7-4c47-a0a1-a3271aec8194.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 3512, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a546c066-c5a3-4cc6-8e15-ffe7d8f3d092.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 3456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abbf19d9-0154-42f4-8915-3e523307b081.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 2988, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3811a76-edcb-4360-ae96-e10746cc7245.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d1f8596-914a-4d95-96c7-fd60f84e2a0c.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 7420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9fcc7f5-f06e-454a-a6ea-25dc6278d1e7.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 2024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cee4378-19d7-4207-b7f6-a8cea85a10f0.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 7064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f365fbec-9b54-48b7-a725-f8eb1a59623b.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0266b70f-0036-40fd-9645-394f1d800a6d.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a016da1-dbe0-4e07-8dee-c6fcd5d80e5c.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f188ae14-2459-4984-9d25-67e9f6488881.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67cd9353-cd94-4456-ab4d-699f0790f2af.tmp, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 7492, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T23:56:17.636 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-21T23:56:37.518 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\A8188FFE-88FE-4A44-8381-876E7FDD70C9ddc.1dcd1ea7cb40f2c 2026-04-21T23:56:37.580 Verifying engine and signature files (source: 0) ... 2026-04-21T23:56:37.580 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{ED9802DB-1EBE-4809-B2C7-F8629D4033AD}\mpengine.dll] due to PPL. 2026-04-21T23:56:37.580 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{ED9802DB-1EBE-4809-B2C7-F8629D4033AD}\mpasbase.vdm] (file in cache) 2026-04-21T23:56:37.580 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{ED9802DB-1EBE-4809-B2C7-F8629D4033AD}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-21T23:56:37.580 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{ED9802DB-1EBE-4809-B2C7-F8629D4033AD}\mpasdlta.vdm] 2026-04-21T23:56:37.596 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{ED9802DB-1EBE-4809-B2C7-F8629D4033AD}\mpavbase.vdm] (file in cache) 2026-04-21T23:56:37.596 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{ED9802DB-1EBE-4809-B2C7-F8629D4033AD}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-21T23:56:37.596 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{ED9802DB-1EBE-4809-B2C7-F8629D4033AD}\mpavdlta.vdm] 2026-04-21T23:56:37.768 [Engine] IsHybridMode: 0 2026-04-21T23:56:37.768 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-21T23:56:37.846 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-8A659464FF3DDA6ADB452C2611436C88635761E7.bin): 0x00000002 2026-04-21T23:56:37.846 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-8A659464FF3DDA6ADB452C2611436C88635761E7.bin) 2026-04-21T23:56:37.846 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-21T23:56:37.846 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-21T23:56:37.846 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-21T23:56:37.846 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-21T23:56:46.906 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-21T23:56:46.906 [AutoExclusion] Applied roles from cache. 2026-04-21T23:56:46.906 [AutoExclusion] Started roles monitoring. 2026-04-21T23:56:46.906 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0EA68020, lRefCount: 5, hr=0 2026-04-21T23:56:46.906 [Engine] New active engine 00007FFD0D908020 replacing engine 00007FFD0EA68020. Number of active engines: 2 2026-04-21T23:56:46.906 EngineInit:Global ASOC is enabled 2026-04-21T23:56:46.906 EngineInit:ASOO is enabled for developer volumes 2026-04-21T23:56:46.922 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-21T23:56:46.922 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-21T23:56:46.922 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-21T23:56:46.922 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-21T23:56:46.922 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-21T23:56:46.922 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-21T23:56:46.922 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-21T23:56:46.922 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-21T23:56:46.922 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-21T23:56:46.922 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-21T23:56:46.922 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-21T23:56:46.922 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-21T23:56:46.922 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-21T23:56:46.922 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-21T23:56:46.937 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-21T23:56:46.937 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-21T23:56:46.937 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-21T23:56:46.937 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-21T23:56:46.937 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-21T23:56:46.937 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-21T23:56:46.937 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-21T23:56:46.937 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-21T23:56:46.937 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-21T23:56:46.937 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-21T23:56:46.953 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-21T23:56:46.953 [Plugin] Initializing RTP plugin state... 2026-04-21T23:56:46.953 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-21T23:56:46.953 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎21‎-‎2026 01:56:17 Last Perf:‎04‎-‎21‎-‎2026 01:56:17 First RTP Scan:‎04‎-‎21‎-‎2026 01:56:19 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:400 Misses:3857 BM Queue:0,49,0 Proc:0,43,0 File:0,20,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:713800 Pending:0 RegSize:281166 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:770215190 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2761 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:84145 TotalHits:223307 InstanceCacheInserts:354778 InstanceCacheUpdates:0 InstanceCacheDeletes:57671 InstanceCacheHits:2108 InstanceCacheMisses:410678 InstanceCacheOverflows:286807 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (293/279) Success: 279, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-21T23:56:46.953 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{ED9802DB-1EBE-4809-B2C7-F8629D4033AD} 2026-04-21T23:56:46.953 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{666F4AB4-FF6E-4752-AF1D-C47919FC44C4}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{666F4AB4-FF6E-4752-AF1D-C47919FC44C4}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-21T23:56:46.953 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-21T23:56:46.953 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E67A6C0E-8E74-4216-A650-FB3B23E38C12} removed 2026-04-21T23:56:46.953 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-21T23:56:46.953 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-21T23:56:46.953 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-21T23:56:46.953 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-21T23:56:46.953 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-21-2026 23:56:46 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-21-2026 23:56:46 2026-04-21T23:56:46.953 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-21T23:56:46.953 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-21T23:56:46.953 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-21T23:56:46.953 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-21T23:56:46.953 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-21T23:56:46.953 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-21T23:56:46.953 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-21T23:56:46.953 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-21T23:56:46.953 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-21T23:56:46.953 MdCoreSvc is supported in this platform and OS Signature updated on 04-21-2026 23:56:46 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.234.0 AV Signature Version: 1.449.234.0 ************************************************************ 2026-04-21T23:56:46.953 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-21T23:56:46.953 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\A8188FFE-88FE-4A44-8381-876E7FDD70C9ddc.1dcd1ea7cb40f2c 2026-04-21T23:56:46.969 Process scan (postsignatureupdatescan) started. 2026-04-21T23:56:47.031 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-21T23:56:47.031 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 04-21-2026 23:56:47 ************************************************************ 2026-04-21T23:56:47.062 Job Notification: Process exited from job (3500) 2026-04-21T23:56:47.062 Job Notification: Process exited from job (7792) 2026-04-21T23:56:47.062 Job Notification: Process exited from job (8064) 2026-04-21T23:56:47.062 Job Notification: Process exited from job (3204) 2026-04-21T23:56:47.281 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-21T23:56:47.281 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-21T23:56:47.281 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-21T23:56:47.281 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-21T23:56:47.281 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-21T23:56:47.297 [Engine] Engine 00007FFD0EA68020 no longer in use. Number of active engines: 1 2026-04-21T23:56:47.297 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-21T23:56:47.297 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-21T23:56:47.437 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-21T23:56:47.437 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-21T23:56:47.437 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-21T23:56:48.187 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54119, Count: 6950, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-21T23:56:48.187 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 10036, Count: 77697, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\tab_order, EstimatedImpact: 0% 2026-04-21T23:56:48.187 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 6570, Count: 3775, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8289f6_1.MAI, EstimatedImpact: 0% 2026-04-21T23:56:48.187 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-21T23:56:48.187 ProcessImageName: updater.exe, Pid: 5792, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fbd3fa59-72d5-4db8-92f7-23d0df5635b8.tmp, EstimatedImpact: 0% 2026-04-21T23:56:48.187 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f46611ed-9f3a-4f95-a337-b89c753d79fc.tmp, EstimatedImpact: 0% 2026-04-21T23:56:48.187 ProcessImageName: updater.exe, Pid: 6284, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\28492ada-d76d-412f-96d6-4d72fb9bcaba.tmp, EstimatedImpact: 0% 2026-04-21T23:56:48.187 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-21T23:56:48.187 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\388e8d8a-15fe-44eb-8bfe-eef67d7c64db.tmp, EstimatedImpact: 0% 2026-04-21T23:56:48.187 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42daf394-f27f-4f88-9772-fb1987be1857.tmp, EstimatedImpact: 0% 2026-04-21T23:56:48.187 ProcessImageName: updater.exe, Pid: 2988, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3811a76-edcb-4360-ae96-e10746cc7245.tmp, EstimatedImpact: 0% 2026-04-21T23:56:48.187 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d1f8596-914a-4d95-96c7-fd60f84e2a0c.tmp, EstimatedImpact: 0% 2026-04-21T23:56:48.187 ProcessImageName: updater.exe, Pid: 3456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abbf19d9-0154-42f4-8915-3e523307b081.tmp, EstimatedImpact: 0% 2026-04-21T23:56:48.234 [Engine] RSIG_UNLOADENGINE, 00007FFD0EA68020, err=0x0 2026-04-21T23:56:48.266 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{666F4AB4-FF6E-4752-AF1D-C47919FC44C4} removed 2026-04-21T23:56:53.531 Process scan (postsignatureupdatescan) completed. 2026-04-22T00:01:46.923 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-22T00:09:09.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T00:10:26.953 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #714635, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T00:10:26.969 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #714637, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T00:10:36.982 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #714650, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T00:10:36.982 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #714652, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T00:10:37.123 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #714656, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T00:10:37.123 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #714658, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T00:24:14.343 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T00:39:19.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T00:54:24.353 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T01:09:29.351 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T01:10:26.562 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #718087, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T01:10:26.577 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #718089, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T01:10:36.570 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #718102, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T01:10:36.586 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #718105, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T01:10:36.586 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #718106, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T01:24:34.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T01:30:18.321 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #719191, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T01:30:18.321 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #719193, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T01:30:22.162 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #719205, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T01:30:22.177 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #719208, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T01:30:22.177 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #719210, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T01:30:32.178 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #719223, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T01:30:32.194 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #719226, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T01:39:39.352 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T01:54:44.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T01:56:46.914 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 810, Count: 6480, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.4I4FY3, EstimatedImpact: 0% 2026-04-22T01:56:46.914 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 512, Count: 65, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-04-22T01:56:46.914 ProcessImageName: updater.exe, Pid: 828, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-22T01:56:46.914 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2a60b16-4a55-4beb-b1a2-368e15a0875a.tmp, EstimatedImpact: 0% 2026-04-22T01:56:46.914 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\495ec1a0-82d8-4521-a82c-d46df5d6942a.tmp, EstimatedImpact: 0% 2026-04-22T02:01:53.722 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:41424662-45FF-4B46-8E59-9925602D8DCE, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-22T02:01:53.738 Scheduled scan with Id 41424662-45FF-4B46-8E59-9925602D8DCE configured CPU priority: normal (LowCpuPriority: 0) 2026-04-22T02:01:53.738 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-22T02:01:53.738 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-22T02:01:53.738 [SFC] System file cache build is not needed (already completed) 2026-04-22T02:02:04.239 Engine:Triggered AR EMS scan 2026-04-22T02:02:04.239 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.255 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.271 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.302 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.333 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.364 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.364 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.396 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.427 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.443 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.474 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.489 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.505 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.536 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.552 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.568 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.599 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.661 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.677 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.708 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.724 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.771 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-22T02:02:04.802 Bm signature throttled:0x00002db31bed458f 2026-04-22T02:02:18.208 QuickScan:ScanID:41424662-45FF-4B46-8E59-9925602D8DCE: Quick scan finished with error 0 2026-04-22T02:02:18.224 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-22T02:02:18.724 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-22T02:02:18.724 [RTP] Duplicating the current plugin configuration object... 2026-04-22T02:02:18.724 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-22T02:02:18.724 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-22T02:02:18.724 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-22T02:02:18.724 [RTP] No config change detected. Not updating plugin configuration. 2026-04-22T02:02:18.724 [RTP] No config changes found. No configuration switch. 2026-04-22T02:02:18.724 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-22T02:09:49.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T02:10:26.606 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #721608, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T02:10:26.606 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #721610, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T02:10:36.637 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #721623, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T02:10:36.637 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #721626, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T02:24:54.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T02:39:59.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T02:55:04.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T03:10:09.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T03:10:25.775 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #724926, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T03:10:25.791 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #724928, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T03:10:35.793 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #724941, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T03:10:35.809 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #724944, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T03:25:14.348 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T03:40:19.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T03:55:24.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T03:56:46.918 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1665, Count: 12951, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.4I4FY3, EstimatedImpact: 0% 2026-04-22T03:56:46.918 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 512, Count: 66, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-04-22T03:56:46.918 ProcessImageName: updater.exe, Pid: 828, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-22T03:56:46.918 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2a60b16-4a55-4beb-b1a2-368e15a0875a.tmp, EstimatedImpact: 0% 2026-04-22T03:56:46.918 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9241af8-4630-48e4-a772-89b1eaf6735e.tmp, EstimatedImpact: 0% 2026-04-22T03:56:46.918 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321e4c7e-77bc-4424-a00a-8d6ccc5498eb.tmp, EstimatedImpact: 0% 2026-04-22T03:56:46.918 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\495ec1a0-82d8-4521-a82c-d46df5d6942a.tmp, EstimatedImpact: 0% 2026-04-22T04:10:25.631 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #728250, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T04:10:25.631 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #728252, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T04:10:29.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T04:10:35.645 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #728265, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T04:10:35.660 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #728268, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T04:25:34.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T04:40:39.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T04:55:44.345 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T05:10:26.244 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #731562, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:10:26.259 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #731564, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:10:36.253 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #731577, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:10:36.269 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #731579, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:10:36.425 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #731583, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:10:36.425 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #731585, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:10:49.346 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T05:25:54.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T05:40:59.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T05:56:04.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T05:56:46.918 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2385, Count: 19422, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.4I4FY3, EstimatedImpact: 0% 2026-04-22T05:56:46.918 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 1704, Count: 182, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-22T05:56:46.918 ProcessImageName: updater.exe, Pid: 828, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-22T05:56:46.918 ProcessImageName: updater.exe, Pid: 6944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ffe23b9-d3c7-47de-889a-004e852e2d4e.tmp, EstimatedImpact: 0% 2026-04-22T05:56:46.918 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2a60b16-4a55-4beb-b1a2-368e15a0875a.tmp, EstimatedImpact: 0% 2026-04-22T05:56:46.918 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9241af8-4630-48e4-a772-89b1eaf6735e.tmp, EstimatedImpact: 0% 2026-04-22T05:56:46.918 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321e4c7e-77bc-4424-a00a-8d6ccc5498eb.tmp, EstimatedImpact: 0% 2026-04-22T05:56:46.918 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\495ec1a0-82d8-4521-a82c-d46df5d6942a.tmp, EstimatedImpact: 0% 2026-04-22T05:56:46.918 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee36d216-f478-44c1-9b8a-66f52eaf71d7.tmp, EstimatedImpact: 0% 2026-04-22T05:59:18.420 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #735495, FileId: 0x251d00000003e9fb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:30.732 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736012, FileId: 0x22ad000000005974, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:30.795 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736015, FileId: 0x22ae000000005974, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:30.857 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736019, FileId: 0x22af000000005974, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:30.888 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736022, FileId: 0x22b0000000005974, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:30.904 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736025, FileId: 0x22b1000000005974, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:30.935 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736028, FileId: 0x22b2000000005974, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:30.982 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736031, FileId: 0x22b3000000005974, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:31.013 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736034, FileId: 0x22b4000000005974, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:31.045 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736037, FileId: 0x22b5000000005974, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:31.076 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736040, FileId: 0x22b6000000005974, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:31.107 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736043, FileId: 0x22b7000000005974, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:31.722 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736056, FileId: 0xf8f00000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:32.247 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736059, FileId: 0xf9000000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:32.748 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736062, FileId: 0xf9100000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:32.779 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736065, FileId: 0xf9200000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:32.811 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736068, FileId: 0xf9300000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:32.826 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736071, FileId: 0xf9400000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:32.842 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736074, FileId: 0xf9500000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:32.858 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736077, FileId: 0xf9600000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:32.889 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736080, FileId: 0xf9700000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:32.920 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736083, FileId: 0xf9800000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:32.951 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736086, FileId: 0xf9900000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:32.998 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736089, FileId: 0xf9a00000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:33.029 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736092, FileId: 0xf9b00000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:33.061 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736095, FileId: 0xf9c00000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:33.092 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736098, FileId: 0xf9d00000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:33.123 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736101, FileId: 0xf9e00000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:33.155 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736104, FileId: 0xf9f00000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:33.576 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736117, FileId: 0xfa000000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T05:59:33.951 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #736126, FileId: 0xfa100000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:10:25.337 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #736779, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:10:25.353 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #736781, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:10:35.340 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #736794, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:10:35.340 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #736796, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:10:35.356 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #736798, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:10:35.356 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #736800, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:11:09.346 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T06:26:14.345 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T06:30:22.259 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #737887, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:30:22.274 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #737889, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:30:26.547 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #737908, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:30:26.562 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #737911, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:30:26.562 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #737912, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:30:26.562 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #737913, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:30:36.562 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #737926, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:30:36.577 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #737929, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T06:41:19.347 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T06:56:24.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T07:10:25.501 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #740120, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T07:10:25.517 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #740122, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T07:10:35.510 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #740135, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T07:10:35.510 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #740136, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T07:10:35.526 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #740138, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T07:11:29.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T07:26:34.343 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T07:41:39.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T07:56:44.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T07:56:46.921 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48150, Count: 6693, MaxTime: 875, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-22T07:56:46.921 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3360, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.4I4FY3, EstimatedImpact: 0% 2026-04-22T07:56:46.921 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-22T07:56:46.921 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 66, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_1.MAI, EstimatedImpact: 0% 2026-04-22T07:56:46.921 ProcessImageName: updater.exe, Pid: 828, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-22T07:56:46.921 ProcessImageName: updater.exe, Pid: 6944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ffe23b9-d3c7-47de-889a-004e852e2d4e.tmp, EstimatedImpact: 0% 2026-04-22T07:56:46.921 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9241af8-4630-48e4-a772-89b1eaf6735e.tmp, EstimatedImpact: 0% 2026-04-22T07:56:46.921 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2a60b16-4a55-4beb-b1a2-368e15a0875a.tmp, EstimatedImpact: 0% 2026-04-22T07:56:46.921 ProcessImageName: updater.exe, Pid: 2404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90865090-8696-4955-8fb4-355adf092a49.tmp, EstimatedImpact: 0% 2026-04-22T07:56:46.921 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\495ec1a0-82d8-4521-a82c-d46df5d6942a.tmp, EstimatedImpact: 0% 2026-04-22T07:56:46.921 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321e4c7e-77bc-4424-a00a-8d6ccc5498eb.tmp, EstimatedImpact: 0% 2026-04-22T07:56:46.921 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\227f491d-357d-4b39-8339-3b780443c26b.tmp, EstimatedImpact: 0% 2026-04-22T07:56:46.921 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1f504b3-de17-4cd3-87ed-bb06bbf8b94a.tmp, EstimatedImpact: 0% 2026-04-22T07:56:46.921 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee36d216-f478-44c1-9b8a-66f52eaf71d7.tmp, EstimatedImpact: 0% 2026-04-22T08:10:25.761 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #743610, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T08:10:25.776 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #743612, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T08:10:35.768 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #743625, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T08:10:35.784 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #743628, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T08:11:49.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T08:26:54.343 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T08:37:43.947 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829797_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #745125, FileId: 0x432400000004c485, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T08:37:44.603 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829797_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #745129, FileId: 0x432500000004c485, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T08:41:59.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T08:44:40.733 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829798_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #745508, FileId: 0x79e00000004f477, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T08:44:41.249 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829798_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #745512, FileId: 0x79f00000004f477, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T08:57:04.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T09:10:25.939 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #746940, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T09:10:25.955 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #746942, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T09:10:35.945 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #746955, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T09:10:35.945 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #746956, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T09:10:35.960 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #746957, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T09:12:09.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T09:27:14.336 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T09:42:19.336 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T09:56:46.932 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48150, Count: 6695, MaxTime: 875, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4410, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.4I4FY3, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 74, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_1.MAI, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: updater.exe, Pid: 828, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: updater.exe, Pid: 6944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ffe23b9-d3c7-47de-889a-004e852e2d4e.tmp, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2a60b16-4a55-4beb-b1a2-368e15a0875a.tmp, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9241af8-4630-48e4-a772-89b1eaf6735e.tmp, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\495ec1a0-82d8-4521-a82c-d46df5d6942a.tmp, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: updater.exe, Pid: 6484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0cdb28c-3179-493e-9ab7-f79d8bd33d2d.tmp, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\227f491d-357d-4b39-8339-3b780443c26b.tmp, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee36d216-f478-44c1-9b8a-66f52eaf71d7.tmp, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321e4c7e-77bc-4424-a00a-8d6ccc5498eb.tmp, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1f504b3-de17-4cd3-87ed-bb06bbf8b94a.tmp, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\adcbd72c-e423-4afd-b309-5bfde3ae8489.tmp, EstimatedImpact: 0% 2026-04-22T09:56:46.932 ProcessImageName: updater.exe, Pid: 2404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90865090-8696-4955-8fb4-355adf092a49.tmp, EstimatedImpact: 0% 2026-04-22T09:57:24.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T10:10:26.977 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #750274, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T10:12:29.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T10:27:34.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T10:42:39.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T10:57:44.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T11:10:35.354 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #753616, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T11:12:49.350 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T11:27:54.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T11:42:59.336 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T11:56:46.941 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48150, Count: 6695, MaxTime: 875, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5580, Count: 38844, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.4I4FY3, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 74, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_1.MAI, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 828, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b4bc5ce8-dd91-4481-8c6c-ecddfe1f821d.tmp, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 6944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ffe23b9-d3c7-47de-889a-004e852e2d4e.tmp, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9241af8-4630-48e4-a772-89b1eaf6735e.tmp, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 5620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7c424ec-5f45-490a-814e-1ba51c7521bd.tmp, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 6484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0cdb28c-3179-493e-9ab7-f79d8bd33d2d.tmp, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321e4c7e-77bc-4424-a00a-8d6ccc5498eb.tmp, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2a60b16-4a55-4beb-b1a2-368e15a0875a.tmp, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1f504b3-de17-4cd3-87ed-bb06bbf8b94a.tmp, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\adcbd72c-e423-4afd-b309-5bfde3ae8489.tmp, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81c7e1bd-40d0-432d-9c6d-ec16eb2e52d5.tmp, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 2404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90865090-8696-4955-8fb4-355adf092a49.tmp, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\495ec1a0-82d8-4521-a82c-d46df5d6942a.tmp, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\227f491d-357d-4b39-8339-3b780443c26b.tmp, EstimatedImpact: 0% 2026-04-22T11:56:46.941 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee36d216-f478-44c1-9b8a-66f52eaf71d7.tmp, EstimatedImpact: 0% 2026-04-22T11:58:04.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T12:10:26.308 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #756944, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T12:13:09.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T12:28:14.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T12:43:19.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T12:58:24.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T13:13:29.336 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T13:28:34.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T13:43:39.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T13:56:46.947 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48180, Count: 6699, MaxTime: 875, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6435, Count: 45315, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.4I4FY3, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 74, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_1.MAI, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 828, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b4bc5ce8-dd91-4481-8c6c-ecddfe1f821d.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 6944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ffe23b9-d3c7-47de-889a-004e852e2d4e.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2a60b16-4a55-4beb-b1a2-368e15a0875a.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9241af8-4630-48e4-a772-89b1eaf6735e.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 5620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7c424ec-5f45-490a-814e-1ba51c7521bd.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321e4c7e-77bc-4424-a00a-8d6ccc5498eb.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\878b841f-c657-4a2a-93f8-ce9f78263b21.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 6484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0cdb28c-3179-493e-9ab7-f79d8bd33d2d.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1f504b3-de17-4cd3-87ed-bb06bbf8b94a.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\adcbd72c-e423-4afd-b309-5bfde3ae8489.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81c7e1bd-40d0-432d-9c6d-ec16eb2e52d5.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 2404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90865090-8696-4955-8fb4-355adf092a49.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\495ec1a0-82d8-4521-a82c-d46df5d6942a.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\227f491d-357d-4b39-8339-3b780443c26b.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee36d216-f478-44c1-9b8a-66f52eaf71d7.tmp, EstimatedImpact: 0% 2026-04-22T13:56:46.947 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-22T13:58:44.346 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T14:10:34.010 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #763598, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T14:13:49.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T14:28:54.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T14:43:59.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T14:59:04.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T15:14:09.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T15:29:14.349 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T15:44:19.343 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T15:56:46.947 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48242, Count: 6700, MaxTime: 875, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7155, Count: 51786, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.4I4FY3, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 74, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_1.MAI, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 828, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 6944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ffe23b9-d3c7-47de-889a-004e852e2d4e.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b4bc5ce8-dd91-4481-8c6c-ecddfe1f821d.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23a4d569-17e4-423e-98cc-a4dd96e4d85f.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2a60b16-4a55-4beb-b1a2-368e15a0875a.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 6484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0cdb28c-3179-493e-9ab7-f79d8bd33d2d.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9241af8-4630-48e4-a772-89b1eaf6735e.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321e4c7e-77bc-4424-a00a-8d6ccc5498eb.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81c7e1bd-40d0-432d-9c6d-ec16eb2e52d5.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 5620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7c424ec-5f45-490a-814e-1ba51c7521bd.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\878b841f-c657-4a2a-93f8-ce9f78263b21.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1f504b3-de17-4cd3-87ed-bb06bbf8b94a.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\adcbd72c-e423-4afd-b309-5bfde3ae8489.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\227f491d-357d-4b39-8339-3b780443c26b.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 2404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90865090-8696-4955-8fb4-355adf092a49.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 2348, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35d840cf-7e09-4efc-9291-cf3f17acdcb8.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\495ec1a0-82d8-4521-a82c-d46df5d6942a.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee36d216-f478-44c1-9b8a-66f52eaf71d7.tmp, EstimatedImpact: 0% 2026-04-22T15:56:46.947 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-22T15:59:24.343 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T16:10:24.468 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #770235, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T16:14:29.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T16:29:34.347 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T16:30:45.771 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #771397, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T16:44:39.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpFC_DC_DisableAadDeviceIdQuery new=1 old0 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-04-22T16:47:54.443 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-22T16:47:54.459 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-22T16:47:54.459 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-22T16:47:54.459 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-22T16:47:54.459 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-22T16:47:54.459 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-22T16:47:54.459 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-22T16:47:54.459 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-22T16:47:54.459 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-22T16:47:54.459 MdCoreSvc is supported in this platform and OS 2026-04-22T16:47:54.948 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-22T16:47:54.948 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-22T16:47:54.948 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-22T16:59:44.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T17:14:49.333 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T17:29:54.346 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T17:44:59.345 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T17:48:48.011 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297a0_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #775736, FileId: 0x266e00000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T17:48:49.939 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297a0_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #775790, FileId: 0x13d900000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T17:49:01.150 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297a1_16.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #775855, FileId: 0xcae00000004f477, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T17:52:18.377 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297a4_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #776088, FileId: 0x123f00000004a77a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T17:56:46.953 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52078, Count: 6934, MaxTime: 875, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8040, Count: 58257, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.4I4FY3, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 435, Count: 244, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_1.MAI, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 828, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b4bc5ce8-dd91-4481-8c6c-ecddfe1f821d.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 6944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ffe23b9-d3c7-47de-889a-004e852e2d4e.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23a4d569-17e4-423e-98cc-a4dd96e4d85f.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2a60b16-4a55-4beb-b1a2-368e15a0875a.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 8164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f512b27-abcc-4faf-9369-bf5a6d6b1fdb.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 6484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0cdb28c-3179-493e-9ab7-f79d8bd33d2d.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9241af8-4630-48e4-a772-89b1eaf6735e.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1f504b3-de17-4cd3-87ed-bb06bbf8b94a.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321e4c7e-77bc-4424-a00a-8d6ccc5498eb.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba6e80d1-e64b-42c7-899f-3d306318b6db.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81c7e1bd-40d0-432d-9c6d-ec16eb2e52d5.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\878b841f-c657-4a2a-93f8-ce9f78263b21.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 5620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7c424ec-5f45-490a-814e-1ba51c7521bd.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\adcbd72c-e423-4afd-b309-5bfde3ae8489.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 3204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9efc4475-c202-4054-8c75-e8a73bd4f685.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\227f491d-357d-4b39-8339-3b780443c26b.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 2404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90865090-8696-4955-8fb4-355adf092a49.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 2348, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35d840cf-7e09-4efc-9291-cf3f17acdcb8.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\495ec1a0-82d8-4521-a82c-d46df5d6942a.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee36d216-f478-44c1-9b8a-66f52eaf71d7.tmp, EstimatedImpact: 0% 2026-04-22T17:56:46.953 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-22T18:00:04.345 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T18:15:09.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T18:30:14.333 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T18:45:19.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T19:00:24.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T19:15:29.345 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T19:30:34.346 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T19:45:39.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T19:56:46.966 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52724, Count: 6957, MaxTime: 875, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8880, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.4I4FY3, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 435, Count: 244, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_1.MAI, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 828, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b4bc5ce8-dd91-4481-8c6c-ecddfe1f821d.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 6944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ffe23b9-d3c7-47de-889a-004e852e2d4e.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23a4d569-17e4-423e-98cc-a4dd96e4d85f.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2a60b16-4a55-4beb-b1a2-368e15a0875a.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 8164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f512b27-abcc-4faf-9369-bf5a6d6b1fdb.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 5620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7c424ec-5f45-490a-814e-1ba51c7521bd.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9241af8-4630-48e4-a772-89b1eaf6735e.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8efff3dd-e5ba-4226-bc79-b2366303b864.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321e4c7e-77bc-4424-a00a-8d6ccc5498eb.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba6e80d1-e64b-42c7-899f-3d306318b6db.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81c7e1bd-40d0-432d-9c6d-ec16eb2e52d5.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\878b841f-c657-4a2a-93f8-ce9f78263b21.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2164aaa9-bbab-4b52-aaec-0e0f7f8d8a75.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 6484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0cdb28c-3179-493e-9ab7-f79d8bd33d2d.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1f504b3-de17-4cd3-87ed-bb06bbf8b94a.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\adcbd72c-e423-4afd-b309-5bfde3ae8489.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 3204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9efc4475-c202-4054-8c75-e8a73bd4f685.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\227f491d-357d-4b39-8339-3b780443c26b.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 2404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90865090-8696-4955-8fb4-355adf092a49.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 2348, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35d840cf-7e09-4efc-9291-cf3f17acdcb8.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\495ec1a0-82d8-4521-a82c-d46df5d6942a.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee36d216-f478-44c1-9b8a-66f52eaf71d7.tmp, EstimatedImpact: 0% 2026-04-22T19:56:46.966 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-22T20:00:44.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T20:10:26.442 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #783772, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T20:10:49.989 ReportLowfi(c:\program files (x86)\google\chrome\application\147.0.7727.103\installer\chrmstp.exe, 0x437a0835) from 0x0006b6bd6566d2d9 Internal signature match:subtype=Lowfi, sigseq=0x000005550240CBF2, sigsha=e39a25e9b19899abbd79ec872fd8aeabe27e140d, cached=false, source=0, resourceid=0xb76578d9 2026-04-22T20:11:02.090 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #784173, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T20:15:49.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T20:30:54.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T20:45:59.346 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T21:01:04.346 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T21:16:09.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T21:30:35.852 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #788584, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T21:31:14.345 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T21:46:19.345 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T21:51:48.760 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297c2_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #789785, FileId: 0x39400000005369d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T21:51:50.888 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297c2_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #789851, FileId: 0x3aa00000005369d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T21:55:07.944 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297c7_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #790076, FileId: 0x2780000000534d3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T21:55:09.600 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297c7_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #790113, FileId: 0x2870000000534d3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T21:55:10.621 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297c7_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #790158, FileId: 0x2960000000534d3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T21:56:46.980 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52769, Count: 6970, MaxTime: 875, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9840, Count: 71208, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.4I4FY3, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 7440, TotalTime: 5260, Count: 13, MaxTime: 5140, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7440_1189188341\147.0.7727.103_chrome_installer_uncompressed.exe, EstimatedImpact: 13% 2026-04-22T21:56:46.980 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 750, Count: 406, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_1.MAI, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: setup.exe, Pid: 7772, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-04-22T21:56:46.980 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 828, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: setup.exe, Pid: 2580, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 32% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 6944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ffe23b9-d3c7-47de-889a-004e852e2d4e.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b4bc5ce8-dd91-4481-8c6c-ecddfe1f821d.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23a4d569-17e4-423e-98cc-a4dd96e4d85f.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2a60b16-4a55-4beb-b1a2-368e15a0875a.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 8164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f512b27-abcc-4faf-9369-bf5a6d6b1fdb.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee36d216-f478-44c1-9b8a-66f52eaf71d7.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 8036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9241af8-4630-48e4-a772-89b1eaf6735e.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2164aaa9-bbab-4b52-aaec-0e0f7f8d8a75.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 6484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0cdb28c-3179-493e-9ab7-f79d8bd33d2d.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 5620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7c424ec-5f45-490a-814e-1ba51c7521bd.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 4180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f9d41d5-1bb3-4a88-ae68-9b4df63a6def.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 7772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321e4c7e-77bc-4424-a00a-8d6ccc5498eb.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba6e80d1-e64b-42c7-899f-3d306318b6db.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8efff3dd-e5ba-4226-bc79-b2366303b864.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1f504b3-de17-4cd3-87ed-bb06bbf8b94a.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\adcbd72c-e423-4afd-b309-5bfde3ae8489.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 3204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9efc4475-c202-4054-8c75-e8a73bd4f685.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81c7e1bd-40d0-432d-9c6d-ec16eb2e52d5.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 2404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90865090-8696-4955-8fb4-355adf092a49.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 2348, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35d840cf-7e09-4efc-9291-cf3f17acdcb8.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\878b841f-c657-4a2a-93f8-ce9f78263b21.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\495ec1a0-82d8-4521-a82c-d46df5d6942a.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\227f491d-357d-4b39-8339-3b780443c26b.tmp, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 6548, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-22T21:56:46.980 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-22T22:01:24.346 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T22:16:29.333 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T22:31:34.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T22:46:39.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T23:01:44.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T23:10:35.994 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #794344, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-22T23:16:49.333 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T23:31:54.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T23:46:59.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-22T23:55:24.332 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-22T23:55:24.347 Job Notification: New process added to job (8160) 2026-04-22T23:55:24.363 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-22T23:55:24.363 Job Notification: New process added to job (6424) 2026-04-22T23:55:24.363 Aggressive catchup quick scan threshold: 788106279399 / 25920000000000 2026-04-22T23:55:24.363 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:8160] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6424]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-22T23:55:24.426 Job Notification: New process added to job (6172) 2026-04-22T23:55:24.426 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-22T23:55:24.441 Job Notification: New process added to job (7636) 2026-04-22T23:55:24.457 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6172] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7636]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-22T23:55:24.644 Job Notification: New process added to job (7744) 2026-04-22T23:55:24.660 Task(GetDeviceTicket -AccessKey 9C60C7FC-62C2-0463-148D-E038F75180F0 ) launched as network service 2026-04-22T23:55:24.926 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-22T23:55:24.926 [RTP] Duplicating the current plugin configuration object... 2026-04-22T23:55:24.926 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-22T23:55:24.926 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-22T23:55:24.926 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-22T23:55:24.926 [RTP] No config change detected. Not updating plugin configuration. 2026-04-22T23:55:24.926 [RTP] No config changes found. No configuration switch. 2026-04-22T23:55:24.926 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-22T23:55:25.395 Job Notification: Process exited from job (7744) 2026-04-22T23:55:26.557 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-22T23:55:26.557 [Cloud] Start of cloud request. Passive mode: 0 2026-04-22T23:55:26.557 [Cloud] Queued cloud request. 2026-04-22T23:55:26.557 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-22T23:55:26.557 [Cloud] Dequeued cloud request. 2026-04-22T23:55:26.557 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-22T23:55:26.557 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-22T23:55:26.557 [Cloud] Start of cloud request. Passive mode: 0 2026-04-22T23:55:26.557 [Cloud] Queued cloud request. 2026-04-22T23:55:26.557 [Cloud] Dequeued cloud request. 2026-04-22T23:55:26.573 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-22T23:55:26.839 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-22T23:55:26.854 [Cloud] End of cloud request. 2026-04-22T23:55:26.854 [Cloud] End of cloud request. 2026-04-22T23:55:27.057 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-22T23:55:38.217 Job Notification: Process exited from job (6940) 2026-04-22T23:56:03.387 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\38C9FFE6-5660-482A-9BA5-35D5582D00391a98.1dcd2b392bfb25e 2026-04-22T23:56:03.449 Verifying engine and signature files (source: 0) ... 2026-04-22T23:56:03.449 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{754AB0FB-9267-442D-B780-997E81FD68B8}\mpengine.dll] due to PPL. 2026-04-22T23:56:03.449 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{754AB0FB-9267-442D-B780-997E81FD68B8}\mpasbase.vdm] (file in cache) 2026-04-22T23:56:03.449 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{754AB0FB-9267-442D-B780-997E81FD68B8}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-22T23:56:03.480 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{754AB0FB-9267-442D-B780-997E81FD68B8}\mpasdlta.vdm] 2026-04-22T23:56:03.480 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{754AB0FB-9267-442D-B780-997E81FD68B8}\mpavbase.vdm] (file in cache) 2026-04-22T23:56:03.480 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{754AB0FB-9267-442D-B780-997E81FD68B8}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-22T23:56:03.496 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{754AB0FB-9267-442D-B780-997E81FD68B8}\mpavdlta.vdm] 2026-04-22T23:56:03.683 [Engine] IsHybridMode: 0 2026-04-22T23:56:03.683 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-22T23:56:03.748 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-C3B139FBA798FE6AE333E1FB766367D4ED9CD505.bin): 0x00000002 2026-04-22T23:56:03.779 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-C3B139FBA798FE6AE333E1FB766367D4ED9CD505.bin) 2026-04-22T23:56:03.795 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-22T23:56:03.795 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-22T23:56:03.795 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-22T23:56:03.795 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-22T23:56:12.765 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-22T23:56:12.765 [AutoExclusion] Applied roles from cache. 2026-04-22T23:56:12.765 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpFC_DC_DisableAadDeviceIdQuery new=1 old0 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-04-22T23:56:12.765 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D908020, lRefCount: 5, hr=0 2026-04-22T23:56:12.765 [Engine] New active engine 00007FFD0EA68020 replacing engine 00007FFD0D908020. Number of active engines: 2 2026-04-22T23:56:12.765 EngineInit:Global ASOC is enabled 2026-04-22T23:56:12.765 EngineInit:ASOO is enabled for developer volumes 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-22T23:56:12.796 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-22T23:56:12.796 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-22T23:56:12.796 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-22T23:56:12.796 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-22T23:56:12.796 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-22T23:56:12.796 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-22T23:56:12.812 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-22T23:56:12.812 [Plugin] Initializing RTP plugin state... 2026-04-22T23:56:12.812 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-22T23:56:12.812 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎22‎-‎2026 01:56:47 Last Perf:‎04‎-‎22‎-‎2026 01:56:46 First RTP Scan:‎04‎-‎22‎-‎2026 01:56:57 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:416 Misses:2422 BM Queue:0,43,0 Proc:0,43,0 File:0,26,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:796921 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:861827326 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2738 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:88629 TotalHits:263538 InstanceCacheInserts:398558 InstanceCacheUpdates:0 InstanceCacheDeletes:65863 InstanceCacheHits:2181 InstanceCacheMisses:456022 InstanceCacheOverflows:322322 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (344/284) Success: 284, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-22T23:56:12.812 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{754AB0FB-9267-442D-B780-997E81FD68B8} 2026-04-22T23:56:12.812 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{ED9802DB-1EBE-4809-B2C7-F8629D4033AD}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{ED9802DB-1EBE-4809-B2C7-F8629D4033AD}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-22T23:56:12.812 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-22T23:56:12.812 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F7732BA5-3530-4B15-8742-9CA588FEE70C} removed 2026-04-22T23:56:12.812 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-22T23:56:12.812 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-22T23:56:12.812 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-22T23:56:12.812 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-22T23:56:12.812 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-22-2026 23:56:12 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-22-2026 23:56:12 2026-04-22T23:56:12.812 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-22T23:56:12.812 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-22T23:56:12.812 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-22T23:56:12.812 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-22T23:56:12.812 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-22T23:56:12.812 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-22T23:56:12.812 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-22T23:56:12.812 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-22T23:56:12.812 MdCoreSvc is supported in this platform and OS 2026-04-22T23:56:12.812 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 04-22-2026 23:56:12 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.250.0 AV Signature Version: 1.449.250.0 ************************************************************ 2026-04-22T23:56:12.812 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-22T23:56:12.812 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\38C9FFE6-5660-482A-9BA5-35D5582D00391a98.1dcd2b392bfb25e 2026-04-22T23:56:12.843 Process scan (postsignatureupdatescan) started. 2026-04-22T23:56:12.874 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-22T23:56:12.874 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-04-22T23:56:13.062 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-22T23:56:13.062 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-22T23:56:13.062 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-22T23:56:13.062 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-22T23:56:13.062 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-22T23:56:13.093 [Engine] Engine 00007FFD0D908020 no longer in use. Number of active engines: 1 2026-04-22T23:56:13.093 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-22T23:56:13.093 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). Signature updated via MicrosoftUpdateServer on 04-22-2026 23:56:13 ************************************************************ 2026-04-22T23:56:13.140 Job Notification: Process exited from job (6172) 2026-04-22T23:56:13.155 Job Notification: Process exited from job (7636) 2026-04-22T23:56:13.155 Job Notification: Process exited from job (8160) 2026-04-22T23:56:13.155 Job Notification: Process exited from job (6424) 2026-04-22T23:56:13.296 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-22T23:56:13.296 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-22T23:56:13.296 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-22T23:56:13.812 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52769, Count: 6970, MaxTime: 875, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-22T23:56:13.812 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 10605, Count: 77643, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.4I4FY3, EstimatedImpact: 0% 2026-04-22T23:56:13.812 ProcessImageName: updater.exe, Pid: 7440, TotalTime: 5260, Count: 13, MaxTime: 5140, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7440_1189188341\147.0.7727.103_chrome_installer_uncompressed.exe, EstimatedImpact: 13% 2026-04-22T23:56:13.812 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 750, Count: 406, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829796_1.MAI, EstimatedImpact: 0% 2026-04-22T23:56:13.812 ProcessImageName: setup.exe, Pid: 7772, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-04-22T23:56:13.812 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-22T23:56:13.812 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-22T23:56:13.812 ProcessImageName: updater.exe, Pid: 828, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-22T23:56:13.812 ProcessImageName: setup.exe, Pid: 2580, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 32% 2026-04-22T23:56:13.812 ProcessImageName: updater.exe, Pid: 6944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ffe23b9-d3c7-47de-889a-004e852e2d4e.tmp, EstimatedImpact: 0% 2026-04-22T23:56:13.812 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b4bc5ce8-dd91-4481-8c6c-ecddfe1f821d.tmp, EstimatedImpact: 0% 2026-04-22T23:56:13.812 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23a4d569-17e4-423e-98cc-a4dd96e4d85f.tmp, EstimatedImpact: 0% 2026-04-22T23:56:13.812 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 0% 2026-04-22T23:56:13.812 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\19e88043-b005-4e88-842b-f1827b72d087.tmp, EstimatedImpact: 0% 2026-04-22T23:56:13.843 [Engine] RSIG_UNLOADENGINE, 00007FFD0D908020, err=0x0 2026-04-22T23:56:13.858 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{ED9802DB-1EBE-4809-B2C7-F8629D4033AD} removed 2026-04-22T23:56:19.517 Process scan (postsignatureupdatescan) completed. 2026-04-23T00:01:12.795 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-23T00:02:04.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T00:10:25.540 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #797767, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T00:10:25.556 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #797769, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T00:10:35.543 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #797782, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T00:10:35.543 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #797784, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T00:10:35.559 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #797786, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T00:10:35.559 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #797788, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T00:17:09.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T00:32:14.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T00:47:19.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T01:02:24.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T01:10:25.260 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #801091, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T01:10:25.276 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #801093, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T01:10:35.274 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #801106, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T01:10:35.289 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #801109, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T01:10:35.289 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #801108, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T01:17:29.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T01:32:34.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T01:47:39.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T01:54:16.843 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #804851, FileId: 0x758200000000a029, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T01:54:27.265 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #805306, FileId: 0x105e00000004f477, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T01:54:29.145 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297e0_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #805314, FileId: 0x106200000004f477, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T01:56:12.765 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 43741, Count: 6295, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\stiri\stiri-locale\bca5136f33b2a05190944584fb55ee3e.html, EstimatedImpact: 0% 2026-04-23T01:56:12.765 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 945, Count: 6480, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TKWKY3, EstimatedImpact: 0% 2026-04-23T01:56:12.765 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_1.MAI, EstimatedImpact: 0% 2026-04-23T01:56:12.765 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1da70a61-5ebe-40c6-900b-96bf95abfde1.tmp, EstimatedImpact: 0% 2026-04-23T01:56:12.765 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e43a567d-6123-4c08-9f6f-c8a51f9d42a6.tmp, EstimatedImpact: 0% 2026-04-23T02:01:53.729 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:1145D020-9400-47EB-8FD5-8956D979F66F, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-23T02:01:53.729 Scheduled scan with Id 1145D020-9400-47EB-8FD5-8956D979F66F configured CPU priority: normal (LowCpuPriority: 0) 2026-04-23T02:01:53.729 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-23T02:01:53.745 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-23T02:01:53.745 [SFC] System file cache build is not needed (already completed) 2026-04-23T02:02:04.151 Engine:Triggered AR EMS scan 2026-04-23T02:02:04.151 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.167 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.198 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.214 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.245 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.276 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.276 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.307 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.339 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.354 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.370 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.401 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.417 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.432 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.464 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.479 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.495 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.557 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.573 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.604 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.620 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.667 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-23T02:02:04.698 Bm signature throttled:0x00002db31bed458f 2026-04-23T02:02:27.667 QuickScan:ScanID:1145D020-9400-47EB-8FD5-8956D979F66F: Quick scan finished with error 0 2026-04-23T02:02:27.667 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-23T02:02:28.174 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-23T02:02:28.174 [RTP] Duplicating the current plugin configuration object... 2026-04-23T02:02:28.174 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-23T02:02:28.174 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-23T02:02:28.174 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-23T02:02:28.174 [RTP] No config change detected. Not updating plugin configuration. 2026-04-23T02:02:28.174 [RTP] No config changes found. No configuration switch. 2026-04-23T02:02:28.174 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-23T02:02:44.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T02:10:26.416 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #806349, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:10:26.432 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #806351, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:10:36.429 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #806364, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:10:36.429 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #806366, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:10:36.585 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #806370, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:10:36.601 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #806372, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:17:49.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T02:30:40.015 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #807509, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:30:40.015 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #807511, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:30:45.752 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #807531, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:30:45.768 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #807534, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:30:45.768 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #807536, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:30:55.756 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #807549, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:30:55.772 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #807552, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:30:55.772 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #807555, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:30:55.772 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #807554, FileId: 0x55a000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T02:32:54.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T02:47:59.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T03:03:04.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T03:10:25.295 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #809736, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T03:10:25.295 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #809738, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T03:10:35.284 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #809751, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T03:10:35.300 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #809753, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T03:10:35.300 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #809755, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T03:10:35.300 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #809757, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T03:18:09.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T03:33:14.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T03:48:19.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T03:56:12.779 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 44902, Count: 6364, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\stiri\stiri-locale\bca5136f33b2a05190944584fb55ee3e.html, EstimatedImpact: 0% 2026-04-23T03:56:12.779 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1785, Count: 12951, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TKWKY3, EstimatedImpact: 0% 2026-04-23T03:56:12.779 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_1.MAI, EstimatedImpact: 0% 2026-04-23T03:56:12.779 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16c616a2-881f-41d6-abc7-b39a86f5e417.tmp, EstimatedImpact: 0% 2026-04-23T03:56:12.779 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1da70a61-5ebe-40c6-900b-96bf95abfde1.tmp, EstimatedImpact: 0% 2026-04-23T03:56:12.779 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ed53c3-4ac8-43c7-8df5-8e4a2fe4c109.tmp, EstimatedImpact: 0% 2026-04-23T03:56:12.779 ProcessImageName: updater.exe, Pid: 6240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c70334a-3837-4491-92c8-931019df1388.tmp, EstimatedImpact: 0% 2026-04-23T03:56:12.779 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e43a567d-6123-4c08-9f6f-c8a51f9d42a6.tmp, EstimatedImpact: 0% 2026-04-23T04:03:24.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T04:10:27.454 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #813076, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T04:10:27.469 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #813078, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T04:10:37.464 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #813091, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T04:10:37.480 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #813093, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T04:18:29.331 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T04:33:34.331 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T04:48:39.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T05:03:44.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T05:10:26.339 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #816394, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T05:10:26.355 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #816396, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T05:10:36.351 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #816409, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T05:10:36.366 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #816412, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T05:17:39.180 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297fe_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #816804, FileId: 0x112000000004cf92, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T05:18:49.345 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T05:33:54.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T05:48:59.344 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T05:56:12.783 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45751, Count: 6435, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\stiri\stiri-locale\bca5136f33b2a05190944584fb55ee3e.html, EstimatedImpact: 0% 2026-04-23T05:56:12.783 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2700, Count: 19422, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TKWKY3, EstimatedImpact: 0% 2026-04-23T05:56:12.783 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_1.MAI, EstimatedImpact: 0% 2026-04-23T05:56:12.783 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16c616a2-881f-41d6-abc7-b39a86f5e417.tmp, EstimatedImpact: 0% 2026-04-23T05:56:12.783 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1da70a61-5ebe-40c6-900b-96bf95abfde1.tmp, EstimatedImpact: 0% 2026-04-23T05:56:12.783 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ed53c3-4ac8-43c7-8df5-8e4a2fe4c109.tmp, EstimatedImpact: 0% 2026-04-23T05:56:12.783 ProcessImageName: updater.exe, Pid: 7412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\51760d39-857c-4128-b938-6966760419a5.tmp, EstimatedImpact: 0% 2026-04-23T05:56:12.783 ProcessImageName: updater.exe, Pid: 6240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c70334a-3837-4491-92c8-931019df1388.tmp, EstimatedImpact: 0% 2026-04-23T05:56:12.783 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e43a567d-6123-4c08-9f6f-c8a51f9d42a6.tmp, EstimatedImpact: 0% 2026-04-23T05:56:12.783 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67a8ca3c-7706-4a8b-868a-6e45ad470af9.tmp, EstimatedImpact: 0% 2026-04-23T06:04:04.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T06:10:26.362 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #819747, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T06:10:26.372 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #819749, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T06:10:36.386 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #819762, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T06:10:36.386 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #819764, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T06:19:09.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T06:34:14.330 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T06:49:19.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T07:04:24.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T07:10:25.005 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #823242, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T07:10:25.021 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #823244, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T07:10:35.016 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #823257, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T07:10:35.031 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #823259, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T07:10:35.177 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #823263, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T07:10:35.193 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #823265, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T07:19:29.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T07:30:45.851 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #824378, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T07:30:45.851 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #824380, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T07:30:50.710 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #824390, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T07:30:50.725 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #824393, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T07:30:50.725 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #824395, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T07:31:00.722 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #824408, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T07:31:00.738 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #824411, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T07:34:34.331 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T07:49:39.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T07:56:12.794 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45766, Count: 6438, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\stiri\stiri-locale\bca5136f33b2a05190944584fb55ee3e.html, EstimatedImpact: 0% 2026-04-23T07:56:12.794 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3630, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TKWKY3, EstimatedImpact: 0% 2026-04-23T07:56:12.794 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_1.MAI, EstimatedImpact: 0% 2026-04-23T07:56:12.794 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-23T07:56:12.794 ProcessImageName: updater.exe, Pid: 3500, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f7d54060-4764-472b-a131-c5740c611bef.tmp, EstimatedImpact: 0% 2026-04-23T07:56:12.794 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16c616a2-881f-41d6-abc7-b39a86f5e417.tmp, EstimatedImpact: 0% 2026-04-23T07:56:12.794 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-23T07:56:12.794 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1da70a61-5ebe-40c6-900b-96bf95abfde1.tmp, EstimatedImpact: 0% 2026-04-23T07:56:12.794 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ed53c3-4ac8-43c7-8df5-8e4a2fe4c109.tmp, EstimatedImpact: 0% 2026-04-23T07:56:12.794 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a8f0a68-c03d-4fc8-b9f8-bd7f3313b7d5.tmp, EstimatedImpact: 0% 2026-04-23T07:56:12.794 ProcessImageName: updater.exe, Pid: 6240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c70334a-3837-4491-92c8-931019df1388.tmp, EstimatedImpact: 0% 2026-04-23T07:56:12.794 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e43a567d-6123-4c08-9f6f-c8a51f9d42a6.tmp, EstimatedImpact: 0% 2026-04-23T07:56:12.794 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94df9964-f2fa-4807-b52d-dc6c840778db.tmp, EstimatedImpact: 0% 2026-04-23T07:56:12.794 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67a8ca3c-7706-4a8b-868a-6e45ad470af9.tmp, EstimatedImpact: 0% 2026-04-23T07:56:12.794 ProcessImageName: updater.exe, Pid: 7412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\51760d39-857c-4128-b938-6966760419a5.tmp, EstimatedImpact: 0% 2026-04-23T08:04:44.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T08:10:26.288 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #826582, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T08:10:26.303 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #826584, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T08:10:36.297 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #826598, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T08:10:36.312 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #826597, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T08:10:36.312 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #826601, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T08:19:49.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T08:20:16.657 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829815_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #827140, FileId: 0x7a0100000000a029, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T08:24:16.104 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829816_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #827366, FileId: 0x7a1900000000a029, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T08:24:16.604 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829816_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #827371, FileId: 0x7a1a00000000a029, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T08:34:54.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T08:47:13.030 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82981d_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #828663, FileId: 0x7a9100000000a029, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T08:47:13.593 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82981d_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #828667, FileId: 0x7a9200000000a029, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T08:49:59.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T09:05:04.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T09:10:25.404 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #829949, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T09:10:25.420 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #829951, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T09:10:35.431 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #829964, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T09:10:35.431 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #829966, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T09:10:35.431 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #829968, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T09:20:09.336 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T09:35:14.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T09:50:19.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T09:50:26.992 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82981e_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #832167, FileId: 0x2a4300000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T09:56:12.794 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49640, Count: 6661, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\stiri\stiri-locale\bca5136f33b2a05190944584fb55ee3e.html, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4485, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TKWKY3, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 195, Count: 35, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_1.MAI, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: updater.exe, Pid: 3500, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f7d54060-4764-472b-a131-c5740c611bef.tmp, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16c616a2-881f-41d6-abc7-b39a86f5e417.tmp, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1da70a61-5ebe-40c6-900b-96bf95abfde1.tmp, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67a8ca3c-7706-4a8b-868a-6e45ad470af9.tmp, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: updater.exe, Pid: 364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aacc9d26-7619-474a-be57-ae3fe9f2ba0e.tmp, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: updater.exe, Pid: 7412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\51760d39-857c-4128-b938-6966760419a5.tmp, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94df9964-f2fa-4807-b52d-dc6c840778db.tmp, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a8f0a68-c03d-4fc8-b9f8-bd7f3313b7d5.tmp, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: updater.exe, Pid: 6240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c70334a-3837-4491-92c8-931019df1388.tmp, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ed53c3-4ac8-43c7-8df5-8e4a2fe4c109.tmp, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e43a567d-6123-4c08-9f6f-c8a51f9d42a6.tmp, EstimatedImpact: 0% 2026-04-23T09:56:12.794 ProcessImageName: updater.exe, Pid: 7116, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-23T10:05:24.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T10:10:26.372 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #833276, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T10:10:26.387 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #833278, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T10:10:36.379 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #833291, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T10:10:36.395 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #833294, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T10:20:29.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T10:35:34.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T10:50:39.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T11:05:44.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T11:10:26.043 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #836584, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T11:10:26.059 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #836586, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T11:10:36.050 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #836599, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T11:10:36.050 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #836600, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T11:10:36.065 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #836601, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T11:20:49.343 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T11:35:54.329 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T11:50:59.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T11:56:12.803 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49640, Count: 6661, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\stiri\stiri-locale\bca5136f33b2a05190944584fb55ee3e.html, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5340, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TKWKY3, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 195, Count: 35, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_1.MAI, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: updater.exe, Pid: 3500, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f7d54060-4764-472b-a131-c5740c611bef.tmp, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16c616a2-881f-41d6-abc7-b39a86f5e417.tmp, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1da70a61-5ebe-40c6-900b-96bf95abfde1.tmp, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: updater.exe, Pid: 7412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\51760d39-857c-4128-b938-6966760419a5.tmp, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: updater.exe, Pid: 6240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c70334a-3837-4491-92c8-931019df1388.tmp, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: updater.exe, Pid: 364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aacc9d26-7619-474a-be57-ae3fe9f2ba0e.tmp, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ed53c3-4ac8-43c7-8df5-8e4a2fe4c109.tmp, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a8f0a68-c03d-4fc8-b9f8-bd7f3313b7d5.tmp, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94df9964-f2fa-4807-b52d-dc6c840778db.tmp, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15998b5e-0df5-41ed-bf10-8b89be78bb1f.tmp, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b760d4-46d2-49f0-9df7-a1347befb13d.tmp, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e43a567d-6123-4c08-9f6f-c8a51f9d42a6.tmp, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67a8ca3c-7706-4a8b-868a-6e45ad470af9.tmp, EstimatedImpact: 0% 2026-04-23T11:56:12.803 ProcessImageName: updater.exe, Pid: 7116, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-23T12:06:04.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T12:10:26.563 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #839903, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T12:10:26.579 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #839905, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T12:10:36.579 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #839918, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T12:10:36.579 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #839920, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T12:10:36.751 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #839924, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T12:10:36.766 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #839926, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T12:21:09.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T12:30:50.822 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #841070, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T12:30:50.837 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #841072, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T12:30:55.237 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #841082, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T12:30:55.253 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #841085, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T12:30:55.253 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #841087, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T12:30:55.253 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #841089, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T12:31:05.262 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #841102, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T12:31:05.262 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #841104, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T12:36:14.336 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T12:51:19.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T13:06:24.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T13:21:29.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T13:36:34.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T13:51:39.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T13:56:12.814 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49777, Count: 6688, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\stiri\stiri-locale\bca5136f33b2a05190944584fb55ee3e.html, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5970, Count: 45315, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TKWKY3, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 195, Count: 35, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_1.MAI, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab3b49e8-25ad-455e-a673-47f654ae593f.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16c616a2-881f-41d6-abc7-b39a86f5e417.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 3500, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f7d54060-4764-472b-a131-c5740c611bef.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1da70a61-5ebe-40c6-900b-96bf95abfde1.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 5956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3787358-771d-40e3-bdc2-675ad274b643.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b760d4-46d2-49f0-9df7-a1347befb13d.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e43a567d-6123-4c08-9f6f-c8a51f9d42a6.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 7412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\51760d39-857c-4128-b938-6966760419a5.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67a8ca3c-7706-4a8b-868a-6e45ad470af9.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 6240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c70334a-3837-4491-92c8-931019df1388.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94df9964-f2fa-4807-b52d-dc6c840778db.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aacc9d26-7619-474a-be57-ae3fe9f2ba0e.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ed53c3-4ac8-43c7-8df5-8e4a2fe4c109.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\107c8a81-22ad-41f0-8078-88230ef5e6c5.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15998b5e-0df5-41ed-bf10-8b89be78bb1f.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a8f0a68-c03d-4fc8-b9f8-bd7f3313b7d5.tmp, EstimatedImpact: 0% 2026-04-23T13:56:12.814 ProcessImageName: updater.exe, Pid: 7116, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-23T14:06:44.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T14:10:36.442 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #846638, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T14:21:49.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T14:36:54.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T14:51:59.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T15:07:04.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T15:22:09.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T15:37:14.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T15:52:19.327 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T15:56:12.823 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49777, Count: 6692, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\stiri\stiri-locale\bca5136f33b2a05190944584fb55ee3e.html, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6660, Count: 51786, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TKWKY3, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 195, Count: 35, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_1.MAI, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab3b49e8-25ad-455e-a673-47f654ae593f.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16c616a2-881f-41d6-abc7-b39a86f5e417.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 3500, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f7d54060-4764-472b-a131-c5740c611bef.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1da70a61-5ebe-40c6-900b-96bf95abfde1.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 5696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0f0f5cb-9b24-4866-854e-23c44df14d91.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b760d4-46d2-49f0-9df7-a1347befb13d.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 7412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\51760d39-857c-4128-b938-6966760419a5.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e43a567d-6123-4c08-9f6f-c8a51f9d42a6.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67a8ca3c-7706-4a8b-868a-6e45ad470af9.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94df9964-f2fa-4807-b52d-dc6c840778db.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 6240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c70334a-3837-4491-92c8-931019df1388.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15998b5e-0df5-41ed-bf10-8b89be78bb1f.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ed53c3-4ac8-43c7-8df5-8e4a2fe4c109.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\107c8a81-22ad-41f0-8078-88230ef5e6c5.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aacc9d26-7619-474a-be57-ae3fe9f2ba0e.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a8f0a68-c03d-4fc8-b9f8-bd7f3313b7d5.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 5956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3787358-771d-40e3-bdc2-675ad274b643.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40b4981a-b9ce-4477-ab14-451137b945a3.tmp, EstimatedImpact: 0% 2026-04-23T15:56:12.823 ProcessImageName: updater.exe, Pid: 7116, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-23T16:07:24.342 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T16:10:35.219 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #853272, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T16:22:29.330 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T16:37:34.336 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T16:52:39.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T17:07:44.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T17:22:49.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T17:30:59.287 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #857762, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T17:37:54.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T17:52:59.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T17:56:12.837 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49777, Count: 6702, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\stiri\stiri-locale\bca5136f33b2a05190944584fb55ee3e.html, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7320, Count: 58257, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TKWKY3, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 195, Count: 35, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_1.MAI, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16c616a2-881f-41d6-abc7-b39a86f5e417.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 3500, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f7d54060-4764-472b-a131-c5740c611bef.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab3b49e8-25ad-455e-a673-47f654ae593f.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91b06df3-306f-426a-b300-aa52e84a9b1d.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1da70a61-5ebe-40c6-900b-96bf95abfde1.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 5972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\191a486b-7bf8-401b-95b8-3e711d4d83ca.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 7412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\51760d39-857c-4128-b938-6966760419a5.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 5956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3787358-771d-40e3-bdc2-675ad274b643.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 5696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0f0f5cb-9b24-4866-854e-23c44df14d91.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b760d4-46d2-49f0-9df7-a1347befb13d.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8f67f87d-faa2-445d-b37b-ce90823a2293.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e43a567d-6123-4c08-9f6f-c8a51f9d42a6.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67a8ca3c-7706-4a8b-868a-6e45ad470af9.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ed53c3-4ac8-43c7-8df5-8e4a2fe4c109.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94df9964-f2fa-4807-b52d-dc6c840778db.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\107c8a81-22ad-41f0-8078-88230ef5e6c5.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 6240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c70334a-3837-4491-92c8-931019df1388.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a8f0a68-c03d-4fc8-b9f8-bd7f3313b7d5.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15998b5e-0df5-41ed-bf10-8b89be78bb1f.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40b4981a-b9ce-4477-ab14-451137b945a3.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aacc9d26-7619-474a-be57-ae3fe9f2ba0e.tmp, EstimatedImpact: 0% 2026-04-23T17:56:12.837 ProcessImageName: updater.exe, Pid: 7116, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-23T18:08:04.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T18:14:28.001 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829842_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #860187, FileId: 0xa6000000003a559, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T18:23:09.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T18:38:14.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T18:53:19.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T19:08:24.327 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T19:09:54.057 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829845_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #863375, FileId: 0xe4500000004c573, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T19:09:57.324 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829845_4f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #863488, FileId: 0xe5f00000004c573, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T19:23:29.333 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T19:38:34.330 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T19:53:39.330 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T19:56:12.848 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55733, Count: 7286, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8160, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TKWKY3, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 465, Count: 151, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_1.MAI, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab3b49e8-25ad-455e-a673-47f654ae593f.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16c616a2-881f-41d6-abc7-b39a86f5e417.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 3500, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f7d54060-4764-472b-a131-c5740c611bef.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91b06df3-306f-426a-b300-aa52e84a9b1d.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1da70a61-5ebe-40c6-900b-96bf95abfde1.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 5972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\191a486b-7bf8-401b-95b8-3e711d4d83ca.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 7412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\51760d39-857c-4128-b938-6966760419a5.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 5956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3787358-771d-40e3-bdc2-675ad274b643.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 5696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0f0f5cb-9b24-4866-854e-23c44df14d91.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b760d4-46d2-49f0-9df7-a1347befb13d.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d549afc7-34fa-474b-a83b-1f9ebda7113f.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8f67f87d-faa2-445d-b37b-ce90823a2293.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e43a567d-6123-4c08-9f6f-c8a51f9d42a6.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ed53c3-4ac8-43c7-8df5-8e4a2fe4c109.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 4056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd669d3b-bc3c-4944-85e1-108d12014249.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\107c8a81-22ad-41f0-8078-88230ef5e6c5.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aacc9d26-7619-474a-be57-ae3fe9f2ba0e.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94df9964-f2fa-4807-b52d-dc6c840778db.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a8f0a68-c03d-4fc8-b9f8-bd7f3313b7d5.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 6240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c70334a-3837-4491-92c8-931019df1388.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40b4981a-b9ce-4477-ab14-451137b945a3.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15998b5e-0df5-41ed-bf10-8b89be78bb1f.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67a8ca3c-7706-4a8b-868a-6e45ad470af9.tmp, EstimatedImpact: 0% 2026-04-23T19:56:12.848 ProcessImageName: updater.exe, Pid: 7116, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-23T20:06:57.552 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829848_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #866718, FileId: 0xf8400000004c573, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T20:08:44.341 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T20:10:26.477 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #866991, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T20:23:49.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T20:38:54.336 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T20:53:59.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T21:09:04.329 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T21:24:09.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T21:39:14.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T21:51:45.488 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829850_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #872612, FileId: 0xc5e000000053124, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T21:51:45.847 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829850_16.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #872642, FileId: 0xc68000000053124, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T21:51:47.407 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829850_2a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #872672, FileId: 0xc72000000053124, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T21:51:48.142 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829850_44.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #872706, FileId: 0xc7e000000053124, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T21:54:19.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T21:55:36.413 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829854_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #872954, FileId: 0x6a6b000000008eac, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T21:55:38.039 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829854_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #872984, FileId: 0x6a75000000008eac, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T21:55:38.524 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829854_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #873014, FileId: 0x6a7f000000008eac, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T21:56:12.853 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 56004, Count: 7331, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9000, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TKWKY3, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 765, Count: 384, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_1.MAI, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16c616a2-881f-41d6-abc7-b39a86f5e417.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 3500, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f7d54060-4764-472b-a131-c5740c611bef.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91b06df3-306f-426a-b300-aa52e84a9b1d.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab3b49e8-25ad-455e-a673-47f654ae593f.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1da70a61-5ebe-40c6-900b-96bf95abfde1.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a8f0a68-c03d-4fc8-b9f8-bd7f3313b7d5.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8f67f87d-faa2-445d-b37b-ce90823a2293.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40b4981a-b9ce-4477-ab14-451137b945a3.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d549afc7-34fa-474b-a83b-1f9ebda7113f.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 5956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3787358-771d-40e3-bdc2-675ad274b643.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 5696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0f0f5cb-9b24-4866-854e-23c44df14d91.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b760d4-46d2-49f0-9df7-a1347befb13d.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e43a567d-6123-4c08-9f6f-c8a51f9d42a6.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 6240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c70334a-3837-4491-92c8-931019df1388.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94df9964-f2fa-4807-b52d-dc6c840778db.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 4056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd669d3b-bc3c-4944-85e1-108d12014249.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\107c8a81-22ad-41f0-8078-88230ef5e6c5.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aacc9d26-7619-474a-be57-ae3fe9f2ba0e.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 3220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3df90a7-f4f1-43bb-a8b5-40ab3a4ff11b.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ed53c3-4ac8-43c7-8df5-8e4a2fe4c109.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c7adb81e-d757-487c-a661-e0e42d157c3e.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67a8ca3c-7706-4a8b-868a-6e45ad470af9.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 7412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\51760d39-857c-4128-b938-6966760419a5.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15998b5e-0df5-41ed-bf10-8b89be78bb1f.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 5972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\191a486b-7bf8-401b-95b8-3e711d4d83ca.tmp, EstimatedImpact: 0% 2026-04-23T21:56:12.853 ProcessImageName: updater.exe, Pid: 7116, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-23T22:09:24.340 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T22:24:29.329 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T22:30:59.387 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #875001, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T22:39:34.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T22:54:39.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T23:09:44.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T23:10:35.334 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #877215, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-23T23:24:49.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T23:39:54.331 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T23:54:59.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-23T23:55:24.335 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-23T23:55:24.351 Job Notification: New process added to job (412) 2026-04-23T23:55:24.366 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-23T23:55:24.366 Job Notification: New process added to job (672) 2026-04-23T23:55:24.366 Aggressive catchup quick scan threshold: 788106249135 / 25920000000000 2026-04-23T23:55:24.366 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:412] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:672]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-23T23:55:24.413 Job Notification: New process added to job (2468) 2026-04-23T23:55:24.429 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-23T23:55:24.429 Job Notification: New process added to job (5396) 2026-04-23T23:55:24.445 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:2468] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5396]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-23T23:55:24.773 Job Notification: New process added to job (344) 2026-04-23T23:55:24.882 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-23T23:55:24.882 [RTP] Duplicating the current plugin configuration object... 2026-04-23T23:55:24.882 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-23T23:55:24.882 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-23T23:55:24.882 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-23T23:55:24.882 [RTP] No config change detected. Not updating plugin configuration. 2026-04-23T23:55:24.882 [RTP] No config changes found. No configuration switch. 2026-04-23T23:55:24.882 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-23T23:55:24.976 Task(GetDeviceTicket -AccessKey F6D00279-C328-0C86-0F3A-3372F6D0EE77 ) launched as network service 2026-04-23T23:55:25.607 Job Notification: Process exited from job (344) 2026-04-23T23:55:26.735 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-23T23:55:26.735 [Cloud] Start of cloud request. Passive mode: 0 2026-04-23T23:55:26.735 [Cloud] Queued cloud request. 2026-04-23T23:55:26.735 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-23T23:55:26.735 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-23T23:55:26.735 [Cloud] Start of cloud request. Passive mode: 0 2026-04-23T23:55:26.735 [Cloud] Queued cloud request. 2026-04-23T23:55:26.750 Job Notification: New process added to job (6772) 2026-04-23T23:55:26.750 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey E8C29056-0215-6DC7-DD0F-7EF4D64B7601) launched 2026-04-23T23:55:26.766 Job Notification: New process added to job (3500) 2026-04-23T23:55:26.766 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6772] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3500]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-23T23:55:26.782 Job Notification: New process added to job (3168) 2026-04-23T23:55:26.782 Job Notification: Process exited from job (6772) 2026-04-23T23:55:26.782 Job Notification: Process exited from job (3500) 2026-04-23T23:55:26.797 [Cloud] Dequeued cloud request. 2026-04-23T23:55:26.797 [Cloud] Dequeued cloud request. 2026-04-23T23:55:26.797 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-23T23:55:26.797 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-23T23:55:27.051 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-23T23:55:27.051 [Cloud] End of cloud request. 2026-04-23T23:55:27.051 [Cloud] End of cloud request. 2026-04-23T23:55:27.239 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-23T23:56:09.521 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\D4217409-0A1E-4D6B-87F7-85C64B4FD5F51740.1dcd37cc0c5f8e1 2026-04-23T23:56:09.568 Verifying engine and signature files (source: 0) ... 2026-04-23T23:56:09.568 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E5C17138-1821-4DAE-B619-05ACE32B8C02}\mpengine.dll] due to PPL. 2026-04-23T23:56:09.568 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E5C17138-1821-4DAE-B619-05ACE32B8C02}\mpasbase.vdm] (file in cache) 2026-04-23T23:56:09.568 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E5C17138-1821-4DAE-B619-05ACE32B8C02}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-23T23:56:09.583 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E5C17138-1821-4DAE-B619-05ACE32B8C02}\mpasdlta.vdm] 2026-04-23T23:56:09.583 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E5C17138-1821-4DAE-B619-05ACE32B8C02}\mpavbase.vdm] (file in cache) 2026-04-23T23:56:09.583 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E5C17138-1821-4DAE-B619-05ACE32B8C02}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-23T23:56:09.599 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E5C17138-1821-4DAE-B619-05ACE32B8C02}\mpavdlta.vdm] 2026-04-23T23:56:09.786 [Engine] IsHybridMode: 0 2026-04-23T23:56:09.786 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-23T23:56:09.880 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-79B0EEA23FEB149B180EE069C1C913D3D444AA36.bin): 0x00000002 2026-04-23T23:56:09.880 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-79B0EEA23FEB149B180EE069C1C913D3D444AA36.bin) 2026-04-23T23:56:09.880 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-23T23:56:09.880 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-23T23:56:09.880 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-23T23:56:09.880 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-04-23T23:56:12.864 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 56065, Count: 7335, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9585, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TKWKY3, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 765, Count: 384, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_1.MAI, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91b06df3-306f-426a-b300-aa52e84a9b1d.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 5692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90af8546-7488-4fca-8560-a80f9bdf93df.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab3b49e8-25ad-455e-a673-47f654ae593f.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16c616a2-881f-41d6-abc7-b39a86f5e417.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 3500, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f7d54060-4764-472b-a131-c5740c611bef.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1da70a61-5ebe-40c6-900b-96bf95abfde1.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 7412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\51760d39-857c-4128-b938-6966760419a5.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 5956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3787358-771d-40e3-bdc2-675ad274b643.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 5696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0f0f5cb-9b24-4866-854e-23c44df14d91.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 5684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b760d4-46d2-49f0-9df7-a1347befb13d.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8f67f87d-faa2-445d-b37b-ce90823a2293.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 5472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e43a567d-6123-4c08-9f6f-c8a51f9d42a6.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 4056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd669d3b-bc3c-4944-85e1-108d12014249.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d549afc7-34fa-474b-a83b-1f9ebda7113f.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 3220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3df90a7-f4f1-43bb-a8b5-40ab3a4ff11b.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67a8ca3c-7706-4a8b-868a-6e45ad470af9.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\346220c4-d3b5-42fe-9570-b6f44771f457.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 7796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8ed53c3-4ac8-43c7-8df5-8e4a2fe4c109.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94df9964-f2fa-4807-b52d-dc6c840778db.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\107c8a81-22ad-41f0-8078-88230ef5e6c5.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aacc9d26-7619-474a-be57-ae3fe9f2ba0e.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 5956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32eb2a36-c91c-47df-911c-e5c0f21fa06d.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 6240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c70334a-3837-4491-92c8-931019df1388.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 7628, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a8f0a68-c03d-4fc8-b9f8-bd7f3313b7d5.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15998b5e-0df5-41ed-bf10-8b89be78bb1f.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40b4981a-b9ce-4477-ab14-451137b945a3.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 5972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\191a486b-7bf8-401b-95b8-3e711d4d83ca.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c7adb81e-d757-487c-a661-e0e42d157c3e.tmp, EstimatedImpact: 0% 2026-04-23T23:56:12.864 ProcessImageName: updater.exe, Pid: 7116, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-23T23:56:18.991 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-23T23:56:18.991 [AutoExclusion] Applied roles from cache. 2026-04-23T23:56:18.991 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-04-23T23:56:19.007 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0EA68020, lRefCount: 5, hr=0 2026-04-23T23:56:19.007 [Engine] New active engine 00007FFD0D908020 replacing engine 00007FFD0EA68020. Number of active engines: 2 2026-04-23T23:56:19.007 EngineInit:Global ASOC is enabled 2026-04-23T23:56:19.007 EngineInit:ASOO is enabled for developer volumes 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-23T23:56:19.023 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-23T23:56:19.038 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-23T23:56:19.038 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-23T23:56:19.038 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-23T23:56:19.038 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-23T23:56:19.038 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-23T23:56:19.054 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-23T23:56:19.054 [Plugin] Initializing RTP plugin state... 2026-04-23T23:56:19.054 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-23T23:56:19.054 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎23‎-‎2026 01:56:13 Last Perf:‎04‎-‎23‎-‎2026 01:56:12 First RTP Scan:‎04‎-‎23‎-‎2026 01:56:14 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:419 Misses:2449 BM Queue:0,48,0 Proc:0,46,0 File:0,29,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:879806 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:953356242 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2872 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:93207 TotalHits:311334 InstanceCacheInserts:442363 InstanceCacheUpdates:0 InstanceCacheDeletes:74055 InstanceCacheHits:2273 InstanceCacheMisses:500904 InstanceCacheOverflows:357843 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (322/282) Success: 282, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-23T23:56:19.054 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E5C17138-1821-4DAE-B619-05ACE32B8C02} 2026-04-23T23:56:19.054 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-23T23:56:19.054 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{670045D6-C6D6-4AF4-88C0-B39BF163792A} removed 2026-04-23T23:56:19.054 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{754AB0FB-9267-442D-B780-997E81FD68B8}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{754AB0FB-9267-442D-B780-997E81FD68B8}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-23T23:56:19.054 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-23T23:56:19.054 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-23T23:56:19.054 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-23T23:56:19.054 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-23T23:56:19.054 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-23-2026 23:56:19 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-23-2026 23:56:19 2026-04-23T23:56:19.054 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-23T23:56:19.054 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-23T23:56:19.054 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-23T23:56:19.054 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-23T23:56:19.054 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-23T23:56:19.054 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-23T23:56:19.054 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-23T23:56:19.054 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-23T23:56:19.054 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-23T23:56:19.054 MdCoreSvc is supported in this platform and OS Signature updated on 04-23-2026 23:56:19 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.264.0 AV Signature Version: 1.449.264.0 ************************************************************ 2026-04-23T23:56:19.054 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-23T23:56:19.054 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\D4217409-0A1E-4D6B-87F7-85C64B4FD5F51740.1dcd37cc0c5f8e1 2026-04-23T23:56:19.070 Process scan (postsignatureupdatescan) started. Signature updated via MicrosoftUpdateServer on 04-23-2026 23:56:19 ************************************************************ 2026-04-23T23:56:19.116 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-23T23:56:19.116 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-04-23T23:56:19.116 Job Notification: Process exited from job (412) 2026-04-23T23:56:19.116 Job Notification: Process exited from job (672) 2026-04-23T23:56:19.132 Job Notification: Process exited from job (2468) 2026-04-23T23:56:19.132 Job Notification: Process exited from job (5396) 2026-04-23T23:56:19.288 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-23T23:56:19.288 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-23T23:56:19.288 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-23T23:56:19.288 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-23T23:56:19.288 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-23T23:56:19.288 [Engine] Engine 00007FFD0EA68020 no longer in use. Number of active engines: 1 2026-04-23T23:56:19.288 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-23T23:56:19.288 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-23T23:56:19.554 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-23T23:56:19.554 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-23T23:56:19.554 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-23T23:56:20.148 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 56065, Count: 7335, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-23T23:56:20.148 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9585, Count: 77679, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TKWKY3, EstimatedImpact: 0% 2026-04-23T23:56:20.148 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 765, Count: 384, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8297df_1.MAI, EstimatedImpact: 0% 2026-04-23T23:56:20.148 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-23T23:56:20.148 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-23T23:56:20.148 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91b06df3-306f-426a-b300-aa52e84a9b1d.tmp, EstimatedImpact: 0% 2026-04-23T23:56:20.148 ProcessImageName: updater.exe, Pid: 5692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90af8546-7488-4fca-8560-a80f9bdf93df.tmp, EstimatedImpact: 0% 2026-04-23T23:56:20.148 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab3b49e8-25ad-455e-a673-47f654ae593f.tmp, EstimatedImpact: 0% 2026-04-23T23:56:20.148 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16c616a2-881f-41d6-abc7-b39a86f5e417.tmp, EstimatedImpact: 0% 2026-04-23T23:56:20.148 ProcessImageName: updater.exe, Pid: 3500, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f7d54060-4764-472b-a131-c5740c611bef.tmp, EstimatedImpact: 0% 2026-04-23T23:56:20.148 ProcessImageName: updater.exe, Pid: 8152, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1da70a61-5ebe-40c6-900b-96bf95abfde1.tmp, EstimatedImpact: 0% 2026-04-23T23:56:20.148 ProcessImageName: updater.exe, Pid: 7412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\51760d39-857c-4128-b938-6966760419a5.tmp, EstimatedImpact: 0% 2026-04-23T23:56:20.148 ProcessImageName: updater.exe, Pid: 5956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3787358-771d-40e3-bdc2-675ad274b643.tmp, EstimatedImpact: 0% 2026-04-23T23:56:20.195 [Engine] RSIG_UNLOADENGINE, 00007FFD0EA68020, err=0x0 2026-04-23T23:56:20.210 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{754AB0FB-9267-442D-B780-997E81FD68B8} removed 2026-04-23T23:56:25.695 Process scan (postsignatureupdatescan) completed. 2026-04-24T00:01:19.026 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-24T00:10:04.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T00:10:26.718 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #880642, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T00:10:26.733 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #880644, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T00:10:36.737 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #880657, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T00:10:36.737 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #880660, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T00:25:09.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T00:40:14.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T00:55:19.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T01:10:24.333 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T01:10:24.961 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #883993, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T01:10:24.977 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #883995, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T01:10:34.970 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #884008, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T01:10:34.986 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #884010, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T01:19:52.451 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #885698, FileId: 0x402500000004c455, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T01:20:05.263 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829859_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #886156, FileId: 0x18900000004c569, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T01:20:05.263 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #886157, FileId: 0x38b000000053faf, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T01:25:29.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T01:40:34.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T01:55:39.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T01:56:19.017 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50422, Count: 6509, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\category\stiri\news-stiri-nationale\4e3c9cc624c1b768df482b1e21bd8d04.html, EstimatedImpact: 1% 2026-04-24T01:56:19.017 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 945, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.E555X3, EstimatedImpact: 0% 2026-04-24T01:56:19.017 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_1.MAI, EstimatedImpact: 0% 2026-04-24T01:56:19.017 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-24T01:56:19.017 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b30c8eca-ed19-41bc-a0d0-28716603ca18.tmp, EstimatedImpact: 0% 2026-04-24T02:01:53.734 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:BD4A8123-B544-4BE5-855D-1DD57B2E077B, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-24T02:01:53.734 Scheduled scan with Id BD4A8123-B544-4BE5-855D-1DD57B2E077B configured CPU priority: normal (LowCpuPriority: 0) 2026-04-24T02:01:53.734 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-24T02:01:53.734 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-24T02:01:53.734 [SFC] System file cache build is not needed (already completed) 2026-04-24T02:02:04.187 Engine:Triggered AR EMS scan 2026-04-24T02:02:04.187 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.202 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.234 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.249 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.280 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.312 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.327 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.359 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.374 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.390 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.421 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.437 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.452 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.468 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.499 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.515 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.530 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.593 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.609 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.640 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.671 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.718 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-24T02:02:04.734 Bm signature throttled:0x00002db31bed458f 2026-04-24T02:02:17.937 QuickScan:ScanID:BD4A8123-B544-4BE5-855D-1DD57B2E077B: Quick scan finished with error 0 2026-04-24T02:02:17.937 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-24T02:02:18.437 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-24T02:02:18.437 [RTP] Duplicating the current plugin configuration object... 2026-04-24T02:02:18.437 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-24T02:02:18.437 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-24T02:02:18.437 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-24T02:02:18.437 [RTP] No config change detected. Not updating plugin configuration. 2026-04-24T02:02:18.437 [RTP] No config changes found. No configuration switch. 2026-04-24T02:02:18.437 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-24T02:10:26.070 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #889228, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T02:10:26.085 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #889230, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T02:10:36.080 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #889243, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T02:10:36.080 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #889245, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T02:10:36.080 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #889247, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T02:10:44.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T02:25:49.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T02:40:54.339 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T02:55:59.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T03:10:26.437 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #892575, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:10:26.437 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #892577, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:10:36.441 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #892590, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:10:36.441 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #892592, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:10:36.597 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #892596, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:10:36.597 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #892598, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:11:04.336 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T03:26:09.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T03:26:25.771 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829864_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #893480, FileId: 0x182800000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:26:26.411 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829864_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #893484, FileId: 0x182900000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:31:02.591 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #893743, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:31:02.591 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #893745, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:31:08.560 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #893755, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:31:08.576 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #893758, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:31:08.576 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #893760, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:31:18.588 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #893773, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:31:18.588 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #893775, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:31:18.588 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #893777, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T03:41:14.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T03:56:19.021 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51613, Count: 6587, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\category\stiri\news-stiri-nationale\4e3c9cc624c1b768df482b1e21bd8d04.html, EstimatedImpact: 0% 2026-04-24T03:56:19.021 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1800, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.E555X3, EstimatedImpact: 0% 2026-04-24T03:56:19.021 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_1.MAI, EstimatedImpact: 0% 2026-04-24T03:56:19.021 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f3befd4-558e-49fe-9628-f7569e00f142.tmp, EstimatedImpact: 0% 2026-04-24T03:56:19.021 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-24T03:56:19.021 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee087dc8-6ff9-47b6-9cf1-681849795e65.tmp, EstimatedImpact: 0% 2026-04-24T03:56:19.021 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b30c8eca-ed19-41bc-a0d0-28716603ca18.tmp, EstimatedImpact: 0% 2026-04-24T03:56:19.021 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e500fbf-ae8c-4537-bfd3-67c358e43ed4.tmp, EstimatedImpact: 0% 2026-04-24T03:56:19.336 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T04:10:25.280 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #895942, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T04:10:25.296 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #895944, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T04:10:35.283 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #895958, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T04:10:35.299 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #895961, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T04:11:24.336 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T04:26:29.329 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T04:41:34.336 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T04:56:39.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T05:10:25.682 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #899252, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T05:10:25.682 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #899254, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T05:10:35.711 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #899268, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T05:10:35.727 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #899271, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T05:11:44.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T05:26:49.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T05:41:54.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T05:49:49.548 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82989f_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #901634, FileId: 0x29b800000004c4f7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T05:56:19.034 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52385, Count: 6656, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\category\stiri\news-stiri-nationale\4e3c9cc624c1b768df482b1e21bd8d04.html, EstimatedImpact: 0% 2026-04-24T05:56:19.034 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2655, Count: 19422, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.E555X3, EstimatedImpact: 0% 2026-04-24T05:56:19.034 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-24T05:56:19.034 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 15, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_1.MAI, EstimatedImpact: 0% 2026-04-24T05:56:19.034 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f3befd4-558e-49fe-9628-f7569e00f142.tmp, EstimatedImpact: 0% 2026-04-24T05:56:19.034 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-24T05:56:19.034 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee087dc8-6ff9-47b6-9cf1-681849795e65.tmp, EstimatedImpact: 0% 2026-04-24T05:56:19.034 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1d8d82e-109e-4db4-910c-cc431dd68abd.tmp, EstimatedImpact: 0% 2026-04-24T05:56:19.034 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ad98ed-baef-4d95-9222-9ef0c5b96c1c.tmp, EstimatedImpact: 0% 2026-04-24T05:56:19.034 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b30c8eca-ed19-41bc-a0d0-28716603ca18.tmp, EstimatedImpact: 0% 2026-04-24T05:56:19.034 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e500fbf-ae8c-4537-bfd3-67c358e43ed4.tmp, EstimatedImpact: 0% 2026-04-24T05:56:59.333 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T06:10:26.512 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #902802, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T06:10:26.528 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #902804, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T06:10:36.536 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #902818, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T06:10:36.536 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #902821, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T06:12:04.329 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T06:27:09.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T06:42:14.338 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T06:57:19.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T07:10:23.922 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #906120, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T07:10:23.938 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #906122, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T07:10:33.926 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #906135, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T07:10:33.926 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #906137, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T07:10:33.942 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #906139, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T07:10:33.957 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #906141, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T07:12:24.331 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T07:27:29.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T07:42:34.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T07:50:08.258 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8298be_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #908342, FileId: 0x4ae000000050a22, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T07:56:19.047 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53453, Count: 6723, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2018\05\05\in-perioada-9-si-13-mai-se-desfasoara-la-tirgu-mures-festivalul-international-studentesc-de-jazz-youth-jazz-competition-festival-2\328dac102a73b26f2fb894e1885c184c.html, EstimatedImpact: 0% 2026-04-24T07:56:19.047 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3630, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.E555X3, EstimatedImpact: 0% 2026-04-24T07:56:19.047 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-24T07:56:19.047 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_1.MAI, EstimatedImpact: 0% 2026-04-24T07:56:19.047 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f3befd4-558e-49fe-9628-f7569e00f142.tmp, EstimatedImpact: 0% 2026-04-24T07:56:19.047 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-24T07:56:19.047 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-24T07:56:19.047 ProcessImageName: updater.exe, Pid: 5748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\af648a1f-2202-4b70-a908-18c9aa9ae6b8.tmp, EstimatedImpact: 0% 2026-04-24T07:56:19.047 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e500fbf-ae8c-4537-bfd3-67c358e43ed4.tmp, EstimatedImpact: 0% 2026-04-24T07:56:19.047 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b30c8eca-ed19-41bc-a0d0-28716603ca18.tmp, EstimatedImpact: 0% 2026-04-24T07:56:19.047 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee087dc8-6ff9-47b6-9cf1-681849795e65.tmp, EstimatedImpact: 0% 2026-04-24T07:56:19.047 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ad98ed-baef-4d95-9222-9ef0c5b96c1c.tmp, EstimatedImpact: 0% 2026-04-24T07:56:19.047 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1d8d82e-109e-4db4-910c-cc431dd68abd.tmp, EstimatedImpact: 0% 2026-04-24T07:56:19.047 ProcessImageName: updater.exe, Pid: 180, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-24T07:57:39.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T08:10:27.680 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #909465, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T08:10:27.711 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #909476, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T08:10:37.695 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #909490, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T08:10:37.710 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #909492, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T08:10:37.866 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #909496, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T08:10:37.866 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #909498, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T08:12:44.331 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T08:27:49.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T08:31:08.637 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #910620, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T08:31:08.653 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #910622, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T08:31:11.785 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #910641, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T08:31:11.800 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #910644, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T08:31:11.800 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #910646, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T08:31:21.814 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #910659, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T08:31:21.814 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #910661, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T08:42:54.333 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T08:57:59.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T09:10:26.462 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #912815, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T09:10:26.477 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #912817, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T09:10:36.480 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #912831, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T09:10:36.495 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #912834, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T09:13:04.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T09:28:09.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T09:43:14.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T09:56:19.051 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53453, Count: 6723, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2018\05\05\in-perioada-9-si-13-mai-se-desfasoara-la-tirgu-mures-festivalul-international-studentesc-de-jazz-youth-jazz-competition-festival-2\328dac102a73b26f2fb894e1885c184c.html, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4485, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.E555X3, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_1.MAI, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b92aee29-c5ab-449d-b0a0-66461138aefe.tmp, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f3befd4-558e-49fe-9628-f7569e00f142.tmp, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee087dc8-6ff9-47b6-9cf1-681849795e65.tmp, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: updater.exe, Pid: 5748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\af648a1f-2202-4b70-a908-18c9aa9ae6b8.tmp, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d11c8e7f-3b9e-45da-b03a-0393393e4068.tmp, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1d8d82e-109e-4db4-910c-cc431dd68abd.tmp, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: updater.exe, Pid: 3272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cd60289-305a-48e3-8814-06010390c38e.tmp, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ad98ed-baef-4d95-9222-9ef0c5b96c1c.tmp, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b30c8eca-ed19-41bc-a0d0-28716603ca18.tmp, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e500fbf-ae8c-4537-bfd3-67c358e43ed4.tmp, EstimatedImpact: 0% 2026-04-24T09:56:19.051 ProcessImageName: updater.exe, Pid: 180, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-24T09:58:19.327 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T10:10:24.540 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #916122, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T10:10:24.555 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #916124, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T10:10:34.554 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #916138, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T10:10:34.569 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #916141, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T10:13:24.333 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T10:28:29.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T10:43:34.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T10:58:39.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T11:10:26.497 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #919438, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T11:10:26.512 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #919440, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T11:10:36.527 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #919454, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T11:10:36.527 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #919457, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T11:13:44.322 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T11:28:49.337 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T11:43:54.331 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T11:56:19.066 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53483, Count: 6727, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2018\05\05\in-perioada-9-si-13-mai-se-desfasoara-la-tirgu-mures-festivalul-international-studentesc-de-jazz-youth-jazz-competition-festival-2\328dac102a73b26f2fb894e1885c184c.html, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5310, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.E555X3, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_1.MAI, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b92aee29-c5ab-449d-b0a0-66461138aefe.tmp, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f3befd4-558e-49fe-9628-f7569e00f142.tmp, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: updater.exe, Pid: 5124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4727d8c6-742c-4044-ba17-f2104cc27096.tmp, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d11c8e7f-3b9e-45da-b03a-0393393e4068.tmp, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: updater.exe, Pid: 7532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175a51f3-b0c3-451e-9915-0349743c254d.tmp, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: updater.exe, Pid: 5748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\af648a1f-2202-4b70-a908-18c9aa9ae6b8.tmp, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e500fbf-ae8c-4537-bfd3-67c358e43ed4.tmp, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b30c8eca-ed19-41bc-a0d0-28716603ca18.tmp, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee087dc8-6ff9-47b6-9cf1-681849795e65.tmp, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ad98ed-baef-4d95-9222-9ef0c5b96c1c.tmp, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: updater.exe, Pid: 3272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cd60289-305a-48e3-8814-06010390c38e.tmp, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1d8d82e-109e-4db4-910c-cc431dd68abd.tmp, EstimatedImpact: 0% 2026-04-24T11:56:19.066 ProcessImageName: updater.exe, Pid: 180, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-24T11:58:59.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T12:10:24.487 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #922755, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T12:10:24.502 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #922757, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T12:10:34.490 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #922771, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T12:10:34.490 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #922773, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T12:10:34.506 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #922775, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T12:10:34.506 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #922777, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T12:14:04.336 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T12:29:09.335 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T12:44:14.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T12:59:19.330 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T13:10:26.610 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #926067, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T13:10:26.625 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #926069, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T13:10:36.631 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #926083, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T13:10:36.631 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #926085, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T13:10:36.788 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #926089, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T13:10:36.788 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #926091, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T13:14:24.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T13:29:29.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T13:31:11.901 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #927231, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T13:31:11.901 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #927234, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T13:31:15.870 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #927243, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T13:31:15.885 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #927246, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T13:31:15.885 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #927248, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T13:31:25.879 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #927261, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T13:31:25.895 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #927263, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T13:44:34.329 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T13:56:19.078 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54284, Count: 6791, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2018\05\05\in-perioada-9-si-13-mai-se-desfasoara-la-tirgu-mures-festivalul-international-studentesc-de-jazz-youth-jazz-competition-festival-2\328dac102a73b26f2fb894e1885c184c.html, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6075, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.E555X3, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_1.MAI, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b92aee29-c5ab-449d-b0a0-66461138aefe.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f3befd4-558e-49fe-9628-f7569e00f142.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e6de4bee-14d4-4e6f-b07e-2db45e2f7598.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 7532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175a51f3-b0c3-451e-9915-0349743c254d.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d11c8e7f-3b9e-45da-b03a-0393393e4068.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee087dc8-6ff9-47b6-9cf1-681849795e65.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 5748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\af648a1f-2202-4b70-a908-18c9aa9ae6b8.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a976418f-32e5-4f93-a031-8bd543bb90e5.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 5124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4727d8c6-742c-4044-ba17-f2104cc27096.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1d8d82e-109e-4db4-910c-cc431dd68abd.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 3416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f326d923-36ec-4ec2-a2a9-6b9d5eb9a5ae.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 3272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cd60289-305a-48e3-8814-06010390c38e.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ad98ed-baef-4d95-9222-9ef0c5b96c1c.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b30c8eca-ed19-41bc-a0d0-28716603ca18.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e500fbf-ae8c-4537-bfd3-67c358e43ed4.tmp, EstimatedImpact: 0% 2026-04-24T13:56:19.078 ProcessImageName: updater.exe, Pid: 180, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-24T13:59:39.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T14:10:26.694 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #929442, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T14:10:26.725 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #929445, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T14:10:36.707 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #929459, FileId: 0xc30000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T14:10:36.723 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #929462, FileId: 0x56d1000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T14:14:44.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T14:29:49.327 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T14:44:54.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T14:59:59.327 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T15:15:04.327 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T15:30:09.329 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T15:45:14.331 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T15:56:19.080 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54360, Count: 6796, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2018\05\05\in-perioada-9-si-13-mai-se-desfasoara-la-tirgu-mures-festivalul-international-studentesc-de-jazz-youth-jazz-competition-festival-2\328dac102a73b26f2fb894e1885c184c.html, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6825, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.E555X3, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_1.MAI, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b92aee29-c5ab-449d-b0a0-66461138aefe.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f3befd4-558e-49fe-9628-f7569e00f142.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e6de4bee-14d4-4e6f-b07e-2db45e2f7598.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee087dc8-6ff9-47b6-9cf1-681849795e65.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d11c8e7f-3b9e-45da-b03a-0393393e4068.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 5748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\af648a1f-2202-4b70-a908-18c9aa9ae6b8.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 7532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175a51f3-b0c3-451e-9915-0349743c254d.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 7284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\46907443-fa97-46bd-a48a-7638e7588caa.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a976418f-32e5-4f93-a031-8bd543bb90e5.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 5124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4727d8c6-742c-4044-ba17-f2104cc27096.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1d8d82e-109e-4db4-910c-cc431dd68abd.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 3416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f326d923-36ec-4ec2-a2a9-6b9d5eb9a5ae.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 3272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cd60289-305a-48e3-8814-06010390c38e.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 3044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\df2b7b7d-4615-41c8-984c-2db0c5420aac.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ad98ed-baef-4d95-9222-9ef0c5b96c1c.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b30c8eca-ed19-41bc-a0d0-28716603ca18.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e500fbf-ae8c-4537-bfd3-67c358e43ed4.tmp, EstimatedImpact: 0% 2026-04-24T15:56:19.080 ProcessImageName: updater.exe, Pid: 180, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-24T16:00:19.331 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T16:10:34.163 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #936094, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T16:15:24.323 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T16:30:29.330 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T16:45:34.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T17:00:39.329 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T17:15:44.323 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T17:19:31.676 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829902_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #939925, FileId: 0x149700000004d233, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T17:30:49.329 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T17:45:54.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T17:56:19.093 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54360, Count: 6801, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2018\05\05\in-perioada-9-si-13-mai-se-desfasoara-la-tirgu-mures-festivalul-international-studentesc-de-jazz-youth-jazz-competition-festival-2\328dac102a73b26f2fb894e1885c184c.html, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7650, Count: 58257, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.E555X3, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 195, Count: 42, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_1.MAI, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b92aee29-c5ab-449d-b0a0-66461138aefe.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f3befd4-558e-49fe-9628-f7569e00f142.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e6de4bee-14d4-4e6f-b07e-2db45e2f7598.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 3416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca4fecb5-da44-401b-8b1c-566e157c270b.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1d8d82e-109e-4db4-910c-cc431dd68abd.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d11c8e7f-3b9e-45da-b03a-0393393e4068.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 5748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\af648a1f-2202-4b70-a908-18c9aa9ae6b8.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 7532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175a51f3-b0c3-451e-9915-0349743c254d.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 2572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d20439f-88c0-455e-ac3c-5a92014efd4e.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 7284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\46907443-fa97-46bd-a48a-7638e7588caa.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 5124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4727d8c6-742c-4044-ba17-f2104cc27096.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e500fbf-ae8c-4537-bfd3-67c358e43ed4.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b30c8eca-ed19-41bc-a0d0-28716603ca18.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee087dc8-6ff9-47b6-9cf1-681849795e65.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ad98ed-baef-4d95-9222-9ef0c5b96c1c.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 3044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\df2b7b7d-4615-41c8-984c-2db0c5420aac.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 3272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cd60289-305a-48e3-8814-06010390c38e.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 3416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f326d923-36ec-4ec2-a2a9-6b9d5eb9a5ae.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a976418f-32e5-4f93-a031-8bd543bb90e5.tmp, EstimatedImpact: 0% 2026-04-24T17:56:19.093 ProcessImageName: updater.exe, Pid: 180, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-24T18:00:59.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T18:16:04.322 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T18:31:09.321 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T18:31:21.714 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #943921, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T18:46:14.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T19:01:19.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T19:16:24.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T19:31:29.327 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T19:43:58.743 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82990c_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #947971, FileId: 0x117f0000000535e6, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T19:46:34.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T19:56:19.100 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54360, Count: 6802, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2018\05\05\in-perioada-9-si-13-mai-se-desfasoara-la-tirgu-mures-festivalul-international-studentesc-de-jazz-youth-jazz-competition-festival-2\328dac102a73b26f2fb894e1885c184c.html, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8355, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.E555X3, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 225, Count: 47, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_1.MAI, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b92aee29-c5ab-449d-b0a0-66461138aefe.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\815bb5a5-e68a-47a3-b8c4-855a0f044874.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e6de4bee-14d4-4e6f-b07e-2db45e2f7598.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f3befd4-558e-49fe-9628-f7569e00f142.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 5748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\af648a1f-2202-4b70-a908-18c9aa9ae6b8.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 6424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\85ec8d84-a455-4033-b2c9-04debbe928db.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee087dc8-6ff9-47b6-9cf1-681849795e65.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d11c8e7f-3b9e-45da-b03a-0393393e4068.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 4180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f78a932f-06fd-4abd-9a1d-267acc9b471d.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1d8d82e-109e-4db4-910c-cc431dd68abd.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 3416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca4fecb5-da44-401b-8b1c-566e157c270b.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 3416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f326d923-36ec-4ec2-a2a9-6b9d5eb9a5ae.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 3272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cd60289-305a-48e3-8814-06010390c38e.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 5124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4727d8c6-742c-4044-ba17-f2104cc27096.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 3044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\df2b7b7d-4615-41c8-984c-2db0c5420aac.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ad98ed-baef-4d95-9222-9ef0c5b96c1c.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 2572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d20439f-88c0-455e-ac3c-5a92014efd4e.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 7284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\46907443-fa97-46bd-a48a-7638e7588caa.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a976418f-32e5-4f93-a031-8bd543bb90e5.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 7532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175a51f3-b0c3-451e-9915-0349743c254d.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b30c8eca-ed19-41bc-a0d0-28716603ca18.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e500fbf-ae8c-4537-bfd3-67c358e43ed4.tmp, EstimatedImpact: 0% 2026-04-24T19:56:19.100 ProcessImageName: updater.exe, Pid: 180, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-24T20:01:39.333 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T20:16:44.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T20:31:49.323 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T20:46:54.330 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T21:01:59.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T21:10:35.135 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #952764, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T21:17:04.333 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T21:32:09.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T21:47:14.322 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T21:51:36.086 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82990d_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #955109, FileId: 0x4d3f00000004c485, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T21:51:37.580 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82990d_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #955140, FileId: 0x4d4900000004c485, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T21:51:37.861 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82990d_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #955170, FileId: 0x4d5300000004c485, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T21:54:07.239 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829910_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #955400, FileId: 0x147d00000004c56b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T21:54:08.728 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829910_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #955430, FileId: 0x148700000004c56b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T21:54:09.009 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829910_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #955460, FileId: 0x149100000004c56b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T21:56:19.110 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 58081, Count: 7154, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9315, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.E555X3, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 330, Count: 183, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_1.MAI, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\815bb5a5-e68a-47a3-b8c4-855a0f044874.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b92aee29-c5ab-449d-b0a0-66461138aefe.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f3befd4-558e-49fe-9628-f7569e00f142.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e6de4bee-14d4-4e6f-b07e-2db45e2f7598.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 2572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d20439f-88c0-455e-ac3c-5a92014efd4e.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 7284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\46907443-fa97-46bd-a48a-7638e7588caa.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d11c8e7f-3b9e-45da-b03a-0393393e4068.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 5124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4727d8c6-742c-4044-ba17-f2104cc27096.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 6424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\85ec8d84-a455-4033-b2c9-04debbe928db.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 4180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f78a932f-06fd-4abd-9a1d-267acc9b471d.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1d8d82e-109e-4db4-910c-cc431dd68abd.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 3416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca4fecb5-da44-401b-8b1c-566e157c270b.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 3416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f326d923-36ec-4ec2-a2a9-6b9d5eb9a5ae.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 3272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cd60289-305a-48e3-8814-06010390c38e.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 5748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\af648a1f-2202-4b70-a908-18c9aa9ae6b8.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 3044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\df2b7b7d-4615-41c8-984c-2db0c5420aac.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee087dc8-6ff9-47b6-9cf1-681849795e65.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 7872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9be751c-8849-440a-b5e8-2b4e0fc42164.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ad98ed-baef-4d95-9222-9ef0c5b96c1c.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a976418f-32e5-4f93-a031-8bd543bb90e5.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\17145779-2acb-4f2e-bd6c-f8296f8a2819.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 7532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175a51f3-b0c3-451e-9915-0349743c254d.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b30c8eca-ed19-41bc-a0d0-28716603ca18.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e500fbf-ae8c-4537-bfd3-67c358e43ed4.tmp, EstimatedImpact: 0% 2026-04-24T21:56:19.110 ProcessImageName: updater.exe, Pid: 180, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-24T22:02:19.334 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T22:17:24.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T22:32:29.320 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T22:47:34.333 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T23:02:39.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T23:10:35.611 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #959710, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T23:17:44.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T23:31:35.643 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #960899, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-24T23:32:49.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-24T23:47:54.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpFC_NISDrv_Cleanup new=0 old1 2026-04-24T23:48:24.603 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-24T23:48:24.603 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-24T23:48:24.603 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-24T23:48:24.603 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-24T23:48:24.603 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-24T23:48:24.618 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-24T23:48:24.618 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-24T23:48:24.618 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-24T23:48:24.618 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-24T23:48:24.618 MdCoreSvc is supported in this platform and OS 2026-04-24T23:48:25.118 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-24T23:48:25.118 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-24T23:48:25.118 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-24T23:55:24.327 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-24T23:55:24.343 Job Notification: New process added to job (5508) 2026-04-24T23:55:24.358 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-24T23:55:24.358 Aggressive catchup quick scan threshold: 788106260526 / 25920000000000 2026-04-24T23:55:24.358 Job Notification: New process added to job (6672) 2026-04-24T23:55:24.358 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:5508] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6672]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-24T23:55:24.405 Job Notification: New process added to job (6220) 2026-04-24T23:55:24.421 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-24T23:55:24.436 Job Notification: New process added to job (8080) 2026-04-24T23:55:24.452 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6220] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:8080]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-24T23:55:24.593 Job Notification: New process added to job (892) 2026-04-24T23:55:24.609 Task(GetDeviceTicket -AccessKey 11A7C88C-F47D-81E5-11A3-448B577683FA ) launched as network service 2026-04-24T23:55:24.874 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-24T23:55:24.905 [RTP] Duplicating the current plugin configuration object... 2026-04-24T23:55:24.905 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-24T23:55:24.905 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-24T23:55:24.905 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-24T23:55:24.905 [RTP] No config change detected. Not updating plugin configuration. 2026-04-24T23:55:24.905 [RTP] No config changes found. No configuration switch. 2026-04-24T23:55:24.905 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-24T23:55:25.689 Job Notification: Process exited from job (892) 2026-04-24T23:55:26.785 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-24T23:55:26.785 [Cloud] Start of cloud request. Passive mode: 0 2026-04-24T23:55:26.785 [Cloud] Queued cloud request. 2026-04-24T23:55:26.785 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-24T23:55:26.785 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-24T23:55:26.785 [Cloud] Dequeued cloud request. 2026-04-24T23:55:26.785 [Cloud] Start of cloud request. Passive mode: 0 2026-04-24T23:55:26.785 [Cloud] Queued cloud request. 2026-04-24T23:55:26.785 [Cloud] Dequeued cloud request. 2026-04-24T23:55:26.785 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-24T23:55:26.785 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-24T23:55:27.082 [Cloud] End of cloud request. 2026-04-24T23:55:27.098 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-24T23:55:27.098 [Cloud] End of cloud request. 2026-04-24T23:55:27.285 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-24T23:55:38.518 Job Notification: Process exited from job (3168) 2026-04-24T23:56:19.125 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 58096, Count: 7155, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 10005, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.E555X3, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 330, Count: 183, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_1.MAI, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b92aee29-c5ab-449d-b0a0-66461138aefe.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\815bb5a5-e68a-47a3-b8c4-855a0f044874.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\31b18431-124d-4c98-a84d-538840e1d04b.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e6de4bee-14d4-4e6f-b07e-2db45e2f7598.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f3befd4-558e-49fe-9628-f7569e00f142.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 7284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\46907443-fa97-46bd-a48a-7638e7588caa.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 7872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9be751c-8849-440a-b5e8-2b4e0fc42164.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 6424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\85ec8d84-a455-4033-b2c9-04debbe928db.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee087dc8-6ff9-47b6-9cf1-681849795e65.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 5748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\af648a1f-2202-4b70-a908-18c9aa9ae6b8.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 5124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4727d8c6-742c-4044-ba17-f2104cc27096.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 4180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f78a932f-06fd-4abd-9a1d-267acc9b471d.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1d8d82e-109e-4db4-910c-cc431dd68abd.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 3416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca4fecb5-da44-401b-8b1c-566e157c270b.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 3416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f326d923-36ec-4ec2-a2a9-6b9d5eb9a5ae.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 3272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cd60289-305a-48e3-8814-06010390c38e.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a976418f-32e5-4f93-a031-8bd543bb90e5.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 3044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\df2b7b7d-4615-41c8-984c-2db0c5420aac.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ad98ed-baef-4d95-9222-9ef0c5b96c1c.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 2572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d20439f-88c0-455e-ac3c-5a92014efd4e.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\17145779-2acb-4f2e-bd6c-f8296f8a2819.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 7356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2e148708-b5b7-43f3-a713-31a504222181.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d11c8e7f-3b9e-45da-b03a-0393393e4068.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 7532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175a51f3-b0c3-451e-9915-0349743c254d.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b30c8eca-ed19-41bc-a0d0-28716603ca18.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e500fbf-ae8c-4537-bfd3-67c358e43ed4.tmp, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 980, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-24T23:56:19.125 ProcessImageName: updater.exe, Pid: 180, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-24T23:56:23.156 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\2F1D1482-44B4-4781-99F1-E2DBCF13D89418b8.1dcd445f3591fb6 2026-04-24T23:56:23.219 Verifying engine and signature files (source: 0) ... 2026-04-24T23:56:23.219 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A93BF1A-ADF0-4060-8163-85A28EB48EC0}\mpengine.dll] due to PPL. 2026-04-24T23:56:23.219 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A93BF1A-ADF0-4060-8163-85A28EB48EC0}\mpasbase.vdm] (file in cache) 2026-04-24T23:56:23.219 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A93BF1A-ADF0-4060-8163-85A28EB48EC0}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-24T23:56:23.234 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A93BF1A-ADF0-4060-8163-85A28EB48EC0}\mpasdlta.vdm] 2026-04-24T23:56:23.234 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A93BF1A-ADF0-4060-8163-85A28EB48EC0}\mpavbase.vdm] (file in cache) 2026-04-24T23:56:23.234 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A93BF1A-ADF0-4060-8163-85A28EB48EC0}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-24T23:56:23.250 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A93BF1A-ADF0-4060-8163-85A28EB48EC0}\mpavdlta.vdm] 2026-04-24T23:56:23.438 [Engine] IsHybridMode: 0 2026-04-24T23:56:23.438 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-24T23:56:23.500 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-B26680CD2A06D9879346C3B90FAAFCD012A0E43A.bin): 0x00000002 2026-04-24T23:56:23.500 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-B26680CD2A06D9879346C3B90FAAFCD012A0E43A.bin) 2026-04-24T23:56:23.500 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-24T23:56:23.500 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-24T23:56:23.500 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-24T23:56:23.500 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-24T23:56:32.746 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-24T23:56:32.746 [AutoExclusion] Applied roles from cache. 2026-04-24T23:56:32.746 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpFC_NISDrv_Cleanup new=0 old1 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-04-24T23:56:32.762 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D908020, lRefCount: 5, hr=0 2026-04-24T23:56:32.762 [Engine] New active engine 00007FFD0EA68020 replacing engine 00007FFD0D908020. Number of active engines: 2 2026-04-24T23:56:32.762 EngineInit:Global ASOC is enabled 2026-04-24T23:56:32.762 EngineInit:ASOO is enabled for developer volumes 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-24T23:56:32.793 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-24T23:56:32.809 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-24T23:56:32.824 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-24T23:56:32.824 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-24T23:56:32.824 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)! 2026-04-24T23:56:32.824 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValiditApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-24T23:56:32.824 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-24T23:56:32.824 [Plugin] Initializing RTP plugin state... 2026-04-24T23:56:32.824 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-24T23:56:32.824 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎24‎-‎2026 01:56:19 Last Perf:‎04‎-‎24‎-‎2026 01:56:19 First RTP Scan:‎04‎-‎24‎-‎2026 01:56:20 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:400 Misses:2277 BM Queue:0,42,0 Proc:0,41,0 File:0,40,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:962349 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1044314518 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2914 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:97706 TotalHits:351232 InstanceCacheInserts:485993 InstanceCacheUpdates:0 InstanceCacheDeletes:82247 InstanceCacheHits:2342 InstanceCacheMisses:545501 InstanceCacheOverflows:393212 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (341/273) Success: 273, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-24T23:56:32.824 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A93BF1A-ADF0-4060-8163-85A28EB48EC0} 2026-04-24T23:56:32.824 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-24T23:56:32.824 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{59D8A2B8-28DD-499A-8BCB-FBEC84ED90C3} removed 2026-04-24T23:56:32.824 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E5C17138-1821-4DAE-B619-05ACE32B8C02}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E5C17138-1821-4DAE-B619-05ACE32B8C02}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-24T23:56:32.824 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-24T23:56:32.824 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-24T23:56:32.824 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-24T23:56:32.824 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-24T23:56:32.824 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-24-2026 23:56:32 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-24-2026 23:56:32 2026-04-24T23:56:32.824 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-24T23:56:32.824 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-24T23:56:32.840 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-24T23:56:32.840 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-24T23:56:32.840 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-24T23:56:32.840 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-24T23:56:32.840 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-24T23:56:32.840 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-24T23:56:32.840 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-24T23:56:32.840 MdCoreSvc is supported in this platform and OS Signature updated on 04-24-2026 23:56:32 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.281.0 AV Signature Version: 1.449.281.0 ************************************************************ 2026-04-24T23:56:32.840 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-24T23:56:32.840 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\2F1D1482-44B4-4781-99F1-E2DBCF13D89418b8.1dcd445f3591fb6 2026-04-24T23:56:32.856 Process scan (postsignatureupdatescan) started. Signature updated via MicrosoftUpdateServer on 04-24-2026 23:56:32 ************************************************************ 2026-04-24T23:56:32.902 Job Notification: Process exited from job (6220) 2026-04-24T23:56:32.902 Job Notification: Process exited from job (8080) 2026-04-24T23:56:32.902 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-24T23:56:32.902 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-04-24T23:56:32.918 Job Notification: Process exited from job (5508) 2026-04-24T23:56:32.918 Job Notification: Process exited from job (6672) 2026-04-24T23:56:33.106 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-24T23:56:33.106 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-24T23:56:33.106 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-24T23:56:33.106 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-24T23:56:33.106 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-24T23:56:33.106 [Engine] Engine 00007FFD0D908020 no longer in use. Number of active engines: 1 2026-04-24T23:56:33.106 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-24T23:56:33.106 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-24T23:56:33.340 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-24T23:56:33.340 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-24T23:56:33.340 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-24T23:56:33.934 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 58096, Count: 7155, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-24T23:56:33.934 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 10005, Count: 77688, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.E555X3, EstimatedImpact: 0% 2026-04-24T23:56:33.934 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 330, Count: 183, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829858_1.MAI, EstimatedImpact: 0% 2026-04-24T23:56:33.934 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-24T23:56:33.934 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\815bb5a5-e68a-47a3-b8c4-855a0f044874.tmp, EstimatedImpact: 0% 2026-04-24T23:56:33.934 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\31b18431-124d-4c98-a84d-538840e1d04b.tmp, EstimatedImpact: 0% 2026-04-24T23:56:33.934 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b92aee29-c5ab-449d-b0a0-66461138aefe.tmp, EstimatedImpact: 0% 2026-04-24T23:56:33.934 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e6de4bee-14d4-4e6f-b07e-2db45e2f7598.tmp, EstimatedImpact: 0% 2026-04-24T23:56:33.934 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-24T23:56:33.934 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f3befd4-558e-49fe-9628-f7569e00f142.tmp, EstimatedImpact: 0% 2026-04-24T23:56:33.934 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-24T23:56:33.934 ProcessImageName: updater.exe, Pid: 7532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\175a51f3-b0c3-451e-9915-0349743c254d.tmp, EstimatedImpact: 0% 2026-04-24T23:56:33.934 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d11c8e7f-3b9e-45da-b03a-0393393e4068.tmp, EstimatedImpact: 0% 2026-04-24T23:56:33.981 [Engine] RSIG_UNLOADENGINE, 00007FFD0D908020, err=0x0 2026-04-24T23:56:33.996 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E5C17138-1821-4DAE-B619-05ACE32B8C02} removed 2026-04-24T23:56:38.652 Process scan (postsignatureupdatescan) completed. 2026-04-25T00:01:32.787 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-25T00:02:59.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T00:10:26.575 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #963167, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T00:10:26.591 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #963169, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T00:10:36.592 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #963183, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T00:10:36.608 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #963185, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T00:18:04.330 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T00:33:09.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T00:48:14.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T01:00:46.914 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #967125, FileId: 0x36ce000000005744, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T01:00:58.649 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #967612, FileId: 0x23f300000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T01:00:58.664 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #967615, FileId: 0x23f400000004c456, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T01:03:19.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T01:10:26.745 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #968135, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T01:10:26.745 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #968137, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T01:10:36.753 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #968156, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T01:10:36.769 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #968159, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T01:18:24.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T01:33:29.322 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T01:48:34.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T01:56:32.768 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45465, Count: 6212, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 1% 2026-04-25T01:56:32.768 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 810, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.OOU4X3, EstimatedImpact: 0% 2026-04-25T01:56:32.768 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_1.MAI, EstimatedImpact: 0% 2026-04-25T01:56:32.768 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf4650b2-38d4-4bf0-89f6-9e3b80445ee2.tmp, EstimatedImpact: 0% 2026-04-25T01:56:32.768 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T02:01:53.741 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:21912334-DE7E-42E9-AEDF-BF2EE8DAE5E2, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-25T02:01:53.741 Scheduled scan with Id 21912334-DE7E-42E9-AEDF-BF2EE8DAE5E2 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-25T02:01:53.741 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-25T02:01:53.741 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-25T02:01:53.741 [SFC] System file cache build is not needed (already completed) 2026-04-25T02:02:03.668 Engine:Triggered AR EMS scan 2026-04-25T02:02:03.668 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.683 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.699 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.730 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.761 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.777 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.793 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.824 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.839 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.871 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.886 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.902 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.933 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.949 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.980 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:03.996 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:04.011 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:04.074 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:04.105 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:04.121 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:04.152 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:04.199 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-25T02:02:04.214 Bm signature throttled:0x00002db31bed458f 2026-04-25T02:02:17.215 QuickScan:ScanID:21912334-DE7E-42E9-AEDF-BF2EE8DAE5E2: Quick scan finished with error 0 2026-04-25T02:02:17.230 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-25T02:02:17.737 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-25T02:02:17.737 [RTP] Duplicating the current plugin configuration object... 2026-04-25T02:02:17.737 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-25T02:02:17.737 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-25T02:02:17.737 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-25T02:02:17.737 [RTP] No config change detected. Not updating plugin configuration. 2026-04-25T02:02:17.737 [RTP] No config changes found. No configuration switch. 2026-04-25T02:02:17.737 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-25T02:03:39.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T02:10:24.377 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #971738, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T02:10:24.393 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #971740, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T02:10:34.381 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #971753, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T02:10:34.397 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #971755, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T02:10:34.397 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #971757, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T02:10:34.397 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #971759, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T02:18:44.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T02:33:49.327 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T02:48:54.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T03:03:59.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T03:10:26.262 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #975058, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T03:10:26.262 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #975060, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T03:10:36.271 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #975072, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T03:10:36.271 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #975074, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T03:10:36.286 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #975077, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T03:10:36.286 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #975078, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T03:19:04.330 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T03:34:09.322 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T03:49:14.330 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T03:56:32.771 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45465, Count: 6212, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 1% 2026-04-25T03:56:32.771 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1575, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.OOU4X3, EstimatedImpact: 0% 2026-04-25T03:56:32.771 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_1.MAI, EstimatedImpact: 0% 2026-04-25T03:56:32.771 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf4650b2-38d4-4bf0-89f6-9e3b80445ee2.tmp, EstimatedImpact: 0% 2026-04-25T03:56:32.771 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbcf762a-57c3-4a4e-a0f1-703aaaab5b2e.tmp, EstimatedImpact: 0% 2026-04-25T03:56:32.771 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40bf521c-8f17-4c24-8346-5b359ceaab08.tmp, EstimatedImpact: 0% 2026-04-25T03:56:32.771 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T04:04:19.320 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T04:10:26.364 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #978393, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T04:10:26.364 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #978395, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T04:10:36.353 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #978408, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T04:10:36.353 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #978410, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T04:10:36.525 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #978414, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T04:10:36.525 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #978416, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T04:19:24.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T04:31:25.722 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #979566, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T04:31:25.722 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #979568, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T04:31:28.474 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #979578, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T04:31:28.489 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #979581, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T04:31:28.489 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #979583, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T04:31:38.499 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #979597, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T04:31:38.499 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #979600, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T04:34:29.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T04:49:34.330 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T05:04:39.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T05:10:26.720 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #981749, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T05:10:26.735 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #981751, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T05:10:36.736 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #981764, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T05:10:36.752 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #981766, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T05:19:12.257 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829927_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #982244, FileId: 0x2190000000008182, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T05:19:12.867 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829927_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #982248, FileId: 0x2191000000008182, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T05:19:44.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T05:34:49.320 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T05:49:54.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T05:51:16.948 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829928_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #984027, FileId: 0x1cb8000000040edb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T05:51:17.464 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829928_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #984031, FileId: 0x1cb9000000040edb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T05:56:32.774 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47245, Count: 6339, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-25T05:56:32.774 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2295, Count: 19413, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.OOU4X3, EstimatedImpact: 0% 2026-04-25T05:56:32.774 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_1.MAI, EstimatedImpact: 0% 2026-04-25T05:56:32.774 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26d7489a-5e73-41a2-9b94-f114a1a99aaf.tmp, EstimatedImpact: 0% 2026-04-25T05:56:32.774 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf4650b2-38d4-4bf0-89f6-9e3b80445ee2.tmp, EstimatedImpact: 0% 2026-04-25T05:56:32.774 ProcessImageName: updater.exe, Pid: 7992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6d70774-cfc5-4c55-acd9-53e066d2efd1.tmp, EstimatedImpact: 0% 2026-04-25T05:56:32.774 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbcf762a-57c3-4a4e-a0f1-703aaaab5b2e.tmp, EstimatedImpact: 0% 2026-04-25T05:56:32.774 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40bf521c-8f17-4c24-8346-5b359ceaab08.tmp, EstimatedImpact: 0% 2026-04-25T05:56:32.774 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T05:56:32.774 ProcessImageName: updater.exe, Pid: 3168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T06:04:59.323 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T06:10:25.441 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #985121, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T06:10:25.457 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #985123, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T06:10:35.464 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #985136, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T06:10:35.464 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #985139, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T06:20:04.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T06:35:09.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T06:50:14.320 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T07:05:19.332 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T07:10:24.535 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #988592, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T07:10:24.551 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #988594, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T07:10:34.568 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #988624, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T07:10:34.570 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #988627, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T07:10:34.570 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #988626, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T07:20:24.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T07:35:29.321 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T07:50:34.320 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T07:56:32.779 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47260, Count: 6340, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-25T07:56:32.779 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3300, Count: 25884, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.OOU4X3, EstimatedImpact: 0% 2026-04-25T07:56:32.779 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-25T07:56:32.779 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_1.MAI, EstimatedImpact: 0% 2026-04-25T07:56:32.779 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26d7489a-5e73-41a2-9b94-f114a1a99aaf.tmp, EstimatedImpact: 0% 2026-04-25T07:56:32.779 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-25T07:56:32.779 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf4650b2-38d4-4bf0-89f6-9e3b80445ee2.tmp, EstimatedImpact: 0% 2026-04-25T07:56:32.779 ProcessImageName: updater.exe, Pid: 7992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6d70774-cfc5-4c55-acd9-53e066d2efd1.tmp, EstimatedImpact: 0% 2026-04-25T07:56:32.779 ProcessImageName: updater.exe, Pid: 7336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a4ef9e-740c-4876-b82d-20e4deda048c.tmp, EstimatedImpact: 0% 2026-04-25T07:56:32.779 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40bf521c-8f17-4c24-8346-5b359ceaab08.tmp, EstimatedImpact: 0% 2026-04-25T07:56:32.779 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbcf762a-57c3-4a4e-a0f1-703aaaab5b2e.tmp, EstimatedImpact: 0% 2026-04-25T07:56:32.779 ProcessImageName: updater.exe, Pid: 1436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32a70170-6bcc-46c1-8010-3aae04850360.tmp, EstimatedImpact: 0% 2026-04-25T07:56:32.779 ProcessImageName: updater.exe, Pid: 3168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T07:56:32.779 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T08:05:39.322 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T08:10:25.726 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #991928, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:10:25.726 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #991930, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:10:35.741 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #991943, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:10:35.741 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #991946, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:11.815 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829929_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992316, FileId: 0xc990000000534d0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:27.981 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992a_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992340, FileId: 0x8d200000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:33.410 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992393, FileId: 0x8d700000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:33.894 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992404, FileId: 0x8d800000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:33.925 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992407, FileId: 0x8d900000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:34.019 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992411, FileId: 0x8da00000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:34.082 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992417, FileId: 0x8dc00000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:34.113 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992420, FileId: 0x8dd00000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:34.160 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992423, FileId: 0x8de00000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:34.207 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992426, FileId: 0x8df00000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:34.238 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992429, FileId: 0x8e000000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:34.269 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992432, FileId: 0x8e100000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:34.746 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992439, FileId: 0x8e300000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:35.168 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992442, FileId: 0x8e400000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:35.668 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992451, FileId: 0x8e700000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:35.731 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992460, FileId: 0x8ea00000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:35.777 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992466, FileId: 0x8ec00000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:35.824 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992469, FileId: 0x8ed00000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:35.856 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992472, FileId: 0x8ee00000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:35.981 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992484, FileId: 0x8f200000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:17:36.418 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992b_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #992500, FileId: 0x8f400000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T08:20:44.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T08:35:49.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T08:50:54.320 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T09:05:59.328 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T09:10:26.292 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #995467, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:10:26.307 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #995469, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:10:36.307 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #995482, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:10:36.307 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #995484, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:10:36.463 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #995488, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:10:36.463 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #995490, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:21:04.322 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T09:31:28.572 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #996650, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:31:28.588 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #996652, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:31:34.015 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #996671, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:31:34.030 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #996674, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:31:34.030 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #996676, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:31:44.029 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #996690, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:31:44.060 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #996693, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:36:09.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T09:39:02.856 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #997099, FileId: 0x221000000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:39:03.481 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992e_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #997103, FileId: 0x221100000002c245, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T09:51:14.327 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T09:56:32.781 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54698, Count: 6887, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4140, Count: 32355, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.OOU4X3, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 255, Count: 94, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_1.MAI, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26d7489a-5e73-41a2-9b94-f114a1a99aaf.tmp, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\79c4a77e-65ca-4e56-baa5-decbb2b4aef4.tmp, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf4650b2-38d4-4bf0-89f6-9e3b80445ee2.tmp, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: updater.exe, Pid: 7992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6d70774-cfc5-4c55-acd9-53e066d2efd1.tmp, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: updater.exe, Pid: 7336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a4ef9e-740c-4876-b82d-20e4deda048c.tmp, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\362b5bdc-7fc5-4dbe-9128-d2758d75982a.tmp, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbcf762a-57c3-4a4e-a0f1-703aaaab5b2e.tmp, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40bf521c-8f17-4c24-8346-5b359ceaab08.tmp, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26c10187-86d0-47de-abd1-7456d4b75565.tmp, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: updater.exe, Pid: 1436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32a70170-6bcc-46c1-8010-3aae04850360.tmp, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T09:56:32.781 ProcessImageName: updater.exe, Pid: 3168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T10:06:19.316 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T10:09:43.709 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992f_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #998788, FileId: 0x3d0100000004c446, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T10:09:44.521 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992f_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #998792, FileId: 0x3d0300000004c446, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T10:09:44.568 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992f_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #998795, FileId: 0x3d0400000004c446, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T10:09:44.662 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992f_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #998798, FileId: 0x3d0500000004c446, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T10:09:44.678 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992f_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #998801, FileId: 0x3d0600000004c446, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T10:09:44.740 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992f_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #998807, FileId: 0x3d0800000004c446, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T10:09:44.865 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992f_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #998819, FileId: 0x3d0c00000004c446, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T10:09:46.931 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82992f_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #998890, FileId: 0x3b22000000035706, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T10:21:24.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T10:36:29.322 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T10:51:34.320 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T11:06:39.321 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T11:10:36.583 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1002272, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T11:21:44.316 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T11:36:49.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T11:51:54.321 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T11:56:32.785 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54866, Count: 6906, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4995, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.OOU4X3, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 405, Count: 179, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_1.MAI, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26d7489a-5e73-41a2-9b94-f114a1a99aaf.tmp, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\79c4a77e-65ca-4e56-baa5-decbb2b4aef4.tmp, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf4650b2-38d4-4bf0-89f6-9e3b80445ee2.tmp, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40bf521c-8f17-4c24-8346-5b359ceaab08.tmp, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: updater.exe, Pid: 7992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6d70774-cfc5-4c55-acd9-53e066d2efd1.tmp, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: updater.exe, Pid: 7336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a4ef9e-740c-4876-b82d-20e4deda048c.tmp, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\362b5bdc-7fc5-4dbe-9128-d2758d75982a.tmp, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbcf762a-57c3-4a4e-a0f1-703aaaab5b2e.tmp, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: updater.exe, Pid: 7520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7be48036-722c-4634-9e72-23f71e7b56c2.tmp, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26c10187-86d0-47de-abd1-7456d4b75565.tmp, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: updater.exe, Pid: 1436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32a70170-6bcc-46c1-8010-3aae04850360.tmp, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T11:56:32.785 ProcessImageName: updater.exe, Pid: 3168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T12:06:59.323 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T12:22:04.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T12:37:09.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T12:52:14.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T13:07:19.323 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T13:22:24.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T13:37:29.329 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T13:52:34.315 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T13:56:32.790 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54866, Count: 6907, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5775, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.OOU4X3, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 435, Count: 184, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_1.MAI, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26d7489a-5e73-41a2-9b94-f114a1a99aaf.tmp, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\79c4a77e-65ca-4e56-baa5-decbb2b4aef4.tmp, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf4650b2-38d4-4bf0-89f6-9e3b80445ee2.tmp, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8aaeb02b-2b66-483a-8ff0-07d46febda9e.tmp, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 7992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6d70774-cfc5-4c55-acd9-53e066d2efd1.tmp, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52db704d-1db5-4588-afff-a7848f82c9f2.tmp, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 7336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a4ef9e-740c-4876-b82d-20e4deda048c.tmp, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 1436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32a70170-6bcc-46c1-8010-3aae04850360.tmp, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\362b5bdc-7fc5-4dbe-9128-d2758d75982a.tmp, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26c10187-86d0-47de-abd1-7456d4b75565.tmp, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbcf762a-57c3-4a4e-a0f1-703aaaab5b2e.tmp, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40bf521c-8f17-4c24-8346-5b359ceaab08.tmp, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 7520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7be48036-722c-4634-9e72-23f71e7b56c2.tmp, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T13:56:32.790 ProcessImageName: updater.exe, Pid: 3168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T14:07:39.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T14:10:26.980 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1012225, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T14:18:55.814 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829935_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1012728, FileId: 0x34de00000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T14:18:57.749 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829935_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1012797, FileId: 0x34f500000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T14:22:44.321 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T14:31:48.287 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1013548, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T14:37:49.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T14:52:54.316 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T15:07:59.327 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T15:23:04.315 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T15:38:09.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T15:53:14.315 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T15:56:32.800 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54866, Count: 6909, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6585, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.OOU4X3, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 600, Count: 270, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_1.MAI, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\79c4a77e-65ca-4e56-baa5-decbb2b4aef4.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6daa69ba-0df0-40c3-8671-b403429c5a65.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26d7489a-5e73-41a2-9b94-f114a1a99aaf.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf4650b2-38d4-4bf0-89f6-9e3b80445ee2.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 7520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7be48036-722c-4634-9e72-23f71e7b56c2.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8aaeb02b-2b66-483a-8ff0-07d46febda9e.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 5700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09cb7a4e-c78d-4147-9e7f-1aedaa8796b7.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 7336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a4ef9e-740c-4876-b82d-20e4deda048c.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 7992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6d70774-cfc5-4c55-acd9-53e066d2efd1.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26c10187-86d0-47de-abd1-7456d4b75565.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52db704d-1db5-4588-afff-a7848f82c9f2.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\362b5bdc-7fc5-4dbe-9128-d2758d75982a.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15d0924a-17a4-40c8-b9b2-30adccee6f0d.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 1436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32a70170-6bcc-46c1-8010-3aae04850360.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbcf762a-57c3-4a4e-a0f1-703aaaab5b2e.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40bf521c-8f17-4c24-8346-5b359ceaab08.tmp, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T15:56:32.800 ProcessImageName: updater.exe, Pid: 3168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T16:08:19.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T16:23:24.315 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T16:38:29.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T16:53:34.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T17:08:39.329 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T17:10:24.832 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1022324, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T17:23:44.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T17:38:49.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T17:53:54.327 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T17:56:32.810 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54866, Count: 6909, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7575, Count: 58248, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.OOU4X3, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 600, Count: 270, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_1.MAI, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6daa69ba-0df0-40c3-8671-b403429c5a65.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26d7489a-5e73-41a2-9b94-f114a1a99aaf.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\79c4a77e-65ca-4e56-baa5-decbb2b4aef4.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf4650b2-38d4-4bf0-89f6-9e3b80445ee2.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed5cec78-2d1f-43be-a813-f7714d02c4db.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbcf762a-57c3-4a4e-a0f1-703aaaab5b2e.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52db704d-1db5-4588-afff-a7848f82c9f2.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e807acff-676f-4b6e-8875-ede0fd5b3810.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 5700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09cb7a4e-c78d-4147-9e7f-1aedaa8796b7.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26c10187-86d0-47de-abd1-7456d4b75565.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 7992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6d70774-cfc5-4c55-acd9-53e066d2efd1.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 7336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a4ef9e-740c-4876-b82d-20e4deda048c.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 1436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32a70170-6bcc-46c1-8010-3aae04850360.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 7520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7be48036-722c-4634-9e72-23f71e7b56c2.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8aaeb02b-2b66-483a-8ff0-07d46febda9e.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15d0924a-17a4-40c8-b9b2-30adccee6f0d.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\362b5bdc-7fc5-4dbe-9128-d2758d75982a.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40bf521c-8f17-4c24-8346-5b359ceaab08.tmp, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 3168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T17:56:32.810 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T18:08:59.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T18:24:04.327 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T18:39:09.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T18:54:14.322 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T19:09:19.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T19:10:24.947 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1028966, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T19:24:24.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T19:31:41.876 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1030167, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T19:39:29.314 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T19:54:34.320 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T19:56:32.813 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 56240, Count: 6996, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8400, Count: 64719, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.OOU4X3, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 600, Count: 270, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_1.MAI, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6daa69ba-0df0-40c3-8671-b403429c5a65.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26d7489a-5e73-41a2-9b94-f114a1a99aaf.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\79c4a77e-65ca-4e56-baa5-decbb2b4aef4.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72542058-b858-46c7-a5f5-127c6cb587da.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf4650b2-38d4-4bf0-89f6-9e3b80445ee2.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed5cec78-2d1f-43be-a813-f7714d02c4db.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52db704d-1db5-4588-afff-a7848f82c9f2.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26c10187-86d0-47de-abd1-7456d4b75565.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 7992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6d70774-cfc5-4c55-acd9-53e066d2efd1.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8aaeb02b-2b66-483a-8ff0-07d46febda9e.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbcf762a-57c3-4a4e-a0f1-703aaaab5b2e.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15d0924a-17a4-40c8-b9b2-30adccee6f0d.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 5700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09cb7a4e-c78d-4147-9e7f-1aedaa8796b7.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e807acff-676f-4b6e-8875-ede0fd5b3810.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40bf521c-8f17-4c24-8346-5b359ceaab08.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 7520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7be48036-722c-4634-9e72-23f71e7b56c2.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 1436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32a70170-6bcc-46c1-8010-3aae04850360.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 7336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a4ef9e-740c-4876-b82d-20e4deda048c.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 3204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3bd24c5-a1de-40d0-9c55-69eb383c3a25.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\362b5bdc-7fc5-4dbe-9128-d2758d75982a.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 6892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\639d380d-56c8-46d4-b59b-a86f63d8cf68.tmp, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T19:56:32.813 ProcessImageName: updater.exe, Pid: 3168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T20:09:39.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T20:24:44.323 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T20:39:49.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T20:54:54.314 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T21:09:59.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T21:10:35.673 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1035658, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T21:25:04.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T21:40:09.313 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T21:55:14.322 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T21:56:32.818 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 56240, Count: 6996, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9390, Count: 71190, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.OOU4X3, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 600, Count: 270, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_1.MAI, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26d7489a-5e73-41a2-9b94-f114a1a99aaf.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6daa69ba-0df0-40c3-8671-b403429c5a65.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72542058-b858-46c7-a5f5-127c6cb587da.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\79c4a77e-65ca-4e56-baa5-decbb2b4aef4.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf4650b2-38d4-4bf0-89f6-9e3b80445ee2.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52db704d-1db5-4588-afff-a7848f82c9f2.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15d0924a-17a4-40c8-b9b2-30adccee6f0d.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbcf762a-57c3-4a4e-a0f1-703aaaab5b2e.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed5cec78-2d1f-43be-a813-f7714d02c4db.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e807acff-676f-4b6e-8875-ede0fd5b3810.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff845ce6-9831-4ca1-ad0a-4588cfc8127c.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 5700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09cb7a4e-c78d-4147-9e7f-1aedaa8796b7.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26c10187-86d0-47de-abd1-7456d4b75565.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7379b03b-d539-4d47-b028-bb8e612bc61a.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 7520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7be48036-722c-4634-9e72-23f71e7b56c2.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 6892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\639d380d-56c8-46d4-b59b-a86f63d8cf68.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 6156, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40bf521c-8f17-4c24-8346-5b359ceaab08.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 3204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3bd24c5-a1de-40d0-9c55-69eb383c3a25.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8aaeb02b-2b66-483a-8ff0-07d46febda9e.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 7992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d6d70774-cfc5-4c55-acd9-53e066d2efd1.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 1436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32a70170-6bcc-46c1-8010-3aae04850360.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 7336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a4ef9e-740c-4876-b82d-20e4deda048c.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\362b5bdc-7fc5-4dbe-9128-d2758d75982a.tmp, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 3168, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T21:56:32.818 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-25T22:10:19.320 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T22:25:24.315 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T22:40:29.327 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T22:55:34.320 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T23:10:24.570 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1042274, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-25T23:10:39.321 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T23:25:44.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T23:40:49.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T23:55:24.320 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-25T23:55:24.336 Job Notification: New process added to job (6572) 2026-04-25T23:55:24.336 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-25T23:55:24.351 Aggressive catchup quick scan threshold: 788106101760 / 25920000000000 2026-04-25T23:55:24.351 Job Notification: New process added to job (6884) 2026-04-25T23:55:24.351 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6572] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6884]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-25T23:55:24.398 Job Notification: New process added to job (6192) 2026-04-25T23:55:24.414 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-25T23:55:24.414 Job Notification: New process added to job (7372) 2026-04-25T23:55:24.430 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6192] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7372]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-25T23:55:24.726 Task(GetDeviceTicket -AccessKey A83B356C-4E8E-90CA-44C2-BFF88CBC2A62 ) launched as network service 2026-04-25T23:55:24.726 Job Notification: New process added to job (6212) 2026-04-25T23:55:24.883 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-25T23:55:24.898 [RTP] Duplicating the current plugin configuration object... 2026-04-25T23:55:24.898 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-25T23:55:24.898 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-25T23:55:24.898 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-25T23:55:24.898 [RTP] No config change detected. Not updating plugin configuration. 2026-04-25T23:55:24.898 [RTP] No config changes found. No configuration switch. 2026-04-25T23:55:24.898 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-25T23:55:25.511 Job Notification: Process exited from job (6212) 2026-04-25T23:55:26.605 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-25T23:55:26.605 [Cloud] Start of cloud request. Passive mode: 0 2026-04-25T23:55:26.605 [Cloud] Queued cloud request. 2026-04-25T23:55:26.605 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-25T23:55:26.605 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-25T23:55:26.605 [Cloud] Start of cloud request. Passive mode: 0 2026-04-25T23:55:26.605 [Cloud] Queued cloud request. 2026-04-25T23:55:26.636 Job Notification: New process added to job (3944) 2026-04-25T23:55:26.636 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 697B9CBC-6B8F-1C3D-CA97-9AFAA19110C6) launched 2026-04-25T23:55:26.636 Job Notification: New process added to job (7616) 2026-04-25T23:55:26.652 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3944] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7616]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-25T23:55:26.652 Job Notification: New process added to job (3272) 2026-04-25T23:55:26.667 Job Notification: Process exited from job (3944) 2026-04-25T23:55:26.667 Job Notification: Process exited from job (7616) 2026-04-25T23:55:26.667 [Cloud] Dequeued cloud request. 2026-04-25T23:55:26.667 [Cloud] Dequeued cloud request. 2026-04-25T23:55:26.667 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-25T23:55:26.683 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-25T23:55:26.902 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-25T23:55:26.902 [Cloud] End of cloud request. 2026-04-25T23:55:26.917 [Cloud] End of cloud request. 2026-04-25T23:55:27.105 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-25T23:55:54.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-25T23:56:05.299 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\6019998F-CC19-4A1D-BE86-F9D8F1C8B9CE1bb0.1dcd50f1315f3ae 2026-04-25T23:56:05.361 Verifying engine and signature files (source: 0) ... 2026-04-25T23:56:05.361 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BF144C3B-76DC-4EB4-8561-5B395449BC36}\mpengine.dll] due to PPL. 2026-04-25T23:56:05.361 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BF144C3B-76DC-4EB4-8561-5B395449BC36}\mpasbase.vdm] (file in cache) 2026-04-25T23:56:05.361 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BF144C3B-76DC-4EB4-8561-5B395449BC36}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-25T23:56:05.377 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BF144C3B-76DC-4EB4-8561-5B395449BC36}\mpasdlta.vdm] 2026-04-25T23:56:05.377 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BF144C3B-76DC-4EB4-8561-5B395449BC36}\mpavbase.vdm] (file in cache) 2026-04-25T23:56:05.377 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BF144C3B-76DC-4EB4-8561-5B395449BC36}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-25T23:56:05.393 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BF144C3B-76DC-4EB4-8561-5B395449BC36}\mpavdlta.vdm] 2026-04-25T23:56:05.518 [Engine] IsHybridMode: 0 2026-04-25T23:56:05.518 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-25T23:56:05.518 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-D9A095EF8B4E137BE5F99A8953CDEA7561029FFB.bin): 0x00000002 2026-04-25T23:56:05.518 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-D9A095EF8B4E137BE5F99A8953CDEA7561029FFB.bin) 2026-04-25T23:56:05.518 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-25T23:56:05.518 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-25T23:56:05.518 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-25T23:56:05.518 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-25T23:56:14.522 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-25T23:56:14.537 [AutoExclusion] Applied roles from cache. 2026-04-25T23:56:14.537 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-04-25T23:56:14.537 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0EA68020, lRefCount: 5, hr=0 2026-04-25T23:56:14.537 [Engine] New active engine 00007FFD0D908020 replacing engine 00007FFD0EA68020. Number of active engines: 2 2026-04-25T23:56:14.553 EngineInit:Global ASOC is enabled 2026-04-25T23:56:14.553 EngineInit:ASOO is enabled for developer volumes 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-25T23:56:14.569 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-25T23:56:14.569 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-25T23:56:14.569 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-25T23:56:14.569 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-25T23:56:14.569 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-25T23:56:14.569 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-25T23:56:14.584 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-25T23:56:14.584 [Plugin] Initializing RTP plugin state... 2026-04-25T23:56:14.584 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-25T23:56:14.584 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎25‎-‎2026 01:56:33 Last Perf:‎04‎-‎25‎-‎2026 01:56:32 First RTP Scan:‎04‎-‎25‎-‎2026 01:56:35 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:400 Misses:2281 BM Queue:0,42,0 Proc:0,42,0 File:0,24,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1044874 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1134356182 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2937 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:101938 TotalHits:378958 InstanceCacheInserts:529618 InstanceCacheUpdates:0 InstanceCacheDeletes:90439 InstanceCacheHits:2406 InstanceCacheMisses:590037 InstanceCacheOverflows:428581 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (284/266) Success: 266, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-25T23:56:14.584 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BF144C3B-76DC-4EB4-8561-5B395449BC36} 2026-04-25T23:56:14.584 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-25T23:56:14.584 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{85FA91B5-6004-465F-821B-0F55308AADE4} removed 2026-04-25T23:56:14.584 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A93BF1A-ADF0-4060-8163-85A28EB48EC0}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A93BF1A-ADF0-4060-8163-85A28EB48EC0}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-25T23:56:14.584 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-25T23:56:14.584 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-25T23:56:14.584 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-25T23:56:14.584 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-25T23:56:14.584 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-25-2026 23:56:14 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-25-2026 23:56:14 2026-04-25T23:56:14.584 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-25T23:56:14.584 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-25T23:56:14.584 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-25T23:56:14.584 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-25T23:56:14.584 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-25T23:56:14.584 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-25T23:56:14.584 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-25T23:56:14.584 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-25T23:56:14.584 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-25T23:56:14.584 MdCoreSvc is supported in this platform and OS Signature updated on 04-25-2026 23:56:14 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.298.0 AV Signature Version: 1.449.298.0 ************************************************************ 2026-04-25T23:56:14.584 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-25T23:56:14.584 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\6019998F-CC19-4A1D-BE86-F9D8F1C8B9CE1bb0.1dcd50f1315f3ae 2026-04-25T23:56:14.600 Process scan (postsignatureupdatescan) started. 2026-04-25T23:56:14.647 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-25T23:56:14.647 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-04-25T23:56:14.819 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-25T23:56:14.819 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-25T23:56:14.819 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-25T23:56:14.819 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-25T23:56:14.819 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-25T23:56:14.834 [Engine] Engine 00007FFD0EA68020 no longer in use. Number of active engines: 1 2026-04-25T23:56:14.834 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-25T23:56:14.834 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). Signature updated via MicrosoftUpdateServer on 04-25-2026 23:56:14 ************************************************************ 2026-04-25T23:56:14.866 Job Notification: Process exited from job (6192) 2026-04-25T23:56:14.866 Job Notification: Process exited from job (7372) 2026-04-25T23:56:14.866 Job Notification: Process exited from job (6572) 2026-04-25T23:56:14.866 Job Notification: Process exited from job (6884) 2026-04-25T23:56:15.069 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-25T23:56:15.069 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-25T23:56:15.069 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-25T23:56:15.631 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 56270, Count: 6999, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-25T23:56:15.631 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 10426, Count: 77652, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.E0L7X3, EstimatedImpact: 0% 2026-04-25T23:56:15.631 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 600, Count: 270, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829922_1.MAI, EstimatedImpact: 0% 2026-04-25T23:56:15.631 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-25T23:56:15.631 ProcessImageName: updater.exe, Pid: 7696, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6daa69ba-0df0-40c3-8671-b403429c5a65.tmp, EstimatedImpact: 0% 2026-04-25T23:56:15.631 ProcessImageName: updater.exe, Pid: 7692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26d7489a-5e73-41a2-9b94-f114a1a99aaf.tmp, EstimatedImpact: 0% 2026-04-25T23:56:15.631 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72542058-b858-46c7-a5f5-127c6cb587da.tmp, EstimatedImpact: 0% 2026-04-25T23:56:15.631 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\79c4a77e-65ca-4e56-baa5-decbb2b4aef4.tmp, EstimatedImpact: 0% 2026-04-25T23:56:15.631 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1227cf79-ea8d-4224-84b8-0b301cacc384.tmp, EstimatedImpact: 0% 2026-04-25T23:56:15.631 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-25T23:56:15.631 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bf4650b2-38d4-4bf0-89f6-9e3b80445ee2.tmp, EstimatedImpact: 0% 2026-04-25T23:56:15.631 ProcessImageName: updater.exe, Pid: 7744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15d0924a-17a4-40c8-b9b2-30adccee6f0d.tmp, EstimatedImpact: 0% 2026-04-25T23:56:15.678 [Engine] RSIG_UNLOADENGINE, 00007FFD0EA68020, err=0x0 2026-04-25T23:56:15.694 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A93BF1A-ADF0-4060-8163-85A28EB48EC0} removed 2026-04-25T23:56:20.303 Process scan (postsignatureupdatescan) completed. 2026-04-26T00:01:14.565 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-26T00:10:26.295 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1045731, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T00:10:26.295 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1045733, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T00:10:36.304 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1045745, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T00:10:36.321 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1045747, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T00:10:36.460 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1045751, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T00:10:36.475 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1045753, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T00:10:59.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T00:26:04.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T00:31:41.949 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1046919, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T00:31:41.964 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1046921, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T00:31:47.254 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1046942, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T00:31:47.270 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1046945, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T00:31:47.270 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1046947, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T00:31:57.269 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1046961, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T00:31:57.284 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1046963, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T00:31:57.284 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1046966, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T00:41:09.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T00:56:14.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T01:10:24.817 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1049089, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T01:10:24.833 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1049091, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T01:10:34.825 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1049104, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T01:10:34.841 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1049107, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T01:11:19.323 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T01:26:24.313 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T01:41:29.323 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T01:56:14.541 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1035, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PSTPY3, EstimatedImpact: 0% 2026-04-26T01:56:14.541 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 61, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_BAD_REQUEST.html.var, EstimatedImpact: 8% 2026-04-26T01:56:14.541 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\067c19da-2bce-40cf-bcf4-4a5eda3257a3.tmp, EstimatedImpact: 0% 2026-04-26T01:56:14.541 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\edbdf487-9373-46b3-a817-72d3534fa466.tmp, EstimatedImpact: 0% 2026-04-26T01:56:14.541 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\500001df-4a3c-43b0-afc4-9e0e7b0b3710.tmp, EstimatedImpact: 0% 2026-04-26T01:56:34.320 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T02:01:53.750 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:5C63DDFC-E045-482A-9615-337E8DC6B367, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-26T02:01:53.750 Scheduled scan with Id 5C63DDFC-E045-482A-9615-337E8DC6B367 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-26T02:01:53.766 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-26T02:01:53.766 [SFC] System file cache build is not needed (already completed) 2026-04-26T02:01:53.766 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-26T02:02:03.283 Engine:Triggered AR EMS scan 2026-04-26T02:02:03.283 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.315 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.346 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.361 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.408 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.424 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.440 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.471 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.502 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.518 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.549 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.580 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.596 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.611 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.643 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.658 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.690 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.752 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.768 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.783 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.815 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.861 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-26T02:02:03.893 Bm signature throttled:0x00002db31bed458f 2026-04-26T02:02:17.053 QuickScan:ScanID:5C63DDFC-E045-482A-9615-337E8DC6B367: Quick scan finished with error 0 2026-04-26T02:02:17.053 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-26T02:02:17.553 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-26T02:02:17.553 [RTP] Duplicating the current plugin configuration object... 2026-04-26T02:02:17.553 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-26T02:02:17.553 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-26T02:02:17.553 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-26T02:02:17.553 [RTP] No config change detected. Not updating plugin configuration. 2026-04-26T02:02:17.553 [RTP] No config changes found. No configuration switch. 2026-04-26T02:02:17.553 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-26T02:10:25.098 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1052670, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T02:10:25.114 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1052673, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T02:10:35.113 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1052686, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T02:10:35.113 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1052688, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T02:10:35.129 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1052690, FileId: 0x55b000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T02:11:39.323 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T02:21:16.412 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829944_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1054476, FileId: 0x3af000000053fb4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T02:26:44.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T02:41:49.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T02:56:54.316 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T03:10:26.620 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1057638, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T03:10:26.635 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1057640, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T03:10:36.625 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1057653, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T03:10:36.641 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1057656, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T03:11:59.321 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T03:27:04.321 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T03:42:09.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T03:56:14.546 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 46841, Count: 6295, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-26T03:56:14.546 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1980, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PSTPY3, EstimatedImpact: 0% 2026-04-26T03:56:14.546 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\067c19da-2bce-40cf-bcf4-4a5eda3257a3.tmp, EstimatedImpact: 0% 2026-04-26T03:56:14.546 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829944_1.MAD, EstimatedImpact: 0% 2026-04-26T03:56:14.546 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\edbdf487-9373-46b3-a817-72d3534fa466.tmp, EstimatedImpact: 0% 2026-04-26T03:56:14.546 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc581f4f-af9a-4454-9b44-95061de1b4ed.tmp, EstimatedImpact: 0% 2026-04-26T03:56:14.546 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\500001df-4a3c-43b0-afc4-9e0e7b0b3710.tmp, EstimatedImpact: 0% 2026-04-26T03:56:14.546 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21d9e2a2-ef89-472f-8a74-6de4b830fddb.tmp, EstimatedImpact: 0% 2026-04-26T03:57:14.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T04:10:25.691 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1060981, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T04:10:25.707 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1060983, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T04:10:35.705 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1060996, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T04:10:35.721 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1060999, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T04:12:19.326 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T04:15:42.412 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829949_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1061290, FileId: 0x43cf00000004c446, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T04:27:24.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T04:42:29.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T04:57:34.323 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T05:03:09.652 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82994c_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1063901, FileId: 0x579000000053f93, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:10:25.042 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064317, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:10:25.057 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064319, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:10:35.062 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064332, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:10:35.062 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064334, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:10:35.297 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064338, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:10:35.297 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1064340, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:12:39.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T05:27:44.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T05:31:47.341 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1065508, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:31:47.341 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1065510, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:31:52.160 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1065521, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:31:52.175 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1065524, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:31:52.175 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1065525, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:32:02.173 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1065538, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:32:02.188 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1065541, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:42:49.322 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T05:51:54.631 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82994d_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1066636, FileId: 0xf5900000004c558, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:51:55.224 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82994d_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1066640, FileId: 0xf5a00000004c558, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T05:56:14.556 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49987, Count: 6460, MaxTime: 203, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-26T05:56:14.556 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2745, Count: 19413, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PSTPY3, EstimatedImpact: 0% 2026-04-26T05:56:14.556 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 19, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829944_1.MAD, EstimatedImpact: 0% 2026-04-26T05:56:14.556 ProcessImageName: updater.exe, Pid: 960, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f75196dc-7cab-4270-9f81-b05e838a2b69.tmp, EstimatedImpact: 0% 2026-04-26T05:56:14.556 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\067c19da-2bce-40cf-bcf4-4a5eda3257a3.tmp, EstimatedImpact: 0% 2026-04-26T05:56:14.556 ProcessImageName: updater.exe, Pid: 5396, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\531f24d4-49c6-4261-8100-4f12713ffd3c.tmp, EstimatedImpact: 0% 2026-04-26T05:56:14.556 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\edbdf487-9373-46b3-a817-72d3534fa466.tmp, EstimatedImpact: 0% 2026-04-26T05:56:14.556 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc581f4f-af9a-4454-9b44-95061de1b4ed.tmp, EstimatedImpact: 0% 2026-04-26T05:56:14.556 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\500001df-4a3c-43b0-afc4-9e0e7b0b3710.tmp, EstimatedImpact: 0% 2026-04-26T05:56:14.556 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21d9e2a2-ef89-472f-8a74-6de4b830fddb.tmp, EstimatedImpact: 0% 2026-04-26T05:56:14.556 ProcessImageName: updater.exe, Pid: 2548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e93dc18-2af6-469a-aab3-a38dc962eb7f.tmp, EstimatedImpact: 0% 2026-04-26T05:57:54.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T06:10:25.861 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1067702, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T06:10:25.877 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1067704, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T06:10:35.877 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1067717, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T06:10:35.892 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1067719, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T06:12:59.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T06:28:04.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T06:43:09.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T06:58:14.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T07:10:26.259 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1071020, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:10:26.275 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1071022, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:10:36.266 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1071035, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:10:36.281 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1071038, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:13:19.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T07:28:24.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T07:43:29.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T07:50:41.816 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829954_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073434, FileId: 0x202800000000a0d0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:55.799 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073517, FileId: 0x2fc7000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:56.331 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073529, FileId: 0x2fc8000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:56.378 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073532, FileId: 0x2fc9000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:56.456 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073536, FileId: 0x2fca000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:56.471 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073539, FileId: 0x2fcb000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:56.503 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073542, FileId: 0x2fcc000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:56.534 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073545, FileId: 0x2fcd000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:56.596 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073548, FileId: 0x2fce000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:56.643 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073551, FileId: 0x2fcf000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:56.659 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073554, FileId: 0x2fd0000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:56.674 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073557, FileId: 0x2fd1000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:56.721 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073560, FileId: 0x2fd2000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:57.334 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073564, FileId: 0x2fd3000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:57.760 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073567, FileId: 0x2fd4000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.307 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073570, FileId: 0x2fd5000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.338 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073573, FileId: 0x2fd6000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.369 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073576, FileId: 0x2fd7000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.385 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073579, FileId: 0x2fd8000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.400 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073582, FileId: 0x2fd9000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.416 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073585, FileId: 0x2fda000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.463 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073588, FileId: 0x2fdb000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.479 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073591, FileId: 0x2fdc000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.525 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073594, FileId: 0x2fdd000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.572 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073597, FileId: 0x2fde000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.588 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073600, FileId: 0x2fdf000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.619 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073603, FileId: 0x2fe0000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.666 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073606, FileId: 0x2fe1000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.697 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073609, FileId: 0x2fe2000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:58.729 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073612, FileId: 0x2fe3000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:59.150 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073625, FileId: 0x2fe4000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:50:59.525 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829955_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1073634, FileId: 0x2fe5000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T07:56:14.558 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54163, Count: 6810, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-26T07:56:14.558 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3255, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PSTPY3, EstimatedImpact: 0% 2026-04-26T07:56:14.558 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 90, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829944_1.MAD, EstimatedImpact: 0% 2026-04-26T07:56:14.558 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-26T07:56:14.558 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-26T07:56:14.558 ProcessImageName: updater.exe, Pid: 960, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f75196dc-7cab-4270-9f81-b05e838a2b69.tmp, EstimatedImpact: 0% 2026-04-26T07:56:14.558 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\067c19da-2bce-40cf-bcf4-4a5eda3257a3.tmp, EstimatedImpact: 0% 2026-04-26T07:56:14.558 ProcessImageName: updater.exe, Pid: 5396, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\531f24d4-49c6-4261-8100-4f12713ffd3c.tmp, EstimatedImpact: 0% 2026-04-26T07:56:14.558 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\500001df-4a3c-43b0-afc4-9e0e7b0b3710.tmp, EstimatedImpact: 0% 2026-04-26T07:56:14.558 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\edbdf487-9373-46b3-a817-72d3534fa466.tmp, EstimatedImpact: 0% 2026-04-26T07:56:14.558 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5803c55c-1a38-49b0-b3fd-55356c8ec5ca.tmp, EstimatedImpact: 0% 2026-04-26T07:56:14.558 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc581f4f-af9a-4454-9b44-95061de1b4ed.tmp, EstimatedImpact: 0% 2026-04-26T07:56:14.558 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21d9e2a2-ef89-472f-8a74-6de4b830fddb.tmp, EstimatedImpact: 0% 2026-04-26T07:56:14.558 ProcessImageName: updater.exe, Pid: 2548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e93dc18-2af6-469a-aab3-a38dc962eb7f.tmp, EstimatedImpact: 0% 2026-04-26T07:56:14.558 ProcessImageName: updater.exe, Pid: 1084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56749866-1e86-4a29-bb92-c4f83ebbae23.tmp, EstimatedImpact: 0% 2026-04-26T07:58:34.325 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T08:10:26.890 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1074752, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T08:10:26.906 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1074754, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T08:10:36.908 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1074767, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T08:10:36.923 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1074770, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T08:13:39.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T08:28:44.314 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T08:43:49.316 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T08:58:54.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T09:10:24.376 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1078062, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T09:10:24.391 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1078064, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T09:10:34.385 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1078077, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T09:10:34.400 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1078079, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T09:10:34.400 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1078080, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T09:13:59.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T09:29:04.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T09:44:09.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T09:56:14.559 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54163, Count: 6810, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4050, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PSTPY3, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 90, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829944_1.MAD, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: updater.exe, Pid: 960, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f75196dc-7cab-4270-9f81-b05e838a2b69.tmp, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\067c19da-2bce-40cf-bcf4-4a5eda3257a3.tmp, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: updater.exe, Pid: 5396, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\531f24d4-49c6-4261-8100-4f12713ffd3c.tmp, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c130dc33-f605-4356-a8e2-edb1e7c15655.tmp, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc581f4f-af9a-4454-9b44-95061de1b4ed.tmp, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: updater.exe, Pid: 1084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56749866-1e86-4a29-bb92-c4f83ebbae23.tmp, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\edbdf487-9373-46b3-a817-72d3534fa466.tmp, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\500001df-4a3c-43b0-afc4-9e0e7b0b3710.tmp, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5803c55c-1a38-49b0-b3fd-55356c8ec5ca.tmp, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21d9e2a2-ef89-472f-8a74-6de4b830fddb.tmp, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: updater.exe, Pid: 2548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e93dc18-2af6-469a-aab3-a38dc962eb7f.tmp, EstimatedImpact: 0% 2026-04-26T09:56:14.559 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-26T09:59:14.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T10:10:25.842 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1081406, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T10:10:25.857 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1081408, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T10:14:19.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T10:29:24.315 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T10:32:07.396 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1082637, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T10:44:29.321 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T10:59:34.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T11:14:39.321 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T11:29:44.314 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T11:44:49.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T11:56:14.564 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54193, Count: 6813, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4890, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PSTPY3, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 90, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829944_1.MAD, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07394866-17e4-4c35-bfa2-9b3e58516e3d.tmp, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 960, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f75196dc-7cab-4270-9f81-b05e838a2b69.tmp, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\067c19da-2bce-40cf-bcf4-4a5eda3257a3.tmp, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 5396, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\531f24d4-49c6-4261-8100-4f12713ffd3c.tmp, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c130dc33-f605-4356-a8e2-edb1e7c15655.tmp, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc581f4f-af9a-4454-9b44-95061de1b4ed.tmp, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\edbdf487-9373-46b3-a817-72d3534fa466.tmp, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5803c55c-1a38-49b0-b3fd-55356c8ec5ca.tmp, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\500001df-4a3c-43b0-afc4-9e0e7b0b3710.tmp, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\607d5bf0-5606-4cbe-99bf-4b10ec1e4035.tmp, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21d9e2a2-ef89-472f-8a74-6de4b830fddb.tmp, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 4108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ecb79580-c9d6-413b-9a79-cc8f197cf7ea.tmp, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 2548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e93dc18-2af6-469a-aab3-a38dc962eb7f.tmp, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 1084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56749866-1e86-4a29-bb92-c4f83ebbae23.tmp, EstimatedImpact: 0% 2026-04-26T11:56:14.564 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-26T11:59:54.322 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T12:10:35.874 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1088082, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T12:14:59.313 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T12:30:04.324 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T12:45:09.323 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T13:00:14.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T13:15:19.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T13:30:24.313 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T13:45:29.323 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T13:56:14.571 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54193, Count: 6813, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5625, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PSTPY3, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 90, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829944_1.MAD, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07394866-17e4-4c35-bfa2-9b3e58516e3d.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 960, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f75196dc-7cab-4270-9f81-b05e838a2b69.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\067c19da-2bce-40cf-bcf4-4a5eda3257a3.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 5396, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\531f24d4-49c6-4261-8100-4f12713ffd3c.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c130dc33-f605-4356-a8e2-edb1e7c15655.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f560b9-bd5e-4c0a-a1b5-a8a1f5a3672a.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\edbdf487-9373-46b3-a817-72d3534fa466.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc581f4f-af9a-4454-9b44-95061de1b4ed.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\500001df-4a3c-43b0-afc4-9e0e7b0b3710.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5803c55c-1a38-49b0-b3fd-55356c8ec5ca.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\607d5bf0-5606-4cbe-99bf-4b10ec1e4035.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21d9e2a2-ef89-472f-8a74-6de4b830fddb.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac9c24a2-9573-4fb0-ab0f-8656c4189f17.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 4108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ecb79580-c9d6-413b-9a79-cc8f197cf7ea.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 2548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e93dc18-2af6-469a-aab3-a38dc962eb7f.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 1084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56749866-1e86-4a29-bb92-c4f83ebbae23.tmp, EstimatedImpact: 0% 2026-04-26T13:56:14.571 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-26T14:00:34.315 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T14:15:39.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T14:30:44.321 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T14:45:49.314 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T15:00:54.308 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T15:10:24.006 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1098072, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T15:15:59.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T15:31:04.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T15:32:03.271 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1099291, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T15:46:09.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T15:56:14.583 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54855, Count: 6836, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6435, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PSTPY3, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 90, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829944_1.MAD, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07394866-17e4-4c35-bfa2-9b3e58516e3d.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 2160, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f71afb1-5225-4990-888b-54602119ed94.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 960, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f75196dc-7cab-4270-9f81-b05e838a2b69.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\067c19da-2bce-40cf-bcf4-4a5eda3257a3.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 5396, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\531f24d4-49c6-4261-8100-4f12713ffd3c.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc581f4f-af9a-4454-9b44-95061de1b4ed.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c130dc33-f605-4356-a8e2-edb1e7c15655.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f560b9-bd5e-4c0a-a1b5-a8a1f5a3672a.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\edbdf487-9373-46b3-a817-72d3534fa466.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a17b3240-366e-4f88-b461-ec5be3081e1d.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5803c55c-1a38-49b0-b3fd-55356c8ec5ca.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\607d5bf0-5606-4cbe-99bf-4b10ec1e4035.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21d9e2a2-ef89-472f-8a74-6de4b830fddb.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\500001df-4a3c-43b0-afc4-9e0e7b0b3710.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac9c24a2-9573-4fb0-ab0f-8656c4189f17.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 4108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ecb79580-c9d6-413b-9a79-cc8f197cf7ea.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26323e73-a5e2-4cc2-888a-39bf51d65ea1.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 2548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e93dc18-2af6-469a-aab3-a38dc962eb7f.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 1084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56749866-1e86-4a29-bb92-c4f83ebbae23.tmp, EstimatedImpact: 0% 2026-04-26T15:56:14.583 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-26T16:01:14.313 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T16:16:19.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T16:31:24.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T16:46:29.308 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T17:01:34.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T17:10:24.446 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1104735, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T17:16:39.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T17:31:44.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T17:46:49.323 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T17:56:14.594 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54855, Count: 6836, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7245, Count: 58248, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PSTPY3, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 90, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829944_1.MAD, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 2160, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f71afb1-5225-4990-888b-54602119ed94.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07394866-17e4-4c35-bfa2-9b3e58516e3d.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 960, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f75196dc-7cab-4270-9f81-b05e838a2b69.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\067c19da-2bce-40cf-bcf4-4a5eda3257a3.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 5396, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\531f24d4-49c6-4261-8100-4f12713ffd3c.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c130dc33-f605-4356-a8e2-edb1e7c15655.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5803c55c-1a38-49b0-b3fd-55356c8ec5ca.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\607d5bf0-5606-4cbe-99bf-4b10ec1e4035.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21d9e2a2-ef89-472f-8a74-6de4b830fddb.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac9c24a2-9573-4fb0-ab0f-8656c4189f17.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\edbdf487-9373-46b3-a817-72d3534fa466.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 4108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ecb79580-c9d6-413b-9a79-cc8f197cf7ea.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26323e73-a5e2-4cc2-888a-39bf51d65ea1.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 2548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e93dc18-2af6-469a-aab3-a38dc962eb7f.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 1084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56749866-1e86-4a29-bb92-c4f83ebbae23.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 6252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\78dd6fe2-bbba-4c5a-a575-a34bddf76039.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e8fd9e1-61c0-4560-a1e5-da502329a7bd.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a17b3240-366e-4f88-b461-ec5be3081e1d.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f560b9-bd5e-4c0a-a1b5-a8a1f5a3672a.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\500001df-4a3c-43b0-afc4-9e0e7b0b3710.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc581f4f-af9a-4454-9b44-95061de1b4ed.tmp, EstimatedImpact: 0% 2026-04-26T17:56:14.594 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-26T18:01:54.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T18:16:59.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T18:18:32.225 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829974_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1108509, FileId: 0x105e00000005419a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T18:32:04.321 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T18:47:09.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T19:02:14.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T19:17:19.320 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T19:32:24.320 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T19:47:29.322 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T19:56:14.603 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 56848, Count: 6952, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8040, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PSTPY3, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 120, Count: 94, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829944_1.MAD, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07394866-17e4-4c35-bfa2-9b3e58516e3d.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 2160, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f71afb1-5225-4990-888b-54602119ed94.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 960, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f75196dc-7cab-4270-9f81-b05e838a2b69.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\067c19da-2bce-40cf-bcf4-4a5eda3257a3.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 5396, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\531f24d4-49c6-4261-8100-4f12713ffd3c.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52efa979-3a67-4b75-8bc3-e2a57c979122.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5803c55c-1a38-49b0-b3fd-55356c8ec5ca.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\500001df-4a3c-43b0-afc4-9e0e7b0b3710.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\607d5bf0-5606-4cbe-99bf-4b10ec1e4035.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21d9e2a2-ef89-472f-8a74-6de4b830fddb.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c130dc33-f605-4356-a8e2-edb1e7c15655.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e8fd9e1-61c0-4560-a1e5-da502329a7bd.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac9c24a2-9573-4fb0-ab0f-8656c4189f17.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a17b3240-366e-4f88-b461-ec5be3081e1d.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 4108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ecb79580-c9d6-413b-9a79-cc8f197cf7ea.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26323e73-a5e2-4cc2-888a-39bf51d65ea1.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f560b9-bd5e-4c0a-a1b5-a8a1f5a3672a.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 2548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e93dc18-2af6-469a-aab3-a38dc962eb7f.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad80e89e-ba1b-433c-bf4c-bfef74ec6342.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\edbdf487-9373-46b3-a817-72d3534fa466.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 1084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56749866-1e86-4a29-bb92-c4f83ebbae23.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 6252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\78dd6fe2-bbba-4c5a-a575-a34bddf76039.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc581f4f-af9a-4454-9b44-95061de1b4ed.tmp, EstimatedImpact: 0% 2026-04-26T19:56:14.603 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-26T20:02:34.314 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T20:10:35.928 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1114713, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T20:17:39.308 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T20:32:44.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T20:47:49.322 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T20:54:33.269 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8299ab_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1117161, FileId: 0x1caf000000024e92, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T21:02:54.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T21:17:59.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T21:33:04.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T21:42:36.040 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8299b0_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1119849, FileId: 0x158700000005369d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T21:42:37.719 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_8299b0_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1119897, FileId: 0x159700000005369d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T21:48:09.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T21:56:14.611 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 56954, Count: 6964, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8985, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PSTPY3, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 300, Count: 175, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829944_1.MAD, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07394866-17e4-4c35-bfa2-9b3e58516e3d.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 2160, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f71afb1-5225-4990-888b-54602119ed94.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 1072, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfcf4e38-df4d-407f-aba0-313f530bc18f.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 960, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f75196dc-7cab-4270-9f81-b05e838a2b69.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\067c19da-2bce-40cf-bcf4-4a5eda3257a3.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 5396, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\531f24d4-49c6-4261-8100-4f12713ffd3c.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc581f4f-af9a-4454-9b44-95061de1b4ed.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 6252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\78dd6fe2-bbba-4c5a-a575-a34bddf76039.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5803c55c-1a38-49b0-b3fd-55356c8ec5ca.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\607d5bf0-5606-4cbe-99bf-4b10ec1e4035.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21d9e2a2-ef89-472f-8a74-6de4b830fddb.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c130dc33-f605-4356-a8e2-edb1e7c15655.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e8fd9e1-61c0-4560-a1e5-da502329a7bd.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac9c24a2-9573-4fb0-ab0f-8656c4189f17.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\500001df-4a3c-43b0-afc4-9e0e7b0b3710.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 4108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ecb79580-c9d6-413b-9a79-cc8f197cf7ea.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26323e73-a5e2-4cc2-888a-39bf51d65ea1.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 2548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e93dc18-2af6-469a-aab3-a38dc962eb7f.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d037eddf-3cce-4f49-95b1-7238bf70005b.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a17b3240-366e-4f88-b461-ec5be3081e1d.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f560b9-bd5e-4c0a-a1b5-a8a1f5a3672a.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 1084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56749866-1e86-4a29-bb92-c4f83ebbae23.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\edbdf487-9373-46b3-a817-72d3534fa466.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad80e89e-ba1b-433c-bf4c-bfef74ec6342.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52efa979-3a67-4b75-8bc3-e2a57c979122.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f5647b3-82ac-4ed4-b243-cd3b7cce8d81.tmp, EstimatedImpact: 0% 2026-04-26T21:56:14.611 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-26T22:03:14.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T22:10:37.140 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1121474, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-26T22:18:19.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T22:33:24.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T22:48:29.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T23:03:34.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T23:18:39.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T23:33:44.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T23:48:49.316 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-26T23:55:24.307 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-26T23:55:24.323 Job Notification: New process added to job (7384) 2026-04-26T23:55:24.338 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-26T23:55:24.338 Aggressive catchup quick scan threshold: 788105730721 / 25920000000000 2026-04-26T23:55:24.338 Job Notification: New process added to job (7644) 2026-04-26T23:55:24.338 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:7384] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7644]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-26T23:55:24.401 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-26T23:55:24.401 Job Notification: New process added to job (7996) 2026-04-26T23:55:24.401 Job Notification: New process added to job (1956) 2026-04-26T23:55:24.416 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:7996] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:1956]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-26T23:55:24.776 Task(GetDeviceTicket -AccessKey EEB89A07-EDAF-15BA-E2E5-85719EAFED4D ) launched as network service 2026-04-26T23:55:24.776 Job Notification: New process added to job (7840) 2026-04-26T23:55:24.838 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-26T23:55:24.838 [RTP] Duplicating the current plugin configuration object... 2026-04-26T23:55:24.838 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-26T23:55:24.838 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-26T23:55:24.838 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-26T23:55:24.838 [RTP] No config change detected. Not updating plugin configuration. 2026-04-26T23:55:24.838 [RTP] No config changes found. No configuration switch. 2026-04-26T23:55:24.838 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-26T23:55:25.588 Job Notification: Process exited from job (7840) 2026-04-26T23:55:26.668 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-26T23:55:26.668 [Cloud] Start of cloud request. Passive mode: 0 2026-04-26T23:55:26.668 [Cloud] Queued cloud request. 2026-04-26T23:55:26.668 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-26T23:55:26.668 [Cloud] Dequeued cloud request. 2026-04-26T23:55:26.668 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-26T23:55:26.668 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-26T23:55:26.668 [Cloud] Start of cloud request. Passive mode: 0 2026-04-26T23:55:26.668 [Cloud] Queued cloud request. 2026-04-26T23:55:26.668 [Cloud] Dequeued cloud request. 2026-04-26T23:55:26.668 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-26T23:55:26.887 [Cloud] End of cloud request. 2026-04-26T23:55:26.918 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-26T23:55:26.918 [Cloud] End of cloud request. 2026-04-26T23:55:27.184 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-26T23:55:38.364 Job Notification: Process exited from job (3272) 2026-04-26T23:56:14.624 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 56985, Count: 6966, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9720, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PSTPY3, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 315, Count: 180, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829944_1.MAD, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07394866-17e4-4c35-bfa2-9b3e58516e3d.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 2160, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f71afb1-5225-4990-888b-54602119ed94.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 1072, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfcf4e38-df4d-407f-aba0-313f530bc18f.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 960, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f75196dc-7cab-4270-9f81-b05e838a2b69.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\067c19da-2bce-40cf-bcf4-4a5eda3257a3.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 5396, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\531f24d4-49c6-4261-8100-4f12713ffd3c.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52efa979-3a67-4b75-8bc3-e2a57c979122.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5803c55c-1a38-49b0-b3fd-55356c8ec5ca.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f5647b3-82ac-4ed4-b243-cd3b7cce8d81.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc581f4f-af9a-4454-9b44-95061de1b4ed.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\607d5bf0-5606-4cbe-99bf-4b10ec1e4035.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21d9e2a2-ef89-472f-8a74-6de4b830fddb.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c130dc33-f605-4356-a8e2-edb1e7c15655.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 6220, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\500001df-4a3c-43b0-afc4-9e0e7b0b3710.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac9c24a2-9573-4fb0-ab0f-8656c4189f17.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 6252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\78dd6fe2-bbba-4c5a-a575-a34bddf76039.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 4112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\61cacec0-17f7-434e-8f87-5b13f13ce180.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 4108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ecb79580-c9d6-413b-9a79-cc8f197cf7ea.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26323e73-a5e2-4cc2-888a-39bf51d65ea1.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 3152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee99fa27-c199-4af3-a505-4c164509188c.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 2548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e93dc18-2af6-469a-aab3-a38dc962eb7f.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e8fd9e1-61c0-4560-a1e5-da502329a7bd.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d037eddf-3cce-4f49-95b1-7238bf70005b.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 6968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a17b3240-366e-4f88-b461-ec5be3081e1d.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 1084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56749866-1e86-4a29-bb92-c4f83ebbae23.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 7596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\edbdf487-9373-46b3-a817-72d3534fa466.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f560b9-bd5e-4c0a-a1b5-a8a1f5a3672a.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad80e89e-ba1b-433c-bf4c-bfef74ec6342.tmp, EstimatedImpact: 0% 2026-04-26T23:56:14.624 ProcessImageName: updater.exe, Pid: 5004, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-26T23:56:19.603 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\F2CEE3D6-3756-4539-B689-E8943DB12A721634.1dcd5d8460b89b0 2026-04-26T23:56:19.666 Verifying engine and signature files (source: 0) ... 2026-04-26T23:56:19.666 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C99194F-3428-41A2-87D8-382AC4C1C971}\mpengine.dll] due to PPL. 2026-04-26T23:56:19.666 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C99194F-3428-41A2-87D8-382AC4C1C971}\mpasbase.vdm] (file in cache) 2026-04-26T23:56:19.666 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C99194F-3428-41A2-87D8-382AC4C1C971}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-26T23:56:19.681 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C99194F-3428-41A2-87D8-382AC4C1C971}\mpasdlta.vdm] 2026-04-26T23:56:19.681 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C99194F-3428-41A2-87D8-382AC4C1C971}\mpavbase.vdm] (file in cache) 2026-04-26T23:56:19.681 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C99194F-3428-41A2-87D8-382AC4C1C971}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-26T23:56:19.697 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C99194F-3428-41A2-87D8-382AC4C1C971}\mpavdlta.vdm] 2026-04-26T23:56:19.869 [Engine] IsHybridMode: 0 2026-04-26T23:56:19.869 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-26T23:56:19.947 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-7659558E4B9D971D3B87F98739D86788D283E290.bin): 0x00000002 2026-04-26T23:56:19.947 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-7659558E4B9D971D3B87F98739D86788D283E290.bin) 2026-04-26T23:56:19.947 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-26T23:56:19.947 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-26T23:56:19.947 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-26T23:56:19.947 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-26T23:56:29.172 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-26T23:56:29.172 [AutoExclusion] Applied roles from cache. 2026-04-26T23:56:29.172 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-04-26T23:56:29.187 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D908020, lRefCount: 5, hr=0 2026-04-26T23:56:29.187 [Engine] New active engine 00007FFD0EA68020 replacing engine 00007FFD0D908020. Number of active engines: 2 2026-04-26T23:56:29.187 EngineInit:Global ASOC is enabled 2026-04-26T23:56:29.187 EngineInit:ASOO is enabled for developer volumes 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-26T23:56:29.203 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-26T23:56:29.219 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-26T23:56:29.219 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-26T23:56:29.219 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-26T23:56:29.219 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-26T23:56:29.219 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-26T23:56:29.219 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-26T23:56:29.219 [Plugin] Initializing RTP plugin state... 2026-04-26T23:56:29.219 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-26T23:56:29.219 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎26‎-‎2026 01:56:14 Last Perf:‎04‎-‎26‎-‎2026 01:56:14 First RTP Scan:‎04‎-‎26‎-‎2026 01:56:22 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:401 Misses:2273 BM Queue:0,42,0 Proc:0,41,0 File:0,19,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1127390 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1226165916 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2923 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:106198 TotalHits:419999 InstanceCacheInserts:573226 InstanceCacheUpdates:0 InstanceCacheDeletes:98631 InstanceCacheHits:2468 InstanceCacheMisses:634531 InstanceCacheOverflows:463935 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:0ms (272/273) Success: 273, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-26T23:56:29.234 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C99194F-3428-41A2-87D8-382AC4C1C971} 2026-04-26T23:56:29.234 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-26T23:56:29.234 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3E98ADE6-AEFB-40CF-8076-BDDD63D2E4F5} removed 2026-04-26T23:56:29.234 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BF144C3B-76DC-4EB4-8561-5B395449BC36}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BF144C3B-76DC-4EB4-8561-5B395449BC36}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-26T23:56:29.234 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-26T23:56:29.234 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-26T23:56:29.234 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-26T23:56:29.234 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-26T23:56:29.234 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-26-2026 23:56:29 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-26-2026 23:56:29 2026-04-26T23:56:29.234 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-26T23:56:29.234 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-26T23:56:29.234 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-26T23:56:29.234 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-26T23:56:29.234 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-26T23:56:29.234 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-26T23:56:29.234 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-26T23:56:29.234 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-26T23:56:29.234 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-26T23:56:29.234 MdCoreSvc is supported in this platform and OS Signature updated on 04-26-2026 23:56:29 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.314.0 AV Signature Version: 1.449.314.0 ************************************************************ 2026-04-26T23:56:29.234 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-26T23:56:29.234 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\F2CEE3D6-3756-4539-B689-E8943DB12A721634.1dcd5d8460b89b0 2026-04-26T23:56:29.265 Process scan (postsignatureupdatescan) started. 2026-04-26T23:56:29.312 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-26T23:56:29.312 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 04-26-2026 23:56:29 ************************************************************ 2026-04-26T23:56:29.500 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-26T23:56:29.500 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-26T23:56:29.500 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-26T23:56:29.500 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-26T23:56:29.500 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-26T23:56:29.515 [Engine] Engine 00007FFD0D908020 no longer in use. Number of active engines: 1 2026-04-26T23:56:29.515 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-26T23:56:29.515 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-26T23:56:29.515 Job Notification: Process exited from job (7996) 2026-04-26T23:56:29.515 Job Notification: Process exited from job (1956) 2026-04-26T23:56:29.531 Job Notification: Process exited from job (7384) 2026-04-26T23:56:29.531 Job Notification: Process exited from job (7644) 2026-04-26T23:56:29.750 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-26T23:56:29.750 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-26T23:56:29.750 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-26T23:56:30.375 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 56985, Count: 6966, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-26T23:56:30.375 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9720, Count: 77679, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PSTPY3, EstimatedImpact: 0% 2026-04-26T23:56:30.375 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 315, Count: 180, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829944_1.MAD, EstimatedImpact: 0% 2026-04-26T23:56:30.375 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-26T23:56:30.375 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-26T23:56:30.375 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07394866-17e4-4c35-bfa2-9b3e58516e3d.tmp, EstimatedImpact: 0% 2026-04-26T23:56:30.375 ProcessImageName: updater.exe, Pid: 2160, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f71afb1-5225-4990-888b-54602119ed94.tmp, EstimatedImpact: 0% 2026-04-26T23:56:30.375 ProcessImageName: updater.exe, Pid: 1072, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfcf4e38-df4d-407f-aba0-313f530bc18f.tmp, EstimatedImpact: 0% 2026-04-26T23:56:30.375 ProcessImageName: updater.exe, Pid: 960, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f75196dc-7cab-4270-9f81-b05e838a2b69.tmp, EstimatedImpact: 0% 2026-04-26T23:56:30.375 ProcessImageName: updater.exe, Pid: 7792, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\067c19da-2bce-40cf-bcf4-4a5eda3257a3.tmp, EstimatedImpact: 0% 2026-04-26T23:56:30.375 ProcessImageName: updater.exe, Pid: 5396, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\531f24d4-49c6-4261-8100-4f12713ffd3c.tmp, EstimatedImpact: 0% 2026-04-26T23:56:30.375 ProcessImageName: updater.exe, Pid: 5872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e8fd9e1-61c0-4560-a1e5-da502329a7bd.tmp, EstimatedImpact: 0% 2026-04-26T23:56:30.437 [Engine] RSIG_UNLOADENGINE, 00007FFD0D908020, err=0x0 2026-04-26T23:56:30.453 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BF144C3B-76DC-4EB4-8561-5B395449BC36} removed 2026-04-26T23:56:34.965 Process scan (postsignatureupdatescan) completed. 2026-04-27T00:01:29.211 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-27T00:03:54.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T00:10:25.449 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1128220, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T00:10:25.465 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1128222, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T00:10:35.472 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1128235, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T00:10:35.472 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1128237, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T00:10:35.472 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1128238, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T00:18:59.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T00:34:04.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T00:49:09.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T01:04:14.306 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T01:10:26.309 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1131570, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T01:10:26.325 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1131572, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T01:10:36.324 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1131585, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T01:10:36.340 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1131587, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T01:10:36.496 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1131591, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T01:10:36.496 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1131593, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T01:19:19.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T01:32:08.602 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1132784, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T01:32:08.602 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1132786, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T01:32:13.207 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1132797, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T01:32:13.223 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1132800, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T01:32:13.223 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1132802, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T01:32:23.220 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1132815, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T01:32:23.236 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1132818, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T01:34:24.306 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T01:49:29.315 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T01:56:29.188 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 825, Count: 6480, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.NAYGY3, EstimatedImpact: 0% 2026-04-27T01:56:29.188 ProcessImageName: updater.exe, Pid: 328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-27T01:56:29.188 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1b3a286-9d90-4d3c-a86b-24ff4bad2131.tmp, EstimatedImpact: 0% 2026-04-27T01:56:29.188 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab07a3db-cabd-45db-9ad1-53abd330c15e.tmp, EstimatedImpact: 0% 2026-04-27T02:01:53.779 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:7D04DFFE-1DDD-4EE9-9350-D8DCEFF63E31, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-27T02:01:53.779 Scheduled scan with Id 7D04DFFE-1DDD-4EE9-9350-D8DCEFF63E31 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-27T02:01:53.779 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-27T02:01:53.779 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-27T02:01:53.779 [SFC] System file cache build is not needed (already completed) 2026-04-27T02:02:03.448 Engine:Triggered AR EMS scan 2026-04-27T02:02:03.448 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.480 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.495 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.511 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.558 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.573 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.589 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.620 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.651 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.667 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.698 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.714 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.730 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.761 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.776 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.808 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.823 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.886 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.901 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.933 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:03.948 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:04.011 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-27T02:02:04.026 Bm signature throttled:0x00002db31bed458f 2026-04-27T02:02:17.167 QuickScan:ScanID:7D04DFFE-1DDD-4EE9-9350-D8DCEFF63E31: Quick scan finished with error 0 2026-04-27T02:02:17.167 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-27T02:02:17.683 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-27T02:02:17.683 [RTP] Duplicating the current plugin configuration object... 2026-04-27T02:02:17.683 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-27T02:02:17.683 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-27T02:02:17.683 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-27T02:02:17.683 [RTP] No config change detected. Not updating plugin configuration. 2026-04-27T02:02:17.683 [RTP] No config changes found. No configuration switch. 2026-04-27T02:02:17.683 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-27T02:04:34.316 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T02:10:26.006 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1135112, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T02:10:26.021 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1135114, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T02:10:36.018 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1135127, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T02:10:36.033 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1135129, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T02:10:36.033 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1135130, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T02:19:39.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T02:34:44.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T02:49:49.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T03:04:54.315 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T03:10:25.985 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1138513, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T03:10:26.000 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1138515, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T03:10:35.998 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1138528, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T03:10:36.013 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1138530, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T03:10:36.013 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1138532, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T03:19:59.313 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T03:35:04.315 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T03:50:09.313 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T03:56:29.192 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1530, Count: 12951, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.NAYGY3, EstimatedImpact: 0% 2026-04-27T03:56:29.192 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 561, Count: 55, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-04-27T03:56:29.192 ProcessImageName: updater.exe, Pid: 328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-27T03:56:29.192 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1b3a286-9d90-4d3c-a86b-24ff4bad2131.tmp, EstimatedImpact: 0% 2026-04-27T03:56:29.192 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\913be803-41bd-450d-8e7b-a8e8560169dc.tmp, EstimatedImpact: 0% 2026-04-27T03:56:29.192 ProcessImageName: updater.exe, Pid: 7196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f9d8d6cb-23e1-4081-9998-1f4fbe7f2a80.tmp, EstimatedImpact: 0% 2026-04-27T03:56:29.192 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab07a3db-cabd-45db-9ad1-53abd330c15e.tmp, EstimatedImpact: 0% 2026-04-27T04:05:14.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T04:10:27.151 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1141838, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T04:10:27.166 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1141840, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T04:10:37.165 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1141853, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T04:10:37.188 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1141855, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T04:20:19.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T04:35:24.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T04:50:29.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T05:05:34.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T05:10:26.701 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1145152, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T05:10:26.701 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1145154, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T05:10:36.713 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1145168, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T05:10:36.713 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1145167, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T05:10:36.713 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1145169, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T05:20:39.313 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T05:35:44.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T05:50:49.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T05:56:29.202 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2445, Count: 19422, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.NAYGY3, EstimatedImpact: 0% 2026-04-27T05:56:29.202 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 576, Count: 56, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-04-27T05:56:29.202 ProcessImageName: updater.exe, Pid: 328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-27T05:56:29.202 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1b3a286-9d90-4d3c-a86b-24ff4bad2131.tmp, EstimatedImpact: 0% 2026-04-27T05:56:29.202 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\913be803-41bd-450d-8e7b-a8e8560169dc.tmp, EstimatedImpact: 0% 2026-04-27T05:56:29.202 ProcessImageName: updater.exe, Pid: 7196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f9d8d6cb-23e1-4081-9998-1f4fbe7f2a80.tmp, EstimatedImpact: 0% 2026-04-27T05:56:29.202 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab07a3db-cabd-45db-9ad1-53abd330c15e.tmp, EstimatedImpact: 0% 2026-04-27T05:56:29.202 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81888dae-b881-4e72-9c57-f876c2b42696.tmp, EstimatedImpact: 0% 2026-04-27T05:56:29.202 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3bee498b-71df-40ed-be0e-d50cfaf72381.tmp, EstimatedImpact: 0% 2026-04-27T06:05:54.305 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T06:06:30.180 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e58_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1149478, FileId: 0x1f9500000003a559, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:06:41.867 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e58_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1149935, FileId: 0x288900000004cf92, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:10:26.207 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150160, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:10:26.223 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150162, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:10:36.226 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150175, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:10:36.226 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150177, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:10:36.395 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150181, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:10:36.395 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1150183, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:20:59.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T06:32:13.307 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1151370, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:32:13.307 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1151372, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:32:17.523 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1151391, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:32:17.539 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1151394, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:32:17.539 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1151396, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:32:27.534 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1151409, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:32:27.534 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1151412, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T06:36:04.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T06:51:09.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T07:06:14.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T07:10:26.213 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1153668, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T07:10:26.229 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1153670, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T07:10:36.223 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1153683, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T07:10:36.239 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1153685, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T07:21:19.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T07:36:24.319 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T07:51:29.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T07:56:29.212 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47848, Count: 6338, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-27T07:56:29.212 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3435, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.NAYGY3, EstimatedImpact: 0% 2026-04-27T07:56:29.212 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-27T07:56:29.212 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-27T07:56:29.212 ProcessImageName: updater.exe, Pid: 328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-27T07:56:29.212 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1b3a286-9d90-4d3c-a86b-24ff4bad2131.tmp, EstimatedImpact: 0% 2026-04-27T07:56:29.212 ProcessImageName: updater.exe, Pid: 3488, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0e3d373-4eb4-454b-8190-59e3dd983e53.tmp, EstimatedImpact: 0% 2026-04-27T07:56:29.212 ProcessImageName: updater.exe, Pid: 7196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f9d8d6cb-23e1-4081-9998-1f4fbe7f2a80.tmp, EstimatedImpact: 0% 2026-04-27T07:56:29.212 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\913be803-41bd-450d-8e7b-a8e8560169dc.tmp, EstimatedImpact: 0% 2026-04-27T07:56:29.212 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\662ccf0b-d1bf-4067-a3ed-1d3cacc23003.tmp, EstimatedImpact: 0% 2026-04-27T07:56:29.212 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d76fc87e-70eb-4f03-9150-8bc69ffcf33a.tmp, EstimatedImpact: 0% 2026-04-27T07:56:29.212 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab07a3db-cabd-45db-9ad1-53abd330c15e.tmp, EstimatedImpact: 0% 2026-04-27T07:56:29.212 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81888dae-b881-4e72-9c57-f876c2b42696.tmp, EstimatedImpact: 0% 2026-04-27T07:56:29.212 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3bee498b-71df-40ed-be0e-d50cfaf72381.tmp, EstimatedImpact: 0% 2026-04-27T07:56:29.212 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 0, Count: 4, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e58_1.MAI, EstimatedImpact: 0% 2026-04-27T08:06:34.308 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T08:10:25.394 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1156996, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T08:10:25.394 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1156998, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T08:10:35.412 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1157011, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T08:10:35.427 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1157014, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T08:21:39.317 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T08:36:44.308 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T08:51:49.316 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T09:06:54.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T09:10:25.213 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1160321, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T09:10:25.229 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1160323, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T09:10:35.216 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1160336, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T09:10:35.216 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1160338, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T09:10:35.232 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1160340, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T09:10:35.232 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1160342, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T09:21:59.316 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T09:37:04.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T09:52:09.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T09:56:29.217 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47968, Count: 6353, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4365, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.NAYGY3, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: updater.exe, Pid: 328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1b3a286-9d90-4d3c-a86b-24ff4bad2131.tmp, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: updater.exe, Pid: 3488, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0e3d373-4eb4-454b-8190-59e3dd983e53.tmp, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3bee498b-71df-40ed-be0e-d50cfaf72381.tmp, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d76fc87e-70eb-4f03-9150-8bc69ffcf33a.tmp, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\913be803-41bd-450d-8e7b-a8e8560169dc.tmp, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: updater.exe, Pid: 7196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f9d8d6cb-23e1-4081-9998-1f4fbe7f2a80.tmp, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\662ccf0b-d1bf-4067-a3ed-1d3cacc23003.tmp, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: updater.exe, Pid: 5160, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e35aa41c-ae20-4b4a-8ecd-7a53d6c8c690.tmp, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab07a3db-cabd-45db-9ad1-53abd330c15e.tmp, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: updater.exe, Pid: 2580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a57b23-da12-47e6-89ee-bd0ab8ccd9ac.tmp, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81888dae-b881-4e72-9c57-f876c2b42696.tmp, EstimatedImpact: 0% 2026-04-27T09:56:29.217 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 0, Count: 4, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e58_1.MAI, EstimatedImpact: 0% 2026-04-27T10:07:14.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T10:10:27.048 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1163651, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T10:10:27.063 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1163653, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T10:10:37.053 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1163666, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T10:10:37.069 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1163669, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T10:22:19.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T10:34:05.564 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e5d_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1164969, FileId: 0x248300000003868c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T10:37:24.305 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T10:52:29.314 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T11:07:34.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T11:10:25.406 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1166979, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:10:25.421 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1166981, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:10:35.410 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1166993, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:10:35.410 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1166995, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:10:35.425 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1166997, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:10:35.425 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1166999, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:20:43.458 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e64_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1167567, FileId: 0x968000000045978, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:22:39.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T11:32:17.624 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1168212, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:32:17.639 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1168214, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:32:22.444 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1168226, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:32:22.459 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1168229, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:32:22.459 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1168231, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:32:22.459 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1168233, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:32:32.458 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1168246, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:32:32.473 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1168248, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:32:32.661 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1168252, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:32:32.677 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1168254, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T11:37:44.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T11:52:49.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T11:56:29.222 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51792, Count: 6574, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5205, Count: 38844, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.NAYGY3, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e5d_1.MAI, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b0d1c13f-fbf4-48eb-a044-74fb6d37b64e.tmp, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1b3a286-9d90-4d3c-a86b-24ff4bad2131.tmp, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 3488, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0e3d373-4eb4-454b-8190-59e3dd983e53.tmp, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d76fc87e-70eb-4f03-9150-8bc69ffcf33a.tmp, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\913be803-41bd-450d-8e7b-a8e8560169dc.tmp, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 7196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f9d8d6cb-23e1-4081-9998-1f4fbe7f2a80.tmp, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\662ccf0b-d1bf-4067-a3ed-1d3cacc23003.tmp, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 5160, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e35aa41c-ae20-4b4a-8ecd-7a53d6c8c690.tmp, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab07a3db-cabd-45db-9ad1-53abd330c15e.tmp, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 2580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a57b23-da12-47e6-89ee-bd0ab8ccd9ac.tmp, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81888dae-b881-4e72-9c57-f876c2b42696.tmp, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3bee498b-71df-40ed-be0e-d50cfaf72381.tmp, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\83ef9932-8300-446b-9f1d-c9b433f95b63.tmp, EstimatedImpact: 0% 2026-04-27T11:56:29.222 ProcessImageName: updater.exe, Pid: 7416, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-27T12:07:54.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T12:10:26.462 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1170343, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T12:10:26.478 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1170345, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T12:10:36.471 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1170358, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T12:10:36.471 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1170359, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T12:10:36.486 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1170361, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T12:22:59.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T12:38:04.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T12:53:09.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T13:08:14.316 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T13:10:24.572 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1173663, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T13:10:24.588 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1173665, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T13:10:34.596 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1173678, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T13:10:34.596 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1173680, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T13:10:34.596 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1173682, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T13:10:34.596 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1173684, FileId: 0xc40000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T13:22:38.259 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e69_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1174348, FileId: 0x11d200000004f710, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T13:23:19.318 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T13:38:24.308 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T13:53:29.305 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T13:56:29.226 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51868, Count: 6584, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5895, Count: 45315, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.NAYGY3, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e5d_1.MAI, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b0d1c13f-fbf4-48eb-a044-74fb6d37b64e.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1b3a286-9d90-4d3c-a86b-24ff4bad2131.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 3488, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0e3d373-4eb4-454b-8190-59e3dd983e53.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d76fc87e-70eb-4f03-9150-8bc69ffcf33a.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\913be803-41bd-450d-8e7b-a8e8560169dc.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 6872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ce2947c-1c19-4d5c-be0e-98a7c5319f30.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 7196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f9d8d6cb-23e1-4081-9998-1f4fbe7f2a80.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\662ccf0b-d1bf-4067-a3ed-1d3cacc23003.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 2580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a57b23-da12-47e6-89ee-bd0ab8ccd9ac.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 5160, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e35aa41c-ae20-4b4a-8ecd-7a53d6c8c690.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94b87295-c58c-46fd-858a-562983a5ce8c.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab07a3db-cabd-45db-9ad1-53abd330c15e.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81888dae-b881-4e72-9c57-f876c2b42696.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3bee498b-71df-40ed-be0e-d50cfaf72381.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\83ef9932-8300-446b-9f1d-c9b433f95b63.tmp, EstimatedImpact: 0% 2026-04-27T13:56:29.226 ProcessImageName: updater.exe, Pid: 7416, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-27T14:08:34.308 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T14:23:39.316 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T14:38:44.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T14:53:49.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T15:08:54.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T15:23:59.315 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T15:39:04.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T15:54:09.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T15:56:29.231 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51868, Count: 6584, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6750, Count: 51786, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.NAYGY3, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e5d_1.MAI, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b0d1c13f-fbf4-48eb-a044-74fb6d37b64e.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1b3a286-9d90-4d3c-a86b-24ff4bad2131.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 3488, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0e3d373-4eb4-454b-8190-59e3dd983e53.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 6772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\381179c4-f685-419a-bdf6-66b9e7b25e3e.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d76fc87e-70eb-4f03-9150-8bc69ffcf33a.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\913be803-41bd-450d-8e7b-a8e8560169dc.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 7196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f9d8d6cb-23e1-4081-9998-1f4fbe7f2a80.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\662ccf0b-d1bf-4067-a3ed-1d3cacc23003.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 5160, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e35aa41c-ae20-4b4a-8ecd-7a53d6c8c690.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 6872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ce2947c-1c19-4d5c-be0e-98a7c5319f30.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94b87295-c58c-46fd-858a-562983a5ce8c.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab07a3db-cabd-45db-9ad1-53abd330c15e.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81888dae-b881-4e72-9c57-f876c2b42696.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3bee498b-71df-40ed-be0e-d50cfaf72381.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\83ef9932-8300-446b-9f1d-c9b433f95b63.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07bb82a7-b697-41f7-8328-7f06a0bff336.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 2580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a57b23-da12-47e6-89ee-bd0ab8ccd9ac.tmp, EstimatedImpact: 0% 2026-04-27T15:56:29.231 ProcessImageName: updater.exe, Pid: 7416, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-27T16:09:14.313 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T16:10:24.662 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1183656, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T16:24:19.314 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T16:32:26.703 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1184903, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T16:39:24.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T16:54:29.313 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T17:09:34.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T17:24:39.302 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T17:39:44.306 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T17:54:49.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T17:56:29.245 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52681, Count: 6622, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7590, Count: 58257, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.NAYGY3, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e5d_1.MAI, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b0d1c13f-fbf4-48eb-a044-74fb6d37b64e.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 376, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\552db912-bf18-4230-8503-6ce636e9360a.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1b3a286-9d90-4d3c-a86b-24ff4bad2131.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 3488, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0e3d373-4eb4-454b-8190-59e3dd983e53.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 6172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\296557bd-979f-4731-b0a4-4bd2ba66c6cf.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 6872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ce2947c-1c19-4d5c-be0e-98a7c5319f30.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 7196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f9d8d6cb-23e1-4081-9998-1f4fbe7f2a80.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\913be803-41bd-450d-8e7b-a8e8560169dc.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\662ccf0b-d1bf-4067-a3ed-1d3cacc23003.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d76fc87e-70eb-4f03-9150-8bc69ffcf33a.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 6772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\381179c4-f685-419a-bdf6-66b9e7b25e3e.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 5160, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e35aa41c-ae20-4b4a-8ecd-7a53d6c8c690.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94b87295-c58c-46fd-858a-562983a5ce8c.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 3944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58ad878e-a8f4-49ec-b8c2-813810bcb4e0.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab07a3db-cabd-45db-9ad1-53abd330c15e.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 2580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a57b23-da12-47e6-89ee-bd0ab8ccd9ac.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81888dae-b881-4e72-9c57-f876c2b42696.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3bee498b-71df-40ed-be0e-d50cfaf72381.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\83ef9932-8300-446b-9f1d-c9b433f95b63.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07bb82a7-b697-41f7-8328-7f06a0bff336.tmp, EstimatedImpact: 0% 2026-04-27T17:56:29.245 ProcessImageName: updater.exe, Pid: 7416, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-27T18:09:54.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T18:10:25.998 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1190350, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T18:24:59.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T18:40:04.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T18:55:09.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T19:10:14.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T19:25:19.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T19:40:24.314 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T19:55:29.308 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T19:56:29.250 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52681, Count: 6623, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8370, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.NAYGY3, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 23, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e5d_1.MAI, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b0d1c13f-fbf4-48eb-a044-74fb6d37b64e.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 376, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\552db912-bf18-4230-8503-6ce636e9360a.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 3488, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0e3d373-4eb4-454b-8190-59e3dd983e53.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1b3a286-9d90-4d3c-a86b-24ff4bad2131.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 7196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f9d8d6cb-23e1-4081-9998-1f4fbe7f2a80.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 7896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b4dde798-efa4-4bf5-a268-52ab864a1eec.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\662ccf0b-d1bf-4067-a3ed-1d3cacc23003.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\913be803-41bd-450d-8e7b-a8e8560169dc.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 7024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f831c8c-1188-477f-9ff4-b09cd25f23f3.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 6872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ce2947c-1c19-4d5c-be0e-98a7c5319f30.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 5160, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e35aa41c-ae20-4b4a-8ecd-7a53d6c8c690.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94b87295-c58c-46fd-858a-562983a5ce8c.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab07a3db-cabd-45db-9ad1-53abd330c15e.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 6172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\296557bd-979f-4731-b0a4-4bd2ba66c6cf.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 2580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a57b23-da12-47e6-89ee-bd0ab8ccd9ac.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81888dae-b881-4e72-9c57-f876c2b42696.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3bee498b-71df-40ed-be0e-d50cfaf72381.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 3944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58ad878e-a8f4-49ec-b8c2-813810bcb4e0.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\83ef9932-8300-446b-9f1d-c9b433f95b63.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07bb82a7-b697-41f7-8328-7f06a0bff336.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 6772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\381179c4-f685-419a-bdf6-66b9e7b25e3e.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d76fc87e-70eb-4f03-9150-8bc69ffcf33a.tmp, EstimatedImpact: 0% 2026-04-27T19:56:29.250 ProcessImageName: updater.exe, Pid: 7416, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-27T20:10:25.889 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1196978, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T20:10:34.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T20:25:39.302 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T20:40:44.302 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T20:55:49.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T21:10:54.306 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T21:25:59.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T21:32:26.808 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1201514, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T21:41:04.305 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T21:56:09.306 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T21:56:29.264 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52681, Count: 6624, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9270, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.NAYGY3, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 25, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e5d_1.MAI, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b0d1c13f-fbf4-48eb-a044-74fb6d37b64e.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d738745e-aa01-4d21-95f6-c07042b63d75.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 376, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\552db912-bf18-4230-8503-6ce636e9360a.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1b3a286-9d90-4d3c-a86b-24ff4bad2131.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 3488, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0e3d373-4eb4-454b-8190-59e3dd983e53.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 7196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f9d8d6cb-23e1-4081-9998-1f4fbe7f2a80.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 7896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b4dde798-efa4-4bf5-a268-52ab864a1eec.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 5160, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e35aa41c-ae20-4b4a-8ecd-7a53d6c8c690.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\913be803-41bd-450d-8e7b-a8e8560169dc.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 7028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\662ccf0b-d1bf-4067-a3ed-1d3cacc23003.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 7024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f831c8c-1188-477f-9ff4-b09cd25f23f3.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 6532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d76fc87e-70eb-4f03-9150-8bc69ffcf33a.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 6872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ce2947c-1c19-4d5c-be0e-98a7c5319f30.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 3944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58ad878e-a8f4-49ec-b8c2-813810bcb4e0.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94b87295-c58c-46fd-858a-562983a5ce8c.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab07a3db-cabd-45db-9ad1-53abd330c15e.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 2580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a57b23-da12-47e6-89ee-bd0ab8ccd9ac.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81888dae-b881-4e72-9c57-f876c2b42696.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3bee498b-71df-40ed-be0e-d50cfaf72381.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\06168b68-cdd7-4e2c-a187-f957ede153ce.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 1388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07bb82a7-b697-41f7-8328-7f06a0bff336.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 6172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\296557bd-979f-4731-b0a4-4bd2ba66c6cf.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\83ef9932-8300-446b-9f1d-c9b433f95b63.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 6772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\381179c4-f685-419a-bdf6-66b9e7b25e3e.tmp, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 7908, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-27T21:56:29.264 ProcessImageName: updater.exe, Pid: 7416, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-27T21:56:51.070 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e84_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1202896, FileId: 0x44cf00000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T21:56:53.852 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e84_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1202985, FileId: 0x44d800000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T21:56:54.133 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e83_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1203015, FileId: 0x44e200000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T21:56:55.914 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e83_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1203052, FileId: 0x44ef00000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T21:56:56.070 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e83_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1203081, FileId: 0x44f700000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T21:56:56.367 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e84_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1203118, FileId: 0x1400000000545c3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T22:02:06.612 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e88_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1203500, FileId: 0xa69000000053fb4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T22:02:07.753 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e88_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1203530, FileId: 0xa76000000053fb4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T22:02:08.565 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e88_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1203561, FileId: 0xa81000000053fb4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T22:02:08.893 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e89_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1203591, FileId: 0xa8a000000053fb4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T22:02:10.025 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e89_1a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1203626, FileId: 0xa95000000053fb4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T22:10:35.346 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1204164, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-27T22:11:14.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T22:26:19.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T22:41:24.315 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T22:56:29.308 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T23:11:34.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T23:26:39.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T23:41:44.301 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-27T23:55:24.305 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-27T23:55:24.321 Job Notification: New process added to job (6740) 2026-04-27T23:55:24.336 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-27T23:55:24.336 Job Notification: New process added to job (5300) 2026-04-27T23:55:24.336 Aggressive catchup quick scan threshold: 788105606163 / 25920000000000 2026-04-27T23:55:24.352 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6740] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5300]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-27T23:55:24.399 Job Notification: New process added to job (4792) 2026-04-27T23:55:24.399 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-27T23:55:24.399 Job Notification: New process added to job (3504) 2026-04-27T23:55:24.415 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:4792] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3504]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-27T23:55:24.618 Job Notification: New process added to job (6980) 2026-04-27T23:55:24.633 Task(GetDeviceTicket -AccessKey 7C2EC726-883E-4FF5-B5C6-368ED59CC820 ) launched as network service 2026-04-27T23:55:24.883 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-27T23:55:24.883 [RTP] Duplicating the current plugin configuration object... 2026-04-27T23:55:24.883 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-27T23:55:24.883 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-27T23:55:24.883 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-27T23:55:24.883 [RTP] No config change detected. Not updating plugin configuration. 2026-04-27T23:55:24.883 [RTP] No config changes found. No configuration switch. 2026-04-27T23:55:24.883 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-27T23:55:25.180 Job Notification: Process exited from job (6980) 2026-04-27T23:55:26.312 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-27T23:55:26.312 [Cloud] Start of cloud request. Passive mode: 0 2026-04-27T23:55:26.312 [Cloud] Queued cloud request. 2026-04-27T23:55:26.312 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-27T23:55:26.312 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-27T23:55:26.312 [Cloud] Start of cloud request. Passive mode: 0 2026-04-27T23:55:26.312 [Cloud] Queued cloud request. 2026-04-27T23:55:26.328 Job Notification: New process added to job (6076) 2026-04-27T23:55:26.344 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey ECC2E219-8C06-D454-D8FE-10BF99753967) launched 2026-04-27T23:55:26.344 Job Notification: New process added to job (3292) 2026-04-27T23:55:26.344 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6076] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3292]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-27T23:55:26.359 Job Notification: New process added to job (2112) 2026-04-27T23:55:26.359 Job Notification: Process exited from job (6076) 2026-04-27T23:55:26.375 Job Notification: Process exited from job (3292) 2026-04-27T23:55:26.375 [Cloud] Dequeued cloud request. 2026-04-27T23:55:26.375 [Cloud] Dequeued cloud request. 2026-04-27T23:55:26.375 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-27T23:55:26.375 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-27T23:55:26.609 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-27T23:55:26.609 [Cloud] End of cloud request. 2026-04-27T23:55:26.609 [Cloud] End of cloud request. 2026-04-27T23:55:26.812 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-27T23:56:18.426 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\0223DED3-EACA-47D9-8225-7061D13B2A74f54.1dcd6a16fa93af9 2026-04-27T23:56:18.473 Verifying engine and signature files (source: 0) ... 2026-04-27T23:56:18.473 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E57F3F72-E76C-4CA1-B84A-5F74B56669D0}\mpengine.dll] due to PPL. 2026-04-27T23:56:18.473 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E57F3F72-E76C-4CA1-B84A-5F74B56669D0}\mpasbase.vdm] (file in cache) 2026-04-27T23:56:18.473 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E57F3F72-E76C-4CA1-B84A-5F74B56669D0}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-27T23:56:18.536 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E57F3F72-E76C-4CA1-B84A-5F74B56669D0}\mpasdlta.vdm] 2026-04-27T23:56:18.536 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E57F3F72-E76C-4CA1-B84A-5F74B56669D0}\mpavbase.vdm] (file in cache) 2026-04-27T23:56:18.536 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E57F3F72-E76C-4CA1-B84A-5F74B56669D0}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-27T23:56:18.551 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E57F3F72-E76C-4CA1-B84A-5F74B56669D0}\mpavdlta.vdm] 2026-04-27T23:56:18.692 [Engine] IsHybridMode: 0 2026-04-27T23:56:18.692 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-27T23:56:18.708 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-CE7BEA6094BFC1A51FB291322D174BD9F60AEF06.bin): 0x00000002 2026-04-27T23:56:18.708 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-CE7BEA6094BFC1A51FB291322D174BD9F60AEF06.bin) 2026-04-27T23:56:18.708 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-27T23:56:18.708 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-27T23:56:18.708 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-27T23:56:18.708 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-27T23:56:27.979 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-27T23:56:27.979 [AutoExclusion] Applied roles from cache. 2026-04-27T23:56:27.979 [AutoExclusion] Started roles monitoring. 2026-04-27T23:56:27.995 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0EA68020, lRefCount: 5, hr=0 2026-04-27T23:56:27.995 [Engine] New active engine 00007FFD0D908020 replacing engine 00007FFD0EA68020. Number of active engines: 2 2026-04-27T23:56:27.995 EngineInit:Global ASOC is enabled 2026-04-27T23:56:27.995 EngineInit:ASOO is enabled for developer volumes 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-27T23:56:28.011 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-27T23:56:28.011 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-27T23:56:28.026 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-27T23:56:28.026 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-27T23:56:28.026 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-27T23:56:28.026 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-27T23:56:28.026 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-27T23:56:28.026 [Plugin] Initializing RTP plugin state... 2026-04-27T23:56:28.026 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎27‎-‎2026 01:56:29 Last Perf:‎04‎-‎27‎-‎2026 01:56:29 First RTP Scan:‎04‎-‎27‎-‎2026 01:56:29 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:400 Misses:2372 BM Queue:0,43,0 Proc:0,42,0 File:0,43,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1210072 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1316638032 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2931 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:110600 TotalHits:451414 InstanceCacheInserts:616894 InstanceCacheUpdates:0 InstanceCacheDeletes:106823 InstanceCacheHits:2523 InstanceCacheMisses:679170 InstanceCacheOverflows:499356 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (282/273) Success: 273, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-27T23:56:28.026 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-27T23:56:28.026 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E57F3F72-E76C-4CA1-B84A-5F74B56669D0} 2026-04-27T23:56:28.026 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C99194F-3428-41A2-87D8-382AC4C1C971}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C99194F-3428-41A2-87D8-382AC4C1C971}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-27T23:56:28.026 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-27T23:56:28.026 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EBD369E3-0132-41F8-8893-2A4B5297984F} removed 2026-04-27T23:56:28.042 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-27T23:56:28.042 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-27T23:56:28.042 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-27T23:56:28.042 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-27T23:56:28.042 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-27-2026 23:56:28 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-27-2026 23:56:28 2026-04-27T23:56:28.042 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-27T23:56:28.042 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-27T23:56:28.042 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-27T23:56:28.042 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-27T23:56:28.042 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-27T23:56:28.042 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-27T23:56:28.042 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-27T23:56:28.042 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-27T23:56:28.042 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-27T23:56:28.042 MdCoreSvc is supported in this platform and OS Signature updated on 04-27-2026 23:56:28 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.333.0 AV Signature Version: 1.449.333.0 ************************************************************ 2026-04-27T23:56:28.042 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-27T23:56:28.042 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\0223DED3-EACA-47D9-8225-7061D13B2A74f54.1dcd6a16fa93af9 2026-04-27T23:56:28.057 Process scan (postsignatureupdatescan) started. 2026-04-27T23:56:28.089 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-27T23:56:28.089 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 04-27-2026 23:56:28 ************************************************************ 2026-04-27T23:56:28.432 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-27T23:56:28.432 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-27T23:56:28.432 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-27T23:56:28.432 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-27T23:56:28.432 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-27T23:56:28.432 Job Notification: Process exited from job (4792) 2026-04-27T23:56:28.432 Job Notification: Process exited from job (6740) 2026-04-27T23:56:28.432 Job Notification: Process exited from job (5300) 2026-04-27T23:56:28.432 Job Notification: Process exited from job (3504) 2026-04-27T23:56:28.448 [Engine] Engine 00007FFD0EA68020 no longer in use. Number of active engines: 1 2026-04-27T23:56:28.448 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-27T23:56:28.448 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-27T23:56:28.526 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-27T23:56:28.526 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-27T23:56:28.526 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-27T23:56:29.432 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 56855, Count: 6975, MaxTime: 953, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-27T23:56:29.432 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9945, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.NAYGY3, EstimatedImpact: 0% 2026-04-27T23:56:29.432 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 525, Count: 307, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e5d_1.MAI, EstimatedImpact: 0% 2026-04-27T23:56:29.432 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-27T23:56:29.432 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-27T23:56:29.432 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d738745e-aa01-4d21-95f6-c07042b63d75.tmp, EstimatedImpact: 0% 2026-04-27T23:56:29.432 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b0d1c13f-fbf4-48eb-a044-74fb6d37b64e.tmp, EstimatedImpact: 0% 2026-04-27T23:56:29.432 ProcessImageName: updater.exe, Pid: 376, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\552db912-bf18-4230-8503-6ce636e9360a.tmp, EstimatedImpact: 0% 2026-04-27T23:56:29.432 ProcessImageName: updater.exe, Pid: 328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-04-27T23:56:29.432 ProcessImageName: updater.exe, Pid: 3488, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0e3d373-4eb4-454b-8190-59e3dd983e53.tmp, EstimatedImpact: 0% 2026-04-27T23:56:29.432 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1b3a286-9d90-4d3c-a86b-24ff4bad2131.tmp, EstimatedImpact: 0% 2026-04-27T23:56:29.432 ProcessImageName: updater.exe, Pid: 3412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab07a3db-cabd-45db-9ad1-53abd330c15e.tmp, EstimatedImpact: 0% 2026-04-27T23:56:29.432 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94b87295-c58c-46fd-858a-562983a5ce8c.tmp, EstimatedImpact: 0% 2026-04-27T23:56:29.432 ProcessImageName: updater.exe, Pid: 3944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58ad878e-a8f4-49ec-b8c2-813810bcb4e0.tmp, EstimatedImpact: 0% 2026-04-27T23:56:29.479 [Engine] RSIG_UNLOADENGINE, 00007FFD0EA68020, err=0x0 2026-04-27T23:56:29.495 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C99194F-3428-41A2-87D8-382AC4C1C971} removed 2026-04-27T23:56:33.886 Process scan (postsignatureupdatescan) completed. 2026-04-27T23:56:49.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T00:01:28.019 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-28T00:10:25.519 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1210900, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T00:10:25.535 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1210902, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T00:10:35.549 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1210915, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T00:10:35.549 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1210917, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T00:11:54.313 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T00:26:59.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T00:42:04.313 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T00:57:09.301 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T01:10:26.386 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1214285, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T01:10:26.402 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1214287, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T01:10:36.396 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1214300, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T01:10:36.412 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1214302, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T01:10:36.412 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1214304, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T01:12:14.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T01:27:19.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T01:42:24.300 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T01:46:33.398 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e90_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1217480, FileId: 0xb19000000045978, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T01:56:28.001 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 43616, Count: 6282, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-28T01:56:28.001 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 645, Count: 6480, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TCBRY3, EstimatedImpact: 0% 2026-04-28T01:56:28.001 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e90_3.MAI, EstimatedImpact: 0% 2026-04-28T01:56:28.001 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75d09b10-5735-413f-be1a-16d4132e1f98.tmp, EstimatedImpact: 0% 2026-04-28T01:56:28.001 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0383044-a22a-4fed-b228-1bbbfab1ad3e.tmp, EstimatedImpact: 0% 2026-04-28T01:57:29.314 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T02:01:53.772 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:54754EED-B898-4186-B491-6FDACA9066F9, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-28T02:01:53.772 Scheduled scan with Id 54754EED-B898-4186-B491-6FDACA9066F9 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-28T02:01:53.772 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-28T02:01:53.772 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-28T02:01:53.772 [SFC] System file cache build is not needed (already completed) 2026-04-28T02:02:03.202 Engine:Triggered AR EMS scan 2026-04-28T02:02:03.217 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.233 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.249 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.280 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.311 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.327 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.342 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.374 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.389 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.420 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.436 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.452 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.483 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.504 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.519 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.535 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.566 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.629 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.644 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.660 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.691 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.738 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-28T02:02:03.769 Bm signature throttled:0x00002db31bed458f Internal signature match:subtype=Lowfi, sigseq=0x00006EE76F468E97, sigsha=111f9089237d2c42ad7a36c5d36ac1f893b9d0c0, cached=false, source=0, resourceid=0x266b2885 2026-04-28T02:02:08.707 Engine:Setting original file name "ALF:HackTool:Script/LazyPeach.B!dha" for "\\?\c:\users\administrator.extern\appdata\local\google\chrome\user data\default\extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.94.1_0\manifest.json", hr=0x0 Internal signature match:subtype=Lowfi, sigseq=0x00006EE76F468E97, sigsha=111f9089237d2c42ad7a36c5d36ac1f893b9d0c0, cached=false, source=0, resourceid=0xd0d50010 2026-04-28T02:02:10.050 Engine:Setting original file name "ALF:HackTool:Script/LazyPeach.B!dha" for "\\?\c:\users\administrator\appdata\local\google\chrome\user data\default\extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.100.1_0\manifest.json", hr=0x0 Internal signature match:subtype=Lowfi, sigseq=0x00006EE76F468E97, sigsha=111f9089237d2c42ad7a36c5d36ac1f893b9d0c0, cached=false, source=0, resourceid=0x5d5dfdf2 2026-04-28T02:02:10.800 Engine:Setting original file name "ALF:HackTool:Script/LazyPeach.B!dha" for "\\?\c:\users\administrator\appdata\local\google\chrome\user data\default\extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.101.1_0\manifest.json", hr=0x0 Internal signature match:subtype=Lowfi, sigseq=0x00006EE76F468E97, sigsha=111f9089237d2c42ad7a36c5d36ac1f893b9d0c0, cached=false, source=0, resourceid=0x10b5fd95 2026-04-28T02:02:11.550 Engine:Setting original file name "ALF:HackTool:Script/LazyPeach.B!dha" for "\\?\c:\users\administrator\appdata\local\google\chrome\user data\default\extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.102.1_0\manifest.json", hr=0x0 Internal signature match:subtype=Lowfi, sigseq=0x00006EE76F468E97, sigsha=111f9089237d2c42ad7a36c5d36ac1f893b9d0c0, cached=false, source=0, resourceid=0x8b65fd5b 2026-04-28T02:02:12.285 Engine:Setting original file name "ALF:HackTool:Script/LazyPeach.B!dha" for "\\?\c:\users\administrator\appdata\local\google\chrome\user data\default\extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.104.1_0\manifest.json", hr=0x0 2026-04-28T02:02:16.957 QuickScan:ScanID:54754EED-B898-4186-B491-6FDACA9066F9: Quick scan finished with error 0 2026-04-28T02:02:16.988 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-28T02:02:16.988 [Cloud] Start of cloud request. Passive mode: 0 2026-04-28T02:02:16.988 [Cloud] Queued cloud request. 2026-04-28T02:02:16.988 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-28T02:02:16.988 [Cloud] Dequeued cloud request. 2026-04-28T02:02:16.988 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\37a106a745de29425fa0d904bab9a4a28bad2914 Dynamic Signature Compilation Timestamp:04-28-2026 02:02:07 Persistence Type:Duration Time remaining:150196224 2026-04-28T02:02:17.428 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\06ff1e82b25bc865fcf45785a596b71efcb90bff Dynamic Signature Compilation Timestamp:04-28-2026 02:02:07 Persistence Type:Duration Time remaining:150196224 2026-04-28T02:02:17.428 Dynamic signature received 2026-04-28T02:02:17.428 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\d5957240480eb2d2af8c5e42f74759a933e8060e Dynamic Signature Compilation Timestamp:04-28-2026 02:02:07 Persistence Type:Duration Time remaining:50065408 2026-04-28T02:02:17.444 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\e9da7d12d6a7604088a69870fdc3bbff85ac7880 Dynamic Signature Compilation Timestamp:04-28-2026 02:02:07 Persistence Type:Duration Time remaining:150196224 2026-04-28T02:02:17.444 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\52aa51796d89b5c7def8a4425e4155c24046dc82 Dynamic Signature Compilation Timestamp:04-28-2026 02:02:07 Persistence Type:Duration Time remaining:50065408 2026-04-28T02:02:17.444 [Cloud] End of cloud request. 2026-04-28T02:02:17.460 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-28T02:02:17.956 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-28T02:02:17.956 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-28T02:02:17.956 [RTP] Duplicating the current plugin configuration object... 2026-04-28T02:02:17.956 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-28T02:02:17.956 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-28T02:02:17.956 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-28T02:02:17.956 [RTP] No config change detected. Not updating plugin configuration. 2026-04-28T02:02:17.956 [RTP] No config changes found. No configuration switch. 2026-04-28T02:02:17.956 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-28T02:10:26.441 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1219462, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:10:26.457 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1219464, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:10:36.458 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1219477, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:10:36.458 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1219479, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:10:36.630 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1219483, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:10:36.630 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1219485, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:12:34.305 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T02:27:39.300 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T02:32:32.947 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1220706, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:32:32.947 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1220708, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:32:37.840 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1220720, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:32:37.856 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1220722, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:32:37.871 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1220724, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:32:47.859 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1220737, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:32:47.859 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1220739, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:32:47.859 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1220741, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:32:47.859 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1220743, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:42:44.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T02:51:05.260 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e96_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1221810, FileId: 0x490800000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:51:05.870 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e96_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1221814, FileId: 0x490900000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T02:57:49.299 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T03:10:25.573 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1222890, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T03:10:25.589 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1222892, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T03:10:35.599 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1222905, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T03:10:35.599 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1222908, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T03:12:54.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T03:27:59.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T03:43:04.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T03:56:28.014 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47533, Count: 6524, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-04-28T03:56:28.014 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1350, Count: 12951, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TCBRY3, EstimatedImpact: 0% 2026-04-28T03:56:28.014 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e90_3.MAI, EstimatedImpact: 0% 2026-04-28T03:56:28.014 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826b6c46-7087-490e-981a-76ac5351b175.tmp, EstimatedImpact: 0% 2026-04-28T03:56:28.014 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75d09b10-5735-413f-be1a-16d4132e1f98.tmp, EstimatedImpact: 0% 2026-04-28T03:56:28.014 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e5bf0e59-3f77-4990-9506-d2e7f04254b8.tmp, EstimatedImpact: 0% 2026-04-28T03:56:28.014 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0383044-a22a-4fed-b228-1bbbfab1ad3e.tmp, EstimatedImpact: 0% 2026-04-28T03:56:28.014 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded3ec66-15ce-4ff8-9572-1292f2671673.tmp, EstimatedImpact: 0% 2026-04-28T03:58:09.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T04:10:25.423 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1226221, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T04:10:25.438 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1226223, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T04:10:35.438 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1226236, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T04:10:35.454 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1226239, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T04:13:14.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T04:28:19.313 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T04:43:24.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T04:58:29.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T05:10:27.833 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1229529, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T05:10:27.849 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1229531, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T05:10:37.842 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1229544, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T05:10:37.858 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1229546, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T05:10:37.858 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1229548, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T05:13:34.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T05:28:39.306 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T05:43:44.301 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T05:56:28.024 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47564, Count: 6527, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-04-28T05:56:28.024 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2115, Count: 19422, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TCBRY3, EstimatedImpact: 0% 2026-04-28T05:56:28.024 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e90_3.MAI, EstimatedImpact: 0% 2026-04-28T05:56:28.024 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826b6c46-7087-490e-981a-76ac5351b175.tmp, EstimatedImpact: 0% 2026-04-28T05:56:28.024 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75d09b10-5735-413f-be1a-16d4132e1f98.tmp, EstimatedImpact: 0% 2026-04-28T05:56:28.024 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a75421-3303-4693-b3aa-d6a5c021adb6.tmp, EstimatedImpact: 0% 2026-04-28T05:56:28.024 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a087ba98-bd27-4fdc-9d7f-d85076659b5b.tmp, EstimatedImpact: 0% 2026-04-28T05:56:28.024 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e5bf0e59-3f77-4990-9506-d2e7f04254b8.tmp, EstimatedImpact: 0% 2026-04-28T05:56:28.024 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0383044-a22a-4fed-b228-1bbbfab1ad3e.tmp, EstimatedImpact: 0% 2026-04-28T05:56:28.024 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded3ec66-15ce-4ff8-9572-1292f2671673.tmp, EstimatedImpact: 0% 2026-04-28T05:58:49.299 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T05:58:59.009 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e9b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1232235, FileId: 0x5e0700000004c485, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T05:58:59.572 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e9b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1232239, FileId: 0x5e0800000004c485, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T06:10:24.647 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1232889, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T06:10:24.663 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1232891, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T06:10:34.671 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1232904, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T06:10:34.671 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1232907, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T06:10:42.732 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e9c_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1232911, FileId: 0x33b000000053fe4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T06:10:43.232 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e9c_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1232924, FileId: 0x4d54000000008b6d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T06:13:54.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T06:28:59.305 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T06:44:04.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T06:59:09.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T07:10:26.637 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1236206, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:10:26.653 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1236208, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:10:36.650 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1236221, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:10:36.650 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1236223, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:10:36.837 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1236227, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:10:36.853 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1236229, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:14:14.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T07:29:19.308 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T07:32:37.934 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1237610, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:32:37.949 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1237612, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:32:41.882 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1237631, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:32:41.897 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1237634, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:32:41.897 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1237636, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:32:51.886 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1237649, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:32:51.901 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1237651, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:32:51.901 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1237653, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:32:51.901 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1237655, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T07:44:24.308 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T07:56:28.034 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48683, Count: 6581, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-28T07:56:28.034 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2775, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TCBRY3, EstimatedImpact: 0% 2026-04-28T07:56:28.034 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-28T07:56:28.034 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e90_3.MAI, EstimatedImpact: 0% 2026-04-28T07:56:28.034 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6645177e-eed0-4d05-b9ed-0bed5518762b.tmp, EstimatedImpact: 0% 2026-04-28T07:56:28.034 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-28T07:56:28.034 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826b6c46-7087-490e-981a-76ac5351b175.tmp, EstimatedImpact: 0% 2026-04-28T07:56:28.034 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75d09b10-5735-413f-be1a-16d4132e1f98.tmp, EstimatedImpact: 0% 2026-04-28T07:56:28.034 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a75421-3303-4693-b3aa-d6a5c021adb6.tmp, EstimatedImpact: 0% 2026-04-28T07:56:28.034 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded3ec66-15ce-4ff8-9572-1292f2671673.tmp, EstimatedImpact: 0% 2026-04-28T07:56:28.034 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cab306a-0842-4e76-9541-2b3919f85cd4.tmp, EstimatedImpact: 0% 2026-04-28T07:56:28.034 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a087ba98-bd27-4fdc-9d7f-d85076659b5b.tmp, EstimatedImpact: 0% 2026-04-28T07:56:28.034 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4eafbee-175f-4df2-90f6-0b51296235c1.tmp, EstimatedImpact: 0% 2026-04-28T07:56:28.034 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e5bf0e59-3f77-4990-9506-d2e7f04254b8.tmp, EstimatedImpact: 0% 2026-04-28T07:56:28.034 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0383044-a22a-4fed-b228-1bbbfab1ad3e.tmp, EstimatedImpact: 0% 2026-04-28T07:59:29.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T08:10:26.439 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1239726, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T08:10:26.439 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1239728, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T08:10:36.449 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1239742, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T08:10:36.449 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1239741, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T08:10:36.449 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1239744, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T08:14:34.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T08:29:39.312 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T08:44:44.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T08:59:49.305 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T09:10:24.733 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1243035, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T09:10:24.748 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1243037, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T09:10:34.745 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1243049, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T09:10:34.761 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1243051, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T09:10:34.761 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1243053, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T09:14:54.301 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T09:29:59.301 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T09:45:04.301 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T09:56:28.035 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48729, Count: 6584, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3540, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TCBRY3, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e90_3.MAI, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6645177e-eed0-4d05-b9ed-0bed5518762b.tmp, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826b6c46-7087-490e-981a-76ac5351b175.tmp, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: updater.exe, Pid: 412, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75d09b10-5735-413f-be1a-16d4132e1f98.tmp, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a75421-3303-4693-b3aa-d6a5c021adb6.tmp, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a087ba98-bd27-4fdc-9d7f-d85076659b5b.tmp, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4eafbee-175f-4df2-90f6-0b51296235c1.tmp, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cab306a-0842-4e76-9541-2b3919f85cd4.tmp, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e5bf0e59-3f77-4990-9506-d2e7f04254b8.tmp, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0383044-a22a-4fed-b228-1bbbfab1ad3e.tmp, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded3ec66-15ce-4ff8-9572-1292f2671673.tmp, EstimatedImpact: 0% 2026-04-28T09:56:28.035 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T10:00:09.305 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T10:10:27.593 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1246379, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T10:10:27.608 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1246381, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T10:10:37.622 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1246394, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T10:10:37.622 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1246396, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T10:10:37.622 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1246397, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T10:15:14.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T10:30:19.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T10:45:24.299 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T11:00:29.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T11:10:25.219 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1249695, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T11:10:25.235 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1249697, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T11:10:35.231 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1249710, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T11:10:35.246 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1249712, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T11:15:34.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T11:30:39.302 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T11:45:44.302 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T11:56:28.040 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48729, Count: 6585, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4530, Count: 38844, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TCBRY3, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e90_3.MAI, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6645177e-eed0-4d05-b9ed-0bed5518762b.tmp, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826b6c46-7087-490e-981a-76ac5351b175.tmp, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: updater.exe, Pid: 412, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75d09b10-5735-413f-be1a-16d4132e1f98.tmp, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a75421-3303-4693-b3aa-d6a5c021adb6.tmp, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4eafbee-175f-4df2-90f6-0b51296235c1.tmp, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e5bf0e59-3f77-4990-9506-d2e7f04254b8.tmp, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a087ba98-bd27-4fdc-9d7f-d85076659b5b.tmp, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: updater.exe, Pid: 7828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a1877c22-f3a2-4f2e-adc7-6371e249dc46.tmp, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0882083a-011c-43a4-8627-dba7a28cf150.tmp, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0383044-a22a-4fed-b228-1bbbfab1ad3e.tmp, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cab306a-0842-4e76-9541-2b3919f85cd4.tmp, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded3ec66-15ce-4ff8-9572-1292f2671673.tmp, EstimatedImpact: 0% 2026-04-28T11:56:28.040 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T12:00:49.302 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T12:10:25.264 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1253005, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:10:25.264 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1253007, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:10:35.258 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1253020, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:10:35.273 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1253022, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:10:35.415 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1253026, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:10:35.415 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1253028, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:15:54.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T12:29:20.566 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ea3_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1254072, FileId: 0x1509000000053f93, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:30:59.306 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T12:32:41.978 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1254258, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:32:41.994 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1254260, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:32:46.021 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1254270, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:32:46.037 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1254273, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:32:46.037 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1254275, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:32:56.037 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1254288, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:32:56.053 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1254290, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:32:56.053 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1254291, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T12:46:04.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T13:01:09.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T13:10:25.664 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1256361, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T13:10:25.680 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1256363, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T13:10:35.673 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1256376, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T13:16:14.311 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T13:31:19.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T13:46:24.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T13:56:28.039 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49910, Count: 6643, MaxTime: 406, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5565, Count: 45315, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TCBRY3, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 25, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e90_3.MAI, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6645177e-eed0-4d05-b9ed-0bed5518762b.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 6608, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e16f5b6-d3f1-454d-8a33-7292a4e19c03.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826b6c46-7087-490e-981a-76ac5351b175.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 412, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75d09b10-5735-413f-be1a-16d4132e1f98.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 7828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a1877c22-f3a2-4f2e-adc7-6371e249dc46.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a75421-3303-4693-b3aa-d6a5c021adb6.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cab306a-0842-4e76-9541-2b3919f85cd4.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 7144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a39b4220-a27f-4474-88ce-fc3cf1a4a346.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a087ba98-bd27-4fdc-9d7f-d85076659b5b.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0882083a-011c-43a4-8627-dba7a28cf150.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1660a2d1-0a67-4be8-a8cb-e7756a243743.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4eafbee-175f-4df2-90f6-0b51296235c1.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e5bf0e59-3f77-4990-9506-d2e7f04254b8.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0383044-a22a-4fed-b228-1bbbfab1ad3e.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded3ec66-15ce-4ff8-9572-1292f2671673.tmp, EstimatedImpact: 0% 2026-04-28T13:56:28.039 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T14:01:29.305 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T14:16:34.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T14:31:39.310 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T14:46:44.296 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T15:01:49.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T15:10:35.044 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1263096, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T15:16:54.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T15:31:59.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T15:47:04.308 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T15:56:28.043 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49940, Count: 6650, MaxTime: 406, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6405, Count: 51786, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TCBRY3, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 25, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e90_3.MAI, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6645177e-eed0-4d05-b9ed-0bed5518762b.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 6608, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e16f5b6-d3f1-454d-8a33-7292a4e19c03.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826b6c46-7087-490e-981a-76ac5351b175.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 412, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75d09b10-5735-413f-be1a-16d4132e1f98.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1660a2d1-0a67-4be8-a8cb-e7756a243743.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a75421-3303-4693-b3aa-d6a5c021adb6.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cab306a-0842-4e76-9541-2b3919f85cd4.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a087ba98-bd27-4fdc-9d7f-d85076659b5b.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 7828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a1877c22-f3a2-4f2e-adc7-6371e249dc46.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4eafbee-175f-4df2-90f6-0b51296235c1.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 7144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a39b4220-a27f-4474-88ce-fc3cf1a4a346.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e5bf0e59-3f77-4990-9506-d2e7f04254b8.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 5708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb1255fc-954a-42b2-b482-fce03fdc83b7.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0882083a-011c-43a4-8627-dba7a28cf150.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0383044-a22a-4fed-b228-1bbbfab1ad3e.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded3ec66-15ce-4ff8-9572-1292f2671673.tmp, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T15:56:28.043 ProcessImageName: updater.exe, Pid: 7180, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T16:02:09.302 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T16:17:14.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T16:32:19.301 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T16:47:24.299 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T17:02:29.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T17:10:36.453 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1269727, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T17:17:34.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T17:32:39.301 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T17:47:44.306 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T17:56:28.043 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49940, Count: 6650, MaxTime: 406, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7245, Count: 58257, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TCBRY3, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 25, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e90_3.MAI, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6645177e-eed0-4d05-b9ed-0bed5518762b.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 6608, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e16f5b6-d3f1-454d-8a33-7292a4e19c03.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 7248, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7584181b-ba57-4e26-b308-2cd0bc0231fe.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826b6c46-7087-490e-981a-76ac5351b175.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 412, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75d09b10-5735-413f-be1a-16d4132e1f98.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cab306a-0842-4e76-9541-2b3919f85cd4.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0882083a-011c-43a4-8627-dba7a28cf150.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a75421-3303-4693-b3aa-d6a5c021adb6.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4eafbee-175f-4df2-90f6-0b51296235c1.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e5bf0e59-3f77-4990-9506-d2e7f04254b8.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1660a2d1-0a67-4be8-a8cb-e7756a243743.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a087ba98-bd27-4fdc-9d7f-d85076659b5b.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 7828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a1877c22-f3a2-4f2e-adc7-6371e249dc46.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40cea439-3ec9-4d1b-b700-76a55a8d2fbd.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 5708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb1255fc-954a-42b2-b482-fce03fdc83b7.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0383044-a22a-4fed-b228-1bbbfab1ad3e.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 7144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a39b4220-a27f-4474-88ce-fc3cf1a4a346.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 2572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5f1abc89-4e4e-47d1-929d-a284eb20345e.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded3ec66-15ce-4ff8-9572-1292f2671673.tmp, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T17:56:28.043 ProcessImageName: updater.exe, Pid: 7180, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T18:02:49.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T18:10:26.478 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1273056, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T18:17:54.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T18:32:59.309 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T18:48:04.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T19:03:09.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T19:18:14.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T19:29:27.399 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829eae_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1277422, FileId: 0x2de8000000008182, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T19:33:19.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T19:48:24.308 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T19:56:28.043 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49940, Count: 6652, MaxTime: 406, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8070, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TCBRY3, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 120, Count: 33, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e90_3.MAI, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6645177e-eed0-4d05-b9ed-0bed5518762b.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 6608, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e16f5b6-d3f1-454d-8a33-7292a4e19c03.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 7248, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7584181b-ba57-4e26-b308-2cd0bc0231fe.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826b6c46-7087-490e-981a-76ac5351b175.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 412, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75d09b10-5735-413f-be1a-16d4132e1f98.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded3ec66-15ce-4ff8-9572-1292f2671673.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4eafbee-175f-4df2-90f6-0b51296235c1.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a75421-3303-4693-b3aa-d6a5c021adb6.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1660a2d1-0a67-4be8-a8cb-e7756a243743.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e5bf0e59-3f77-4990-9506-d2e7f04254b8.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 5708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb1255fc-954a-42b2-b482-fce03fdc83b7.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a087ba98-bd27-4fdc-9d7f-d85076659b5b.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 7828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a1877c22-f3a2-4f2e-adc7-6371e249dc46.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40cea439-3ec9-4d1b-b700-76a55a8d2fbd.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 7144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a39b4220-a27f-4474-88ce-fc3cf1a4a346.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0882083a-011c-43a4-8627-dba7a28cf150.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0383044-a22a-4fed-b228-1bbbfab1ad3e.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 2572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5f1abc89-4e4e-47d1-929d-a284eb20345e.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 6772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5f1417bb-fdcf-4c7e-a2b1-be12f31ecb40.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cab306a-0842-4e76-9541-2b3919f85cd4.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 6492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\300e7ea6-65af-44d9-8970-8d8503317bd7.tmp, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T19:56:28.043 ProcessImageName: updater.exe, Pid: 7180, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T20:03:29.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T20:18:34.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T20:33:39.296 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T20:48:44.296 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T21:03:49.296 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T21:10:24.337 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1283009, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T21:18:54.299 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T21:33:59.306 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T21:49:04.294 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T21:56:28.052 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49940, Count: 6653, MaxTime: 406, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8910, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TCBRY3, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 37, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e90_3.MAI, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6645177e-eed0-4d05-b9ed-0bed5518762b.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 6608, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e16f5b6-d3f1-454d-8a33-7292a4e19c03.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826b6c46-7087-490e-981a-76ac5351b175.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 7248, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7584181b-ba57-4e26-b308-2cd0bc0231fe.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 412, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75d09b10-5735-413f-be1a-16d4132e1f98.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 8172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40cea439-3ec9-4d1b-b700-76a55a8d2fbd.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 6772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5f1417bb-fdcf-4c7e-a2b1-be12f31ecb40.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 8056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a75421-3303-4693-b3aa-d6a5c021adb6.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0882083a-011c-43a4-8627-dba7a28cf150.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 5708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb1255fc-954a-42b2-b482-fce03fdc83b7.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a087ba98-bd27-4fdc-9d7f-d85076659b5b.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 7828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a1877c22-f3a2-4f2e-adc7-6371e249dc46.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1660a2d1-0a67-4be8-a8cb-e7756a243743.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded3ec66-15ce-4ff8-9572-1292f2671673.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b63fdd9e-acc7-42e8-ab96-7ca4aee8d0e1.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 6244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4eafbee-175f-4df2-90f6-0b51296235c1.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cab306a-0842-4e76-9541-2b3919f85cd4.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 6492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\300e7ea6-65af-44d9-8970-8d8503317bd7.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 5996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77e04b32-234e-4288-a1f6-6a6001e17e7e.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e5bf0e59-3f77-4990-9506-d2e7f04254b8.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 7144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a39b4220-a27f-4474-88ce-fc3cf1a4a346.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 2572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5f1abc89-4e4e-47d1-929d-a284eb20345e.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0383044-a22a-4fed-b228-1bbbfab1ad3e.tmp, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T21:56:28.052 ProcessImageName: updater.exe, Pid: 7180, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-28T22:04:09.300 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T22:10:55.548 ReportLowfi(c:\program files (x86)\google\chrome\application\147.0.7727.137\installer\chrmstp.exe, 0x437a0835) from 0x0006b6bd6566d2d9 Internal signature match:subtype=Lowfi, sigseq=0x000005550240CBF2, sigsha=e39a25e9b19899abbd79ec872fd8aeabe27e140d, cached=false, source=0, resourceid=0xd5e025b0 2026-04-28T22:10:55.923 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1286689, FileId: 0x1f0000000568a5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T22:19:14.305 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T22:32:50.049 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1287954, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T22:34:19.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T22:49:24.294 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T23:04:29.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T23:10:36.031 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1290076, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-28T23:19:34.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T23:34:39.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T23:49:44.308 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-28T23:55:24.308 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-28T23:55:24.324 Job Notification: New process added to job (5480) 2026-04-28T23:55:24.339 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-28T23:55:24.339 Job Notification: New process added to job (6808) 2026-04-28T23:55:24.339 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:5480] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6808]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-28T23:55:24.418 Job Notification: New process added to job (2580) 2026-04-28T23:55:24.418 Aggressive catchup quick scan threshold: 788106584200 / 25920000000000 2026-04-28T23:55:24.464 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-28T23:55:24.480 Job Notification: New process added to job (2024) 2026-04-28T23:55:24.480 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:2580] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2024]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-28T23:55:24.918 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-28T23:55:24.949 [RTP] Duplicating the current plugin configuration object... 2026-04-28T23:55:24.949 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-28T23:55:24.949 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-28T23:55:24.949 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-28T23:55:24.949 [RTP] No config change detected. Not updating plugin configuration. 2026-04-28T23:55:24.949 [RTP] No config changes found. No configuration switch. 2026-04-28T23:55:24.949 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-28T23:55:25.089 Job Notification: New process added to job (7160) 2026-04-28T23:55:25.089 Task(GetDeviceTicket -AccessKey EA3F2B21-A986-124B-42EC-EFEBD051882B ) launched as network service 2026-04-28T23:55:25.949 Job Notification: Process exited from job (7160) 2026-04-28T23:55:27.121 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-28T23:55:27.121 [Cloud] Start of cloud request. Passive mode: 0 2026-04-28T23:55:27.121 [Cloud] Queued cloud request. 2026-04-28T23:55:27.121 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-28T23:55:27.121 [Cloud] Dequeued cloud request. 2026-04-28T23:55:27.121 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-28T23:55:27.121 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-28T23:55:27.121 [Cloud] Start of cloud request. Passive mode: 0 2026-04-28T23:55:27.121 [Cloud] Queued cloud request. 2026-04-28T23:55:27.121 [Cloud] Dequeued cloud request. 2026-04-28T23:55:27.121 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-28T23:55:27.339 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-28T23:55:27.339 [Cloud] End of cloud request. 2026-04-28T23:55:27.355 [Cloud] End of cloud request. 2026-04-28T23:55:27.621 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-28T23:55:38.197 Job Notification: Process exited from job (2112) 2026-04-28T23:56:06.966 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\6FFB368C-C563-4B69-BA5C-CDB3B8269D331334.1dcd76a932ae619 2026-04-28T23:56:07.029 Verifying engine and signature files (source: 0) ... 2026-04-28T23:56:07.029 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D959D56E-7D2E-4F81-824F-4D735BBA64BA}\mpengine.dll] due to PPL. 2026-04-28T23:56:07.029 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D959D56E-7D2E-4F81-824F-4D735BBA64BA}\mpasbase.vdm] (file in cache) 2026-04-28T23:56:07.029 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D959D56E-7D2E-4F81-824F-4D735BBA64BA}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-28T23:56:07.045 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D959D56E-7D2E-4F81-824F-4D735BBA64BA}\mpasdlta.vdm] 2026-04-28T23:56:07.045 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D959D56E-7D2E-4F81-824F-4D735BBA64BA}\mpavbase.vdm] (file in cache) 2026-04-28T23:56:07.045 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D959D56E-7D2E-4F81-824F-4D735BBA64BA}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-28T23:56:07.060 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D959D56E-7D2E-4F81-824F-4D735BBA64BA}\mpavdlta.vdm] 2026-04-28T23:56:07.263 [Engine] IsHybridMode: 0 2026-04-28T23:56:07.263 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-28T23:56:07.326 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-F4BEA7081EA2F5612F2F0478A555AD64AA4C7C55.bin): 0x00000002 2026-04-28T23:56:07.326 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-F4BEA7081EA2F5612F2F0478A555AD64AA4C7C55.bin) 2026-04-28T23:56:07.326 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-28T23:56:07.326 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-28T23:56:07.326 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-28T23:56:07.326 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-28T23:56:16.583 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-28T23:56:16.583 [AutoExclusion] Applied roles from cache. 2026-04-28T23:56:16.583 [AutoExclusion] Started roles monitoring. 2026-04-28T23:56:16.598 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D908020, lRefCount: 5, hr=0 2026-04-28T23:56:16.598 [Engine] New active engine 00007FFD0EA68020 replacing engine 00007FFD0D908020. Number of active engines: 2 2026-04-28T23:56:16.598 EngineInit:Global ASOC is enabled 2026-04-28T23:56:16.598 EngineInit:ASOO is enabled for developer volumes 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-28T23:56:16.614 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-28T23:56:16.630 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-28T23:56:16.630 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-28T23:56:16.630 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-28T23:56:16.630 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-28T23:56:16.630 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-28T23:56:16.645 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-28T23:56:16.645 [Plugin] Initializing RTP plugin state... 2026-04-28T23:56:16.645 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-28T23:56:16.645 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎28‎-‎2026 01:56:28 Last Perf:‎04‎-‎28‎-‎2026 01:56:28 First RTP Scan:‎04‎-‎28‎-‎2026 01:56:38 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:419 Misses:2161 BM Queue:0,43,0 Proc:0,43,0 File:0,35,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1292657 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1407307150 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2647 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:114904 TotalHits:480024 InstanceCacheInserts:660430 InstanceCacheUpdates:0 InstanceCacheDeletes:115015 InstanceCacheHits:2588 InstanceCacheMisses:724164 InstanceCacheOverflows:534635 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (345/285) Success: 285, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-28T23:56:16.645 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D959D56E-7D2E-4F81-824F-4D735BBA64BA} 2026-04-28T23:56:16.645 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-28T23:56:16.645 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9C214A69-3FD5-49CA-B44B-82677F3F2D33} removed 2026-04-28T23:56:16.645 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E57F3F72-E76C-4CA1-B84A-5F74B56669D0}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E57F3F72-E76C-4CA1-B84A-5F74B56669D0}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-28T23:56:16.645 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-28T23:56:16.645 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-28T23:56:16.645 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-28T23:56:16.645 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-28T23:56:16.645 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-28-2026 23:56:16 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-28-2026 23:56:16 2026-04-28T23:56:16.645 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-28T23:56:16.645 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-28T23:56:16.645 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-28T23:56:16.645 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-28T23:56:16.645 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-28T23:56:16.645 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-28T23:56:16.645 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-28T23:56:16.645 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-28T23:56:16.645 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-28T23:56:16.645 MdCoreSvc is supported in this platform and OS Signature updated on 04-28-2026 23:56:16 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.350.0 AV Signature Version: 1.449.350.0 ************************************************************ 2026-04-28T23:56:16.645 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-28T23:56:16.645 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\6FFB368C-C563-4B69-BA5C-CDB3B8269D331334.1dcd76a932ae619 2026-04-28T23:56:16.676 Process scan (postsignatureupdatescan) started. 2026-04-28T23:56:16.708 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-28T23:56:16.708 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-04-28T23:56:16.895 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-28T23:56:16.895 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-28T23:56:16.895 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-28T23:56:16.895 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-28T23:56:16.895 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-28T23:56:16.911 [Engine] Engine 00007FFD0D908020 no longer in use. Number of active engines: 1 2026-04-28T23:56:16.911 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-28T23:56:16.911 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). Signature updated via MicrosoftUpdateServer on 04-28-2026 23:56:16 ************************************************************ 2026-04-28T23:56:16.911 Job Notification: Process exited from job (2580) 2026-04-28T23:56:16.926 Job Notification: Process exited from job (5480) 2026-04-28T23:56:16.926 Job Notification: Process exited from job (2024) 2026-04-28T23:56:16.926 Job Notification: Process exited from job (6808) 2026-04-28T23:56:17.145 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-28T23:56:17.145 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-28T23:56:17.145 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-28T23:56:17.880 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49955, Count: 6656, MaxTime: 406, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-04-28T23:56:17.880 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9885, Count: 77661, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.TCBRY3, EstimatedImpact: 0% 2026-04-28T23:56:17.880 ProcessImageName: updater.exe, Pid: 7020, TotalTime: 5151, Count: 13, MaxTime: 5046, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7020_1320916684\147.0.7727.137_chrome_installer_uncompressed.exe, EstimatedImpact: 11% 2026-04-28T23:56:17.880 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 180, Count: 41, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829e90_3.MAI, EstimatedImpact: 0% 2026-04-28T23:56:17.880 ProcessImageName: setup.exe, Pid: 6172, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 2% 2026-04-28T23:56:17.880 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-28T23:56:17.880 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6645177e-eed0-4d05-b9ed-0bed5518762b.tmp, EstimatedImpact: 0% 2026-04-28T23:56:17.880 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-28T23:56:17.880 ProcessImageName: updater.exe, Pid: 6608, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e16f5b6-d3f1-454d-8a33-7292a4e19c03.tmp, EstimatedImpact: 0% 2026-04-28T23:56:17.880 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 1% 2026-04-28T23:56:17.880 ProcessImageName: updater.exe, Pid: 7248, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7584181b-ba57-4e26-b308-2cd0bc0231fe.tmp, EstimatedImpact: 0% 2026-04-28T23:56:17.880 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826b6c46-7087-490e-981a-76ac5351b175.tmp, EstimatedImpact: 0% 2026-04-28T23:56:17.942 [Engine] RSIG_UNLOADENGINE, 00007FFD0D908020, err=0x0 2026-04-28T23:56:17.958 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E57F3F72-E76C-4CA1-B84A-5F74B56669D0} removed 2026-04-28T23:56:23.505 Process scan (postsignatureupdatescan) completed. 2026-04-29T00:01:16.620 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-29T00:04:49.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T00:10:26.247 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1293499, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T00:10:26.263 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1293501, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T00:10:36.256 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1293514, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T00:10:36.274 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1293516, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T00:10:36.274 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl.old. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1293518, FileId: 0x46540000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T00:19:54.302 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T00:34:59.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T00:50:04.301 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T01:05:09.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T01:10:25.814 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1296857, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T01:10:25.845 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1296860, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T01:10:35.823 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1296873, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T01:10:35.838 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1296875, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T01:10:35.838 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1296877, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T01:10:35.838 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1296879, FileId: 0x55c000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T01:18:23.331 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829eba_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1298500, FileId: 0x2f9100000000588c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T01:18:33.628 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829eba_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1298956, FileId: 0x16b900000004a77a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T01:20:14.295 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T01:35:19.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T01:50:24.299 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T01:56:16.611 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 42818, Count: 6282, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 3% 2026-04-29T01:56:16.611 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 975, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.P5JYY3, EstimatedImpact: 0% 2026-04-29T01:56:16.611 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2acbffa5-5629-44c3-aa12-4f25c81931c1.tmp, EstimatedImpact: 0% 2026-04-29T01:56:16.611 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18b5c1dc-834f-4b55-8312-99ac33a40053.tmp, EstimatedImpact: 0% 2026-04-29T01:56:16.611 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 0, Count: 4, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829eba_1.MAI, EstimatedImpact: 0% 2026-04-29T02:01:53.776 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:1A902960-CAA2-47DA-87C2-07C8566FE3B5, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-29T02:01:53.776 Scheduled scan with Id 1A902960-CAA2-47DA-87C2-07C8566FE3B5 configured CPU priority: normal (LowCpuPriority: 0) 2026-04-29T02:01:53.776 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-29T02:01:53.776 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-29T02:01:53.776 [SFC] System file cache build is not needed (already completed) 2026-04-29T02:02:03.937 Engine:Triggered AR EMS scan 2026-04-29T02:02:03.937 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:03.952 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:03.983 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:03.999 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.030 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.062 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.062 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.093 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.124 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.140 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.155 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.187 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.202 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.218 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.249 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.265 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.280 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.358 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.374 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.405 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.421 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.468 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-29T02:02:04.499 Bm signature throttled:0x00002db31bed458f 2026-04-29T02:02:27.452 QuickScan:ScanID:1A902960-CAA2-47DA-87C2-07C8566FE3B5: Quick scan finished with error 0 2026-04-29T02:02:27.468 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-29T02:02:27.968 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-29T02:02:27.968 [RTP] Duplicating the current plugin configuration object... 2026-04-29T02:02:27.968 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-29T02:02:27.968 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-29T02:02:27.968 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-29T02:02:27.968 [RTP] No config change detected. Not updating plugin configuration. 2026-04-29T02:02:27.968 [RTP] No config changes found. No configuration switch. 2026-04-29T02:02:27.968 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-29T02:05:29.305 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T02:10:25.948 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1302013, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T02:10:25.963 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1302015, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T02:10:35.951 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1302028, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T02:10:35.951 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1302030, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T02:10:35.966 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1302032, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T02:10:35.966 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1302034, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T02:20:34.294 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T02:35:39.299 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T02:50:44.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T03:05:49.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T03:10:25.551 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305430, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T03:10:25.566 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305432, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T03:10:35.564 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305444, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T03:10:35.580 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305446, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T03:10:35.720 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305450, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T03:10:35.736 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1305452, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T03:20:54.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T03:32:54.443 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1306691, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T03:32:54.443 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1306693, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T03:32:59.651 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1306703, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T03:32:59.667 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1306706, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T03:32:59.667 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1306708, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T03:33:09.664 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1306721, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T03:33:09.664 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1306722, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T03:33:09.664 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1306723, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T03:35:59.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T03:51:04.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T03:56:16.620 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 42833, Count: 6283, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-29T03:56:16.620 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1695, Count: 12951, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.P5JYY3, EstimatedImpact: 0% 2026-04-29T03:56:16.620 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3001e5e5-9647-4ed4-aa47-fcc0da85bdbf.tmp, EstimatedImpact: 0% 2026-04-29T03:56:16.620 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2acbffa5-5629-44c3-aa12-4f25c81931c1.tmp, EstimatedImpact: 0% 2026-04-29T03:56:16.620 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18b5c1dc-834f-4b55-8312-99ac33a40053.tmp, EstimatedImpact: 0% 2026-04-29T03:56:16.620 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0f74a00-59bc-4780-b1be-157b89560eea.tmp, EstimatedImpact: 0% 2026-04-29T03:56:16.620 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bfcbd9-ebfc-4ad3-bded-9872f2b0486b.tmp, EstimatedImpact: 0% 2026-04-29T03:56:16.620 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 0, Count: 4, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829eba_1.MAI, EstimatedImpact: 0% 2026-04-29T04:06:09.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T04:10:25.957 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1308778, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T04:10:25.973 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1308780, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T04:10:35.969 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1308793, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T04:10:35.969 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1308795, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T04:10:35.985 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1308798, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T04:21:14.299 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T04:36:19.306 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T04:51:24.307 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T05:06:29.306 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T05:10:25.452 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1312097, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T05:10:25.467 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1312099, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T05:10:35.476 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1312112, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T05:10:35.476 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1312114, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T05:10:35.476 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1312116, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T05:21:34.295 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T05:36:39.301 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T05:51:44.305 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T05:56:16.621 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 43485, Count: 6333, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-29T05:56:16.621 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2460, Count: 19422, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.P5JYY3, EstimatedImpact: 0% 2026-04-29T05:56:16.621 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-29T05:56:16.621 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3001e5e5-9647-4ed4-aa47-fcc0da85bdbf.tmp, EstimatedImpact: 0% 2026-04-29T05:56:16.621 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2acbffa5-5629-44c3-aa12-4f25c81931c1.tmp, EstimatedImpact: 0% 2026-04-29T05:56:16.621 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18b5c1dc-834f-4b55-8312-99ac33a40053.tmp, EstimatedImpact: 0% 2026-04-29T05:56:16.621 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36527d16-195d-4c5f-a3f7-965eb9dfcea1.tmp, EstimatedImpact: 0% 2026-04-29T05:56:16.621 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0f74a00-59bc-4780-b1be-157b89560eea.tmp, EstimatedImpact: 0% 2026-04-29T05:56:16.621 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e68ee9c6-425e-4ba2-aeda-1b5896ae51e3.tmp, EstimatedImpact: 0% 2026-04-29T05:56:16.621 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bfcbd9-ebfc-4ad3-bded-9872f2b0486b.tmp, EstimatedImpact: 0% 2026-04-29T05:56:16.621 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 0, Count: 4, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829eba_1.MAI, EstimatedImpact: 0% 2026-04-29T06:06:49.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T06:10:25.679 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1315609, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T06:10:25.694 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1315611, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T06:10:35.682 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1315625, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T06:10:35.698 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1315627, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T06:10:35.698 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1315629, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T06:10:35.698 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1315631, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T06:21:54.305 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T06:36:59.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T06:39:31.055 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ebd_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1317234, FileId: 0x4230000000545c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T06:52:04.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T07:07:09.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T07:10:28.250 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1318937, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T07:10:28.250 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1318939, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T07:10:38.252 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1318952, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T07:10:38.252 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1318954, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T07:10:38.268 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1318956, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T07:10:38.268 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1318958, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T07:22:14.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T07:37:19.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T07:52:24.302 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T07:56:16.624 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 43485, Count: 6334, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-29T07:56:16.624 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3270, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.P5JYY3, EstimatedImpact: 0% 2026-04-29T07:56:16.624 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-29T07:56:16.624 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3001e5e5-9647-4ed4-aa47-fcc0da85bdbf.tmp, EstimatedImpact: 0% 2026-04-29T07:56:16.624 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2acbffa5-5629-44c3-aa12-4f25c81931c1.tmp, EstimatedImpact: 0% 2026-04-29T07:56:16.624 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ebd_1.MAI, EstimatedImpact: 0% 2026-04-29T07:56:16.624 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18b5c1dc-834f-4b55-8312-99ac33a40053.tmp, EstimatedImpact: 0% 2026-04-29T07:56:16.624 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36527d16-195d-4c5f-a3f7-965eb9dfcea1.tmp, EstimatedImpact: 0% 2026-04-29T07:56:16.624 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0f74a00-59bc-4780-b1be-157b89560eea.tmp, EstimatedImpact: 0% 2026-04-29T07:56:16.624 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c1c2b16a-ea16-41e6-842d-927d0964316d.tmp, EstimatedImpact: 0% 2026-04-29T07:56:16.624 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e68ee9c6-425e-4ba2-aeda-1b5896ae51e3.tmp, EstimatedImpact: 0% 2026-04-29T07:56:16.624 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bfcbd9-ebfc-4ad3-bded-9872f2b0486b.tmp, EstimatedImpact: 0% 2026-04-29T07:56:16.624 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c12e7fc0-2bfe-4c9e-a608-38b616a62c09.tmp, EstimatedImpact: 0% 2026-04-29T08:07:29.296 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T08:10:24.869 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1322283, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T08:10:24.885 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1322285, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T08:10:34.879 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1322299, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T08:10:34.879 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1322301, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T08:10:35.051 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1322305, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T08:10:35.051 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1322307, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T08:22:34.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T08:32:59.744 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1323539, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T08:32:59.760 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1323541, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T08:33:05.088 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1323551, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T08:33:05.088 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1323554, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T08:33:05.104 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1323556, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T08:33:15.092 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1323569, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T08:33:15.108 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1323571, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T08:37:39.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T08:52:44.306 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T09:07:49.306 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T09:10:27.947 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1325627, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T09:10:27.963 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1325629, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T09:10:37.954 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1325642, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T09:10:37.969 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1325645, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T09:22:54.294 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T09:37:59.305 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T09:53:04.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T09:56:16.635 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 43485, Count: 6334, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3930, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.P5JYY3, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b9ded64-93c2-40ea-b5ed-552081feb70b.tmp, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3001e5e5-9647-4ed4-aa47-fcc0da85bdbf.tmp, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2acbffa5-5629-44c3-aa12-4f25c81931c1.tmp, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ebd_1.MAI, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18b5c1dc-834f-4b55-8312-99ac33a40053.tmp, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e68ee9c6-425e-4ba2-aeda-1b5896ae51e3.tmp, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36527d16-195d-4c5f-a3f7-965eb9dfcea1.tmp, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c12e7fc0-2bfe-4c9e-a608-38b616a62c09.tmp, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0f74a00-59bc-4780-b1be-157b89560eea.tmp, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bfcbd9-ebfc-4ad3-bded-9872f2b0486b.tmp, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebe7276b-314f-4da3-b4da-11847e23c343.tmp, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c1c2b16a-ea16-41e6-842d-927d0964316d.tmp, EstimatedImpact: 0% 2026-04-29T09:56:16.635 ProcessImageName: updater.exe, Pid: 980, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ea3450d-2e07-4bcf-8e10-522e6d5ab915.tmp, EstimatedImpact: 0% 2026-04-29T10:08:09.302 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T10:10:24.651 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1328942, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T10:10:24.667 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1328944, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T10:10:34.669 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1328957, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T10:10:34.684 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1328960, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T10:23:14.294 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T10:38:19.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T10:53:24.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T11:08:29.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T11:10:25.877 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1332249, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T11:10:25.893 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1332251, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T11:10:35.890 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1332265, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T11:10:35.890 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1332267, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T11:10:35.905 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1332270, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T11:23:34.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T11:33:28.987 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ec0_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1333545, FileId: 0x6d400000000056e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T11:38:39.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T11:49:47.748 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ec1_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1334437, FileId: 0xa15000000053475, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T11:49:48.264 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ec1_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1334441, FileId: 0xa16000000053475, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T11:53:44.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T11:56:16.643 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47433, Count: 6558, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4695, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.P5JYY3, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ebd_1.MAI, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b9ded64-93c2-40ea-b5ed-552081feb70b.tmp, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3001e5e5-9647-4ed4-aa47-fcc0da85bdbf.tmp, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2acbffa5-5629-44c3-aa12-4f25c81931c1.tmp, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18b5c1dc-834f-4b55-8312-99ac33a40053.tmp, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36527d16-195d-4c5f-a3f7-965eb9dfcea1.tmp, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e68ee9c6-425e-4ba2-aeda-1b5896ae51e3.tmp, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0f74a00-59bc-4780-b1be-157b89560eea.tmp, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebe7276b-314f-4da3-b4da-11847e23c343.tmp, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: updater.exe, Pid: 4200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5837a8c-33ee-4ceb-9262-310737bb7992.tmp, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c12e7fc0-2bfe-4c9e-a608-38b616a62c09.tmp, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bfcbd9-ebfc-4ad3-bded-9872f2b0486b.tmp, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c1c2b16a-ea16-41e6-842d-927d0964316d.tmp, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: updater.exe, Pid: 980, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ea3450d-2e07-4bcf-8e10-522e6d5ab915.tmp, EstimatedImpact: 0% 2026-04-29T11:56:16.643 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T12:08:49.296 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T12:10:26.342 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1335591, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T12:10:26.358 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1335593, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T12:10:36.367 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1335607, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T12:10:36.367 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1335609, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T12:23:54.290 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T12:38:59.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T12:54:04.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T13:09:09.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T13:10:26.302 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1338910, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T13:10:26.318 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1338912, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T13:10:36.322 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1338926, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T13:10:36.322 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1338928, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T13:10:36.479 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1338932, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T13:10:36.494 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1338934, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T13:24:14.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T13:33:05.168 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1340185, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T13:33:05.199 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1340188, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T13:33:09.017 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1340206, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T13:33:09.017 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1340209, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T13:33:09.033 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1340210, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T13:39:19.300 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T13:54:24.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T13:56:16.654 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48262, Count: 6604, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5595, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.P5JYY3, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ebd_1.MAI, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b9ded64-93c2-40ea-b5ed-552081feb70b.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3001e5e5-9647-4ed4-aa47-fcc0da85bdbf.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4cd8c00-e8cf-4ce5-a613-bc2fabaa8c9a.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2acbffa5-5629-44c3-aa12-4f25c81931c1.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18b5c1dc-834f-4b55-8312-99ac33a40053.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0f74a00-59bc-4780-b1be-157b89560eea.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebe7276b-314f-4da3-b4da-11847e23c343.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e68ee9c6-425e-4ba2-aeda-1b5896ae51e3.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36527d16-195d-4c5f-a3f7-965eb9dfcea1.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 4200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5837a8c-33ee-4ceb-9262-310737bb7992.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c12e7fc0-2bfe-4c9e-a608-38b616a62c09.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bfcbd9-ebfc-4ad3-bded-9872f2b0486b.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f670fc5f-8174-46c5-bda6-20ccc7b316e9.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0b252b87-68b0-41fe-a398-ac67ed1515e1.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c1c2b16a-ea16-41e6-842d-927d0964316d.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 980, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ea3450d-2e07-4bcf-8e10-522e6d5ab915.tmp, EstimatedImpact: 0% 2026-04-29T13:56:16.654 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T14:09:29.299 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T14:10:36.876 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1342317, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T14:24:34.294 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T14:39:39.299 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T14:54:44.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T15:09:49.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T15:10:36.044 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1345650, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T15:24:54.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T15:39:59.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T15:55:04.301 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T15:56:16.663 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48262, Count: 6606, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6435, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.P5JYY3, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 26, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ebd_1.MAI, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b9ded64-93c2-40ea-b5ed-552081feb70b.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3001e5e5-9647-4ed4-aa47-fcc0da85bdbf.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4cd8c00-e8cf-4ce5-a613-bc2fabaa8c9a.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2acbffa5-5629-44c3-aa12-4f25c81931c1.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18b5c1dc-834f-4b55-8312-99ac33a40053.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36527d16-195d-4c5f-a3f7-965eb9dfcea1.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebe7276b-314f-4da3-b4da-11847e23c343.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e68ee9c6-425e-4ba2-aeda-1b5896ae51e3.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c12e7fc0-2bfe-4c9e-a608-38b616a62c09.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0f74a00-59bc-4780-b1be-157b89560eea.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e6903d9-2634-4c85-b04a-1380a9d8b5a1.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 4200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5837a8c-33ee-4ceb-9262-310737bb7992.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bfcbd9-ebfc-4ad3-bded-9872f2b0486b.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f670fc5f-8174-46c5-bda6-20ccc7b316e9.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0b252b87-68b0-41fe-a398-ac67ed1515e1.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c1c2b16a-ea16-41e6-842d-927d0964316d.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 980, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ea3450d-2e07-4bcf-8e10-522e6d5ab915.tmp, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T15:56:16.663 ProcessImageName: updater.exe, Pid: 2404, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T16:10:09.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T16:25:14.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T16:40:19.304 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T16:55:24.301 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T17:10:29.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T17:25:34.289 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T17:40:39.299 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T17:55:44.294 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T17:56:16.676 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48262, Count: 6606, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7200, Count: 58248, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.P5JYY3, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 26, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ebd_1.MAI, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b9ded64-93c2-40ea-b5ed-552081feb70b.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3001e5e5-9647-4ed4-aa47-fcc0da85bdbf.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4cd8c00-e8cf-4ce5-a613-bc2fabaa8c9a.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2acbffa5-5629-44c3-aa12-4f25c81931c1.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18b5c1dc-834f-4b55-8312-99ac33a40053.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3f76a433-6bc6-40fc-b078-71c87556a535.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebe7276b-314f-4da3-b4da-11847e23c343.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e68ee9c6-425e-4ba2-aeda-1b5896ae51e3.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36527d16-195d-4c5f-a3f7-965eb9dfcea1.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0f74a00-59bc-4780-b1be-157b89560eea.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e6903d9-2634-4c85-b04a-1380a9d8b5a1.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 4200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5837a8c-33ee-4ceb-9262-310737bb7992.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c12e7fc0-2bfe-4c9e-a608-38b616a62c09.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bfcbd9-ebfc-4ad3-bded-9872f2b0486b.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f670fc5f-8174-46c5-bda6-20ccc7b316e9.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0b252b87-68b0-41fe-a398-ac67ed1515e1.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c1c2b16a-ea16-41e6-842d-927d0964316d.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 980, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ea3450d-2e07-4bcf-8e10-522e6d5ab915.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a46a0b0-585f-49b8-88f3-d8767406ac8b.tmp, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T17:56:16.676 ProcessImageName: updater.exe, Pid: 2404, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T18:06:15.337 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ece_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1355359, FileId: 0x2d000000054cc4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T18:10:49.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T18:25:54.290 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T18:33:14.203 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1356888, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T18:40:59.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T18:56:04.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T19:11:09.303 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T19:26:14.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T19:41:19.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T19:56:16.684 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48323, Count: 6613, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7830, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.P5JYY3, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 32, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ebd_1.MAI, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 2548, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74be7852-9d3c-4c03-bd87-ccc934c38d8a.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b9ded64-93c2-40ea-b5ed-552081feb70b.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3001e5e5-9647-4ed4-aa47-fcc0da85bdbf.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4cd8c00-e8cf-4ce5-a613-bc2fabaa8c9a.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2acbffa5-5629-44c3-aa12-4f25c81931c1.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18b5c1dc-834f-4b55-8312-99ac33a40053.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0f74a00-59bc-4780-b1be-157b89560eea.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3f76a433-6bc6-40fc-b078-71c87556a535.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 5620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d3e0496-bd91-4e83-857c-e5c2db02901d.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e6903d9-2634-4c85-b04a-1380a9d8b5a1.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c12e7fc0-2bfe-4c9e-a608-38b616a62c09.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bfcbd9-ebfc-4ad3-bded-9872f2b0486b.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebe7276b-314f-4da3-b4da-11847e23c343.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f670fc5f-8174-46c5-bda6-20ccc7b316e9.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0b252b87-68b0-41fe-a398-ac67ed1515e1.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e68ee9c6-425e-4ba2-aeda-1b5896ae51e3.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c1c2b16a-ea16-41e6-842d-927d0964316d.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 980, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ea3450d-2e07-4bcf-8e10-522e6d5ab915.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 4200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5837a8c-33ee-4ceb-9262-310737bb7992.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36527d16-195d-4c5f-a3f7-965eb9dfcea1.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a46a0b0-585f-49b8-88f3-d8767406ac8b.tmp, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 2404, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T19:56:16.684 ProcessImageName: updater.exe, Pid: 3232, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T19:56:24.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T20:10:25.979 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1362265, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T20:11:29.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T20:26:34.295 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T20:41:39.296 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T20:56:44.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T21:11:49.289 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T21:26:54.300 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T21:41:59.302 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T21:47:29.054 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ed5_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1367696, FileId: 0x2e7f00000003a559, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T21:47:31.030 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ed5_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1367751, FileId: 0x2e9100000003a559, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T21:47:39.905 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ed6_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1367853, FileId: 0x98a00000000056e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T21:47:40.593 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ed6_18.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1367883, FileId: 0x99400000000056e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T21:47:41.624 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ed6_2d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1367913, FileId: 0x99e00000000056e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T21:56:16.686 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52257, Count: 6961, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8640, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.P5JYY3, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 330, Count: 177, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ebd_1.MAI, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 2548, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74be7852-9d3c-4c03-bd87-ccc934c38d8a.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b9ded64-93c2-40ea-b5ed-552081feb70b.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3001e5e5-9647-4ed4-aa47-fcc0da85bdbf.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4cd8c00-e8cf-4ce5-a613-bc2fabaa8c9a.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2acbffa5-5629-44c3-aa12-4f25c81931c1.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18b5c1dc-834f-4b55-8312-99ac33a40053.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36527d16-195d-4c5f-a3f7-965eb9dfcea1.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebe7276b-314f-4da3-b4da-11847e23c343.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 5620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d3e0496-bd91-4e83-857c-e5c2db02901d.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 4200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5837a8c-33ee-4ceb-9262-310737bb7992.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e6903d9-2634-4c85-b04a-1380a9d8b5a1.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e68ee9c6-425e-4ba2-aeda-1b5896ae51e3.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c12e7fc0-2bfe-4c9e-a608-38b616a62c09.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bfcbd9-ebfc-4ad3-bded-9872f2b0486b.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f670fc5f-8174-46c5-bda6-20ccc7b316e9.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0b252b87-68b0-41fe-a398-ac67ed1515e1.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c1c2b16a-ea16-41e6-842d-927d0964316d.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f502c03b-d3c9-4c0c-ae55-ddd3d8e8decb.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0f74a00-59bc-4780-b1be-157b89560eea.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 980, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ea3450d-2e07-4bcf-8e10-522e6d5ab915.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a46a0b0-585f-49b8-88f3-d8767406ac8b.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3f76a433-6bc6-40fc-b078-71c87556a535.tmp, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 3232, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 2404, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T21:56:16.686 ProcessImageName: updater.exe, Pid: 344, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T21:57:04.300 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T22:10:26.895 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1369207, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T22:12:09.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T22:27:14.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T22:42:19.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T22:57:24.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T23:12:29.301 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T23:27:34.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T23:33:14.297 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1373792, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-29T23:42:39.292 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-29T23:55:24.294 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-29T23:55:24.310 Job Notification: New process added to job (5900) 2026-04-29T23:55:24.325 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-29T23:55:24.325 Aggressive catchup quick scan threshold: 788105538294 / 25920000000000 2026-04-29T23:55:24.325 Job Notification: New process added to job (7896) 2026-04-29T23:55:24.325 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:5900] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7896]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-29T23:55:24.388 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-29T23:55:24.388 Job Notification: New process added to job (6684) 2026-04-29T23:55:24.388 Job Notification: New process added to job (5560) 2026-04-29T23:55:24.404 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6684] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5560]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-29T23:55:24.810 Job Notification: New process added to job (5832) 2026-04-29T23:55:24.810 Task(GetDeviceTicket -AccessKey 0DE59F90-CF4B-DE2C-F014-F836A65D80BF ) launched as network service 2026-04-29T23:55:24.825 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-29T23:55:24.825 [RTP] Duplicating the current plugin configuration object... 2026-04-29T23:55:24.825 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-29T23:55:24.825 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-29T23:55:24.825 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-29T23:55:24.825 [RTP] No config change detected. Not updating plugin configuration. 2026-04-29T23:55:24.825 [RTP] No config changes found. No configuration switch. 2026-04-29T23:55:24.825 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-29T23:55:25.685 Job Notification: Process exited from job (5832) 2026-04-29T23:55:26.800 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-29T23:55:26.800 [Cloud] Start of cloud request. Passive mode: 0 2026-04-29T23:55:26.800 [Cloud] Queued cloud request. 2026-04-29T23:55:26.800 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-29T23:55:26.800 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-29T23:55:26.800 [Cloud] Start of cloud request. Passive mode: 0 2026-04-29T23:55:26.800 [Cloud] Queued cloud request. 2026-04-29T23:55:26.815 Job Notification: New process added to job (3436) 2026-04-29T23:55:26.831 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey EABE3F86-7154-FE51-5E7C-8CC56544EEA3) launched 2026-04-29T23:55:26.831 Job Notification: New process added to job (7908) 2026-04-29T23:55:26.831 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3436] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7908]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-29T23:55:26.847 Job Notification: New process added to job (4288) 2026-04-29T23:55:26.862 Job Notification: Process exited from job (3436) 2026-04-29T23:55:26.862 Job Notification: Process exited from job (7908) 2026-04-29T23:55:26.862 [Cloud] Dequeued cloud request. 2026-04-29T23:55:26.862 [Cloud] Dequeued cloud request. 2026-04-29T23:55:26.862 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-29T23:55:26.862 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-29T23:55:27.112 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-29T23:55:27.112 [Cloud] End of cloud request. 2026-04-29T23:55:27.112 [Cloud] End of cloud request. 2026-04-29T23:55:27.300 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-29T23:56:08.229 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\C4DC8394-7933-43A6-8690-6E3BEC8D50021fb4.1dcd833be76d358 2026-04-29T23:56:08.292 Verifying engine and signature files (source: 0) ... 2026-04-29T23:56:08.292 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{09578081-C24F-4F11-8B2E-5420001EB6E6}\mpengine.dll] due to PPL. 2026-04-29T23:56:08.292 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{09578081-C24F-4F11-8B2E-5420001EB6E6}\mpasbase.vdm] (file in cache) 2026-04-29T23:56:08.292 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{09578081-C24F-4F11-8B2E-5420001EB6E6}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-29T23:56:08.323 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{09578081-C24F-4F11-8B2E-5420001EB6E6}\mpasdlta.vdm] 2026-04-29T23:56:08.323 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{09578081-C24F-4F11-8B2E-5420001EB6E6}\mpavbase.vdm] (file in cache) 2026-04-29T23:56:08.323 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{09578081-C24F-4F11-8B2E-5420001EB6E6}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-29T23:56:08.339 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{09578081-C24F-4F11-8B2E-5420001EB6E6}\mpavdlta.vdm] 2026-04-29T23:56:08.542 [Engine] IsHybridMode: 0 2026-04-29T23:56:08.542 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-29T23:56:08.636 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-D01D670334A46CC1781D559D23543E82960513D2.bin): 0x00000002 2026-04-29T23:56:08.667 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-D01D670334A46CC1781D559D23543E82960513D2.bin) 2026-04-29T23:56:08.667 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-29T23:56:08.667 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-29T23:56:08.667 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-29T23:56:08.667 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-04-29T23:56:16.695 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52257, Count: 6961, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9375, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.P5JYY3, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 330, Count: 177, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ebd_1.MAI, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3001e5e5-9647-4ed4-aa47-fcc0da85bdbf.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4cd8c00-e8cf-4ce5-a613-bc2fabaa8c9a.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b9ded64-93c2-40ea-b5ed-552081feb70b.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfd8d13c-4446-47ea-831f-2ed568018e4e.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 2548, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74be7852-9d3c-4c03-bd87-ccc934c38d8a.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2acbffa5-5629-44c3-aa12-4f25c81931c1.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18b5c1dc-834f-4b55-8312-99ac33a40053.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36527d16-195d-4c5f-a3f7-965eb9dfcea1.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c12e7fc0-2bfe-4c9e-a608-38b616a62c09.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 5620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d3e0496-bd91-4e83-857c-e5c2db02901d.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c0f74a00-59bc-4780-b1be-157b89560eea.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 4376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e6903d9-2634-4c85-b04a-1380a9d8b5a1.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 4200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5837a8c-33ee-4ceb-9262-310737bb7992.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 3232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a5aec9c8-c0dc-40cd-a2f3-23265ae83f1e.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bfcbd9-ebfc-4ad3-bded-9872f2b0486b.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 8104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\79c64a6a-eddb-473f-8d6d-ba2bc6dc232d.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f670fc5f-8174-46c5-bda6-20ccc7b316e9.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0b252b87-68b0-41fe-a398-ac67ed1515e1.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebe7276b-314f-4da3-b4da-11847e23c343.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c1c2b16a-ea16-41e6-842d-927d0964316d.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 5760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3f76a433-6bc6-40fc-b078-71c87556a535.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 980, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ea3450d-2e07-4bcf-8e10-522e6d5ab915.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 7060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f502c03b-d3c9-4c0c-ae55-ddd3d8e8decb.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e68ee9c6-425e-4ba2-aeda-1b5896ae51e3.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a46a0b0-585f-49b8-88f3-d8767406ac8b.tmp, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 6572, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 2404, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 3232, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-29T23:56:16.695 ProcessImageName: updater.exe, Pid: 344, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-29T23:56:17.697 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-29T23:56:17.697 [AutoExclusion] Applied roles from cache. 2026-04-29T23:56:17.697 [AutoExclusion] Started roles monitoring. 2026-04-29T23:56:17.713 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0EA68020, lRefCount: 5, hr=0 2026-04-29T23:56:17.713 [Engine] New active engine 00007FFD0D908020 replacing engine 00007FFD0EA68020. Number of active engines: 2 2026-04-29T23:56:17.713 EngineInit:Global ASOC is enabled 2026-04-29T23:56:17.713 EngineInit:ASOO is enabled for developer volumes 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-29T23:56:17.729 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-29T23:56:17.729 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-29T23:56:17.744 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-29T23:56:17.744 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-29T23:56:17.744 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-29T23:56:17.744 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-29T23:56:17.744 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-29T23:56:17.744 [Plugin] Initializing RTP plugin state... 2026-04-29T23:56:17.744 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-29T23:56:17.744 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎29‎-‎2026 01:56:16 Last Perf:‎04‎-‎29‎-‎2026 01:56:16 First RTP Scan:‎04‎-‎29‎-‎2026 01:56:17 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:404 Misses:2253 BM Queue:0,98,0 Proc:0,97,0 File:0,19,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1375154 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1497818010 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2840 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:119393 TotalHits:507156 InstanceCacheInserts:704032 InstanceCacheUpdates:0 InstanceCacheDeletes:123207 InstanceCacheHits:2639 InstanceCacheMisses:768888 InstanceCacheOverflows:569994 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (319/288) Success: 288, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-29T23:56:17.744 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{09578081-C24F-4F11-8B2E-5420001EB6E6} 2026-04-29T23:56:17.744 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-29T23:56:17.744 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{29634E41-DBFC-45FE-AEB7-2D38D0092D02} removed 2026-04-29T23:56:17.744 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D959D56E-7D2E-4F81-824F-4D735BBA64BA}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D959D56E-7D2E-4F81-824F-4D735BBA64BA}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-29T23:56:17.744 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-29T23:56:17.744 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-29T23:56:17.744 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-29T23:56:17.744 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-29T23:56:17.744 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-29-2026 23:56:17 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-29-2026 23:56:17 2026-04-29T23:56:17.760 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-29T23:56:17.760 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-29T23:56:17.760 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-29T23:56:17.760 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-29T23:56:17.760 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-29T23:56:17.760 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-29T23:56:17.760 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-29T23:56:17.760 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-29T23:56:17.760 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-29T23:56:17.760 MdCoreSvc is supported in this platform and OS Signature updated on 04-29-2026 23:56:17 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.362.0 AV Signature Version: 1.449.362.0 ************************************************************ 2026-04-29T23:56:17.760 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-29T23:56:17.760 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\C4DC8394-7933-43A6-8690-6E3BEC8D50021fb4.1dcd833be76d358 2026-04-29T23:56:17.776 Process scan (postsignatureupdatescan) started. 2026-04-29T23:56:17.822 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-29T23:56:17.822 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-04-29T23:56:18.026 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-29T23:56:18.026 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-29T23:56:18.026 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-29T23:56:18.026 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-29T23:56:18.026 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). Signature updated via MicrosoftUpdateServer on 04-29-2026 23:56:18 ************************************************************ 2026-04-29T23:56:18.026 [Engine] Engine 00007FFD0EA68020 no longer in use. Number of active engines: 1 2026-04-29T23:56:18.026 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-29T23:56:18.026 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-29T23:56:18.041 Job Notification: Process exited from job (6684) 2026-04-29T23:56:18.041 Job Notification: Process exited from job (5900) 2026-04-29T23:56:18.041 Job Notification: Process exited from job (5560) 2026-04-29T23:56:18.041 Job Notification: Process exited from job (7896) 2026-04-29T23:56:18.244 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-29T23:56:18.244 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-29T23:56:18.244 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-29T23:56:19.182 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52257, Count: 6961, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-29T23:56:19.182 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9375, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.P5JYY3, EstimatedImpact: 0% 2026-04-29T23:56:19.182 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 330, Count: 177, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ebd_1.MAI, EstimatedImpact: 0% 2026-04-29T23:56:19.182 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-29T23:56:19.182 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-04-29T23:56:19.182 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3001e5e5-9647-4ed4-aa47-fcc0da85bdbf.tmp, EstimatedImpact: 0% 2026-04-29T23:56:19.182 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d4cd8c00-e8cf-4ce5-a613-bc2fabaa8c9a.tmp, EstimatedImpact: 0% 2026-04-29T23:56:19.182 ProcessImageName: updater.exe, Pid: 6540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b9ded64-93c2-40ea-b5ed-552081feb70b.tmp, EstimatedImpact: 0% 2026-04-29T23:56:19.182 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfd8d13c-4446-47ea-831f-2ed568018e4e.tmp, EstimatedImpact: 0% 2026-04-29T23:56:19.182 ProcessImageName: updater.exe, Pid: 2548, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74be7852-9d3c-4c03-bd87-ccc934c38d8a.tmp, EstimatedImpact: 0% 2026-04-29T23:56:19.182 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2acbffa5-5629-44c3-aa12-4f25c81931c1.tmp, EstimatedImpact: 0% 2026-04-29T23:56:19.182 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\18b5c1dc-834f-4b55-8312-99ac33a40053.tmp, EstimatedImpact: 0% 2026-04-29T23:56:19.182 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36527d16-195d-4c5f-a3f7-965eb9dfcea1.tmp, EstimatedImpact: 0% 2026-04-29T23:56:19.244 [Engine] RSIG_UNLOADENGINE, 00007FFD0EA68020, err=0x0 2026-04-29T23:56:19.244 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D959D56E-7D2E-4F81-824F-4D735BBA64BA} removed 2026-04-29T23:56:24.419 Process scan (postsignatureupdatescan) completed. 2026-04-29T23:57:44.296 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T00:01:17.729 [RbM] Setting Last known good engine candidate. hr = 0 2026-04-30T00:10:26.496 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1376013, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T00:10:26.511 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1376015, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T00:10:36.510 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1376029, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T00:10:36.526 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1376031, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T00:12:49.301 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T00:27:54.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T00:42:59.289 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T00:45:56.781 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829edf_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1379179, FileId: 0x30b0000000545d1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T00:46:07.075 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829edf_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1379634, FileId: 0x8a60000000545bb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T00:58:04.300 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T01:10:27.547 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1380992, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T01:10:27.563 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1380994, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T01:10:37.561 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1381008, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T01:10:37.577 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1381010, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T01:13:09.289 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T01:28:14.296 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T01:43:19.295 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T01:56:17.719 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 42520, Count: 6296, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-30T01:56:17.719 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 795, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.IAMFZ3, EstimatedImpact: 0% 2026-04-30T01:56:17.719 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829edf_1.MAD, EstimatedImpact: 0% 2026-04-30T01:56:17.719 ProcessImageName: updater.exe, Pid: 7864, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\102cc442-1f05-47b1-b9b5-23b3a8e46d84.tmp, EstimatedImpact: 0% 2026-04-30T01:56:17.719 ProcessImageName: updater.exe, Pid: 8064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45083b4c-ab0b-49d6-a2ba-2b034bf6c1a2.tmp, EstimatedImpact: 0% 2026-04-30T01:58:24.289 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T02:01:53.783 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:4DF20D77-526E-43E4-A8B9-4DDA6CA8C17A, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-04-30T02:01:53.783 Scheduled scan with Id 4DF20D77-526E-43E4-A8B9-4DDA6CA8C17A configured CPU priority: normal (LowCpuPriority: 0) 2026-04-30T02:01:53.783 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-30T02:01:53.783 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-04-30T02:01:53.783 [SFC] System file cache build is not needed (already completed) 2026-04-30T02:02:03.958 Engine:Triggered AR EMS scan 2026-04-30T02:02:03.958 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:03.973 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.004 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.020 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.051 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.082 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.098 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.129 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.145 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.161 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.192 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.207 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.223 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.239 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.270 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.286 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.317 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.379 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.395 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.426 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.457 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.504 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-04-30T02:02:04.520 Bm signature throttled:0x00002db31bed458f 2026-04-30T02:02:17.536 QuickScan:ScanID:4DF20D77-526E-43E4-A8B9-4DDA6CA8C17A: Quick scan finished with error 0 2026-04-30T02:02:17.551 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-04-30T02:02:18.053 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-30T02:02:18.053 [RTP] Duplicating the current plugin configuration object... 2026-04-30T02:02:18.053 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-30T02:02:18.053 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-30T02:02:18.053 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-30T02:02:18.053 [RTP] No config change detected. Not updating plugin configuration. 2026-04-30T02:02:18.053 [RTP] No config changes found. No configuration switch. 2026-04-30T02:02:18.053 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-30T02:10:24.540 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1384498, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T02:10:24.556 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1384500, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T02:10:34.543 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1384513, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T02:10:34.559 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1384516, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T02:10:34.559 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1384518, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T02:10:34.574 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1384520, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T02:13:29.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T02:28:34.299 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T02:43:39.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T02:58:44.289 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T03:10:26.607 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1387895, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T03:10:26.623 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1387897, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T03:10:36.639 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1387911, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T03:10:36.655 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1387913, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T03:13:49.296 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T03:28:54.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T03:43:59.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T03:56:17.728 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 42581, Count: 6300, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-04-30T03:56:17.728 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1455, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.IAMFZ3, EstimatedImpact: 0% 2026-04-30T03:56:17.728 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829edf_1.MAD, EstimatedImpact: 0% 2026-04-30T03:56:17.728 ProcessImageName: updater.exe, Pid: 7864, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\102cc442-1f05-47b1-b9b5-23b3a8e46d84.tmp, EstimatedImpact: 0% 2026-04-30T03:56:17.728 ProcessImageName: updater.exe, Pid: 8064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45083b4c-ab0b-49d6-a2ba-2b034bf6c1a2.tmp, EstimatedImpact: 0% 2026-04-30T03:56:17.728 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f3e807a-5055-47bb-beab-2527a2937f8d.tmp, EstimatedImpact: 0% 2026-04-30T03:56:17.728 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb190567-aa4a-40c7-9161-9c013716171b.tmp, EstimatedImpact: 0% 2026-04-30T03:59:04.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T03:59:44.299 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ee8_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1390640, FileId: 0x653d00000004c454, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T03:59:44.908 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ee8_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1390644, FileId: 0x653e00000004c454, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:10:27.455 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1391243, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:10:27.470 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1391245, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:10:37.466 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1391259, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:10:37.466 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1391261, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:10:37.637 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1391265, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:10:37.637 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1391267, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:14:09.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T04:29:14.295 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T04:33:18.258 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1392517, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:33:18.258 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1392519, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:33:21.749 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1392529, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:33:21.764 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1392532, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:33:21.764 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1392534, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:33:31.774 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1392546, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:33:31.774 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1392547, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:33:31.774 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1392549, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T04:44:19.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T04:59:24.296 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T05:10:26.098 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1394591, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T05:10:26.114 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1394593, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T05:10:36.102 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1394606, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T05:10:36.102 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1394607, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T05:10:36.118 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1394608, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T05:14:29.300 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T05:29:34.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T05:44:39.294 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T05:56:17.740 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 46268, Count: 6517, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-04-30T05:56:17.740 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2220, Count: 19413, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.IAMFZ3, EstimatedImpact: 0% 2026-04-30T05:56:17.740 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3180a03d-e78c-47a5-870f-3fcd11ff8537.tmp, EstimatedImpact: 0% 2026-04-30T05:56:17.740 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829edf_1.MAD, EstimatedImpact: 0% 2026-04-30T05:56:17.740 ProcessImageName: updater.exe, Pid: 7864, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\102cc442-1f05-47b1-b9b5-23b3a8e46d84.tmp, EstimatedImpact: 0% 2026-04-30T05:56:17.740 ProcessImageName: updater.exe, Pid: 8064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45083b4c-ab0b-49d6-a2ba-2b034bf6c1a2.tmp, EstimatedImpact: 0% 2026-04-30T05:56:17.740 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f3e807a-5055-47bb-beab-2527a2937f8d.tmp, EstimatedImpact: 0% 2026-04-30T05:56:17.740 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb190567-aa4a-40c7-9161-9c013716171b.tmp, EstimatedImpact: 0% 2026-04-30T05:56:17.740 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fcdaf21a-f316-4784-9be5-641bf83fa612.tmp, EstimatedImpact: 0% 2026-04-30T05:56:17.740 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-30T05:58:56.258 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ee9_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1397290, FileId: 0x3486000000008182, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T05:58:56.868 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ee9_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1397294, FileId: 0x3487000000008182, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T05:59:44.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T06:10:25.718 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1397944, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T06:10:25.734 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1397946, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T06:10:35.722 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1397959, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T06:10:35.722 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1397961, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T06:10:35.737 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1397963, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T06:10:35.737 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1397965, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T06:14:49.299 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T06:29:54.294 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T06:44:59.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T06:50:17.724 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829eea_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1400151, FileId: 0x52c000000047129, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T06:50:23.188 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829eea_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1400164, FileId: 0x1bd5000000053fb4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T07:00:04.292 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T07:10:26.569 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1401271, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T07:10:26.585 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1401273, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T07:10:36.600 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1401285, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T07:10:36.600 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1401287, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T07:10:36.600 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1401289, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T07:10:36.600 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1401291, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T07:15:09.289 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T07:30:14.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T07:45:19.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T07:56:17.745 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 46890, Count: 6568, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-30T07:56:17.745 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2940, Count: 25884, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.IAMFZ3, EstimatedImpact: 0% 2026-04-30T07:56:17.745 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-30T07:56:17.745 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829edf_1.MAD, EstimatedImpact: 0% 2026-04-30T07:56:17.745 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3180a03d-e78c-47a5-870f-3fcd11ff8537.tmp, EstimatedImpact: 0% 2026-04-30T07:56:17.745 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-30T07:56:17.745 ProcessImageName: updater.exe, Pid: 7864, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\102cc442-1f05-47b1-b9b5-23b3a8e46d84.tmp, EstimatedImpact: 0% 2026-04-30T07:56:17.745 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f3e807a-5055-47bb-beab-2527a2937f8d.tmp, EstimatedImpact: 0% 2026-04-30T07:56:17.745 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb190567-aa4a-40c7-9161-9c013716171b.tmp, EstimatedImpact: 0% 2026-04-30T07:56:17.745 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc20c2b9-2d65-4747-a268-8d8a8d5946ce.tmp, EstimatedImpact: 0% 2026-04-30T07:56:17.745 ProcessImageName: updater.exe, Pid: 8064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45083b4c-ab0b-49d6-a2ba-2b034bf6c1a2.tmp, EstimatedImpact: 0% 2026-04-30T07:56:17.745 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db6ac024-ba76-4442-b18b-ea4968555244.tmp, EstimatedImpact: 0% 2026-04-30T07:56:17.745 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fcdaf21a-f316-4784-9be5-641bf83fa612.tmp, EstimatedImpact: 0% 2026-04-30T07:56:17.745 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-30T08:00:24.290 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T08:10:25.579 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1404777, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T08:10:25.594 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1404779, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T08:10:35.586 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1404792, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T08:10:35.601 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1404795, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T08:15:29.294 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T08:30:34.292 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T08:45:39.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T09:00:44.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T09:10:27.314 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1408095, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T09:10:27.329 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1408097, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T09:10:37.323 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1408110, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T09:10:37.338 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1408112, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T09:10:37.494 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1408116, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T09:10:37.494 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1408118, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T09:15:49.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T09:30:54.295 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T09:33:21.829 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1409369, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T09:33:21.845 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1409371, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T09:33:27.467 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1409390, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T09:33:27.467 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1409393, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T09:33:27.482 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1409395, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T09:33:37.498 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1409408, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T09:33:37.498 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1409411, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T09:45:59.299 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T09:56:17.745 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47587, Count: 6589, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3840, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.IAMFZ3, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829edf_1.MAD, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3180a03d-e78c-47a5-870f-3fcd11ff8537.tmp, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f87725af-c5ef-4b60-aa52-73aac1d2fc84.tmp, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: updater.exe, Pid: 7864, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\102cc442-1f05-47b1-b9b5-23b3a8e46d84.tmp, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f3e807a-5055-47bb-beab-2527a2937f8d.tmp, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: updater.exe, Pid: 8064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45083b4c-ab0b-49d6-a2ba-2b034bf6c1a2.tmp, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffba8897-4f63-4a40-b9c2-494ed6959ec0.tmp, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd375f9c-13aa-4a85-ba4f-5b9bbe3afbaf.tmp, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb190567-aa4a-40c7-9161-9c013716171b.tmp, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc20c2b9-2d65-4747-a268-8d8a8d5946ce.tmp, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db6ac024-ba76-4442-b18b-ea4968555244.tmp, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fcdaf21a-f316-4784-9be5-641bf83fa612.tmp, EstimatedImpact: 0% 2026-04-30T09:56:17.745 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-30T10:01:04.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T10:10:25.318 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1411476, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T10:10:25.334 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1411478, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T10:10:35.325 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1411491, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T10:10:35.340 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1411494, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T10:16:09.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T10:31:14.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T10:46:19.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T11:01:24.292 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T11:10:25.748 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1414792, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T11:10:25.748 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1414794, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T11:10:35.744 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1414807, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T11:10:35.760 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1414810, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T11:16:29.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T11:31:34.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T11:46:39.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T11:56:17.758 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47723, Count: 6604, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4605, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.IAMFZ3, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829edf_1.MAD, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3180a03d-e78c-47a5-870f-3fcd11ff8537.tmp, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f87725af-c5ef-4b60-aa52-73aac1d2fc84.tmp, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: updater.exe, Pid: 7864, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\102cc442-1f05-47b1-b9b5-23b3a8e46d84.tmp, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffba8897-4f63-4a40-b9c2-494ed6959ec0.tmp, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: updater.exe, Pid: 8064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45083b4c-ab0b-49d6-a2ba-2b034bf6c1a2.tmp, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce290906-8db9-4797-bf10-a9c949693618.tmp, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb190567-aa4a-40c7-9161-9c013716171b.tmp, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd375f9c-13aa-4a85-ba4f-5b9bbe3afbaf.tmp, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f3e807a-5055-47bb-beab-2527a2937f8d.tmp, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc20c2b9-2d65-4747-a268-8d8a8d5946ce.tmp, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db6ac024-ba76-4442-b18b-ea4968555244.tmp, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fcdaf21a-f316-4784-9be5-641bf83fa612.tmp, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: updater.exe, Pid: 3228, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed3bc11a-4eb0-4e22-9035-fb3af330f857.tmp, EstimatedImpact: 0% 2026-04-30T11:56:17.758 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-30T12:01:44.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T12:10:26.225 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1418112, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T12:10:26.241 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1418114, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T12:10:36.234 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1418126, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T12:10:36.250 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1418129, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T12:16:49.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T12:31:54.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T12:46:59.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T13:02:04.294 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T13:10:25.160 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1421423, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T13:10:25.191 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1421426, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T13:10:35.170 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1421439, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T13:10:35.185 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1421443, FileId: 0xc50000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T13:17:09.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T13:32:14.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T13:47:19.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T13:50:45.150 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ef7_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1423679, FileId: 0x1c85000000053fb4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T13:50:45.744 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ef7_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1423683, FileId: 0x1c86000000053fb4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T13:56:17.768 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47723, Count: 6605, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5400, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.IAMFZ3, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829edf_1.MAD, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3180a03d-e78c-47a5-870f-3fcd11ff8537.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f87725af-c5ef-4b60-aa52-73aac1d2fc84.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 7864, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\102cc442-1f05-47b1-b9b5-23b3a8e46d84.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffba8897-4f63-4a40-b9c2-494ed6959ec0.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 8064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45083b4c-ab0b-49d6-a2ba-2b034bf6c1a2.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce290906-8db9-4797-bf10-a9c949693618.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd375f9c-13aa-4a85-ba4f-5b9bbe3afbaf.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f3e807a-5055-47bb-beab-2527a2937f8d.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc20c2b9-2d65-4747-a268-8d8a8d5946ce.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb190567-aa4a-40c7-9161-9c013716171b.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db6ac024-ba76-4442-b18b-ea4968555244.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d0ad689-66bb-4382-9f83-f793fa9130cf.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fcdaf21a-f316-4784-9be5-641bf83fa612.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6cdada4e-d0cf-40b2-badc-7e15781404d4.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 3228, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed3bc11a-4eb0-4e22-9035-fb3af330f857.tmp, EstimatedImpact: 0% 2026-04-30T13:56:17.768 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-30T14:02:24.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T14:10:26.602 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1424774, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T14:10:26.617 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1424776, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T14:10:36.618 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1424789, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T14:10:36.633 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1424791, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T14:10:36.790 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1424795, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T14:10:36.790 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1424797, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T14:17:29.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T14:32:34.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T14:33:27.550 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1426057, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T14:33:27.566 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1426059, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T14:47:39.292 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T15:02:44.295 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T15:10:37.525 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1428138, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T15:17:49.298 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T15:32:54.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T15:47:59.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T15:56:17.771 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47829, Count: 6612, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6000, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.IAMFZ3, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829edf_1.MAD, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3180a03d-e78c-47a5-870f-3fcd11ff8537.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ca71e4-7f17-4380-a3bb-0ab6d3f5dad9.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f87725af-c5ef-4b60-aa52-73aac1d2fc84.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 7864, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\102cc442-1f05-47b1-b9b5-23b3a8e46d84.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f3e807a-5055-47bb-beab-2527a2937f8d.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 8064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45083b4c-ab0b-49d6-a2ba-2b034bf6c1a2.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce290906-8db9-4797-bf10-a9c949693618.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc20c2b9-2d65-4747-a268-8d8a8d5946ce.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffba8897-4f63-4a40-b9c2-494ed6959ec0.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 6852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\076be3d6-b725-49a4-b3fb-2e1a6505510f.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb190567-aa4a-40c7-9161-9c013716171b.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd375f9c-13aa-4a85-ba4f-5b9bbe3afbaf.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db6ac024-ba76-4442-b18b-ea4968555244.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d0ad689-66bb-4382-9f83-f793fa9130cf.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fcdaf21a-f316-4784-9be5-641bf83fa612.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6cdada4e-d0cf-40b2-badc-7e15781404d4.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1100dcd7-dfe4-4856-b94c-6b31f023e4cc.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 3228, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed3bc11a-4eb0-4e22-9035-fb3af330f857.tmp, EstimatedImpact: 0% 2026-04-30T15:56:17.771 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-30T16:03:04.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T16:18:09.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T16:33:14.295 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T16:48:19.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T17:03:24.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T17:10:36.071 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1434788, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T17:18:29.294 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T17:33:34.295 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T17:48:39.292 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T17:56:17.779 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47829, Count: 6612, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6735, Count: 58248, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.IAMFZ3, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829edf_1.MAD, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ca71e4-7f17-4380-a3bb-0ab6d3f5dad9.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3180a03d-e78c-47a5-870f-3fcd11ff8537.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f87725af-c5ef-4b60-aa52-73aac1d2fc84.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 7864, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\102cc442-1f05-47b1-b9b5-23b3a8e46d84.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 6852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\076be3d6-b725-49a4-b3fb-2e1a6505510f.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 8064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45083b4c-ab0b-49d6-a2ba-2b034bf6c1a2.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce290906-8db9-4797-bf10-a9c949693618.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb190567-aa4a-40c7-9161-9c013716171b.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffba8897-4f63-4a40-b9c2-494ed6959ec0.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f3e807a-5055-47bb-beab-2527a2937f8d.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\de6c76d8-177d-46b3-9b52-3edef8ab4343.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc20c2b9-2d65-4747-a268-8d8a8d5946ce.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db6ac024-ba76-4442-b18b-ea4968555244.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd375f9c-13aa-4a85-ba4f-5b9bbe3afbaf.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d0ad689-66bb-4382-9f83-f793fa9130cf.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 4200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae787fe6-42ab-4e9c-8e60-667f53e089d1.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fcdaf21a-f316-4784-9be5-641bf83fa612.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6cdada4e-d0cf-40b2-badc-7e15781404d4.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1100dcd7-dfe4-4856-b94c-6b31f023e4cc.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 3228, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed3bc11a-4eb0-4e22-9035-fb3af330f857.tmp, EstimatedImpact: 0% 2026-04-30T17:56:17.779 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-30T18:03:44.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T18:18:49.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T18:33:54.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T18:48:59.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T19:04:04.295 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T19:10:37.427 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1441429, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T19:19:09.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T19:34:14.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T19:49:19.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T19:56:17.778 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47829, Count: 6612, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7800, Count: 64719, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.IAMFZ3, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829edf_1.MAD, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ca71e4-7f17-4380-a3bb-0ab6d3f5dad9.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3180a03d-e78c-47a5-870f-3fcd11ff8537.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f87725af-c5ef-4b60-aa52-73aac1d2fc84.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 7576, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\536be98a-99ba-488e-a7b1-cd3b6450b108.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 7864, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\102cc442-1f05-47b1-b9b5-23b3a8e46d84.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 8064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45083b4c-ab0b-49d6-a2ba-2b034bf6c1a2.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce290906-8db9-4797-bf10-a9c949693618.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd375f9c-13aa-4a85-ba4f-5b9bbe3afbaf.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffba8897-4f63-4a40-b9c2-494ed6959ec0.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f3e807a-5055-47bb-beab-2527a2937f8d.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d0ad689-66bb-4382-9f83-f793fa9130cf.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 6852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\076be3d6-b725-49a4-b3fb-2e1a6505510f.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb190567-aa4a-40c7-9161-9c013716171b.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db6ac024-ba76-4442-b18b-ea4968555244.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc20c2b9-2d65-4747-a268-8d8a8d5946ce.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5818eb1-4ae7-43bb-b8d5-649c2a2bd71f.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 4200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae787fe6-42ab-4e9c-8e60-667f53e089d1.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fcdaf21a-f316-4784-9be5-641bf83fa612.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6cdada4e-d0cf-40b2-badc-7e15781404d4.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1100dcd7-dfe4-4856-b94c-6b31f023e4cc.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 3228, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed3bc11a-4eb0-4e22-9035-fb3af330f857.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 3108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9af1de0d-c06f-4759-b719-b77e5b6b75aa.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\de6c76d8-177d-46b3-9b52-3edef8ab4343.tmp, EstimatedImpact: 0% 2026-04-30T19:56:17.778 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-30T20:04:24.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T20:05:55.443 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f08_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1444499, FileId: 0xa12000000047129, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T20:19:29.284 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T20:34:34.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T20:49:39.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T21:04:44.294 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T21:10:25.862 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1448086, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T21:19:49.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T21:34:54.289 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T21:49:18.566 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f12_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1450312, FileId: 0x85d0000000545d1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T21:49:20.019 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f12_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1450343, FileId: 0x8670000000545d1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T21:49:20.847 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f12_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1450379, FileId: 0x8730000000545d1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T21:49:59.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T21:56:17.788 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52429, Count: 7027, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8610, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.IAMFZ3, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 102, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829edf_1.MAD, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ca71e4-7f17-4380-a3bb-0ab6d3f5dad9.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3180a03d-e78c-47a5-870f-3fcd11ff8537.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f87725af-c5ef-4b60-aa52-73aac1d2fc84.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 7576, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\536be98a-99ba-488e-a7b1-cd3b6450b108.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 7864, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\102cc442-1f05-47b1-b9b5-23b3a8e46d84.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1100dcd7-dfe4-4856-b94c-6b31f023e4cc.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 8064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45083b4c-ab0b-49d6-a2ba-2b034bf6c1a2.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce290906-8db9-4797-bf10-a9c949693618.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb190567-aa4a-40c7-9161-9c013716171b.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6cdada4e-d0cf-40b2-badc-7e15781404d4.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffba8897-4f63-4a40-b9c2-494ed6959ec0.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 7580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6f3e807a-5055-47bb-beab-2527a2937f8d.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5818eb1-4ae7-43bb-b8d5-649c2a2bd71f.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db6ac024-ba76-4442-b18b-ea4968555244.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc20c2b9-2d65-4747-a268-8d8a8d5946ce.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d0ad689-66bb-4382-9f83-f793fa9130cf.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 4200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae787fe6-42ab-4e9c-8e60-667f53e089d1.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 4036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fcdaf21a-f316-4784-9be5-641bf83fa612.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 6852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\076be3d6-b725-49a4-b3fb-2e1a6505510f.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\de6c76d8-177d-46b3-9b52-3edef8ab4343.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8501bf8f-30c1-4c23-9a32-90e9477ecbc1.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 3108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9af1de0d-c06f-4759-b719-b77e5b6b75aa.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 6416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd375f9c-13aa-4a85-ba4f-5b9bbe3afbaf.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 3228, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed3bc11a-4eb0-4e22-9035-fb3af330f857.tmp, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 8116, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-30T21:56:17.788 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-04-30T22:05:04.292 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T22:10:35.203 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1451630, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-04-30T22:20:09.297 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T22:35:14.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T22:50:19.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T23:05:24.290 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T23:20:29.281 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T23:35:34.292 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T23:50:39.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-04-30T23:55:24.293 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-04-30T23:55:24.309 Job Notification: New process added to job (2112) 2026-04-30T23:55:24.324 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-04-30T23:55:24.324 Aggressive catchup quick scan threshold: 788105424330 / 25920000000000 2026-04-30T23:55:24.324 Job Notification: New process added to job (8044) 2026-04-30T23:55:24.324 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:2112] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:8044]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-30T23:55:24.387 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-04-30T23:55:24.387 Job Notification: New process added to job (3716) 2026-04-30T23:55:24.387 Job Notification: New process added to job (7384) 2026-04-30T23:55:24.418 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3716] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7384]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-04-30T23:55:24.621 Job Notification: New process added to job (6828) 2026-04-30T23:55:24.621 Task(GetDeviceTicket -AccessKey 80711F91-4CE6-8223-CB56-BA07824E26DF ) launched as network service 2026-04-30T23:55:24.840 [RTP] [RtpConfig] Config change detected, type: 32 2026-04-30T23:55:24.840 [RTP] Duplicating the current plugin configuration object... 2026-04-30T23:55:24.840 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-04-30T23:55:24.840 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-04-30T23:55:24.840 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-30T23:55:24.840 [RTP] No config change detected. Not updating plugin configuration. 2026-04-30T23:55:24.840 [RTP] No config changes found. No configuration switch. 2026-04-30T23:55:24.840 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-04-30T23:55:25.264 Job Notification: Process exited from job (6828) 2026-04-30T23:55:26.352 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-04-30T23:55:26.352 [Cloud] Start of cloud request. Passive mode: 0 2026-04-30T23:55:26.352 [Cloud] Queued cloud request. 2026-04-30T23:55:26.352 [Cloud] MpEngineCloudRequest(). hr = 0 2026-04-30T23:55:26.352 [Cloud] Dequeued cloud request. 2026-04-30T23:55:26.352 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-04-30T23:55:26.352 [Cloud] Start of cloud request. Passive mode: 0 2026-04-30T23:55:26.352 [Cloud] Queued cloud request. 2026-04-30T23:55:26.352 [Cloud] Dequeued cloud request. 2026-04-30T23:55:26.352 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-30T23:55:26.352 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-04-30T23:55:26.633 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-04-30T23:55:26.633 [Cloud] End of cloud request. 2026-04-30T23:55:26.649 [Cloud] End of cloud request. 2026-04-30T23:55:26.852 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-30T23:55:38.648 Job Notification: Process exited from job (4288) 2026-04-30T23:56:03.500 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\F9F0ADA3-4426-4EC3-9EDE-37E7362FFA11f00.1dcd8fce60818d7 2026-04-30T23:56:03.562 Verifying engine and signature files (source: 0) ... 2026-04-30T23:56:03.562 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0B468D3A-94DA-4860-B786-627233800DBC}\mpengine.dll] due to PPL. 2026-04-30T23:56:03.562 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0B468D3A-94DA-4860-B786-627233800DBC}\mpasbase.vdm] (file in cache) 2026-04-30T23:56:03.562 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0B468D3A-94DA-4860-B786-627233800DBC}\mpasdlta.vdm]. File not in cache (0x1) 2026-04-30T23:56:03.578 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0B468D3A-94DA-4860-B786-627233800DBC}\mpasdlta.vdm] 2026-04-30T23:56:03.578 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0B468D3A-94DA-4860-B786-627233800DBC}\mpavbase.vdm] (file in cache) 2026-04-30T23:56:03.578 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0B468D3A-94DA-4860-B786-627233800DBC}\mpavdlta.vdm]. File not in cache (0x1) 2026-04-30T23:56:03.594 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0B468D3A-94DA-4860-B786-627233800DBC}\mpavdlta.vdm] 2026-04-30T23:56:03.797 [Engine] IsHybridMode: 0 2026-04-30T23:56:03.797 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-04-30T23:56:03.859 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-68701135D03B04920C445E262150F218FD8C3711.bin): 0x00000002 2026-04-30T23:56:03.875 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-68701135D03B04920C445E262150F218FD8C3711.bin) 2026-04-30T23:56:03.875 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-04-30T23:56:03.875 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-04-30T23:56:03.875 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-04-30T23:56:03.875 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-04-30T23:56:12.990 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-04-30T23:56:12.990 [AutoExclusion] Applied roles from cache. 2026-04-30T23:56:12.990 [AutoExclusion] Started roles monitoring. 2026-04-30T23:56:12.990 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D908020, lRefCount: 5, hr=0 2026-04-30T23:56:12.990 [Engine] New active engine 00007FFD0EA68020 replacing engine 00007FFD0D908020. Number of active engines: 2 2026-04-30T23:56:13.005 EngineInit:Global ASOC is enabled 2026-04-30T23:56:13.005 EngineInit:ASOO is enabled for developer volumes 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-30T23:56:13.021 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-04-30T23:56:13.021 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-04-30T23:56:13.021 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-04-30T23:56:13.037 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-04-30T23:56:13.037 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-04-30T23:56:13.037 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-04-30T23:56:13.037 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-04-30T23:56:13.037 [Plugin] Initializing RTP plugin state... 2026-04-30T23:56:13.037 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-04-30T23:56:13.037 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎04‎-‎30‎-‎2026 01:56:18 Last Perf:‎04‎-‎30‎-‎2026 01:56:17 First RTP Scan:‎04‎-‎30‎-‎2026 01:56:22 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:399 Misses:2232 BM Queue:0,42,0 Proc:0,42,0 File:0,24,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1457527 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1587745226 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2850 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:123572 TotalHits:533674 InstanceCacheInserts:747576 InstanceCacheUpdates:0 InstanceCacheDeletes:131399 InstanceCacheHits:2696 InstanceCacheMisses:813352 InstanceCacheOverflows:605289 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:0ms (259/261) Success: 261, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-04-30T23:56:13.037 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0B468D3A-94DA-4860-B786-627233800DBC} 2026-04-30T23:56:13.037 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{09578081-C24F-4F11-8B2E-5420001EB6E6}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{09578081-C24F-4F11-8B2E-5420001EB6E6}\mpengine.dll cannot be deleted, hr=0x80070005 2026-04-30T23:56:13.037 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-04-30T23:56:13.037 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C677CFE5-F415-4F8E-BC18-6519FF831C2F} removed 2026-04-30T23:56:13.037 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-30T23:56:13.037 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-30T23:56:13.037 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-30T23:56:13.037 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-30T23:56:13.037 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:04-30-2026 23:56:13 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:04-30-2026 23:56:13 2026-04-30T23:56:13.037 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-04-30T23:56:13.037 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-04-30T23:56:13.037 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-30T23:56:13.037 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-04-30T23:56:13.037 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-04-30T23:56:13.037 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-04-30T23:56:13.037 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-04-30T23:56:13.037 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-04-30T23:56:13.037 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-04-30T23:56:13.037 MdCoreSvc is supported in this platform and OS Signature updated on 04-30-2026 23:56:13 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.377.0 AV Signature Version: 1.449.377.0 ************************************************************ 2026-04-30T23:56:13.052 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-04-30T23:56:13.052 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\F9F0ADA3-4426-4EC3-9EDE-37E7362FFA11f00.1dcd8fce60818d7 2026-04-30T23:56:13.068 Process scan (postsignatureupdatescan) started. 2026-04-30T23:56:13.115 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-04-30T23:56:13.115 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 04-30-2026 23:56:13 ************************************************************ 2026-04-30T23:56:13.130 Job Notification: Process exited from job (2112) 2026-04-30T23:56:13.130 Job Notification: Process exited from job (3716) 2026-04-30T23:56:13.130 Job Notification: Process exited from job (8044) 2026-04-30T23:56:13.130 Job Notification: Process exited from job (7384) 2026-04-30T23:56:13.287 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-04-30T23:56:13.287 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-04-30T23:56:13.287 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-04-30T23:56:13.287 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-04-30T23:56:13.287 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-04-30T23:56:13.302 [Engine] Engine 00007FFD0D908020 no longer in use. Number of active engines: 1 2026-04-30T23:56:13.302 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-04-30T23:56:13.302 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-04-30T23:56:13.521 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-04-30T23:56:13.521 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-04-30T23:56:13.521 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-04-30T23:56:14.130 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52429, Count: 7028, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-04-30T23:56:14.130 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9360, Count: 77661, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.IAMFZ3, EstimatedImpact: 0% 2026-04-30T23:56:14.130 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 180, Count: 106, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829edf_1.MAD, EstimatedImpact: 0% 2026-04-30T23:56:14.130 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-04-30T23:56:14.130 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-04-30T23:56:14.130 ProcessImageName: updater.exe, Pid: 7340, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89ca71e4-7f17-4380-a3bb-0ab6d3f5dad9.tmp, EstimatedImpact: 0% 2026-04-30T23:56:14.130 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3180a03d-e78c-47a5-870f-3fcd11ff8537.tmp, EstimatedImpact: 0% 2026-04-30T23:56:14.130 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f87725af-c5ef-4b60-aa52-73aac1d2fc84.tmp, EstimatedImpact: 0% 2026-04-30T23:56:14.130 ProcessImageName: updater.exe, Pid: 7576, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\536be98a-99ba-488e-a7b1-cd3b6450b108.tmp, EstimatedImpact: 0% 2026-04-30T23:56:14.130 ProcessImageName: updater.exe, Pid: 7864, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\102cc442-1f05-47b1-b9b5-23b3a8e46d84.tmp, EstimatedImpact: 0% 2026-04-30T23:56:14.130 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb190567-aa4a-40c7-9161-9c013716171b.tmp, EstimatedImpact: 0% 2026-04-30T23:56:14.130 ProcessImageName: updater.exe, Pid: 8064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45083b4c-ab0b-49d6-a2ba-2b034bf6c1a2.tmp, EstimatedImpact: 0% 2026-04-30T23:56:14.130 ProcessImageName: updater.exe, Pid: 7892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce290906-8db9-4797-bf10-a9c949693618.tmp, EstimatedImpact: 0% 2026-04-30T23:56:14.130 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\affd43a4-9f0f-4322-aa2a-f7de5523afbf.tmp, EstimatedImpact: 0% 2026-04-30T23:56:14.209 [Engine] RSIG_UNLOADENGINE, 00007FFD0D908020, err=0x0 2026-04-30T23:56:14.224 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{09578081-C24F-4F11-8B2E-5420001EB6E6} removed 2026-04-30T23:56:18.630 Process scan (postsignatureupdatescan) completed. 2026-05-01T00:01:13.016 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-01T00:05:44.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T00:10:25.567 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1458401, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:10:25.567 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1458404, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:10:30.557 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1458418, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:10:30.619 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1458421, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:10:49.172 ReportLowfi(c:\program files (x86)\google\chrome\application\147.0.7727.138\installer\chrmstp.exe, 0x437a0835) from 0x0006b6bd6566d2d9 Internal signature match:subtype=Lowfi, sigseq=0x000005550240CBF2, sigsha=e39a25e9b19899abbd79ec872fd8aeabe27e140d, cached=false, source=0, resourceid=0x39433112 2026-05-01T00:10:49.438 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1458745, FileId: 0x1f0000000568a5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:10:49.594 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1458750, FileId: 0x1f0000000568a5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:10:51.691 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1458759, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:10:51.706 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1458761, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:11:01.710 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1458802, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:11:01.710 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1458804, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:11:01.851 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1458808, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:11:01.866 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1458810, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:20:49.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T00:33:38.174 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460053, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:33:38.190 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460056, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:33:43.040 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460075, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:33:43.056 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460078, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:33:43.056 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460080, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:33:43.056 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460082, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:33:53.052 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460096, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:33:53.068 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460099, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:33:53.068 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1460098, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T00:35:54.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T00:50:59.284 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T01:06:04.290 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T01:10:26.218 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1462198, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T01:10:26.234 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1462200, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T01:10:36.228 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1462214, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T01:10:36.228 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1462213, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T01:10:36.243 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1462215, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T01:21:09.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T01:36:14.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T01:51:19.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T01:56:13.000 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 5152, Count: 14, MaxTime: 5062, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7164_167275751\147.0.7727.138_chrome_installer_uncompressed.exe, EstimatedImpact: 12% 2026-05-01T01:56:13.000 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 900, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.EGOWY3, EstimatedImpact: 0% 2026-05-01T01:56:13.000 ProcessImageName: setup.exe, Pid: 5320, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-05-01T01:56:13.000 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 10% 2026-05-01T01:56:13.000 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 2% 2026-05-01T01:56:13.000 ProcessImageName: setup.exe, Pid: 1256, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 7% 2026-05-01T01:56:13.000 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11a88c6d-9719-423c-9b5e-65db2cda698d.tmp, EstimatedImpact: 0% 2026-05-01T01:56:13.000 ProcessImageName: updater.exe, Pid: 4764, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-01T02:01:53.800 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:D3C23CE1-210D-4A2E-A1EE-DA25C38B8F88, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-01T02:01:53.800 Scheduled scan with Id D3C23CE1-210D-4A2E-A1EE-DA25C38B8F88 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-01T02:01:53.800 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-01T02:01:53.800 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-01T02:01:53.800 [SFC] System file cache build is not needed (already completed) 2026-05-01T02:02:08.142 Engine:Triggered AR EMS scan 2026-05-01T02:02:08.158 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.173 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.205 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.220 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.251 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.283 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.283 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.314 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.361 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.376 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.392 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.423 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.439 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.455 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.486 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.501 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.517 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.580 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.595 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.626 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.642 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.705 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-01T02:02:08.736 Bm signature throttled:0x00002db31bed458f 2026-05-01T02:02:34.806 QuickScan:ScanID:D3C23CE1-210D-4A2E-A1EE-DA25C38B8F88: Quick scan finished with error 0 2026-05-01T02:02:34.806 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-01T02:02:35.321 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-01T02:02:35.321 [RTP] Duplicating the current plugin configuration object... 2026-05-01T02:02:35.321 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-01T02:02:35.321 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-01T02:02:35.321 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-01T02:02:35.321 [RTP] No config change detected. Not updating plugin configuration. 2026-05-01T02:02:35.321 [RTP] No config changes found. No configuration switch. 2026-05-01T02:02:35.321 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-01T02:06:24.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T02:10:28.017 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1465688, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T02:10:28.033 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1465690, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T02:10:38.020 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1465703, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T02:10:38.020 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1465705, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T02:10:38.036 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1465707, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T02:10:38.036 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1465709, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T02:12:20.508 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1a_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1467000, FileId: 0x172000000054cb6, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T02:12:31.227 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1a_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1467455, FileId: 0x33d60000000230cb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T02:21:29.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T02:36:34.284 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T02:51:39.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T03:06:44.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T03:10:24.822 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1470658, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T03:10:24.838 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1470660, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T03:10:34.836 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1470673, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T03:10:34.836 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1470675, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T03:10:34.851 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1470677, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T03:21:49.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T03:28:34.852 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1471680, FileId: 0x8f20000000545cd, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T03:36:54.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T03:51:59.281 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T03:56:13.004 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 42833, Count: 6241, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-05-01T03:56:13.004 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 5152, Count: 14, MaxTime: 5062, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7164_167275751\147.0.7727.138_chrome_installer_uncompressed.exe, EstimatedImpact: 12% 2026-05-01T03:56:13.004 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1680, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.EGOWY3, EstimatedImpact: 0% 2026-05-01T03:56:13.004 ProcessImageName: setup.exe, Pid: 5320, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-05-01T03:56:13.004 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 2% 2026-05-01T03:56:13.004 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1a_1.MAD, EstimatedImpact: 0% 2026-05-01T03:56:13.004 ProcessImageName: setup.exe, Pid: 1256, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 7% 2026-05-01T03:56:13.004 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21db97ba-26e4-410d-a787-6d1ea5295e0a.tmp, EstimatedImpact: 0% 2026-05-01T03:56:13.004 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11a88c6d-9719-423c-9b5e-65db2cda698d.tmp, EstimatedImpact: 0% 2026-05-01T03:56:13.004 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb003640-c524-48b9-b29e-cf5018d3e19c.tmp, EstimatedImpact: 0% 2026-05-01T03:56:13.004 ProcessImageName: updater.exe, Pid: 4764, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-01T04:07:04.281 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T04:10:26.833 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1474007, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T04:10:26.849 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1474009, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T04:10:36.842 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1474022, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T04:10:36.858 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1474025, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T04:22:09.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T04:37:14.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T04:52:19.290 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T05:07:24.284 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T05:10:25.570 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1477318, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T05:10:25.585 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1477320, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T05:10:35.575 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1477333, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T05:10:35.575 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1477335, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T05:10:35.747 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1477339, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T05:10:35.747 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1477341, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T05:22:29.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T05:33:43.155 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1478619, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T05:33:43.155 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1478622, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T05:33:46.956 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1478631, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T05:33:46.972 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1478634, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T05:33:46.972 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1478635, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T05:33:46.972 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1478637, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T05:33:56.949 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1478651, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T05:33:56.965 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1478654, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T05:37:34.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T05:52:39.289 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T05:56:13.014 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 44076, Count: 6349, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-01T05:56:13.014 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 5152, Count: 14, MaxTime: 5062, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7164_167275751\147.0.7727.138_chrome_installer_uncompressed.exe, EstimatedImpact: 12% 2026-05-01T05:56:13.014 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2505, Count: 19422, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.EGOWY3, EstimatedImpact: 0% 2026-05-01T05:56:13.014 ProcessImageName: setup.exe, Pid: 5320, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-05-01T05:56:13.014 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 2% 2026-05-01T05:56:13.014 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980a0ebe-d70b-4b23-b889-c54bf2666007.tmp, EstimatedImpact: 0% 2026-05-01T05:56:13.014 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1a_1.MAD, EstimatedImpact: 0% 2026-05-01T05:56:13.014 ProcessImageName: setup.exe, Pid: 1256, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 7% 2026-05-01T05:56:13.014 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29a98c88-dbb0-426e-ab4a-5d89af30dca9.tmp, EstimatedImpact: 0% 2026-05-01T05:56:13.014 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21db97ba-26e4-410d-a787-6d1ea5295e0a.tmp, EstimatedImpact: 0% 2026-05-01T05:56:13.014 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11a88c6d-9719-423c-9b5e-65db2cda698d.tmp, EstimatedImpact: 0% 2026-05-01T05:56:13.014 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca0c0fcb-0a43-460f-b5b5-de92d3da65c8.tmp, EstimatedImpact: 0% 2026-05-01T05:56:13.014 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb003640-c524-48b9-b29e-cf5018d3e19c.tmp, EstimatedImpact: 0% 2026-05-01T05:56:13.014 ProcessImageName: updater.exe, Pid: 4764, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-01T06:07:44.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T06:10:27.489 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1480711, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T06:10:27.504 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1480713, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T06:10:37.497 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1480726, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T06:10:37.513 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1480728, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T06:10:37.513 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1480730, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T06:22:49.293 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T06:37:54.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T06:52:59.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T07:08:04.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T07:10:25.706 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1484189, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T07:10:25.722 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1484191, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T07:10:35.720 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1484204, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T07:10:35.736 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1484206, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T07:23:09.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T07:38:14.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T07:53:19.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T07:56:13.022 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 44167, Count: 6357, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-01T07:56:13.022 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 5152, Count: 14, MaxTime: 5062, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7164_167275751\147.0.7727.138_chrome_installer_uncompressed.exe, EstimatedImpact: 12% 2026-05-01T07:56:13.022 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3075, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.EGOWY3, EstimatedImpact: 0% 2026-05-01T07:56:13.022 ProcessImageName: setup.exe, Pid: 5320, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-05-01T07:56:13.022 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-01T07:56:13.022 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-01T07:56:13.022 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 2% 2026-05-01T07:56:13.022 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980a0ebe-d70b-4b23-b889-c54bf2666007.tmp, EstimatedImpact: 0% 2026-05-01T07:56:13.022 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1a_1.MAD, EstimatedImpact: 0% 2026-05-01T07:56:13.022 ProcessImageName: setup.exe, Pid: 1256, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 7% 2026-05-01T07:56:13.022 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21db97ba-26e4-410d-a787-6d1ea5295e0a.tmp, EstimatedImpact: 0% 2026-05-01T07:56:13.022 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29a98c88-dbb0-426e-ab4a-5d89af30dca9.tmp, EstimatedImpact: 0% 2026-05-01T07:56:13.022 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d934519-0f99-4d6c-b32e-ab851368b594.tmp, EstimatedImpact: 0% 2026-05-01T07:56:13.022 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11a88c6d-9719-423c-9b5e-65db2cda698d.tmp, EstimatedImpact: 0% 2026-05-01T07:56:13.022 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca0c0fcb-0a43-460f-b5b5-de92d3da65c8.tmp, EstimatedImpact: 0% 2026-05-01T07:56:13.022 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb003640-c524-48b9-b29e-cf5018d3e19c.tmp, EstimatedImpact: 0% 2026-05-01T07:56:13.022 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\22121669-15a9-4e05-a936-51de70d6860f.tmp, EstimatedImpact: 0% 2026-05-01T07:56:13.022 ProcessImageName: updater.exe, Pid: 4764, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-01T08:08:24.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T08:10:26.826 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1487508, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T08:10:26.841 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1487510, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T08:10:36.829 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1487523, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T08:10:36.829 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1487525, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T08:10:36.844 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1487527, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T08:10:36.844 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1487529, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T08:23:29.289 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T08:38:34.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T08:53:39.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T09:08:44.289 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T09:10:26.096 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1490853, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T09:10:26.111 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1490855, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T09:10:36.099 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1490868, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T09:10:36.099 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1490870, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T09:10:36.115 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1490872, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T09:10:36.115 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1490874, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T09:23:49.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T09:38:54.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T09:53:59.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T09:56:13.023 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 44167, Count: 6357, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 5152, Count: 14, MaxTime: 5062, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7164_167275751\147.0.7727.138_chrome_installer_uncompressed.exe, EstimatedImpact: 12% 2026-05-01T09:56:13.023 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3960, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.EGOWY3, EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: setup.exe, Pid: 5320, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-05-01T09:56:13.023 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 2% 2026-05-01T09:56:13.023 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980a0ebe-d70b-4b23-b889-c54bf2666007.tmp, EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1a_1.MAD, EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: setup.exe, Pid: 1256, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 7% 2026-05-01T09:56:13.023 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\22121669-15a9-4e05-a936-51de70d6860f.tmp, EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29a98c88-dbb0-426e-ab4a-5d89af30dca9.tmp, EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21db97ba-26e4-410d-a787-6d1ea5295e0a.tmp, EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f2914f2-6b64-420c-91ac-1f470d17149f.tmp, EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11a88c6d-9719-423c-9b5e-65db2cda698d.tmp, EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d934519-0f99-4d6c-b32e-ab851368b594.tmp, EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8b4a3d2-8f47-4940-9f71-e21c21666e54.tmp, EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca0c0fcb-0a43-460f-b5b5-de92d3da65c8.tmp, EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb003640-c524-48b9-b29e-cf5018d3e19c.tmp, EstimatedImpact: 0% 2026-05-01T09:56:13.023 ProcessImageName: updater.exe, Pid: 4764, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-01T10:09:04.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T10:10:25.453 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1494167, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T10:10:25.469 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1494169, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T10:10:35.465 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1494182, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T10:10:35.481 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1494184, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T10:10:35.637 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1494188, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T10:10:35.637 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1494190, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T10:24:09.281 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T10:33:47.061 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1495468, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T10:33:47.061 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1495470, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T10:33:52.829 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1495490, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T10:33:52.845 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1495493, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T10:33:52.845 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1495495, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T10:34:02.860 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1495508, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T10:34:02.860 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1495510, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T10:34:02.860 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1495512, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T10:39:14.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T10:54:19.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T11:09:24.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T11:10:27.232 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1497523, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T11:10:27.247 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1497525, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T11:10:37.246 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1497538, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T11:10:37.246 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1497540, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T11:24:29.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T11:39:34.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T11:54:39.281 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T11:56:13.028 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 44197, Count: 6360, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 5152, Count: 14, MaxTime: 5062, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7164_167275751\147.0.7727.138_chrome_installer_uncompressed.exe, EstimatedImpact: 12% 2026-05-01T11:56:13.028 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4740, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.EGOWY3, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: setup.exe, Pid: 5320, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-05-01T11:56:13.028 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 2% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980a0ebe-d70b-4b23-b889-c54bf2666007.tmp, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 6948, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72615b5e-891a-46a1-a152-5b3c9e5d8aa5.tmp, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1a_1.MAD, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: setup.exe, Pid: 1256, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 7% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d934519-0f99-4d6c-b32e-ab851368b594.tmp, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11a88c6d-9719-423c-9b5e-65db2cda698d.tmp, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f2914f2-6b64-420c-91ac-1f470d17149f.tmp, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb003640-c524-48b9-b29e-cf5018d3e19c.tmp, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\206867a0-fb00-45dd-be8c-452d3cae8e36.tmp, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 6852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a9ee99d3-596f-4aba-a385-85c799e88c44.tmp, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\22121669-15a9-4e05-a936-51de70d6860f.tmp, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca0c0fcb-0a43-460f-b5b5-de92d3da65c8.tmp, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21db97ba-26e4-410d-a787-6d1ea5295e0a.tmp, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8b4a3d2-8f47-4940-9f71-e21c21666e54.tmp, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29a98c88-dbb0-426e-ab4a-5d89af30dca9.tmp, EstimatedImpact: 0% 2026-05-01T11:56:13.028 ProcessImageName: updater.exe, Pid: 4764, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-01T12:09:44.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T12:10:24.948 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1500830, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T12:10:24.964 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1500832, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T12:10:34.958 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1500845, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T12:24:49.290 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T12:39:54.289 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T12:54:59.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T13:10:04.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T13:25:09.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T13:40:14.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T13:55:19.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T13:56:13.042 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49003, Count: 6635, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5445, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.EGOWY3, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 5152, Count: 14, MaxTime: 5062, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7164_167275751\147.0.7727.138_chrome_installer_uncompressed.exe, EstimatedImpact: 12% 2026-05-01T13:56:13.042 ProcessImageName: setup.exe, Pid: 5320, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-05-01T13:56:13.042 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 2% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 6948, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72615b5e-891a-46a1-a152-5b3c9e5d8aa5.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980a0ebe-d70b-4b23-b889-c54bf2666007.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1a_1.MAD, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: setup.exe, Pid: 1256, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 7% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0901c7d9-1722-4c3c-b8ac-0db3ed022e8f.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\22121669-15a9-4e05-a936-51de70d6860f.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72b8766d-5b59-4d93-9431-a8185fede74f.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29a98c88-dbb0-426e-ab4a-5d89af30dca9.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d934519-0f99-4d6c-b32e-ab851368b594.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21db97ba-26e4-410d-a787-6d1ea5295e0a.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 6852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a9ee99d3-596f-4aba-a385-85c799e88c44.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11a88c6d-9719-423c-9b5e-65db2cda698d.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8b4a3d2-8f47-4940-9f71-e21c21666e54.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca0c0fcb-0a43-460f-b5b5-de92d3da65c8.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f2914f2-6b64-420c-91ac-1f470d17149f.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\206867a0-fb00-45dd-be8c-452d3cae8e36.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb003640-c524-48b9-b29e-cf5018d3e19c.tmp, EstimatedImpact: 0% 2026-05-01T13:56:13.042 ProcessImageName: updater.exe, Pid: 4764, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-01T14:10:24.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T14:10:26.448 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1507525, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T14:25:29.292 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T14:40:34.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T14:55:39.281 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T15:10:37.691 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1510860, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T15:10:44.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T15:25:49.292 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T15:33:58.090 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1512179, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T15:40:54.290 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T15:55:59.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T15:56:13.042 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49034, Count: 6641, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6165, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.EGOWY3, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 5152, Count: 14, MaxTime: 5062, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7164_167275751\147.0.7727.138_chrome_installer_uncompressed.exe, EstimatedImpact: 12% 2026-05-01T15:56:13.042 ProcessImageName: setup.exe, Pid: 5320, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-05-01T15:56:13.042 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1a_1.MAD, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 2% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 6948, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72615b5e-891a-46a1-a152-5b3c9e5d8aa5.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 3924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b9efb94-58e7-4435-9d1d-5a5137db858b.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980a0ebe-d70b-4b23-b889-c54bf2666007.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: setup.exe, Pid: 1256, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 7% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 6852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a9ee99d3-596f-4aba-a385-85c799e88c44.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c78d289c-f658-42a8-aa80-d41bfa7b7ac4.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0901c7d9-1722-4c3c-b8ac-0db3ed022e8f.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\22121669-15a9-4e05-a936-51de70d6860f.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72b8766d-5b59-4d93-9431-a8185fede74f.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29a98c88-dbb0-426e-ab4a-5d89af30dca9.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321ca64e-691d-4579-ae2d-ac8f3ea2f4be.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f2914f2-6b64-420c-91ac-1f470d17149f.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21db97ba-26e4-410d-a787-6d1ea5295e0a.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11a88c6d-9719-423c-9b5e-65db2cda698d.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d934519-0f99-4d6c-b32e-ab851368b594.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8b4a3d2-8f47-4940-9f71-e21c21666e54.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb003640-c524-48b9-b29e-cf5018d3e19c.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca0c0fcb-0a43-460f-b5b5-de92d3da65c8.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\206867a0-fb00-45dd-be8c-452d3cae8e36.tmp, EstimatedImpact: 0% 2026-05-01T15:56:13.042 ProcessImageName: updater.exe, Pid: 4764, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-01T16:11:04.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T16:13:14.122 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f32_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1514372, FileId: 0x2102000000053f93, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T16:26:09.279 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T16:41:14.290 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T16:56:19.284 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T17:11:24.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T17:26:29.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T17:41:34.289 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T17:56:13.043 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50322, Count: 6737, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\js\underscore.min.js, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6735, Count: 58257, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.EGOWY3, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 5152, Count: 14, MaxTime: 5062, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7164_167275751\147.0.7727.138_chrome_installer_uncompressed.exe, EstimatedImpact: 12% 2026-05-01T17:56:13.043 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 120, Count: 30, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1a_1.MAD, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: setup.exe, Pid: 5320, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-05-01T17:56:13.043 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 2% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 3924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b9efb94-58e7-4435-9d1d-5a5137db858b.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980a0ebe-d70b-4b23-b889-c54bf2666007.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 6948, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72615b5e-891a-46a1-a152-5b3c9e5d8aa5.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: setup.exe, Pid: 1256, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 7% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8b4a3d2-8f47-4940-9f71-e21c21666e54.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb003640-c524-48b9-b29e-cf5018d3e19c.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca0c0fcb-0a43-460f-b5b5-de92d3da65c8.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b32281a-5c44-4b86-9bce-d901edb2c143.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321ca64e-691d-4579-ae2d-ac8f3ea2f4be.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72b8766d-5b59-4d93-9431-a8185fede74f.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 7780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d92348fe-ede5-44b2-b6ee-cabfdc417413.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\206867a0-fb00-45dd-be8c-452d3cae8e36.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 6852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a9ee99d3-596f-4aba-a385-85c799e88c44.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21db97ba-26e4-410d-a787-6d1ea5295e0a.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\22121669-15a9-4e05-a936-51de70d6860f.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0901c7d9-1722-4c3c-b8ac-0db3ed022e8f.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29a98c88-dbb0-426e-ab4a-5d89af30dca9.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f2914f2-6b64-420c-91ac-1f470d17149f.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11a88c6d-9719-423c-9b5e-65db2cda698d.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d934519-0f99-4d6c-b32e-ab851368b594.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c78d289c-f658-42a8-aa80-d41bfa7b7ac4.tmp, EstimatedImpact: 0% 2026-05-01T17:56:13.043 ProcessImageName: updater.exe, Pid: 4764, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-01T17:56:39.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T18:10:35.522 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1520893, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T18:11:44.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T18:26:49.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T18:41:54.291 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T18:56:59.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T19:12:04.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T19:27:09.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T19:42:14.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T19:56:13.047 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51237, Count: 6791, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\js\underscore.min.js, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7470, Count: 64728, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.EGOWY3, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 5152, Count: 14, MaxTime: 5062, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7164_167275751\147.0.7727.138_chrome_installer_uncompressed.exe, EstimatedImpact: 12% 2026-05-01T19:56:13.047 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 120, Count: 30, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1a_1.MAD, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: setup.exe, Pid: 5320, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-05-01T19:56:13.047 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 2% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 3924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b9efb94-58e7-4435-9d1d-5a5137db858b.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 6948, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72615b5e-891a-46a1-a152-5b3c9e5d8aa5.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980a0ebe-d70b-4b23-b889-c54bf2666007.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: setup.exe, Pid: 1256, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 7% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8b4a3d2-8f47-4940-9f71-e21c21666e54.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca0c0fcb-0a43-460f-b5b5-de92d3da65c8.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321ca64e-691d-4579-ae2d-ac8f3ea2f4be.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b32281a-5c44-4b86-9bce-d901edb2c143.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\206867a0-fb00-45dd-be8c-452d3cae8e36.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72b8766d-5b59-4d93-9431-a8185fede74f.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 7780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d92348fe-ede5-44b2-b6ee-cabfdc417413.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 6852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a9ee99d3-596f-4aba-a385-85c799e88c44.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb003640-c524-48b9-b29e-cf5018d3e19c.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\22121669-15a9-4e05-a936-51de70d6860f.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21db97ba-26e4-410d-a787-6d1ea5295e0a.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 6708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8debd963-c239-4a91-bdf4-7a4dc974aa00.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0901c7d9-1722-4c3c-b8ac-0db3ed022e8f.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29a98c88-dbb0-426e-ab4a-5d89af30dca9.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f2914f2-6b64-420c-91ac-1f470d17149f.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11a88c6d-9719-423c-9b5e-65db2cda698d.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c78d289c-f658-42a8-aa80-d41bfa7b7ac4.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4deed73f-213c-446e-b39d-131a39cc28e0.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d934519-0f99-4d6c-b32e-ab851368b594.tmp, EstimatedImpact: 0% 2026-05-01T19:56:13.047 ProcessImageName: updater.exe, Pid: 4764, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-01T19:57:19.290 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T20:10:36.757 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1527531, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T20:12:24.290 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T20:27:29.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T20:34:11.665 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1528859, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T20:42:34.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T20:57:39.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T21:12:44.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T21:27:49.284 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T21:42:54.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T21:56:13.059 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52198, Count: 6846, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\js\underscore.min.js, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8550, Count: 71199, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.EGOWY3, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 5152, Count: 14, MaxTime: 5062, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7164_167275751\147.0.7727.138_chrome_installer_uncompressed.exe, EstimatedImpact: 12% 2026-05-01T21:56:13.059 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 32, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1a_1.MAD, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: setup.exe, Pid: 5320, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-05-01T21:56:13.059 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 2% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 6948, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72615b5e-891a-46a1-a152-5b3c9e5d8aa5.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 3924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b9efb94-58e7-4435-9d1d-5a5137db858b.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980a0ebe-d70b-4b23-b889-c54bf2666007.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad9ad719-475b-43dd-8776-dd7928322df5.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: setup.exe, Pid: 1256, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 7% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 7700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b3dec92-91ea-4c3e-a90d-81dc31f6107b.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f2914f2-6b64-420c-91ac-1f470d17149f.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\22121669-15a9-4e05-a936-51de70d6860f.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21db97ba-26e4-410d-a787-6d1ea5295e0a.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321ca64e-691d-4579-ae2d-ac8f3ea2f4be.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4deed73f-213c-446e-b39d-131a39cc28e0.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d934519-0f99-4d6c-b32e-ab851368b594.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 6708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8debd963-c239-4a91-bdf4-7a4dc974aa00.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8b4a3d2-8f47-4940-9f71-e21c21666e54.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11a88c6d-9719-423c-9b5e-65db2cda698d.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 6852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a9ee99d3-596f-4aba-a385-85c799e88c44.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca0c0fcb-0a43-460f-b5b5-de92d3da65c8.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b32281a-5c44-4b86-9bce-d901edb2c143.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\206867a0-fb00-45dd-be8c-452d3cae8e36.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c78d289c-f658-42a8-aa80-d41bfa7b7ac4.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb003640-c524-48b9-b29e-cf5018d3e19c.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0901c7d9-1722-4c3c-b8ac-0db3ed022e8f.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72b8766d-5b59-4d93-9431-a8185fede74f.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 7780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d92348fe-ede5-44b2-b6ee-cabfdc417413.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29a98c88-dbb0-426e-ab4a-5d89af30dca9.tmp, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 6760, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-01T21:56:13.059 ProcessImageName: updater.exe, Pid: 4764, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-01T21:57:59.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T22:10:25.756 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1534183, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T22:13:04.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T22:28:09.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T22:43:14.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T22:58:19.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T23:13:24.281 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T23:17:07.021 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f3e_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1537886, FileId: 0x2378000000053f93, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-01T23:28:29.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T23:43:34.281 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-01T23:55:24.276 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-01T23:55:24.291 Job Notification: New process added to job (1436) 2026-05-01T23:55:24.307 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-01T23:55:24.307 Aggressive catchup quick scan threshold: 788105112874 / 25920000000000 2026-05-01T23:55:24.307 Job Notification: New process added to job (7196) 2026-05-01T23:55:24.307 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:1436] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7196]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-01T23:55:24.385 Job Notification: New process added to job (5656) 2026-05-01T23:55:24.385 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-01T23:55:24.385 Job Notification: New process added to job (7876) 2026-05-01T23:55:24.401 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:5656] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7876]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-01T23:55:24.713 Job Notification: New process added to job (7280) 2026-05-01T23:55:24.713 Task(GetDeviceTicket -AccessKey 06ECEA97-AC18-69DE-E2AA-18CDB7541D25 ) launched as network service 2026-05-01T23:55:24.823 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-01T23:55:24.838 [RTP] Duplicating the current plugin configuration object... 2026-05-01T23:55:24.838 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-01T23:55:24.838 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-01T23:55:24.838 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-01T23:55:24.838 [RTP] No config change detected. Not updating plugin configuration. 2026-05-01T23:55:24.838 [RTP] No config changes found. No configuration switch. 2026-05-01T23:55:24.838 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-01T23:55:25.291 Job Notification: Process exited from job (7280) 2026-05-01T23:55:26.399 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-01T23:55:26.399 [Cloud] Start of cloud request. Passive mode: 0 2026-05-01T23:55:26.399 [Cloud] Queued cloud request. 2026-05-01T23:55:26.399 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-01T23:55:26.399 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-01T23:55:26.399 [Cloud] Start of cloud request. Passive mode: 0 2026-05-01T23:55:26.399 [Cloud] Queued cloud request. 2026-05-01T23:55:26.430 Job Notification: New process added to job (8056) 2026-05-01T23:55:26.430 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey F7BDFFF4-F880-C717-EFA9-D809EB40A655) launched 2026-05-01T23:55:26.430 Job Notification: New process added to job (7184) 2026-05-01T23:55:26.446 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:8056] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7184]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-01T23:55:26.462 Job Notification: New process added to job (6608) 2026-05-01T23:55:26.477 Job Notification: Process exited from job (8056) 2026-05-01T23:55:26.477 Job Notification: Process exited from job (7184) 2026-05-01T23:55:26.477 [Cloud] Dequeued cloud request. 2026-05-01T23:55:26.477 [Cloud] Dequeued cloud request. 2026-05-01T23:55:26.477 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-01T23:55:26.493 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-01T23:55:26.727 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-01T23:55:26.727 [Cloud] End of cloud request. 2026-05-01T23:55:26.743 [Cloud] End of cloud request. 2026-05-01T23:55:26.899 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-01T23:56:12.076 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\C7BB7E03-C36B-48FD-BA71-D307ADBEE7FA1cfc.1dcd9c6158f5542 2026-05-01T23:56:12.138 Verifying engine and signature files (source: 0) ... 2026-05-01T23:56:12.138 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9DFECF56-5A63-448C-BDAA-4F980C970769}\mpengine.dll] due to PPL. 2026-05-01T23:56:12.138 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9DFECF56-5A63-448C-BDAA-4F980C970769}\mpasbase.vdm] (file in cache) 2026-05-01T23:56:12.138 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9DFECF56-5A63-448C-BDAA-4F980C970769}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-01T23:56:12.185 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9DFECF56-5A63-448C-BDAA-4F980C970769}\mpasdlta.vdm] 2026-05-01T23:56:12.185 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9DFECF56-5A63-448C-BDAA-4F980C970769}\mpavbase.vdm] (file in cache) 2026-05-01T23:56:12.217 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9DFECF56-5A63-448C-BDAA-4F980C970769}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-01T23:56:12.232 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9DFECF56-5A63-448C-BDAA-4F980C970769}\mpavdlta.vdm] 2026-05-01T23:56:12.451 [Engine] IsHybridMode: 0 2026-05-01T23:56:12.451 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-01T23:56:12.529 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-4711FFD92A62D9DAA14C26A90A59507B99D7FC66.bin): 0x00000002 2026-05-01T23:56:12.545 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-4711FFD92A62D9DAA14C26A90A59507B99D7FC66.bin) 2026-05-01T23:56:12.545 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-01T23:56:12.545 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-01T23:56:12.545 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-01T23:56:12.545 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-05-01T23:56:13.060 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53142, Count: 6903, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\js\underscore.min.js, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9450, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.EGOWY3, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 5152, Count: 14, MaxTime: 5062, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7164_167275751\147.0.7727.138_chrome_installer_uncompressed.exe, EstimatedImpact: 12% 2026-05-01T23:56:13.060 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 38, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1a_1.MAD, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: setup.exe, Pid: 5320, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-05-01T23:56:13.060 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 2% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 6948, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72615b5e-891a-46a1-a152-5b3c9e5d8aa5.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 3924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b9efb94-58e7-4435-9d1d-5a5137db858b.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad9ad719-475b-43dd-8776-dd7928322df5.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980a0ebe-d70b-4b23-b889-c54bf2666007.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: setup.exe, Pid: 1256, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 7% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72b8766d-5b59-4d93-9431-a8185fede74f.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 7780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d92348fe-ede5-44b2-b6ee-cabfdc417413.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 6852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a9ee99d3-596f-4aba-a385-85c799e88c44.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 6644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21db97ba-26e4-410d-a787-6d1ea5295e0a.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 7700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b3dec92-91ea-4c3e-a90d-81dc31f6107b.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4deed73f-213c-446e-b39d-131a39cc28e0.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 5448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11a88c6d-9719-423c-9b5e-65db2cda698d.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d934519-0f99-4d6c-b32e-ab851368b594.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 6424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a2d5e10-c271-4bbc-9b19-d259e1302c97.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\22121669-15a9-4e05-a936-51de70d6860f.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 3856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8b4a3d2-8f47-4940-9f71-e21c21666e54.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f2914f2-6b64-420c-91ac-1f470d17149f.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 6992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321ca64e-691d-4579-ae2d-ac8f3ea2f4be.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 2720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ca0c0fcb-0a43-460f-b5b5-de92d3da65c8.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b32281a-5c44-4b86-9bce-d901edb2c143.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\206867a0-fb00-45dd-be8c-452d3cae8e36.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 6708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8debd963-c239-4a91-bdf4-7a4dc974aa00.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb003640-c524-48b9-b29e-cf5018d3e19c.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0901c7d9-1722-4c3c-b8ac-0db3ed022e8f.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 6208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29a98c88-dbb0-426e-ab4a-5d89af30dca9.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 7288, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c78d289c-f658-42a8-aa80-d41bfa7b7ac4.tmp, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 6760, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 3672, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-01T23:56:13.060 ProcessImageName: updater.exe, Pid: 4764, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-01T23:56:21.914 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-01T23:56:21.914 [AutoExclusion] Applied roles from cache. 2026-05-01T23:56:21.914 [AutoExclusion] Started roles monitoring. 2026-05-01T23:56:21.914 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0EA68020, lRefCount: 5, hr=0 2026-05-01T23:56:21.914 [Engine] New active engine 00007FFD0D908020 replacing engine 00007FFD0EA68020. Number of active engines: 2 2026-05-01T23:56:21.930 EngineInit:Global ASOC is enabled 2026-05-01T23:56:21.930 EngineInit:ASOO is enabled for developer volumes 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-01T23:56:21.945 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-01T23:56:21.945 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-01T23:56:21.945 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-01T23:56:21.945 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-01T23:56:21.945 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-01T23:56:21.945 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-01T23:56:21.961 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-01T23:56:21.961 [Plugin] Initializing RTP plugin state... 2026-05-01T23:56:21.961 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-01T23:56:21.961 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎01‎-‎2026 01:56:13 Last Perf:‎05‎-‎01‎-‎2026 01:56:13 First RTP Scan:‎05‎-‎01‎-‎2026 01:56:16 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:413 Misses:2145 BM Queue:0,41,0 Proc:0,41,0 File:0,19,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1540113 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1678443556 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2663 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:127697 TotalHits:563703 InstanceCacheInserts:791137 InstanceCacheUpdates:0 InstanceCacheDeletes:139591 InstanceCacheHits:2770 InstanceCacheMisses:858474 InstanceCacheOverflows:640584 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (330/286) Success: 286, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-01T23:56:21.961 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9DFECF56-5A63-448C-BDAA-4F980C970769} 2026-05-01T23:56:21.961 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0B468D3A-94DA-4860-B786-627233800DBC}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0B468D3A-94DA-4860-B786-627233800DBC}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-01T23:56:21.961 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-01T23:56:21.961 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A896445E-62A4-443B-8C38-27628BCAD4F5} removed 2026-05-01T23:56:21.961 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-01T23:56:21.961 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-01T23:56:21.961 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-01T23:56:21.961 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-01T23:56:21.961 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-01-2026 23:56:21 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-01-2026 23:56:21 2026-05-01T23:56:21.961 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-01T23:56:21.961 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-01T23:56:21.961 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-01T23:56:21.961 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-01T23:56:21.961 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-01T23:56:21.961 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-01T23:56:21.961 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-01T23:56:21.961 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-01T23:56:21.961 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-01T23:56:21.961 MdCoreSvc is supported in this platform and OS Signature updated on 05-01-2026 23:56:21 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.391.0 AV Signature Version: 1.449.391.0 ************************************************************ 2026-05-01T23:56:21.961 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-01T23:56:21.961 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\C7BB7E03-C36B-48FD-BA71-D307ADBEE7FA1cfc.1dcd9c6158f5542 2026-05-01T23:56:21.977 Process scan (postsignatureupdatescan) started. 2026-05-01T23:56:22.039 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-01T23:56:22.039 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 05-01-2026 23:56:22 ************************************************************ 2026-05-01T23:56:22.055 Job Notification: Process exited from job (5656) 2026-05-01T23:56:22.055 Job Notification: Process exited from job (7876) 2026-05-01T23:56:22.070 Job Notification: Process exited from job (1436) 2026-05-01T23:56:22.070 Job Notification: Process exited from job (7196) 2026-05-01T23:56:22.227 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-01T23:56:22.227 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-01T23:56:22.227 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-01T23:56:22.227 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-01T23:56:22.227 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-01T23:56:22.227 [Engine] Engine 00007FFD0EA68020 no longer in use. Number of active engines: 1 2026-05-01T23:56:22.227 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-01T23:56:22.227 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-01T23:56:22.445 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-01T23:56:22.445 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-01T23:56:22.445 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-01T23:56:23.008 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53142, Count: 6903, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\js\underscore.min.js, EstimatedImpact: 0% 2026-05-01T23:56:23.008 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9450, Count: 77679, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.EGOWY3, EstimatedImpact: 0% 2026-05-01T23:56:23.008 ProcessImageName: updater.exe, Pid: 7164, TotalTime: 5152, Count: 14, MaxTime: 5062, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping7164_167275751\147.0.7727.138_chrome_installer_uncompressed.exe, EstimatedImpact: 12% 2026-05-01T23:56:23.008 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 38, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f1a_1.MAD, EstimatedImpact: 0% 2026-05-01T23:56:23.008 ProcessImageName: setup.exe, Pid: 5320, TotalTime: 93, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\new_chrome.exe, EstimatedImpact: 1% 2026-05-01T23:56:23.008 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-01T23:56:23.008 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-01T23:56:23.008 ProcessImageName: explorer.exe, Pid: 3884, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\Google Chrome.lnk, EstimatedImpact: 2% 2026-05-01T23:56:23.008 ProcessImageName: updater.exe, Pid: 6948, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72615b5e-891a-46a1-a152-5b3c9e5d8aa5.tmp, EstimatedImpact: 0% 2026-05-01T23:56:23.008 ProcessImageName: updater.exe, Pid: 3924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b9efb94-58e7-4435-9d1d-5a5137db858b.tmp, EstimatedImpact: 0% 2026-05-01T23:56:23.008 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad9ad719-475b-43dd-8776-dd7928322df5.tmp, EstimatedImpact: 0% 2026-05-01T23:56:23.008 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\980a0ebe-d70b-4b23-b889-c54bf2666007.tmp, EstimatedImpact: 0% 2026-05-01T23:56:23.008 ProcessImageName: setup.exe, Pid: 1256, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk->[CMDEmbedded], EstimatedImpact: 7% 2026-05-01T23:56:23.070 [Engine] RSIG_UNLOADENGINE, 00007FFD0EA68020, err=0x0 2026-05-01T23:56:23.086 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0B468D3A-94DA-4860-B786-627233800DBC} removed 2026-05-01T23:56:28.467 Process scan (postsignatureupdatescan) completed. 2026-05-01T23:58:39.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T00:01:21.938 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-02T00:06:59.793 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f3f_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1541915, FileId: 0x63b300000004c49e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T00:10:26.314 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1542592, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T00:10:26.345 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1542595, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T00:10:32.773 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f40_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1542609, FileId: 0x160400000000056e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T00:10:33.288 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f40_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1542613, FileId: 0x160500000000056e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T00:10:36.322 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1542615, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T00:10:36.338 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1542617, FileId: 0x55d000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T00:13:44.289 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T00:28:49.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T00:43:54.281 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T00:58:59.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T01:10:25.727 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1545952, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:10:25.743 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1545954, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:10:35.746 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1545967, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:10:35.746 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1545969, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:10:35.902 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1545973, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:10:35.902 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1545975, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:14:04.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T01:29:09.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T01:34:01.752 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1547378, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:34:01.767 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1547380, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:34:05.716 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1547400, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:34:05.731 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1547403, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:34:05.731 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1547405, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:34:15.719 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1547418, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:34:15.719 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1547420, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:34:15.735 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1547422, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:34:15.735 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1547424, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T01:44:14.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T01:56:21.926 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45300, Count: 6381, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\life\feed\a78e5c567f0283482d7c6c00dfe63036.html, EstimatedImpact: 0% 2026-05-02T01:56:21.926 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1005, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.OG93Y3, EstimatedImpact: 0% 2026-05-02T01:56:21.926 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f3f_1.MAI, EstimatedImpact: 0% 2026-05-02T01:56:21.926 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\418e9190-942f-4522-bcdc-70b729d97957.tmp, EstimatedImpact: 0% 2026-05-02T01:56:21.926 ProcessImageName: updater.exe, Pid: 6684, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-02T01:56:21.926 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2ecb61-1eaa-4853-b5aa-0abdebc7e3aa.tmp, EstimatedImpact: 0% 2026-05-02T01:59:19.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T02:01:53.826 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:24997F39-E661-4A9C-9096-FCE60DC21DA9, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-02T02:01:53.826 Scheduled scan with Id 24997F39-E661-4A9C-9096-FCE60DC21DA9 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-02T02:01:53.826 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-02T02:01:53.826 [SFC] System file cache build is not needed (already completed) 2026-05-02T02:01:53.826 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-02T02:02:03.879 Engine:Triggered AR EMS scan 2026-05-02T02:02:03.879 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:03.895 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:03.911 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:03.926 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:03.973 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:03.989 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.004 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.035 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.051 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.082 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.098 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.114 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.129 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.160 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.176 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.192 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.223 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.270 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.301 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.317 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.348 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.395 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-02T02:02:04.410 Bm signature throttled:0x00002db31bed458f 2026-05-02T02:02:17.723 QuickScan:ScanID:24997F39-E661-4A9C-9096-FCE60DC21DA9: Quick scan finished with error 0 2026-05-02T02:02:17.739 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-02T02:02:18.254 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-02T02:02:18.254 [RTP] Duplicating the current plugin configuration object... 2026-05-02T02:02:18.254 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-02T02:02:18.254 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-02T02:02:18.254 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-02T02:02:18.254 [RTP] No config change detected. Not updating plugin configuration. 2026-05-02T02:02:18.254 [RTP] No config changes found. No configuration switch. 2026-05-02T02:02:18.254 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-02T02:10:24.840 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1549584, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T02:10:24.856 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1549586, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T02:10:34.851 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1549598, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T02:10:34.866 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1549600, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T02:10:34.866 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1549601, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T02:14:24.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T02:29:29.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T02:44:34.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T02:59:39.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T03:10:26.001 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1552906, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T03:10:26.017 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1552908, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T03:10:36.013 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1552921, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T03:10:36.028 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1552924, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T03:14:44.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T03:29:49.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T03:44:54.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T03:55:24.386 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f47_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1555393, FileId: 0x4330000000550ac, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T03:55:24.964 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f48_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1555406, FileId: 0x2f0000000054cd5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T03:55:25.573 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f48_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1555411, FileId: 0x2f1000000054cd5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T03:56:21.933 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45390, Count: 6392, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\life\feed\a78e5c567f0283482d7c6c00dfe63036.html, EstimatedImpact: 0% 2026-05-02T03:56:21.933 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1710, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.OG93Y3, EstimatedImpact: 0% 2026-05-02T03:56:21.933 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f3f_1.MAI, EstimatedImpact: 0% 2026-05-02T03:56:21.933 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\418e9190-942f-4522-bcdc-70b729d97957.tmp, EstimatedImpact: 0% 2026-05-02T03:56:21.933 ProcessImageName: updater.exe, Pid: 6684, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-02T03:56:21.933 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e79645f2-c892-4be3-b6ff-5128f4ed539a.tmp, EstimatedImpact: 0% 2026-05-02T03:56:21.933 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a8c388-c3ca-4a43-92cb-efa40bea6911.tmp, EstimatedImpact: 0% 2026-05-02T03:56:21.933 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2ecb61-1eaa-4853-b5aa-0abdebc7e3aa.tmp, EstimatedImpact: 0% 2026-05-02T03:59:59.284 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T04:10:25.930 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1556234, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T04:10:25.946 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1556245, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T04:10:35.933 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1556249, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T04:10:35.933 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1556251, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T04:10:35.965 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1556262, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T04:10:35.965 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1556264, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T04:15:04.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T04:30:09.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T04:45:14.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T05:00:19.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T05:10:24.883 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1559556, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T05:10:24.898 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1559558, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T05:10:33.987 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f4b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1559573, FileId: 0x341000000054cd5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T05:10:34.596 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f4b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1559577, FileId: 0x342000000054cd5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T05:10:34.893 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1559578, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T05:10:34.893 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1559579, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T05:10:34.909 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1559581, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T05:15:24.284 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T05:30:29.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T05:45:34.288 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T05:56:21.941 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49152, Count: 6616, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\life\feed\a78e5c567f0283482d7c6c00dfe63036.html, EstimatedImpact: 0% 2026-05-02T05:56:21.941 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2430, Count: 19413, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.OG93Y3, EstimatedImpact: 0% 2026-05-02T05:56:21.941 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f3f_1.MAI, EstimatedImpact: 0% 2026-05-02T05:56:21.941 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\418e9190-942f-4522-bcdc-70b729d97957.tmp, EstimatedImpact: 0% 2026-05-02T05:56:21.941 ProcessImageName: updater.exe, Pid: 6684, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-02T05:56:21.941 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e79645f2-c892-4be3-b6ff-5128f4ed539a.tmp, EstimatedImpact: 0% 2026-05-02T05:56:21.941 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a8c388-c3ca-4a43-92cb-efa40bea6911.tmp, EstimatedImpact: 0% 2026-05-02T05:56:21.941 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2ecb61-1eaa-4853-b5aa-0abdebc7e3aa.tmp, EstimatedImpact: 0% 2026-05-02T05:56:21.941 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c951364-6d01-41cc-80c5-3d92e8f7a41b.tmp, EstimatedImpact: 0% 2026-05-02T05:56:21.941 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T06:00:39.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T06:10:26.197 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1562932, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T06:10:26.212 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1562934, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T06:10:36.211 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1562947, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T06:10:36.226 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1562949, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T06:10:36.367 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1562953, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T06:10:36.383 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1562955, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T06:15:44.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T06:30:49.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T06:34:05.811 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1564402, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T06:34:05.811 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1564404, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T06:34:10.755 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1564423, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T06:34:10.770 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1564426, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T06:34:10.770 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1564428, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T06:34:20.769 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1564441, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T06:34:20.769 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1564443, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T06:34:20.785 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1564446, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T06:45:54.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T07:00:59.281 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T07:10:25.588 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1566444, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T07:10:25.604 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1566446, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T07:10:35.604 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1566459, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T07:10:35.604 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1566458, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T07:10:35.604 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1566461, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T07:16:04.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T07:31:09.279 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T07:39:21.408 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f4e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1568052, FileId: 0x340700000000a55f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T07:39:22.002 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f4e_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1568056, FileId: 0x340800000000a55f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T07:46:14.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T07:56:21.954 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49866, Count: 6669, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\life\feed\a78e5c567f0283482d7c6c00dfe63036.html, EstimatedImpact: 0% 2026-05-02T07:56:21.954 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3075, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.OG93Y3, EstimatedImpact: 0% 2026-05-02T07:56:21.954 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-02T07:56:21.954 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f3f_1.MAI, EstimatedImpact: 0% 2026-05-02T07:56:21.954 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\418e9190-942f-4522-bcdc-70b729d97957.tmp, EstimatedImpact: 0% 2026-05-02T07:56:21.954 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fab6b70a-87b6-4b39-babc-481420fa6cb3.tmp, EstimatedImpact: 0% 2026-05-02T07:56:21.954 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-02T07:56:21.954 ProcessImageName: updater.exe, Pid: 6684, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-02T07:56:21.954 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c6bcc60-5788-40e5-b14b-28d41aa82ec5.tmp, EstimatedImpact: 0% 2026-05-02T07:56:21.954 ProcessImageName: updater.exe, Pid: 6364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\956a3533-e682-4454-aed6-c893ce6dec38.tmp, EstimatedImpact: 0% 2026-05-02T07:56:21.954 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e79645f2-c892-4be3-b6ff-5128f4ed539a.tmp, EstimatedImpact: 0% 2026-05-02T07:56:21.954 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a8c388-c3ca-4a43-92cb-efa40bea6911.tmp, EstimatedImpact: 0% 2026-05-02T07:56:21.954 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2ecb61-1eaa-4853-b5aa-0abdebc7e3aa.tmp, EstimatedImpact: 0% 2026-05-02T07:56:21.954 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c951364-6d01-41cc-80c5-3d92e8f7a41b.tmp, EstimatedImpact: 0% 2026-05-02T07:56:21.954 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T08:01:19.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T08:10:26.441 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1569768, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T08:10:26.457 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1569770, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T08:10:36.445 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1569783, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T08:10:36.445 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1569785, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T08:10:36.461 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1569787, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T08:10:36.461 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1569789, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T08:16:24.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T08:31:29.284 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T08:46:34.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T09:01:39.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T09:04:01.738 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f53_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1572754, FileId: 0x39d70000000230cb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T09:04:02.331 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f53_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1572758, FileId: 0x39d80000000230cb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T09:10:26.387 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1573114, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T09:10:26.402 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1573116, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T09:10:36.391 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1573129, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T09:10:36.406 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1573131, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T09:10:36.406 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1573133, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T09:10:36.406 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1573135, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T09:16:44.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T09:23:57.597 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f54_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1573872, FileId: 0x12db0000000545d3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T09:23:58.176 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f54_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1573876, FileId: 0x12dc0000000545d3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T09:31:49.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T09:46:54.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T09:56:21.955 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49896, Count: 6677, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\life\feed\a78e5c567f0283482d7c6c00dfe63036.html, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3780, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.OG93Y3, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 28, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f3f_1.MAI, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\418e9190-942f-4522-bcdc-70b729d97957.tmp, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fab6b70a-87b6-4b39-babc-481420fa6cb3.tmp, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: updater.exe, Pid: 6684, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c6bcc60-5788-40e5-b14b-28d41aa82ec5.tmp, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: updater.exe, Pid: 6364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\956a3533-e682-4454-aed6-c893ce6dec38.tmp, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: updater.exe, Pid: 6260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2e22a57c-cefe-4d01-adf6-73263a123b2e.tmp, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e79645f2-c892-4be3-b6ff-5128f4ed539a.tmp, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a8c388-c3ca-4a43-92cb-efa40bea6911.tmp, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a98cca1-f118-41b8-a8ae-0bebd4996f09.tmp, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2ecb61-1eaa-4853-b5aa-0abdebc7e3aa.tmp, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c951364-6d01-41cc-80c5-3d92e8f7a41b.tmp, EstimatedImpact: 0% 2026-05-02T09:56:21.955 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T10:01:59.281 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T10:10:26.017 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1576441, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T10:10:26.033 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1576443, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T10:10:36.031 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1576456, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T10:10:36.031 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1576457, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T10:10:36.047 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1576459, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T10:17:04.287 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T10:32:09.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T10:47:14.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T11:02:19.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T11:10:26.692 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1579760, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T11:10:26.692 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1579762, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T11:10:36.709 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1579775, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T11:10:36.709 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1579777, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T11:10:36.881 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1579781, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T11:10:36.881 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1579783, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T11:17:24.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T11:32:29.273 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T11:34:10.858 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1581080, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T11:34:10.858 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1581082, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T11:34:14.987 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1581092, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T11:34:14.987 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1581095, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T11:34:15.003 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1581097, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T11:47:34.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T11:56:21.960 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49896, Count: 6677, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\life\feed\a78e5c567f0283482d7c6c00dfe63036.html, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4560, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.OG93Y3, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 28, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f3f_1.MAI, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\418e9190-942f-4522-bcdc-70b729d97957.tmp, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fab6b70a-87b6-4b39-babc-481420fa6cb3.tmp, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 5656, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\893e2022-48e4-4cca-86f9-92c4947b66eb.tmp, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 6684, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a98cca1-f118-41b8-a8ae-0bebd4996f09.tmp, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c6bcc60-5788-40e5-b14b-28d41aa82ec5.tmp, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 6364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\956a3533-e682-4454-aed6-c893ce6dec38.tmp, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42b685e3-60cf-4367-b0c6-25045312286d.tmp, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e79645f2-c892-4be3-b6ff-5128f4ed539a.tmp, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 6260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2e22a57c-cefe-4d01-adf6-73263a123b2e.tmp, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a8c388-c3ca-4a43-92cb-efa40bea6911.tmp, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2ecb61-1eaa-4853-b5aa-0abdebc7e3aa.tmp, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c951364-6d01-41cc-80c5-3d92e8f7a41b.tmp, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T11:56:21.960 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T12:02:39.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T12:10:34.597 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1583148, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T12:17:44.279 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T12:32:49.285 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T12:47:54.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T13:02:59.286 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T13:18:04.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T13:33:09.279 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T13:48:14.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T13:56:21.969 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50541, Count: 6700, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\life\feed\a78e5c567f0283482d7c6c00dfe63036.html, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5220, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.OG93Y3, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 28, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f3f_1.MAI, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 5656, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\893e2022-48e4-4cca-86f9-92c4947b66eb.tmp, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\418e9190-942f-4522-bcdc-70b729d97957.tmp, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fab6b70a-87b6-4b39-babc-481420fa6cb3.tmp, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 6684, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6b30f85-bbbd-4a6c-8e14-716d5017fc0d.tmp, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 6364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\956a3533-e682-4454-aed6-c893ce6dec38.tmp, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42b685e3-60cf-4367-b0c6-25045312286d.tmp, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c6bcc60-5788-40e5-b14b-28d41aa82ec5.tmp, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e79645f2-c892-4be3-b6ff-5128f4ed539a.tmp, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 6260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2e22a57c-cefe-4d01-adf6-73263a123b2e.tmp, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a98cca1-f118-41b8-a8ae-0bebd4996f09.tmp, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a8c388-c3ca-4a43-92cb-efa40bea6911.tmp, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c951364-6d01-41cc-80c5-3d92e8f7a41b.tmp, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2ecb61-1eaa-4853-b5aa-0abdebc7e3aa.tmp, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66c119c0-6e1b-4976-bb44-1f8fe271e97a.tmp, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T13:56:21.969 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T14:03:19.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T14:10:35.090 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1589812, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T14:18:24.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T14:33:29.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T14:48:34.279 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T15:03:39.281 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T15:18:44.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T15:33:49.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T15:48:54.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T15:56:21.983 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50541, Count: 6700, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\life\feed\a78e5c567f0283482d7c6c00dfe63036.html, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6000, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.OG93Y3, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 28, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f3f_1.MAI, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fab6b70a-87b6-4b39-babc-481420fa6cb3.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 5656, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\893e2022-48e4-4cca-86f9-92c4947b66eb.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\418e9190-942f-4522-bcdc-70b729d97957.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 6684, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6b30f85-bbbd-4a6c-8e14-716d5017fc0d.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef67fd80-76d0-4fff-b227-2da2f642aa96.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 6260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2e22a57c-cefe-4d01-adf6-73263a123b2e.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42b685e3-60cf-4367-b0c6-25045312286d.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c6bcc60-5788-40e5-b14b-28d41aa82ec5.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 6364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\956a3533-e682-4454-aed6-c893ce6dec38.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e79645f2-c892-4be3-b6ff-5128f4ed539a.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a8c388-c3ca-4a43-92cb-efa40bea6911.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac775008-ec2e-4305-8011-fd2410e76270.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a98cca1-f118-41b8-a8ae-0bebd4996f09.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2ecb61-1eaa-4853-b5aa-0abdebc7e3aa.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66c119c0-6e1b-4976-bb44-1f8fe271e97a.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c951364-6d01-41cc-80c5-3d92e8f7a41b.tmp, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T15:56:21.983 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T16:03:59.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T16:10:37.045 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1596445, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T16:19:04.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T16:34:09.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T16:49:14.284 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T17:04:19.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T17:10:25.964 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1599775, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T17:19:24.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T17:34:29.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T17:49:34.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T17:56:21.983 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50541, Count: 6700, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\life\feed\a78e5c567f0283482d7c6c00dfe63036.html, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6780, Count: 58248, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.OG93Y3, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 28, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f3f_1.MAI, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fab6b70a-87b6-4b39-babc-481420fa6cb3.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 5656, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\893e2022-48e4-4cca-86f9-92c4947b66eb.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\418e9190-942f-4522-bcdc-70b729d97957.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd80062a-9d48-4082-9258-db778eddb612.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 6684, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e79645f2-c892-4be3-b6ff-5128f4ed539a.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\730ac66a-493c-446a-afd4-74fa05ecf7fa.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef67fd80-76d0-4fff-b227-2da2f642aa96.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 6364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\956a3533-e682-4454-aed6-c893ce6dec38.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 6260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2e22a57c-cefe-4d01-adf6-73263a123b2e.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5afb8699-112d-4c9b-84d7-51dcebfae3b0.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6b30f85-bbbd-4a6c-8e14-716d5017fc0d.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42b685e3-60cf-4367-b0c6-25045312286d.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c6bcc60-5788-40e5-b14b-28d41aa82ec5.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a8c388-c3ca-4a43-92cb-efa40bea6911.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac775008-ec2e-4305-8011-fd2410e76270.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a98cca1-f118-41b8-a8ae-0bebd4996f09.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c951364-6d01-41cc-80c5-3d92e8f7a41b.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2ecb61-1eaa-4853-b5aa-0abdebc7e3aa.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66c119c0-6e1b-4976-bb44-1f8fe271e97a.tmp, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T17:56:21.983 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T18:04:39.269 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T18:19:44.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T18:27:14.814 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f79_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604089, FileId: 0x160000000550f8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:15.955 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f79_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604128, FileId: 0x160000000550fa, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:16.064 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f73_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604159, FileId: 0x1b0000000550f8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:16.111 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f7a_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604188, FileId: 0x1980000000053475, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:16.549 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f79_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604221, FileId: 0x220000000550f8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:16.564 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f77_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604254, FileId: 0x170000000550fb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:17.017 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f72_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604301, FileId: 0x280000000550f9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:17.017 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f77_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604320, FileId: 0x2d0000000550f8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:17.580 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f78_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604349, FileId: 0x1992000000053475, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:17.627 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f78_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604379, FileId: 0x1998000000053475, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:17.627 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f77_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604326, FileId: 0x2f0000000550f8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:18.127 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f79_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604449, FileId: 0x63700000004c5f7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:18.861 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f76_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604479, FileId: 0x64000000004c5f7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:19.549 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f73_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604516, FileId: 0x430000000550f8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:19.564 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f74_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604543, FileId: 0x64b00000004c5f7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:19.564 [RTP] [Mini-filter] Unsuccessful scan status(#300): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f78_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604576, FileId: 0xb90000000550e9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:19.752 [RTP] [Mini-filter] Unsuccessful scan status(#310): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f76_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604605, FileId: 0x250000000550fa, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:20.064 [RTP] [Mini-filter] Unsuccessful scan status(#320): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f74_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604652, FileId: 0x1a0000000550fe, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:20.267 [RTP] [Mini-filter] Unsuccessful scan status(#330): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f79_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604686, FileId: 0x66200000004c5f7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:20.564 [RTP] [Mini-filter] Unsuccessful scan status(#340): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f78_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604713, FileId: 0x5a0000000550f8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:20.736 [RTP] [Mini-filter] Unsuccessful scan status(#350): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f77_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604732, FileId: 0x5e0000000550f8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:21.361 [RTP] [Mini-filter] Unsuccessful scan status(#360): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f7a_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604796, FileId: 0x640000000550f8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:21.783 [RTP] [Mini-filter] Unsuccessful scan status(#370): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f72_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604822, FileId: 0x67000000004c5f7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:22.924 [RTP] [Mini-filter] Unsuccessful scan status(#380): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f79_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604854, FileId: 0x67900000004c5f7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:22.924 [RTP] [Mini-filter] Unsuccessful scan status(#390): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f74_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604889, FileId: 0x68100000004c5f7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:22.971 [RTP] [Mini-filter] Unsuccessful scan status(#400): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f78_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604872, FileId: 0x67d00000004c5f7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:27:24.111 [RTP] [Mini-filter] Unsuccessful scan status(#410): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f76_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1604982, FileId: 0x68b00000004c5f7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T18:34:49.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T18:49:54.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T19:04:59.269 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T19:20:04.281 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T19:35:09.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T19:50:14.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T19:56:21.996 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 71715, Count: 7594, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7365, Count: 64719, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.OG93Y3, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 407, Count: 640, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f78_b.MAI, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fab6b70a-87b6-4b39-babc-481420fa6cb3.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\418e9190-942f-4522-bcdc-70b729d97957.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 5656, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\893e2022-48e4-4cca-86f9-92c4947b66eb.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd80062a-9d48-4082-9258-db778eddb612.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 6684, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c6bcc60-5788-40e5-b14b-28d41aa82ec5.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 6364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\956a3533-e682-4454-aed6-c893ce6dec38.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\730ac66a-493c-446a-afd4-74fa05ecf7fa.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef67fd80-76d0-4fff-b227-2da2f642aa96.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ec16cba-3eb3-4c0e-9b2f-95291de6bfe6.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 6260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2e22a57c-cefe-4d01-adf6-73263a123b2e.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42b685e3-60cf-4367-b0c6-25045312286d.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a8c388-c3ca-4a43-92cb-efa40bea6911.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac775008-ec2e-4305-8011-fd2410e76270.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a98cca1-f118-41b8-a8ae-0bebd4996f09.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 3436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a1479cd-ea8d-4465-8a85-000b90750076.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c951364-6d01-41cc-80c5-3d92e8f7a41b.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2ecb61-1eaa-4853-b5aa-0abdebc7e3aa.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66c119c0-6e1b-4976-bb44-1f8fe271e97a.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5afb8699-112d-4c9b-84d7-51dcebfae3b0.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e79645f2-c892-4be3-b6ff-5128f4ed539a.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6b30f85-bbbd-4a6c-8e14-716d5017fc0d.tmp, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T19:56:21.996 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T20:05:19.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T20:10:25.826 [RTP] [Mini-filter] Unsuccessful scan status(#420): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1610728, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T20:20:24.279 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T20:35:29.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T20:50:34.279 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T21:05:39.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T21:19:13.546 [RTP] [Mini-filter] Unsuccessful scan status(#430): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f7c_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1614545, FileId: 0x4f0000000550f4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T21:20:44.279 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T21:35:49.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T21:50:54.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T21:51:23.899 [RTP] [Mini-filter] Unsuccessful scan status(#440): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f7d_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1616348, FileId: 0xdb0000000550f7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T21:56:21.998 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 71715, Count: 7595, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8010, Count: 71190, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.OG93Y3, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 437, Count: 646, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f78_b.MAI, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\418e9190-942f-4522-bcdc-70b729d97957.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fab6b70a-87b6-4b39-babc-481420fa6cb3.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 5656, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\893e2022-48e4-4cca-86f9-92c4947b66eb.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd80062a-9d48-4082-9258-db778eddb612.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25f08d41-9bd3-4873-a186-3aba841e4121.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 6684, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 6364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\956a3533-e682-4454-aed6-c893ce6dec38.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a8c388-c3ca-4a43-92cb-efa40bea6911.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac775008-ec2e-4305-8011-fd2410e76270.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\730ac66a-493c-446a-afd4-74fa05ecf7fa.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef67fd80-76d0-4fff-b227-2da2f642aa96.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ec16cba-3eb3-4c0e-9b2f-95291de6bfe6.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e79645f2-c892-4be3-b6ff-5128f4ed539a.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a98cca1-f118-41b8-a8ae-0bebd4996f09.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 3488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3bf2e7a-b4b4-45e6-a37a-9058d5295634.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 3436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a1479cd-ea8d-4465-8a85-000b90750076.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2ecb61-1eaa-4853-b5aa-0abdebc7e3aa.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6b30f85-bbbd-4a6c-8e14-716d5017fc0d.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66c119c0-6e1b-4976-bb44-1f8fe271e97a.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c951364-6d01-41cc-80c5-3d92e8f7a41b.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c6bcc60-5788-40e5-b14b-28d41aa82ec5.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cbe3fc79-9655-4f9f-97d5-538b0d1948e2.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42b685e3-60cf-4367-b0c6-25045312286d.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 6260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2e22a57c-cefe-4d01-adf6-73263a123b2e.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5afb8699-112d-4c9b-84d7-51dcebfae3b0.tmp, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T21:56:21.998 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T21:58:59.398 [RTP] [Mini-filter] Unsuccessful scan status(#450): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f80_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1616792, FileId: 0x3ae700000000a55f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T21:59:00.873 [RTP] [Mini-filter] Unsuccessful scan status(#460): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f80_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1616822, FileId: 0x3af100000000a55f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T21:59:01.186 [RTP] [Mini-filter] Unsuccessful scan status(#470): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f80_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1616852, FileId: 0x3afb00000000a55f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T22:05:59.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T22:21:04.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T22:36:09.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T22:51:14.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T23:06:19.268 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T23:21:24.283 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T23:36:29.269 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T23:37:07.858 [RTP] [Mini-filter] Unsuccessful scan status(#480): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f83_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1622289, FileId: 0x3ced00000000a55f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-02T23:51:34.269 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-02T23:55:24.269 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-02T23:55:24.285 Job Notification: New process added to job (7840) 2026-05-02T23:55:24.300 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-02T23:55:24.300 Aggressive catchup quick scan threshold: 788104766247 / 25920000000000 2026-05-02T23:55:24.300 Job Notification: New process added to job (6668) 2026-05-02T23:55:24.300 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:7840] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6668]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-02T23:55:24.347 Job Notification: New process added to job (5460) 2026-05-02T23:55:24.347 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-02T23:55:24.363 Job Notification: New process added to job (4212) 2026-05-02T23:55:24.363 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:5460] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4212]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-02T23:55:24.660 Task(GetDeviceTicket -AccessKey 5FCC44F8-CEC2-EC71-DE59-47FF3C9223EE ) launched as network service 2026-05-02T23:55:24.660 Job Notification: New process added to job (6244) 2026-05-02T23:55:24.832 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-02T23:55:24.832 [RTP] Duplicating the current plugin configuration object... 2026-05-02T23:55:24.832 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-02T23:55:24.832 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-02T23:55:24.832 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-02T23:55:24.832 [RTP] No config change detected. Not updating plugin configuration. 2026-05-02T23:55:24.832 [RTP] No config changes found. No configuration switch. 2026-05-02T23:55:24.832 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-02T23:55:25.705 Job Notification: Process exited from job (6244) 2026-05-02T23:55:26.832 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-02T23:55:26.832 [Cloud] Start of cloud request. Passive mode: 0 2026-05-02T23:55:26.832 [Cloud] Queued cloud request. 2026-05-02T23:55:26.832 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-02T23:55:26.832 [Cloud] Dequeued cloud request. 2026-05-02T23:55:26.832 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-02T23:55:26.832 [Cloud] Start of cloud request. Passive mode: 0 2026-05-02T23:55:26.832 [Cloud] Queued cloud request. 2026-05-02T23:55:26.832 [Cloud] Dequeued cloud request. 2026-05-02T23:55:26.832 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-02T23:55:26.832 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-02T23:55:27.051 [Cloud] End of cloud request. 2026-05-02T23:55:27.051 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-02T23:55:27.066 [Cloud] End of cloud request. 2026-05-02T23:55:27.332 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-02T23:55:38.377 Job Notification: Process exited from job (6608) 2026-05-02T23:56:18.588 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\D575EB0F-93CA-4225-902F-23F0284C628685c.1dcda8f43d9b152 2026-05-02T23:56:18.650 Verifying engine and signature files (source: 0) ... 2026-05-02T23:56:18.650 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B70FB93D-DBDA-4853-8CAF-ABD035AA6171}\mpengine.dll] due to PPL. 2026-05-02T23:56:18.650 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B70FB93D-DBDA-4853-8CAF-ABD035AA6171}\mpasbase.vdm] (file in cache) 2026-05-02T23:56:18.650 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B70FB93D-DBDA-4853-8CAF-ABD035AA6171}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-02T23:56:18.682 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B70FB93D-DBDA-4853-8CAF-ABD035AA6171}\mpasdlta.vdm] 2026-05-02T23:56:18.682 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B70FB93D-DBDA-4853-8CAF-ABD035AA6171}\mpavbase.vdm] (file in cache) 2026-05-02T23:56:18.682 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B70FB93D-DBDA-4853-8CAF-ABD035AA6171}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-02T23:56:18.697 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B70FB93D-DBDA-4853-8CAF-ABD035AA6171}\mpavdlta.vdm] 2026-05-02T23:56:18.885 [Engine] IsHybridMode: 0 2026-05-02T23:56:18.885 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-02T23:56:18.947 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-53416BC610857F0B0E298293DF7D9146063A8049.bin): 0x00000002 2026-05-02T23:56:18.947 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-53416BC610857F0B0E298293DF7D9146063A8049.bin) 2026-05-02T23:56:18.947 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-02T23:56:18.947 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-02T23:56:18.947 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-02T23:56:18.947 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-05-02T23:56:22.010 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 71715, Count: 7597, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8595, Count: 77661, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.OG93Y3, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 467, Count: 717, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f78_b.MAI, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\418e9190-942f-4522-bcdc-70b729d97957.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 5656, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\893e2022-48e4-4cca-86f9-92c4947b66eb.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fab6b70a-87b6-4b39-babc-481420fa6cb3.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25f08d41-9bd3-4873-a186-3aba841e4121.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd80062a-9d48-4082-9258-db778eddb612.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 6684, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6b30f85-bbbd-4a6c-8e14-716d5017fc0d.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 4400, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac775008-ec2e-4305-8011-fd2410e76270.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42a8c388-c3ca-4a43-92cb-efa40bea6911.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c6bcc60-5788-40e5-b14b-28d41aa82ec5.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 6364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\956a3533-e682-4454-aed6-c893ce6dec38.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 7056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\42b685e3-60cf-4367-b0c6-25045312286d.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\730ac66a-493c-446a-afd4-74fa05ecf7fa.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 7776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef67fd80-76d0-4fff-b227-2da2f642aa96.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ec16cba-3eb3-4c0e-9b2f-95291de6bfe6.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cbe3fc79-9655-4f9f-97d5-538b0d1948e2.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 6260, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2e22a57c-cefe-4d01-adf6-73263a123b2e.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e79645f2-c892-4be3-b6ff-5128f4ed539a.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5afb8699-112d-4c9b-84d7-51dcebfae3b0.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0c951364-6d01-41cc-80c5-3d92e8f7a41b.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 2160, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\12786f75-cf35-4d23-8e11-3450b5d716ef.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 3488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3bf2e7a-b4b4-45e6-a37a-9058d5295634.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66c119c0-6e1b-4976-bb44-1f8fe271e97a.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 2664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2ecb61-1eaa-4853-b5aa-0abdebc7e3aa.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 4044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a98cca1-f118-41b8-a8ae-0bebd4996f09.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 3436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a1479cd-ea8d-4465-8a85-000b90750076.tmp, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 3488, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 5508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-02T23:56:22.010 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-02T23:56:28.042 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-02T23:56:28.042 [AutoExclusion] Applied roles from cache. 2026-05-02T23:56:28.042 [AutoExclusion] Started roles monitoring. 2026-05-02T23:56:28.057 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D908020, lRefCount: 5, hr=0 2026-05-02T23:56:28.057 [Engine] New active engine 00007FFD0EA68020 replacing engine 00007FFD0D908020. Number of active engines: 2 2026-05-02T23:56:28.057 EngineInit:Global ASOC is enabled 2026-05-02T23:56:28.057 EngineInit:ASOO is enabled for developer volumes 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-02T23:56:28.088 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-02T23:56:28.088 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-02T23:56:28.104 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-02T23:56:28.104 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-02T23:56:28.104 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-02T23:56:28.104 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-02T23:56:28.104 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-02T23:56:28.104 [Plugin] Initializing RTP plugin state... 2026-05-02T23:56:28.104 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-02T23:56:28.104 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎02‎-‎2026 01:56:22 Last Perf:‎05‎-‎02‎-‎2026 01:56:21 First RTP Scan:‎05‎-‎02‎-‎2026 01:56:23 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:401 Misses:2770 BM Queue:0,359,0 Proc:0,43,0 File:0,359,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1623440 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1770618072 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2717 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:132966 TotalHits:611400 InstanceCacheInserts:835092 InstanceCacheUpdates:0 InstanceCacheDeletes:147783 InstanceCacheHits:2839 InstanceCacheMisses:903633 InstanceCacheOverflows:676278 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (297/285) Success: 285, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-02T23:56:28.104 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B70FB93D-DBDA-4853-8CAF-ABD035AA6171} 2026-05-02T23:56:28.104 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-02T23:56:28.104 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{48BE732F-3825-41AE-9529-EDB4BDE9AE23} removed 2026-05-02T23:56:28.104 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9DFECF56-5A63-448C-BDAA-4F980C970769}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9DFECF56-5A63-448C-BDAA-4F980C970769}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-02T23:56:28.104 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-02T23:56:28.104 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-02T23:56:28.104 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-02T23:56:28.104 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-02T23:56:28.104 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-02-2026 23:56:28 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-02-2026 23:56:28 2026-05-02T23:56:28.104 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-02T23:56:28.104 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-02T23:56:28.120 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-02T23:56:28.120 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-02T23:56:28.120 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-02T23:56:28.120 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-02T23:56:28.120 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-02T23:56:28.120 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-02T23:56:28.120 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-02T23:56:28.120 MdCoreSvc is supported in this platform and OS Signature updated on 05-02-2026 23:56:28 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.416.0 AV Signature Version: 1.449.416.0 ************************************************************ 2026-05-02T23:56:28.120 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-02T23:56:28.120 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\D575EB0F-93CA-4225-902F-23F0284C628685c.1dcda8f43d9b152 2026-05-02T23:56:28.135 Process scan (postsignatureupdatescan) started. 2026-05-02T23:56:28.167 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-02T23:56:28.167 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-02T23:56:28.370 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-02T23:56:28.370 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-02T23:56:28.370 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-02T23:56:28.370 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-02T23:56:28.370 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-02T23:56:28.385 [Engine] Engine 00007FFD0D908020 no longer in use. Number of active engines: 1 2026-05-02T23:56:28.385 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-02T23:56:28.385 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). Signature updated via MicrosoftUpdateServer on 05-02-2026 23:56:28 ************************************************************ 2026-05-02T23:56:28.401 Job Notification: Process exited from job (5460) 2026-05-02T23:56:28.401 Job Notification: Process exited from job (4212) 2026-05-02T23:56:28.401 Job Notification: Process exited from job (7840) 2026-05-02T23:56:28.401 Job Notification: Process exited from job (6668) 2026-05-02T23:56:28.604 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-02T23:56:28.604 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-02T23:56:28.604 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-02T23:56:29.151 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 71715, Count: 7597, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-02T23:56:29.151 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8595, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\schema_tree.OG93Y3, EstimatedImpact: 0% 2026-05-02T23:56:29.151 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 467, Count: 717, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f78_b.MAI, EstimatedImpact: 0% 2026-05-02T23:56:29.151 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-02T23:56:29.151 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-02T23:56:29.151 ProcessImageName: updater.exe, Pid: 6952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\418e9190-942f-4522-bcdc-70b729d97957.tmp, EstimatedImpact: 0% 2026-05-02T23:56:29.151 ProcessImageName: updater.exe, Pid: 5656, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\893e2022-48e4-4cca-86f9-92c4947b66eb.tmp, EstimatedImpact: 0% 2026-05-02T23:56:29.151 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fab6b70a-87b6-4b39-babc-481420fa6cb3.tmp, EstimatedImpact: 0% 2026-05-02T23:56:29.151 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25f08d41-9bd3-4873-a186-3aba841e4121.tmp, EstimatedImpact: 0% 2026-05-02T23:56:29.151 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd80062a-9d48-4082-9258-db778eddb612.tmp, EstimatedImpact: 0% 2026-05-02T23:56:29.151 ProcessImageName: updater.exe, Pid: 6684, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-02T23:56:29.151 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6b30f85-bbbd-4a6c-8e14-716d5017fc0d.tmp, EstimatedImpact: 0% 2026-05-02T23:56:29.198 [Engine] RSIG_UNLOADENGINE, 00007FFD0D908020, err=0x0 2026-05-02T23:56:29.198 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9DFECF56-5A63-448C-BDAA-4F980C970769} removed 2026-05-02T23:56:33.823 Process scan (postsignatureupdatescan) completed. 2026-05-03T00:01:28.083 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-03T00:06:39.269 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T00:10:26.321 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1624268, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T00:10:26.336 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1624270, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T00:10:36.336 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1624283, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T00:10:36.336 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1624284, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T00:10:36.351 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1624285, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T00:10:36.351 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1624286, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T00:21:44.279 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T00:36:49.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T00:51:54.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T01:06:59.273 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T01:10:26.511 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1627709, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T01:10:26.511 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1627711, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T01:10:36.540 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1627724, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T01:10:36.540 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1627727, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T01:22:04.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T01:37:09.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T01:52:14.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T01:56:28.067 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 705, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3CDAZ3, EstimatedImpact: 0% 2026-05-03T01:56:28.067 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49e553e6-3021-4ea4-a073-9d2267647785.tmp, EstimatedImpact: 0% 2026-05-03T01:56:28.067 ProcessImageName: updater.exe, Pid: 2028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\578fae37-cab3-4887-8677-74dde96a6b24.tmp, EstimatedImpact: 0% 2026-05-03T02:01:53.812 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:88279E30-E44A-4CC3-B0F7-142A8D2D9FD3, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-03T02:01:53.812 Scheduled scan with Id 88279E30-E44A-4CC3-B0F7-142A8D2D9FD3 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-03T02:01:53.812 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-03T02:01:53.812 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-03T02:01:53.812 [SFC] System file cache build is not needed (already completed) 2026-05-03T02:02:03.110 Engine:Triggered AR EMS scan 2026-05-03T02:02:03.110 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.126 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.141 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.173 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.204 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.219 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.235 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.266 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.298 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.313 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.329 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.344 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.360 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.391 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.407 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.423 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.454 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.516 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.532 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.563 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.579 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.626 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-03T02:02:03.657 Bm signature throttled:0x00002db31bed458f 2026-05-03T02:02:16.860 QuickScan:ScanID:88279E30-E44A-4CC3-B0F7-142A8D2D9FD3: Quick scan finished with error 0 2026-05-03T02:02:16.876 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-03T02:02:17.386 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-03T02:02:17.386 [RTP] Duplicating the current plugin configuration object... 2026-05-03T02:02:17.386 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-03T02:02:17.386 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-03T02:02:17.386 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-03T02:02:17.386 [RTP] No config change detected. Not updating plugin configuration. 2026-05-03T02:02:17.386 [RTP] No config changes found. No configuration switch. 2026-05-03T02:02:17.386 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-03T02:07:19.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T02:10:27.719 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1631207, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:10:27.735 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1631209, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:10:37.737 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1631222, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:10:37.737 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1631224, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:10:37.909 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1631228, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:10:37.909 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1631230, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:22:24.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T02:34:25.145 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632546, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:34:25.145 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632548, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:34:27.904 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632558, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:34:27.920 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632561, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:34:27.935 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632563, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:34:37.907 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632576, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:34:37.907 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632578, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:34:37.923 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632580, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:34:37.923 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1632582, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T02:37:29.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T02:52:34.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T03:07:39.282 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T03:10:26.120 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1634571, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T03:10:26.135 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1634573, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T03:10:36.133 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1634585, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T03:10:36.148 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1634588, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T03:22:44.273 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T03:37:49.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T03:52:54.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T03:56:28.082 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1185, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3CDAZ3, EstimatedImpact: 0% 2026-05-03T03:56:28.082 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 542, Count: 55, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-05-03T03:56:28.082 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\577d2850-70d7-4c0a-8d76-798aa3d3b78d.tmp, EstimatedImpact: 0% 2026-05-03T03:56:28.082 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49e553e6-3021-4ea4-a073-9d2267647785.tmp, EstimatedImpact: 0% 2026-05-03T03:56:28.082 ProcessImageName: updater.exe, Pid: 3360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f98a8889-bb4f-47fe-b831-42f10754cb29.tmp, EstimatedImpact: 0% 2026-05-03T03:56:28.082 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41da5c80-20fa-4cd5-b3c8-c41e8d30242d.tmp, EstimatedImpact: 0% 2026-05-03T03:56:28.082 ProcessImageName: updater.exe, Pid: 2028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\578fae37-cab3-4887-8677-74dde96a6b24.tmp, EstimatedImpact: 0% 2026-05-03T04:07:59.268 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T04:10:27.124 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1637893, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T04:10:27.139 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1637895, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T04:10:37.156 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1637907, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T04:10:37.156 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1637911, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T04:18:38.721 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f8e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1639551, FileId: 0x175e00000005428b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T04:18:50.127 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f8e_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1640006, FileId: 0x2210000000026138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T04:23:04.280 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T04:38:09.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T04:53:14.268 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T05:08:19.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T05:10:25.076 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1642850, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T05:10:25.091 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1642852, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T05:10:35.084 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1642864, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T05:10:35.084 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1642867, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T05:23:24.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T05:38:29.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T05:53:34.267 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T05:56:28.084 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47527, Count: 6304, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-05-03T05:56:28.084 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1665, Count: 19413, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3CDAZ3, EstimatedImpact: 0% 2026-05-03T05:56:28.084 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f8e_1.MAI, EstimatedImpact: 0% 2026-05-03T05:56:28.084 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\577d2850-70d7-4c0a-8d76-798aa3d3b78d.tmp, EstimatedImpact: 0% 2026-05-03T05:56:28.084 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49e553e6-3021-4ea4-a073-9d2267647785.tmp, EstimatedImpact: 0% 2026-05-03T05:56:28.084 ProcessImageName: updater.exe, Pid: 3360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f98a8889-bb4f-47fe-b831-42f10754cb29.tmp, EstimatedImpact: 0% 2026-05-03T05:56:28.084 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41da5c80-20fa-4cd5-b3c8-c41e8d30242d.tmp, EstimatedImpact: 0% 2026-05-03T05:56:28.084 ProcessImageName: updater.exe, Pid: 2028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\578fae37-cab3-4887-8677-74dde96a6b24.tmp, EstimatedImpact: 0% 2026-05-03T05:56:28.084 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T05:56:28.084 ProcessImageName: updater.exe, Pid: 5188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T06:02:54.752 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f91_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1645780, FileId: 0x71f0000000550b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T06:08:39.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T06:10:26.941 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1646211, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T06:10:26.956 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1646213, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T06:10:36.949 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1646226, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T06:10:36.965 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1646228, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T06:10:36.965 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1646230, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T06:23:44.267 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T06:38:49.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T06:53:54.269 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T07:08:59.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T07:10:24.449 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1649524, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T07:10:24.465 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1649526, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T07:10:34.454 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1649539, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T07:10:34.454 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1649541, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T07:10:34.611 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1649545, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T07:10:34.626 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1649547, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T07:24:04.279 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T07:34:28.009 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1650871, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T07:34:28.025 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1650874, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T07:34:31.942 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1650883, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T07:34:31.957 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1650886, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T07:34:31.957 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1650888, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T07:34:31.973 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1650890, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T07:34:41.950 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1650902, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T07:34:41.966 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1650905, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T07:39:09.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T07:54:14.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T07:56:28.086 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48269, Count: 6358, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-03T07:56:28.086 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2175, Count: 25884, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3CDAZ3, EstimatedImpact: 0% 2026-05-03T07:56:28.086 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f8e_1.MAI, EstimatedImpact: 0% 2026-05-03T07:56:28.086 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\577d2850-70d7-4c0a-8d76-798aa3d3b78d.tmp, EstimatedImpact: 0% 2026-05-03T07:56:28.086 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aceb5c86-7300-4cdf-ab7c-a6be1a3f304d.tmp, EstimatedImpact: 0% 2026-05-03T07:56:28.086 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49e553e6-3021-4ea4-a073-9d2267647785.tmp, EstimatedImpact: 0% 2026-05-03T07:56:28.086 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2dcf94f-a591-4aa7-8fb1-f1038b1c1c7f.tmp, EstimatedImpact: 0% 2026-05-03T07:56:28.086 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41da5c80-20fa-4cd5-b3c8-c41e8d30242d.tmp, EstimatedImpact: 0% 2026-05-03T07:56:28.086 ProcessImageName: updater.exe, Pid: 3360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f98a8889-bb4f-47fe-b831-42f10754cb29.tmp, EstimatedImpact: 0% 2026-05-03T07:56:28.086 ProcessImageName: updater.exe, Pid: 2028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\578fae37-cab3-4887-8677-74dde96a6b24.tmp, EstimatedImpact: 0% 2026-05-03T07:56:28.086 ProcessImageName: updater.exe, Pid: 2064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f148631-f77c-4b1f-bde6-2c89b29ddd1d.tmp, EstimatedImpact: 0% 2026-05-03T07:56:28.086 ProcessImageName: updater.exe, Pid: 5188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T07:56:28.086 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T08:09:19.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T08:10:25.490 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1653073, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T08:10:25.505 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1653075, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T08:10:35.500 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1653088, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T08:10:35.516 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1653091, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T08:24:24.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T08:39:29.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T08:54:34.273 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T09:09:39.273 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T09:10:26.400 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1656389, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T09:10:26.416 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1656391, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T09:10:36.411 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1656405, FileId: 0x56d2000000008897, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T09:10:36.411 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1656404, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T09:10:36.426 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1656407, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T09:24:44.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T09:39:49.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T09:54:54.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T09:56:28.097 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48269, Count: 6358, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2685, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3CDAZ3, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f8e_1.MAI, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aceb5c86-7300-4cdf-ab7c-a6be1a3f304d.tmp, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\577d2850-70d7-4c0a-8d76-798aa3d3b78d.tmp, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49e553e6-3021-4ea4-a073-9d2267647785.tmp, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: updater.exe, Pid: 3360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f98a8889-bb4f-47fe-b831-42f10754cb29.tmp, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41da5c80-20fa-4cd5-b3c8-c41e8d30242d.tmp, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a0823f-2d04-4c03-86a5-cd4db5aebd00.tmp, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: updater.exe, Pid: 6796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90a4590b-ac31-4254-9b95-a4d61586eabf.tmp, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: updater.exe, Pid: 2064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f148631-f77c-4b1f-bde6-2c89b29ddd1d.tmp, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: updater.exe, Pid: 2028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\578fae37-cab3-4887-8677-74dde96a6b24.tmp, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2dcf94f-a591-4aa7-8fb1-f1038b1c1c7f.tmp, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T09:56:28.097 ProcessImageName: updater.exe, Pid: 5188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T10:09:59.266 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T10:10:26.906 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1659722, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T10:10:26.921 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1659724, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T10:10:36.925 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1659737, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T10:10:36.941 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1659740, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T10:10:36.941 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1659741, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T10:25:04.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T10:40:09.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T10:55:14.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T11:10:19.279 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T11:10:26.147 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1663045, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T11:10:26.163 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1663047, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T11:10:36.151 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1663059, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T11:10:36.151 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1663061, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T11:10:36.167 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1663063, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T11:10:36.167 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1663065, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T11:19:31.922 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f94_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1663559, FileId: 0x265100000004c461, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T11:20:25.804 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f95_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1663619, FileId: 0x265a00000004c461, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T11:25:24.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T11:40:29.269 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T11:55:34.269 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T11:56:28.107 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50561, Count: 6470, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\category\politica\pol-mures\df263380c70294523f4278e96fe9fb99.html, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3255, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3CDAZ3, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f8e_1.MAI, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aceb5c86-7300-4cdf-ab7c-a6be1a3f304d.tmp, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\577d2850-70d7-4c0a-8d76-798aa3d3b78d.tmp, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49e553e6-3021-4ea4-a073-9d2267647785.tmp, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: updater.exe, Pid: 6796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90a4590b-ac31-4254-9b95-a4d61586eabf.tmp, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a0823f-2d04-4c03-86a5-cd4db5aebd00.tmp, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41da5c80-20fa-4cd5-b3c8-c41e8d30242d.tmp, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: updater.exe, Pid: 3360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f98a8889-bb4f-47fe-b831-42f10754cb29.tmp, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9829ccda-f189-400c-b26c-b5f62ebeaba8.tmp, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2dcf94f-a591-4aa7-8fb1-f1038b1c1c7f.tmp, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: updater.exe, Pid: 2028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\578fae37-cab3-4887-8677-74dde96a6b24.tmp, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2c5a102-fc68-4fb3-b12d-49803d9e47a4.tmp, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: updater.exe, Pid: 2064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f148631-f77c-4b1f-bde6-2c89b29ddd1d.tmp, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T11:56:28.107 ProcessImageName: updater.exe, Pid: 5188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T12:10:26.286 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1666370, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T12:10:26.302 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1666373, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T12:10:36.298 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1666386, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T12:10:36.314 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1666388, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T12:10:36.486 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1666392, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T12:10:36.501 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1666394, FileId: 0xc60000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T12:10:39.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T12:25:44.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T12:34:32.063 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1667719, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T12:34:32.079 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1667721, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T12:34:36.279 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1667731, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T12:34:36.295 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1667734, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T12:34:36.295 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1667736, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T12:34:46.288 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1667749, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T12:40:49.277 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T12:55:54.268 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T13:10:25.447 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1669727, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T13:10:25.447 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1669729, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T13:10:35.469 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1669741, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T13:10:35.469 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1669744, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T13:10:59.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T13:21:12.602 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f97_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1670328, FileId: 0x2c71000000008ebc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T13:26:04.267 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T13:41:09.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T13:56:14.269 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T13:56:28.109 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54544, Count: 6691, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\category\politica\pol-mures\df263380c70294523f4278e96fe9fb99.html, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3885, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3CDAZ3, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f8e_1.MAI, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fc538e89-1023-4d21-93db-86817915f291.tmp, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aceb5c86-7300-4cdf-ab7c-a6be1a3f304d.tmp, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\577d2850-70d7-4c0a-8d76-798aa3d3b78d.tmp, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49e553e6-3021-4ea4-a073-9d2267647785.tmp, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 6796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90a4590b-ac31-4254-9b95-a4d61586eabf.tmp, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 3360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f98a8889-bb4f-47fe-b831-42f10754cb29.tmp, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41da5c80-20fa-4cd5-b3c8-c41e8d30242d.tmp, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9829ccda-f189-400c-b26c-b5f62ebeaba8.tmp, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a0823f-2d04-4c03-86a5-cd4db5aebd00.tmp, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f259ff1-43ea-4d3c-9af1-22c2f3730a5d.tmp, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 2064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f148631-f77c-4b1f-bde6-2c89b29ddd1d.tmp, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2c5a102-fc68-4fb3-b12d-49803d9e47a4.tmp, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 2028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\578fae37-cab3-4887-8677-74dde96a6b24.tmp, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2dcf94f-a591-4aa7-8fb1-f1038b1c1c7f.tmp, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 7384, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T13:56:28.109 ProcessImageName: updater.exe, Pid: 5188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T14:10:26.646 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1673068, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T14:10:26.662 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1673070, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T14:11:19.266 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T14:26:24.266 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T14:41:29.265 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T14:56:34.265 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T15:11:39.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T15:26:44.278 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T15:41:49.269 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T15:56:28.108 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54590, Count: 6693, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\category\politica\pol-mures\df263380c70294523f4278e96fe9fb99.html, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4395, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3CDAZ3, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 120, Count: 30, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f8e_1.MAI, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fc538e89-1023-4d21-93db-86817915f291.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aceb5c86-7300-4cdf-ab7c-a6be1a3f304d.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\577d2850-70d7-4c0a-8d76-798aa3d3b78d.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49e553e6-3021-4ea4-a073-9d2267647785.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 6796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90a4590b-ac31-4254-9b95-a4d61586eabf.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2dcf94f-a591-4aa7-8fb1-f1038b1c1c7f.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f259ff1-43ea-4d3c-9af1-22c2f3730a5d.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 3360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f98a8889-bb4f-47fe-b831-42f10754cb29.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41da5c80-20fa-4cd5-b3c8-c41e8d30242d.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9829ccda-f189-400c-b26c-b5f62ebeaba8.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a0823f-2d04-4c03-86a5-cd4db5aebd00.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 2064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f148631-f77c-4b1f-bde6-2c89b29ddd1d.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2c5a102-fc68-4fb3-b12d-49803d9e47a4.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 2028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\578fae37-cab3-4887-8677-74dde96a6b24.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3bda503-0318-4073-aa12-e1efbeca2f39.tmp, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 5188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T15:56:28.108 ProcessImageName: updater.exe, Pid: 7384, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T15:56:54.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T16:10:34.349 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1679716, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T16:11:59.268 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T16:27:04.268 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T16:42:09.273 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T16:57:14.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T17:12:19.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T17:27:24.265 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T17:34:39.835 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1684380, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T17:42:29.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T17:56:28.110 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 54635, Count: 6697, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\category\politica\pol-mures\df263380c70294523f4278e96fe9fb99.html, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4935, Count: 58248, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3CDAZ3, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 120, Count: 30, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f8e_1.MAI, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fc538e89-1023-4d21-93db-86817915f291.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aceb5c86-7300-4cdf-ab7c-a6be1a3f304d.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 5628, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6d5625d-3ca0-452d-adcb-43b5f3d3bc80.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\577d2850-70d7-4c0a-8d76-798aa3d3b78d.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49e553e6-3021-4ea4-a073-9d2267647785.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 6796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90a4590b-ac31-4254-9b95-a4d61586eabf.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6cc37412-97b6-4b9c-8d6c-01acc6222ec3.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91d21eec-bf8c-46a9-ad59-056aee97802c.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2dcf94f-a591-4aa7-8fb1-f1038b1c1c7f.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f259ff1-43ea-4d3c-9af1-22c2f3730a5d.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 3360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f98a8889-bb4f-47fe-b831-42f10754cb29.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41da5c80-20fa-4cd5-b3c8-c41e8d30242d.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3bda503-0318-4073-aa12-e1efbeca2f39.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a0823f-2d04-4c03-86a5-cd4db5aebd00.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 2064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f148631-f77c-4b1f-bde6-2c89b29ddd1d.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2c5a102-fc68-4fb3-b12d-49803d9e47a4.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 2028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\578fae37-cab3-4887-8677-74dde96a6b24.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9829ccda-f189-400c-b26c-b5f62ebeaba8.tmp, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 5188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T17:56:28.110 ProcessImageName: updater.exe, Pid: 7384, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T17:57:34.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T18:10:35.569 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1686394, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T18:12:39.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T18:27:44.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T18:42:49.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T18:57:54.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T19:12:59.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T19:28:04.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T19:43:09.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T19:56:28.116 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55792, Count: 6768, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\category\politica\pol-mures\df263380c70294523f4278e96fe9fb99.html, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5430, Count: 64719, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3CDAZ3, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 39, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f8e_1.MAI, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fc538e89-1023-4d21-93db-86817915f291.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\577d2850-70d7-4c0a-8d76-798aa3d3b78d.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aceb5c86-7300-4cdf-ab7c-a6be1a3f304d.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 5628, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6d5625d-3ca0-452d-adcb-43b5f3d3bc80.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49e553e6-3021-4ea4-a073-9d2267647785.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91d21eec-bf8c-46a9-ad59-056aee97802c.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6cc37412-97b6-4b9c-8d6c-01acc6222ec3.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 6076, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b858bbbc-e633-4c55-866b-04510ad5e6a0.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f259ff1-43ea-4d3c-9af1-22c2f3730a5d.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 3360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f98a8889-bb4f-47fe-b831-42f10754cb29.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41da5c80-20fa-4cd5-b3c8-c41e8d30242d.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2dcf94f-a591-4aa7-8fb1-f1038b1c1c7f.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a0823f-2d04-4c03-86a5-cd4db5aebd00.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 2064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f148631-f77c-4b1f-bde6-2c89b29ddd1d.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2c5a102-fc68-4fb3-b12d-49803d9e47a4.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 2028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\578fae37-cab3-4887-8677-74dde96a6b24.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3bda503-0318-4073-aa12-e1efbeca2f39.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9829ccda-f189-400c-b26c-b5f62ebeaba8.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 6796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90a4590b-ac31-4254-9b95-a4d61586eabf.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e431e91b-11d0-4e9b-8cb3-bcf6f0f7790f.tmp, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 5188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T19:56:28.116 ProcessImageName: updater.exe, Pid: 7384, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T19:58:14.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T20:10:26.336 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1693025, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T20:13:19.268 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T20:28:24.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T20:43:29.266 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T20:58:34.267 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T21:10:37.512 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1696360, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T21:13:39.267 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T21:28:44.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T21:43:49.266 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T21:56:28.120 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55792, Count: 6769, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\category\politica\pol-mures\df263380c70294523f4278e96fe9fb99.html, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5880, Count: 71190, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3CDAZ3, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 45, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f8e_1.MAI, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fc538e89-1023-4d21-93db-86817915f291.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 5628, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6d5625d-3ca0-452d-adcb-43b5f3d3bc80.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aceb5c86-7300-4cdf-ab7c-a6be1a3f304d.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\577d2850-70d7-4c0a-8d76-798aa3d3b78d.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49e553e6-3021-4ea4-a073-9d2267647785.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 6076, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b858bbbc-e633-4c55-866b-04510ad5e6a0.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6cc37412-97b6-4b9c-8d6c-01acc6222ec3.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 7360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9780287-0e5f-4f53-8493-e530a1d79691.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 6796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90a4590b-ac31-4254-9b95-a4d61586eabf.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f259ff1-43ea-4d3c-9af1-22c2f3730a5d.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 3360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f98a8889-bb4f-47fe-b831-42f10754cb29.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\41da5c80-20fa-4cd5-b3c8-c41e8d30242d.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2dcf94f-a591-4aa7-8fb1-f1038b1c1c7f.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97a0823f-2d04-4c03-86a5-cd4db5aebd00.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 2064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f148631-f77c-4b1f-bde6-2c89b29ddd1d.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2c5a102-fc68-4fb3-b12d-49803d9e47a4.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 2028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\578fae37-cab3-4887-8677-74dde96a6b24.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3bda503-0318-4073-aa12-e1efbeca2f39.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9829ccda-f189-400c-b26c-b5f62ebeaba8.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be37363b-a544-48b7-b89f-42ea4a7ac2dc.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e431e91b-11d0-4e9b-8cb3-bcf6f0f7790f.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91d21eec-bf8c-46a9-ad59-056aee97802c.tmp, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 7384, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 5188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T21:56:28.120 ProcessImageName: updater.exe, Pid: 6188, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T21:58:54.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T22:13:59.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T22:29:04.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T22:34:39.940 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1701017, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T22:44:09.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T22:59:14.269 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T23:10:35.399 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1703027, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-03T23:14:19.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T23:29:24.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T23:44:29.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-03T23:55:24.263 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-03T23:55:24.294 Job Notification: New process added to job (3024) 2026-05-03T23:55:24.294 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-03T23:55:24.294 Aggressive catchup quick scan threshold: 788104879331 / 25920000000000 2026-05-03T23:55:24.294 Job Notification: New process added to job (5692) 2026-05-03T23:55:24.310 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3024] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5692]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-03T23:55:24.356 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-03T23:55:24.356 Job Notification: New process added to job (6548) 2026-05-03T23:55:24.356 Job Notification: New process added to job (5396) 2026-05-03T23:55:24.388 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6548] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5396]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-03T23:55:24.700 Job Notification: New process added to job (4748) 2026-05-03T23:55:24.716 Task(GetDeviceTicket -AccessKey 4C0DBC9D-C7FC-2032-49CD-FAE9DAA8C2B8 ) launched as network service 2026-05-03T23:55:24.825 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-03T23:55:24.825 [RTP] Duplicating the current plugin configuration object... 2026-05-03T23:55:24.825 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-03T23:55:24.825 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-03T23:55:24.825 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-03T23:55:24.825 [RTP] No config change detected. Not updating plugin configuration. 2026-05-03T23:55:24.825 [RTP] No config changes found. No configuration switch. 2026-05-03T23:55:24.825 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-03T23:55:25.593 Job Notification: Process exited from job (4748) 2026-05-03T23:55:26.655 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-03T23:55:26.655 [Cloud] Start of cloud request. Passive mode: 0 2026-05-03T23:55:26.655 [Cloud] Queued cloud request. 2026-05-03T23:55:26.655 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-03T23:55:26.655 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-03T23:55:26.655 [Cloud] Start of cloud request. Passive mode: 0 2026-05-03T23:55:26.655 [Cloud] Queued cloud request. 2026-05-03T23:55:26.686 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 63F500B0-C006-6CE4-81D0-EF4BB6C843F6) launched 2026-05-03T23:55:26.686 Job Notification: New process added to job (172) 2026-05-03T23:55:26.686 Job Notification: New process added to job (6192) 2026-05-03T23:55:26.702 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:172] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6192]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-03T23:55:26.718 Job Notification: New process added to job (5292) 2026-05-03T23:55:26.718 Job Notification: Process exited from job (172) 2026-05-03T23:55:26.718 Job Notification: Process exited from job (6192) 2026-05-03T23:55:26.733 [Cloud] Dequeued cloud request. 2026-05-03T23:55:26.733 [Cloud] Dequeued cloud request. 2026-05-03T23:55:26.733 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-03T23:55:26.733 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-03T23:55:27.030 [Cloud] End of cloud request. 2026-05-03T23:55:27.046 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\fb6605c3bd4ffeef40dfef7e584666f0ca8c0048 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\fc50064975a4d3c9a8ff509dc941a1a11e6f783a Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:55:27.046 Dynamic signature received Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\a46d06dd0638d69a655b3df5daab0ebd9cdb5b7a Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:55:27.046 Dynamic signature received Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.046 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\f236fe9d94fd9af021b7971d368a71a4ae02cd63 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.046 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\51a99a733b3c754d4b0a5f2dd06cbf5b1a8d3adb Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.046 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\9e09c1c0b03ddb3c80f322085235c06efc65cf7a Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\1c39600d359c14c15497708565bfe12587488fb5 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\c780fbb2de920c6cfd6fbb03dd5fd813b65b6460 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\1fdd89c5575431dcd9e2da2adfd032b31515d2e7 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\0fa24e772716a506981324405767b8f548b82eca Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\18979f7906922f8de3f7a0a22a493ee24e0d19c4 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\3239e31e55d6ccb2d0e35588e5c5ddc99897f3f8 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\0f5f61753875fa824da10f0b99d0f64f597f5196 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\78c690d0606c2f0cd578147f57aec04ccd48fc12 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\2fb7c1cc8d361b8e5b6d64445a7e8d9cc9dc9fd1 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\cc6f3178db464531f51eb1678792215db0df8688 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\dccf87b6c972617cb7c7fa7301b69dd28e6c7257 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\f4956f62628c736ffd1db4aa45732a0de9aea600 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\0b52e21637aec4c4e28760ba1157d2d7427b5ea5 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\1b5668ab8b09ecd5b34217b73e563f7669ab914a Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\e35a467fc089e4e88a3fe0b799501cba3f1de7e3 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\da06ba77db5ce690d5cd1c7c1b3a9e5ad95a78a7 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\b06b71ef154f1052daececab27b6a4c0107c4864 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\af292fd8476e6cdcd9487c39648d47fbb72fecdc Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\44c313ce72bf59de51a43efb238d6e972713c459 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:55:27.061 Dynamic signature received Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\03b1cfac4eabeb6f34d3c04f20692ba2a65ad0ea Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:196610 Start time:05-03-2026 23:55:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:55:27 2026-05-03T23:55:27.061 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-03T23:55:27.061 [Cloud] End of cloud request. 2026-05-03T23:55:27.155 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-03T23:56:08.617 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\8CB638F3-C344-49FF-A24E-9F52DBC29622d20.1dcdb586852d153 2026-05-03T23:56:08.680 Verifying engine and signature files (source: 0) ... 2026-05-03T23:56:08.680 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{49CB15D9-E14E-4CE8-9852-0CB389B101E0}\mpengine.dll] due to PPL. 2026-05-03T23:56:08.680 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{49CB15D9-E14E-4CE8-9852-0CB389B101E0}\mpasbase.vdm] (file in cache) 2026-05-03T23:56:08.680 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{49CB15D9-E14E-4CE8-9852-0CB389B101E0}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-03T23:56:08.695 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{49CB15D9-E14E-4CE8-9852-0CB389B101E0}\mpasdlta.vdm] 2026-05-03T23:56:08.695 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{49CB15D9-E14E-4CE8-9852-0CB389B101E0}\mpavbase.vdm] (file in cache) 2026-05-03T23:56:08.695 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{49CB15D9-E14E-4CE8-9852-0CB389B101E0}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-03T23:56:08.711 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{49CB15D9-E14E-4CE8-9852-0CB389B101E0}\mpavdlta.vdm] 2026-05-03T23:56:08.867 [Engine] IsHybridMode: 0 2026-05-03T23:56:08.867 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-03T23:56:08.883 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-9B5F6F715ABDF4A1D6991116F93E0E678E2CB439.bin): 0x00000002 2026-05-03T23:56:08.883 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-9B5F6F715ABDF4A1D6991116F93E0E678E2CB439.bin) 2026-05-03T23:56:08.883 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-03T23:56:08.883 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-03T23:56:08.883 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-03T23:56:08.883 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-03T23:56:17.808 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-03T23:56:17.808 [AutoExclusion] Applied roles from cache. 2026-05-03T23:56:17.808 [AutoExclusion] Started roles monitoring. 2026-05-03T23:56:17.824 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0EA68020, lRefCount: 5, hr=0 2026-05-03T23:56:17.824 [Engine] New active engine 00007FFD0D908020 replacing engine 00007FFD0EA68020. Number of active engines: 2 2026-05-03T23:56:17.824 EngineInit:Global ASOC is enabled 2026-05-03T23:56:17.824 EngineInit:ASOO is enabled for developer volumes 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-03T23:56:17.840 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\51a99a733b3c754d4b0a5f2dd06cbf5b1a8d3adb Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\9e09c1c0b03ddb3c80f322085235c06efc65cf7a Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\a46d06dd0638d69a655b3df5daab0ebd9cdb5b7a Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\f236fe9d94fd9af021b7971d368a71a4ae02cd63 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\fb6605c3bd4ffeef40dfef7e584666f0ca8c0048 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\fc50064975a4d3c9a8ff509dc941a1a11e6f783a Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\03b1cfac4eabeb6f34d3c04f20692ba2a65ad0ea Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\0b52e21637aec4c4e28760ba1157d2d7427b5ea5 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\0f5f61753875fa824da10f0b99d0f64f597f5196 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\0fa24e772716a506981324405767b8f548b82eca Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\18979f7906922f8de3f7a0a22a493ee24e0d19c4 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\1b5668ab8b09ecd5b34217b73e563f7669ab914a Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\1c39600d359c14c15497708565bfe12587488fb5 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\1fdd89c5575431dcd9e2da2adfd032b31515d2e7 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\2fb7c1cc8d361b8e5b6d64445a7e8d9cc9dc9fd1 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\3239e31e55d6ccb2d0e35588e5c5ddc99897f3f8 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.840 Dynamic signature dropped 2026-05-03T23:56:17.840 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\44c313ce72bf59de51a43efb238d6e972713c459 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.855 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\78c690d0606c2f0cd578147f57aec04ccd48fc12 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.855 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\af292fd8476e6cdcd9487c39648d47fbb72fecdc Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.855 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\b06b71ef154f1052daececab27b6a4c0107c4864 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.855 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\c780fbb2de920c6cfd6fbb03dd5fd813b65b6460 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.855 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\cc6f3178db464531f51eb1678792215db0df8688 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.855 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\da06ba77db5ce690d5cd1c7c1b3a9e5ad95a78a7 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.855 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\dccf87b6c972617cb7c7fa7301b69dd28e6c7257 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.855 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\e35a467fc089e4e88a3fe0b799501cba3f1de7e3 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.855 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Disable Notification Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\f4956f62628c736ffd1db4aa45732a0de9aea600 Dynamic Signature Compilation Timestamp:01-01-1601 00:00:00 Persistence Type:VDM Version Source Version:283403444289537 Expiration Version:283403444289537 2026-05-03T23:56:17.855 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-03T23:56:17.855 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-03T23:56:17.855 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-03T23:56:17.855 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-03T23:56:17.855 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-03T23:56:17.871 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-03T23:56:17.871 [Plugin] Initializing RTP plugin state... 2026-05-03T23:56:17.871 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-03T23:56:17.871 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎03‎-‎2026 01:56:28 Last Perf:‎05‎-‎03‎-‎2026 01:56:28 First RTP Scan:‎05‎-‎03‎-‎2026 01:56:32 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:395 Misses:2084 BM Queue:0,41,0 Proc:0,41,0 File:0,33,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1705613 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1860421810 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2743 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:137014 TotalHits:635923 InstanceCacheInserts:878603 InstanceCacheUpdates:0 InstanceCacheDeletes:155975 InstanceCacheHits:2899 InstanceCacheMisses:948004 InstanceCacheOverflows:711537 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (332/277) Success: 277, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-03T23:56:17.871 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{49CB15D9-E14E-4CE8-9852-0CB389B101E0} 2026-05-03T23:56:17.871 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B70FB93D-DBDA-4853-8CAF-ABD035AA6171}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B70FB93D-DBDA-4853-8CAF-ABD035AA6171}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-03T23:56:17.871 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-03T23:56:17.871 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{FDD43CB1-C449-490A-A5EF-013AC300087D} removed 2026-05-03T23:56:17.871 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-03T23:56:17.871 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-03T23:56:17.871 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-03T23:56:17.871 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-03T23:56:17.871 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-03-2026 23:56:17 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-03-2026 23:56:17 2026-05-03T23:56:17.871 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-03T23:56:17.871 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-03T23:56:17.871 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-03T23:56:17.871 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-03T23:56:17.871 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-03T23:56:17.871 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-03T23:56:17.871 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-03T23:56:17.871 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-03T23:56:17.871 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-03T23:56:17.871 MdCoreSvc is supported in this platform and OS Signature updated on 05-03-2026 23:56:17 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.434.0 AV Signature Version: 1.449.434.0 ************************************************************ 2026-05-03T23:56:17.871 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-03T23:56:17.871 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\8CB638F3-C344-49FF-A24E-9F52DBC29622d20.1dcdb586852d153 2026-05-03T23:56:17.886 Process scan (postsignatureupdatescan) started. 2026-05-03T23:56:17.933 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-03T23:56:17.933 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 05-03-2026 23:56:17 ************************************************************ 2026-05-03T23:56:17.980 Job Notification: Process exited from job (6548) 2026-05-03T23:56:17.996 Job Notification: Process exited from job (5396) 2026-05-03T23:56:17.996 Job Notification: Process exited from job (3024) 2026-05-03T23:56:17.996 Job Notification: Process exited from job (5692) 2026-05-03T23:56:18.136 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-03T23:56:18.136 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-03T23:56:18.136 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-03T23:56:18.136 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-03T23:56:18.136 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-03T23:56:18.136 [Engine] Engine 00007FFD0EA68020 no longer in use. Number of active engines: 1 2026-05-03T23:56:18.136 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-03T23:56:18.136 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-03T23:56:18.355 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-03T23:56:18.355 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-03T23:56:18.355 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-03T23:56:18.855 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55792, Count: 6769, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\category\politica\pol-mures\df263380c70294523f4278e96fe9fb99.html, EstimatedImpact: 0% 2026-05-03T23:56:18.855 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6300, Count: 77652, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.3CDAZ3, EstimatedImpact: 0% 2026-05-03T23:56:18.855 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 45, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829f8e_1.MAI, EstimatedImpact: 0% 2026-05-03T23:56:18.855 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-03T23:56:18.855 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fc538e89-1023-4d21-93db-86817915f291.tmp, EstimatedImpact: 0% 2026-05-03T23:56:18.855 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-03T23:56:18.855 ProcessImageName: updater.exe, Pid: 5628, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6d5625d-3ca0-452d-adcb-43b5f3d3bc80.tmp, EstimatedImpact: 0% 2026-05-03T23:56:18.855 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ec56dcf6-9bbd-4d42-9608-1025c16be517.tmp, EstimatedImpact: 0% 2026-05-03T23:56:18.855 ProcessImageName: updater.exe, Pid: 7820, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aceb5c86-7300-4cdf-ab7c-a6be1a3f304d.tmp, EstimatedImpact: 0% 2026-05-03T23:56:18.855 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\577d2850-70d7-4c0a-8d76-798aa3d3b78d.tmp, EstimatedImpact: 0% 2026-05-03T23:56:18.855 ProcessImageName: updater.exe, Pid: 4908, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-03T23:56:18.855 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49e553e6-3021-4ea4-a073-9d2267647785.tmp, EstimatedImpact: 0% 2026-05-03T23:56:18.855 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91d21eec-bf8c-46a9-ad59-056aee97802c.tmp, EstimatedImpact: 0% 2026-05-03T23:56:18.855 ProcessImageName: updater.exe, Pid: 7848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6cc37412-97b6-4b9c-8d6c-01acc6222ec3.tmp, EstimatedImpact: 0% 2026-05-03T23:56:18.918 [Engine] RSIG_UNLOADENGINE, 00007FFD0EA68020, err=0x0 2026-05-03T23:56:18.933 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B70FB93D-DBDA-4853-8CAF-ABD035AA6171} removed 2026-05-03T23:56:23.433 Process scan (postsignatureupdatescan) completed. 2026-05-03T23:59:34.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T00:01:17.841 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-04T00:10:27.289 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1706497, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T00:10:27.289 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1706499, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T00:10:37.297 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1706512, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T00:10:37.297 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1706515, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T00:14:39.267 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T00:29:44.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T00:44:49.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T00:59:54.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T01:10:26.545 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1709812, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T01:10:26.560 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1709814, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T01:10:36.557 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1709827, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T01:10:36.557 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1709829, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T01:10:36.572 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1709831, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T01:14:59.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T01:30:04.276 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T01:45:09.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T01:56:17.838 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 811, Count: 6471, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.JHW7Y3, EstimatedImpact: 0% 2026-05-04T01:56:17.838 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 423, Count: 52, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\index.php, EstimatedImpact: 0% 2026-05-04T01:56:17.838 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-04T01:56:17.838 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\866eb12f-c68e-4940-ace6-41978576d3a5.tmp, EstimatedImpact: 0% 2026-05-04T02:00:14.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T02:01:53.825 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:68B80666-E307-4AAB-B89D-C8ABE92B6B9B, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-04T02:01:53.825 Scheduled scan with Id 68B80666-E307-4AAB-B89D-C8ABE92B6B9B configured CPU priority: normal (LowCpuPriority: 0) 2026-05-04T02:01:53.825 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-04T02:01:53.825 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-04T02:01:53.825 [SFC] System file cache build is not needed (already completed) 2026-05-04T02:02:03.230 Engine:Triggered AR EMS scan 2026-05-04T02:02:03.230 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.245 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.277 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.292 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.324 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.339 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.355 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.386 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.417 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.433 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.449 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.480 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.495 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.511 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.542 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.558 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.574 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.636 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.652 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.683 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.699 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.761 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-04T02:02:03.777 Bm signature throttled:0x00002db31bed458f 2026-05-04T02:02:16.777 QuickScan:ScanID:68B80666-E307-4AAB-B89D-C8ABE92B6B9B: Quick scan finished with error 0 2026-05-04T02:02:16.777 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-04T02:02:17.283 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-04T02:02:17.283 [RTP] Duplicating the current plugin configuration object... 2026-05-04T02:02:17.283 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-04T02:02:17.283 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-04T02:02:17.283 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-04T02:02:17.283 [RTP] No config change detected. Not updating plugin configuration. 2026-05-04T02:02:17.283 [RTP] No config changes found. No configuration switch. 2026-05-04T02:02:17.283 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-04T02:10:26.542 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1713326, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T02:10:26.542 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1713328, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T02:10:36.538 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1713342, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T02:10:36.538 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1713341, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T02:10:36.554 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1713343, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T02:15:19.265 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T02:30:24.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T02:45:29.265 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T03:00:34.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T03:10:27.302 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1716716, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T03:10:27.317 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1716718, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T03:10:37.321 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1716731, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T03:10:37.321 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1716734, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T03:15:39.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T03:30:44.273 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T03:34:42.626 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1718073, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T03:34:42.626 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1718075, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T03:34:47.124 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1718087, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T03:34:47.140 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1718091, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T03:34:47.155 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1718092, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T03:34:57.142 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1718104, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T03:34:57.142 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1718106, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T03:34:57.283 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1718110, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T03:34:57.283 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1718112, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T03:45:49.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T03:56:17.848 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1441, Count: 12942, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.JHW7Y3, EstimatedImpact: 0% 2026-05-04T03:56:17.848 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 469, Count: 55, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\index.php, EstimatedImpact: 0% 2026-05-04T03:56:17.848 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3e3401d-f809-4f32-80c5-9acecaae4cfd.tmp, EstimatedImpact: 0% 2026-05-04T03:56:17.848 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-04T03:56:17.848 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\866eb12f-c68e-4940-ace6-41978576d3a5.tmp, EstimatedImpact: 0% 2026-05-04T03:56:17.848 ProcessImageName: updater.exe, Pid: 2972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5d3c05e-fc6e-45c2-b059-4f4a2e30d9a4.tmp, EstimatedImpact: 0% 2026-05-04T03:56:17.848 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T04:00:54.262 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T04:10:26.911 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1720078, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T04:10:26.911 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1720080, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T04:10:36.925 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1720094, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T04:10:36.925 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1720093, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T04:10:36.925 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1720097, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T04:15:59.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T04:31:04.273 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T04:46:09.267 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T05:01:14.265 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T05:10:25.241 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1723387, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T05:10:25.256 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1723389, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T05:10:35.255 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1723403, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T05:10:35.255 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1723406, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T05:16:19.266 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T05:25:20.319 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829faa_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1725418, FileId: 0x234800000005428b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T05:25:31.991 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fab_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1725877, FileId: 0x14940000000545cd, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T05:25:32.006 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829faa_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1725879, FileId: 0x27000000055108, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T05:31:24.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T05:38:06.302 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fac_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1726576, FileId: 0x1500000000550cb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T05:38:06.818 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fac_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1726580, FileId: 0x1510000000550cb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T05:46:29.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T05:56:17.851 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48263, Count: 6505, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-04T05:56:17.851 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2041, Count: 19413, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.JHW7Y3, EstimatedImpact: 0% 2026-05-04T05:56:17.851 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fab_2.MAI, EstimatedImpact: 0% 2026-05-04T05:56:17.851 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3e3401d-f809-4f32-80c5-9acecaae4cfd.tmp, EstimatedImpact: 0% 2026-05-04T05:56:17.851 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-04T05:56:17.851 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4472e9c5-163e-464c-8a41-678c5011ed82.tmp, EstimatedImpact: 0% 2026-05-04T05:56:17.851 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\866eb12f-c68e-4940-ace6-41978576d3a5.tmp, EstimatedImpact: 0% 2026-05-04T05:56:17.851 ProcessImageName: updater.exe, Pid: 2972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5d3c05e-fc6e-45c2-b059-4f4a2e30d9a4.tmp, EstimatedImpact: 0% 2026-05-04T05:56:17.851 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66a924d7-6d0e-4fb5-b173-3d764ed8dd7d.tmp, EstimatedImpact: 0% 2026-05-04T05:56:17.851 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T06:01:34.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T06:03:17.364 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fad_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1728000, FileId: 0x1f970000000545d3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T06:10:25.322 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1728411, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T06:10:25.338 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1728413, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T06:10:35.331 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1728427, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T06:10:35.346 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1728430, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T06:16:39.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T06:31:44.275 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T06:46:49.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T07:01:54.274 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T07:10:26.494 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1731904, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T07:10:26.509 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1731906, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T07:10:36.496 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1731920, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T07:10:36.496 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1731922, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T07:10:36.512 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1731924, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T07:10:36.512 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1731926, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T07:16:59.269 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T07:32:04.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T07:47:09.268 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T07:56:17.861 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49304, Count: 6556, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-04T07:56:17.861 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2941, Count: 25884, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.JHW7Y3, EstimatedImpact: 0% 2026-05-04T07:56:17.861 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-04T07:56:17.861 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 15, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fab_2.MAI, EstimatedImpact: 0% 2026-05-04T07:56:17.861 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-04T07:56:17.861 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3e3401d-f809-4f32-80c5-9acecaae4cfd.tmp, EstimatedImpact: 0% 2026-05-04T07:56:17.861 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-04T07:56:17.861 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4472e9c5-163e-464c-8a41-678c5011ed82.tmp, EstimatedImpact: 0% 2026-05-04T07:56:17.861 ProcessImageName: updater.exe, Pid: 7584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d87e55c1-dec7-4941-86d9-6241c5689dd7.tmp, EstimatedImpact: 0% 2026-05-04T07:56:17.861 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\866eb12f-c68e-4940-ace6-41978576d3a5.tmp, EstimatedImpact: 0% 2026-05-04T07:56:17.861 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f2eaec0-1a34-4fa7-8fdc-34dddb58ddef.tmp, EstimatedImpact: 0% 2026-05-04T07:56:17.861 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66a924d7-6d0e-4fb5-b173-3d764ed8dd7d.tmp, EstimatedImpact: 0% 2026-05-04T07:56:17.861 ProcessImageName: updater.exe, Pid: 2972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5d3c05e-fc6e-45c2-b059-4f4a2e30d9a4.tmp, EstimatedImpact: 0% 2026-05-04T07:56:17.861 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T07:58:41.317 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fb2_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1734588, FileId: 0x24e5000000028304, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:02:14.273 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T08:10:26.054 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1735263, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:10:26.069 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1735265, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:10:36.066 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1735279, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:10:36.066 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1735281, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:10:36.223 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1735285, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:10:36.238 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1735287, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:17:19.267 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T08:32:24.269 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T08:34:47.222 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1736620, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:34:47.238 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1736623, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:34:52.216 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1736632, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:34:52.232 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1736635, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:34:52.232 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1736637, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:35:02.234 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1736650, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:35:02.234 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1736651, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:35:02.249 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1736654, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T08:47:29.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T09:02:34.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T09:10:25.841 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1738638, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T09:10:25.856 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1738640, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T09:10:35.846 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1738654, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T09:10:35.861 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1738657, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T09:10:35.861 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1738656, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T09:17:39.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T09:32:44.267 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T09:47:49.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T09:56:17.872 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50106, Count: 6587, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3511, Count: 32355, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.JHW7Y3, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fab_2.MAI, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba2f0c59-8bf7-463e-ae7e-8dff9698585a.tmp, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3e3401d-f809-4f32-80c5-9acecaae4cfd.tmp, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdeb5f91-16fa-4281-b3d0-83f6e1e8b6fa.tmp, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: updater.exe, Pid: 7584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d87e55c1-dec7-4941-86d9-6241c5689dd7.tmp, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4472e9c5-163e-464c-8a41-678c5011ed82.tmp, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\866eb12f-c68e-4940-ace6-41978576d3a5.tmp, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c525cbc-da17-4eea-a83d-71b266443f46.tmp, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f2eaec0-1a34-4fa7-8fdc-34dddb58ddef.tmp, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66a924d7-6d0e-4fb5-b173-3d764ed8dd7d.tmp, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: updater.exe, Pid: 2972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5d3c05e-fc6e-45c2-b059-4f4a2e30d9a4.tmp, EstimatedImpact: 0% 2026-05-04T09:56:17.872 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T10:02:54.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T10:10:26.724 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1741947, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T10:10:26.740 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1741949, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T10:10:36.745 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1741963, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T10:10:36.745 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1741965, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T10:10:36.745 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1741967, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T10:17:59.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T10:33:04.273 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T10:48:09.273 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T11:03:14.268 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T11:10:25.899 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1745265, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T11:10:25.915 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1745267, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T11:10:35.919 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1745281, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T11:10:35.919 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1745282, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T11:10:35.919 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1745283, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T11:18:19.259 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T11:33:24.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T11:48:29.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T11:56:17.886 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50106, Count: 6587, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4096, Count: 38826, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.JHW7Y3, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fab_2.MAI, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba2f0c59-8bf7-463e-ae7e-8dff9698585a.tmp, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3e3401d-f809-4f32-80c5-9acecaae4cfd.tmp, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4472e9c5-163e-464c-8a41-678c5011ed82.tmp, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d1bf2b2-9a60-4b20-bcbc-b7a9571851e7.tmp, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: updater.exe, Pid: 2972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5d3c05e-fc6e-45c2-b059-4f4a2e30d9a4.tmp, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66a924d7-6d0e-4fb5-b173-3d764ed8dd7d.tmp, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: updater.exe, Pid: 7584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d87e55c1-dec7-4941-86d9-6241c5689dd7.tmp, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f2eaec0-1a34-4fa7-8fdc-34dddb58ddef.tmp, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\866eb12f-c68e-4940-ace6-41978576d3a5.tmp, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: updater.exe, Pid: 2140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\12fead35-fa47-4203-890e-d597eabc357f.tmp, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c525cbc-da17-4eea-a83d-71b266443f46.tmp, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdeb5f91-16fa-4281-b3d0-83f6e1e8b6fa.tmp, EstimatedImpact: 0% 2026-05-04T11:56:17.886 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T12:03:34.273 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T12:10:26.254 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1748573, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T12:10:26.269 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1748575, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T12:10:36.271 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1748589, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T12:10:36.287 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1748592, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T12:17:42.533 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fc5_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1748989, FileId: 0x1cba00000000ca3a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T12:17:43.145 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fc5_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1748993, FileId: 0x1cbb00000000ca3a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T12:18:39.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T12:33:44.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T12:48:49.262 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T13:03:54.265 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T13:10:26.544 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1751897, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T13:10:26.560 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1751899, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T13:10:36.558 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1751913, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T13:10:36.574 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1751915, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T13:10:36.810 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1751919, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T13:10:36.810 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1751921, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T13:18:59.266 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T13:34:04.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T13:34:52.306 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1753254, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T13:34:52.322 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1753256, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T13:34:56.495 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1753275, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T13:34:56.495 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1753278, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T13:34:56.511 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1753280, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T13:35:06.515 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1753293, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T13:49:09.266 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T13:56:17.897 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50106, Count: 6588, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4861, Count: 45297, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.JHW7Y3, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fab_2.MAI, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba2f0c59-8bf7-463e-ae7e-8dff9698585a.tmp, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 6740, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\783cf35d-ca48-49a1-ba7f-8c4a9f16f9f7.tmp, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3e3401d-f809-4f32-80c5-9acecaae4cfd.tmp, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4472e9c5-163e-464c-8a41-678c5011ed82.tmp, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdeb5f91-16fa-4281-b3d0-83f6e1e8b6fa.tmp, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 2972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5d3c05e-fc6e-45c2-b059-4f4a2e30d9a4.tmp, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 7584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d87e55c1-dec7-4941-86d9-6241c5689dd7.tmp, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\866eb12f-c68e-4940-ace6-41978576d3a5.tmp, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d1bf2b2-9a60-4b20-bcbc-b7a9571851e7.tmp, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890ca859-aae2-4f8a-8fa5-5ed3fbf2d412.tmp, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c525cbc-da17-4eea-a83d-71b266443f46.tmp, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 2140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\12fead35-fa47-4203-890e-d597eabc357f.tmp, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f2eaec0-1a34-4fa7-8fdc-34dddb58ddef.tmp, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66a924d7-6d0e-4fb5-b173-3d764ed8dd7d.tmp, EstimatedImpact: 0% 2026-05-04T13:56:17.897 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T14:04:14.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T14:19:19.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T14:34:24.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T14:49:29.267 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T15:04:34.259 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T15:10:37.484 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1758595, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T15:19:39.268 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T15:34:44.262 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T15:49:49.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T15:56:17.901 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50106, Count: 6588, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5341, Count: 51777, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.JHW7Y3, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fab_2.MAI, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba2f0c59-8bf7-463e-ae7e-8dff9698585a.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 6740, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\783cf35d-ca48-49a1-ba7f-8c4a9f16f9f7.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3e3401d-f809-4f32-80c5-9acecaae4cfd.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4472e9c5-163e-464c-8a41-678c5011ed82.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66a924d7-6d0e-4fb5-b173-3d764ed8dd7d.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890ca859-aae2-4f8a-8fa5-5ed3fbf2d412.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d1bf2b2-9a60-4b20-bcbc-b7a9571851e7.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 7584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d87e55c1-dec7-4941-86d9-6241c5689dd7.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8138375c-11aa-475f-b7cb-f10e81564f14.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\866eb12f-c68e-4940-ace6-41978576d3a5.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\da7271fb-0d34-4b99-b8e2-cdea6f5114c3.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 2972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5d3c05e-fc6e-45c2-b059-4f4a2e30d9a4.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f2eaec0-1a34-4fa7-8fdc-34dddb58ddef.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 2140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\12fead35-fa47-4203-890e-d597eabc357f.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdeb5f91-16fa-4281-b3d0-83f6e1e8b6fa.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c525cbc-da17-4eea-a83d-71b266443f46.tmp, EstimatedImpact: 0% 2026-05-04T15:56:17.901 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T16:04:54.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T16:19:59.262 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T16:35:04.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T16:50:09.262 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T17:05:14.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T17:10:37.552 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1765222, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T17:20:19.272 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T17:35:24.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T17:50:29.265 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T17:56:17.905 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50106, Count: 6588, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5821, Count: 58248, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.JHW7Y3, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fab_2.MAI, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba2f0c59-8bf7-463e-ae7e-8dff9698585a.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 6740, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\783cf35d-ca48-49a1-ba7f-8c4a9f16f9f7.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3e3401d-f809-4f32-80c5-9acecaae4cfd.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 8124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e688c8b1-9852-4243-9b4c-7892364dc37a.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4472e9c5-163e-464c-8a41-678c5011ed82.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8138375c-11aa-475f-b7cb-f10e81564f14.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890ca859-aae2-4f8a-8fa5-5ed3fbf2d412.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\945751ad-7404-416e-841c-cc05af34427d.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d1bf2b2-9a60-4b20-bcbc-b7a9571851e7.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 7584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d87e55c1-dec7-4941-86d9-6241c5689dd7.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 2972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5d3c05e-fc6e-45c2-b059-4f4a2e30d9a4.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\866eb12f-c68e-4940-ace6-41978576d3a5.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66a924d7-6d0e-4fb5-b173-3d764ed8dd7d.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f2eaec0-1a34-4fa7-8fdc-34dddb58ddef.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 2140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\12fead35-fa47-4203-890e-d597eabc357f.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c525cbc-da17-4eea-a83d-71b266443f46.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdeb5f91-16fa-4281-b3d0-83f6e1e8b6fa.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\da7271fb-0d34-4b99-b8e2-cdea6f5114c3.tmp, EstimatedImpact: 0% 2026-05-04T17:56:17.905 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T18:05:34.260 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T18:20:39.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T18:34:56.590 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1769886, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T18:35:44.259 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T18:50:49.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T19:05:54.259 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T19:10:35.691 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1771888, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T19:20:59.256 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T19:36:04.256 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T19:51:09.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T19:56:17.915 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50136, Count: 6591, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6556, Count: 64719, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.JHW7Y3, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fab_2.MAI, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba2f0c59-8bf7-463e-ae7e-8dff9698585a.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2fdcd585-bc1e-45af-ae8a-5b4f38c8429e.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 6740, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\783cf35d-ca48-49a1-ba7f-8c4a9f16f9f7.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3e3401d-f809-4f32-80c5-9acecaae4cfd.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 8124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e688c8b1-9852-4243-9b4c-7892364dc37a.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4472e9c5-163e-464c-8a41-678c5011ed82.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdeb5f91-16fa-4281-b3d0-83f6e1e8b6fa.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\945751ad-7404-416e-841c-cc05af34427d.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d1bf2b2-9a60-4b20-bcbc-b7a9571851e7.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\da7271fb-0d34-4b99-b8e2-cdea6f5114c3.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 5464, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a5f5a3b-2be0-4779-b23f-f6774b6528fc.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8138375c-11aa-475f-b7cb-f10e81564f14.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890ca859-aae2-4f8a-8fa5-5ed3fbf2d412.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 6236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7956f1e0-9f08-4672-88ae-dd82df32cef6.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 2972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5d3c05e-fc6e-45c2-b059-4f4a2e30d9a4.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66a924d7-6d0e-4fb5-b173-3d764ed8dd7d.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f2eaec0-1a34-4fa7-8fdc-34dddb58ddef.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 2140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\12fead35-fa47-4203-890e-d597eabc357f.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c525cbc-da17-4eea-a83d-71b266443f46.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\866eb12f-c68e-4940-ace6-41978576d3a5.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 7584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d87e55c1-dec7-4941-86d9-6241c5689dd7.tmp, EstimatedImpact: 0% 2026-05-04T19:56:17.915 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T20:06:14.267 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T20:21:19.260 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T20:36:24.256 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T20:51:29.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T21:06:34.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T21:10:38.115 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1778518, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T21:21:39.266 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T21:36:44.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T21:51:49.271 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T21:56:17.923 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50136, Count: 6592, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7186, Count: 71190, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.JHW7Y3, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 29, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fab_2.MAI, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba2f0c59-8bf7-463e-ae7e-8dff9698585a.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2fdcd585-bc1e-45af-ae8a-5b4f38c8429e.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 6740, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\783cf35d-ca48-49a1-ba7f-8c4a9f16f9f7.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3e3401d-f809-4f32-80c5-9acecaae4cfd.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 8124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e688c8b1-9852-4243-9b4c-7892364dc37a.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 6844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdeb5f91-16fa-4281-b3d0-83f6e1e8b6fa.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4472e9c5-163e-464c-8a41-678c5011ed82.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\945751ad-7404-416e-841c-cc05af34427d.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\da7271fb-0d34-4b99-b8e2-cdea6f5114c3.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 7436, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1811655-9649-4077-aa30-59c389eb6fdd.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 5464, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a5f5a3b-2be0-4779-b23f-f6774b6528fc.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 5396, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\da2264ac-ffbb-4a14-be40-ec804ad8ee93.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d1bf2b2-9a60-4b20-bcbc-b7a9571851e7.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8138375c-11aa-475f-b7cb-f10e81564f14.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\890ca859-aae2-4f8a-8fa5-5ed3fbf2d412.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 7572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\866eb12f-c68e-4940-ace6-41978576d3a5.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 2972, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5d3c05e-fc6e-45c2-b059-4f4a2e30d9a4.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 6236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7956f1e0-9f08-4672-88ae-dd82df32cef6.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\66a924d7-6d0e-4fb5-b173-3d764ed8dd7d.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f2eaec0-1a34-4fa7-8fdc-34dddb58ddef.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 2140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\12fead35-fa47-4203-890e-d597eabc357f.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 1956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c525cbc-da17-4eea-a83d-71b266443f46.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 7584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d87e55c1-dec7-4941-86d9-6241c5689dd7.tmp, EstimatedImpact: 0% 2026-05-04T21:56:17.923 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-04T22:06:54.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T22:21:59.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T22:37:04.262 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T22:52:09.257 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T23:07:14.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T23:10:35.585 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1785155, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T23:22:19.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T23:35:15.640 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1786550, FileId: 0x55e000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-04T23:37:24.267 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T23:52:29.268 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-04T23:55:24.270 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-04T23:55:24.285 Job Notification: New process added to job (1256) 2026-05-04T23:55:24.301 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-04T23:55:24.301 Aggressive catchup quick scan threshold: 788104761646 / 25920000000000 2026-05-04T23:55:24.301 Job Notification: New process added to job (6968) 2026-05-04T23:55:24.301 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:1256] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6968]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-04T23:55:24.348 Job Notification: New process added to job (7380) 2026-05-04T23:55:24.348 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-04T23:55:24.363 Job Notification: New process added to job (5164) 2026-05-04T23:55:24.363 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:7380] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5164]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-04T23:55:24.723 Job Notification: New process added to job (2572) 2026-05-04T23:55:24.738 Task(GetDeviceTicket -AccessKey 2F37B7A9-A06A-02BE-8147-233046FB8192 ) launched as network service 2026-05-04T23:55:24.801 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-04T23:55:24.801 [RTP] Duplicating the current plugin configuration object... 2026-05-04T23:55:24.801 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-04T23:55:24.801 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-04T23:55:24.801 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-04T23:55:24.801 [RTP] No config change detected. Not updating plugin configuration. 2026-05-04T23:55:24.801 [RTP] No config changes found. No configuration switch. 2026-05-04T23:55:24.801 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-04T23:55:25.427 Job Notification: Process exited from job (2572) 2026-05-04T23:55:26.505 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-04T23:55:26.505 [Cloud] Start of cloud request. Passive mode: 0 2026-05-04T23:55:26.505 [Cloud] Queued cloud request. 2026-05-04T23:55:26.505 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-04T23:55:26.505 [Cloud] Dequeued cloud request. 2026-05-04T23:55:26.505 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-04T23:55:26.505 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-04T23:55:26.505 [Cloud] Start of cloud request. Passive mode: 0 2026-05-04T23:55:26.505 [Cloud] Queued cloud request. 2026-05-04T23:55:26.505 [Cloud] Dequeued cloud request. 2026-05-04T23:55:26.505 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-04T23:55:26.734 [Cloud] End of cloud request. 2026-05-04T23:55:26.750 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-04T23:55:26.750 [Cloud] End of cloud request. 2026-05-04T23:55:27.017 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-04T23:55:38.426 Job Notification: Process exited from job (5292) 2026-05-04T23:56:03.548 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\F6B909B0-0AB6-4E35-A075-171B2ED9AFE41884.1dcdc218fb2a4ed 2026-05-04T23:56:03.610 Verifying engine and signature files (source: 0) ... 2026-05-04T23:56:03.610 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E3873735-C42A-46AC-9E5E-8DC975862437}\mpengine.dll] due to PPL. 2026-05-04T23:56:03.610 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E3873735-C42A-46AC-9E5E-8DC975862437}\mpasbase.vdm] (file in cache) 2026-05-04T23:56:03.610 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E3873735-C42A-46AC-9E5E-8DC975862437}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-04T23:56:03.641 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E3873735-C42A-46AC-9E5E-8DC975862437}\mpasdlta.vdm] 2026-05-04T23:56:03.641 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E3873735-C42A-46AC-9E5E-8DC975862437}\mpavbase.vdm] (file in cache) 2026-05-04T23:56:03.641 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E3873735-C42A-46AC-9E5E-8DC975862437}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-04T23:56:03.657 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E3873735-C42A-46AC-9E5E-8DC975862437}\mpavdlta.vdm] 2026-05-04T23:56:03.876 [Engine] IsHybridMode: 0 2026-05-04T23:56:03.876 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-04T23:56:03.923 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-19257454272CBFB9307425D7EB47DE35D08E5386.bin): 0x00000002 2026-05-04T23:56:03.923 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-19257454272CBFB9307425D7EB47DE35D08E5386.bin) 2026-05-04T23:56:03.923 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-04T23:56:03.923 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-04T23:56:03.954 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-04T23:56:03.954 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-04T23:56:13.018 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-04T23:56:13.018 [AutoExclusion] Applied roles from cache. 2026-05-04T23:56:13.018 [AutoExclusion] Started roles monitoring. 2026-05-04T23:56:13.034 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D908020, lRefCount: 5, hr=0 2026-05-04T23:56:13.034 [Engine] New active engine 00007FFD0EA68020 replacing engine 00007FFD0D908020. Number of active engines: 2 2026-05-04T23:56:13.034 EngineInit:Global ASOC is enabled 2026-05-04T23:56:13.034 EngineInit:ASOO is enabled for developer volumes 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-04T23:56:13.049 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-04T23:56:13.065 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-04T23:56:13.065 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-04T23:56:13.065 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-04T23:56:13.065 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-04T23:56:13.065 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-04T23:56:13.080 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-04T23:56:13.080 [Plugin] Initializing RTP plugin state... 2026-05-04T23:56:13.080 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-04T23:56:13.080 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎04‎-‎2026 01:56:18 Last Perf:‎05‎-‎04‎-‎2026 01:56:17 First RTP Scan:‎05‎-‎04‎-‎2026 01:56:22 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:398 Misses:2090 BM Queue:0,45,0 Proc:0,43,0 File:0,24,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1787788 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1950295224 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2764 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:141339 TotalHits:657428 InstanceCacheInserts:922096 InstanceCacheUpdates:0 InstanceCacheDeletes:164167 InstanceCacheHits:2945 InstanceCacheMisses:992410 InstanceCacheOverflows:746792 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (293/278) Success: 278, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-04T23:56:13.080 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E3873735-C42A-46AC-9E5E-8DC975862437} 2026-05-04T23:56:13.080 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{49CB15D9-E14E-4CE8-9852-0CB389B101E0}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{49CB15D9-E14E-4CE8-9852-0CB389B101E0}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-04T23:56:13.080 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-04T23:56:13.080 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B040D20D-1D52-4612-B34C-20965BDF8299} removed 2026-05-04T23:56:13.080 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-04T23:56:13.080 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-04T23:56:13.080 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-04T23:56:13.080 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-04T23:56:13.080 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-04-2026 23:56:13 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-04-2026 23:56:13 2026-05-04T23:56:13.080 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-04T23:56:13.080 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-04T23:56:13.080 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-04T23:56:13.080 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-04T23:56:13.080 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-04T23:56:13.080 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-04T23:56:13.080 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-04T23:56:13.080 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-04T23:56:13.080 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-04T23:56:13.080 MdCoreSvc is supported in this platform and OS Signature updated on 05-04-2026 23:56:13 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.446.0 AV Signature Version: 1.449.446.0 ************************************************************ 2026-05-04T23:56:13.080 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-04T23:56:13.080 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\F6B909B0-0AB6-4E35-A075-171B2ED9AFE41884.1dcdc218fb2a4ed 2026-05-04T23:56:13.096 Process scan (postsignatureupdatescan) started. 2026-05-04T23:56:13.127 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-04T23:56:13.127 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-04T23:56:13.346 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-04T23:56:13.346 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-04T23:56:13.346 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-04T23:56:13.346 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-04T23:56:13.346 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). Signature updated via MicrosoftUpdateServer on 05-04-2026 23:56:13 ************************************************************ 2026-05-04T23:56:13.362 [Engine] Engine 00007FFD0D908020 no longer in use. Number of active engines: 1 2026-05-04T23:56:13.362 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-04T23:56:13.362 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-04T23:56:13.362 Job Notification: Process exited from job (7380) 2026-05-04T23:56:13.362 Job Notification: Process exited from job (5164) 2026-05-04T23:56:13.377 Job Notification: Process exited from job (1256) 2026-05-04T23:56:13.377 Job Notification: Process exited from job (6968) 2026-05-04T23:56:13.565 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-04T23:56:13.565 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-04T23:56:13.565 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-04T23:56:14.455 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50319, Count: 6609, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-04T23:56:14.455 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7936, Count: 77661, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\{7C7A586F-1E2B-4267-A282-07456B077650}.scratch.JHW7Y3, EstimatedImpact: 0% 2026-05-04T23:56:14.455 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 31, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fab_2.MAI, EstimatedImpact: 0% 2026-05-04T23:56:14.455 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 90, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-04T23:56:14.455 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-04T23:56:14.455 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ba2f0c59-8bf7-463e-ae7e-8dff9698585a.tmp, EstimatedImpact: 0% 2026-05-04T23:56:14.455 ProcessImageName: updater.exe, Pid: 6740, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\783cf35d-ca48-49a1-ba7f-8c4a9f16f9f7.tmp, EstimatedImpact: 0% 2026-05-04T23:56:14.455 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2fdcd585-bc1e-45af-ae8a-5b4f38c8429e.tmp, EstimatedImpact: 0% 2026-05-04T23:56:14.455 ProcessImageName: updater.exe, Pid: 6212, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b20cc82-c2c6-443d-8066-f68f38402823.tmp, EstimatedImpact: 0% 2026-05-04T23:56:14.471 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3e3401d-f809-4f32-80c5-9acecaae4cfd.tmp, EstimatedImpact: 0% 2026-05-04T23:56:14.471 ProcessImageName: updater.exe, Pid: 6328, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-04T23:56:14.471 ProcessImageName: updater.exe, Pid: 5700, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-05-04T23:56:14.471 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d1bf2b2-9a60-4b20-bcbc-b7a9571851e7.tmp, EstimatedImpact: 0% 2026-05-04T23:56:14.471 ProcessImageName: updater.exe, Pid: 7584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d87e55c1-dec7-4941-86d9-6241c5689dd7.tmp, EstimatedImpact: 0% 2026-05-04T23:56:14.471 ProcessImageName: updater.exe, Pid: 5464, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a5f5a3b-2be0-4779-b23f-f6774b6528fc.tmp, EstimatedImpact: 0% 2026-05-04T23:56:14.518 [Engine] RSIG_UNLOADENGINE, 00007FFD0D908020, err=0x0 2026-05-04T23:56:14.534 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{49CB15D9-E14E-4CE8-9852-0CB389B101E0} removed 2026-05-04T23:56:18.596 Process scan (postsignatureupdatescan) completed. 2026-05-05T00:01:13.056 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-05T00:01:13.947 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fda_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1789264, FileId: 0x5cb000000004c446, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T00:01:25.290 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdb_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1789722, FileId: 0x1400000005511f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T00:01:25.306 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fda_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1789723, FileId: 0x2d00000005511d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T00:07:34.267 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T00:10:26.142 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1790280, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T00:10:26.157 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1790282, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T00:10:36.151 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1790296, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T00:10:36.167 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1790299, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T00:22:39.259 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T00:30:56.747 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdc_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1791421, FileId: 0x2f78000000028304, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T00:30:57.357 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdc_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1791426, FileId: 0x2f79000000028304, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T00:37:44.266 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T00:52:49.260 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T01:07:54.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T01:10:25.964 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1793607, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T01:10:25.964 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1793609, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T01:10:35.978 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1793623, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T01:10:35.978 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1793625, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T01:10:35.993 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1793627, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T01:10:35.993 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1793629, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T01:22:59.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T01:38:04.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T01:53:09.259 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T01:56:13.034 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 46208, Count: 6345, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-05T01:56:13.034 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 705, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.HK5CZ3, EstimatedImpact: 0% 2026-05-05T01:56:13.034 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdb_2.MAI, EstimatedImpact: 0% 2026-05-05T01:56:13.034 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8389490-1aef-484a-be0d-043e75dc4a0f.tmp, EstimatedImpact: 0% 2026-05-05T01:56:13.034 ProcessImageName: updater.exe, Pid: 3328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6220636b-3b79-4811-b7e3-59c00263bf5a.tmp, EstimatedImpact: 0% 2026-05-05T02:01:53.830 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:4A04F45F-56E7-4937-A596-F9115A003190, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-05T02:01:53.830 Scheduled scan with Id 4A04F45F-56E7-4937-A596-F9115A003190 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-05T02:01:53.830 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-05T02:01:53.830 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-05T02:01:53.830 [SFC] System file cache build is not needed (already completed) 2026-05-05T02:02:03.093 Engine:Triggered AR EMS scan 2026-05-05T02:02:03.093 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.125 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.140 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.156 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.187 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.218 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.234 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.250 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.281 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.297 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.312 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.343 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.359 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.383 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.398 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.430 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.445 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.508 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.523 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.539 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.570 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.617 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-05T02:02:03.648 Bm signature throttled:0x00002db31bed458f 2026-05-05T02:02:16.695 QuickScan:ScanID:4A04F45F-56E7-4937-A596-F9115A003190: Quick scan finished with error 0 2026-05-05T02:02:16.711 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-05T02:02:17.214 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-05T02:02:17.214 [RTP] Duplicating the current plugin configuration object... 2026-05-05T02:02:17.214 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-05T02:02:17.214 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-05T02:02:17.214 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-05T02:02:17.214 [RTP] No config change detected. Not updating plugin configuration. 2026-05-05T02:02:17.214 [RTP] No config changes found. No configuration switch. 2026-05-05T02:02:17.214 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-05T02:08:14.270 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T02:10:26.774 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1797211, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T02:10:26.789 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1797213, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T02:10:36.783 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1797227, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T02:10:36.799 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1797230, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T02:23:19.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T02:38:24.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T02:53:29.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T03:08:34.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T03:10:25.455 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1800542, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T03:10:25.471 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1800544, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T03:10:35.458 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1800556, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T03:10:35.458 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1800558, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T03:10:35.473 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1800560, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T03:10:35.473 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1800562, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T03:23:39.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T03:38:44.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T03:53:49.268 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T03:56:13.036 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 46722, Count: 6397, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-05T03:56:13.036 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1365, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.HK5CZ3, EstimatedImpact: 0% 2026-05-05T03:56:13.036 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdb_2.MAI, EstimatedImpact: 0% 2026-05-05T03:56:13.036 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8389490-1aef-484a-be0d-043e75dc4a0f.tmp, EstimatedImpact: 0% 2026-05-05T03:56:13.036 ProcessImageName: updater.exe, Pid: 6760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e62c370d-3460-4423-8dbb-c2f79ba90980.tmp, EstimatedImpact: 0% 2026-05-05T03:56:13.036 ProcessImageName: updater.exe, Pid: 6280, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\810a2724-c96d-4f2b-a21e-11c69bf7a1f8.tmp, EstimatedImpact: 0% 2026-05-05T03:56:13.036 ProcessImageName: updater.exe, Pid: 3328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6220636b-3b79-4811-b7e3-59c00263bf5a.tmp, EstimatedImpact: 0% 2026-05-05T04:08:54.262 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T04:10:27.111 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1803870, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:10:27.126 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1803872, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:10:37.122 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1803885, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:10:37.138 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1803887, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:10:37.278 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1803891, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:10:37.294 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1803893, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:23:59.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T04:35:05.709 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1805245, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:35:05.725 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1805247, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:35:09.420 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1805257, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:35:09.435 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1805260, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:35:09.435 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1805261, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:35:09.435 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1805263, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:35:19.436 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1805276, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:35:19.451 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1805278, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:35:19.451 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1805281, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T04:39:04.266 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T04:54:09.256 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T05:09:14.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T05:10:27.038 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1807222, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T05:10:27.053 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1807224, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T05:10:37.043 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1807236, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T05:10:37.058 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1807239, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T05:24:19.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T05:39:24.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T05:54:29.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T05:56:13.047 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 46767, Count: 6403, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-05T05:56:13.047 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2235, Count: 19413, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.HK5CZ3, EstimatedImpact: 0% 2026-05-05T05:56:13.047 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-05T05:56:13.047 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdb_2.MAI, EstimatedImpact: 0% 2026-05-05T05:56:13.047 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86bf966e-f983-4203-b3af-db0d22cb0878.tmp, EstimatedImpact: 0% 2026-05-05T05:56:13.047 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8389490-1aef-484a-be0d-043e75dc4a0f.tmp, EstimatedImpact: 0% 2026-05-05T05:56:13.047 ProcessImageName: updater.exe, Pid: 6760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e62c370d-3460-4423-8dbb-c2f79ba90980.tmp, EstimatedImpact: 0% 2026-05-05T05:56:13.047 ProcessImageName: updater.exe, Pid: 6280, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\810a2724-c96d-4f2b-a21e-11c69bf7a1f8.tmp, EstimatedImpact: 0% 2026-05-05T05:56:13.047 ProcessImageName: updater.exe, Pid: 3328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6220636b-3b79-4811-b7e3-59c00263bf5a.tmp, EstimatedImpact: 0% 2026-05-05T05:56:13.047 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3498386f-b411-4746-9507-c5ea1c6020a1.tmp, EstimatedImpact: 0% 2026-05-05T05:56:13.047 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-05T06:09:34.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T06:10:26.283 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1810732, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T06:10:26.298 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1810734, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T06:10:36.299 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1810747, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T06:10:36.299 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1810748, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T06:10:36.315 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1810749, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T06:24:39.262 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T06:39:44.253 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T06:54:49.253 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T07:09:54.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T07:10:25.375 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1814039, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T07:10:25.390 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1814041, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T07:10:35.399 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1814053, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T07:10:35.399 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1814056, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T07:24:59.268 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T07:40:04.265 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T07:55:09.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T07:56:13.053 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47434, Count: 6452, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-05T07:56:13.053 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3075, Count: 25884, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.HK5CZ3, EstimatedImpact: 0% 2026-05-05T07:56:13.053 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-05T07:56:13.053 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdb_2.MAI, EstimatedImpact: 0% 2026-05-05T07:56:13.053 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86bf966e-f983-4203-b3af-db0d22cb0878.tmp, EstimatedImpact: 0% 2026-05-05T07:56:13.053 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8389490-1aef-484a-be0d-043e75dc4a0f.tmp, EstimatedImpact: 0% 2026-05-05T07:56:13.053 ProcessImageName: updater.exe, Pid: 6280, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\810a2724-c96d-4f2b-a21e-11c69bf7a1f8.tmp, EstimatedImpact: 0% 2026-05-05T07:56:13.053 ProcessImageName: updater.exe, Pid: 6760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e62c370d-3460-4423-8dbb-c2f79ba90980.tmp, EstimatedImpact: 0% 2026-05-05T07:56:13.053 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\098cb612-05e0-4e76-bff0-ad3f9e2cb34b.tmp, EstimatedImpact: 0% 2026-05-05T07:56:13.053 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d33f9d5-b540-49f7-bb7d-5c92dfac4971.tmp, EstimatedImpact: 0% 2026-05-05T07:56:13.053 ProcessImageName: updater.exe, Pid: 3328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6220636b-3b79-4811-b7e3-59c00263bf5a.tmp, EstimatedImpact: 0% 2026-05-05T07:56:13.053 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3498386f-b411-4746-9507-c5ea1c6020a1.tmp, EstimatedImpact: 0% 2026-05-05T07:56:13.053 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-05T08:10:14.256 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T08:10:24.874 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1817379, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T08:10:24.874 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1817381, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T08:10:34.882 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1817394, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T08:10:34.898 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1817397, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T08:25:19.256 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T08:40:24.266 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T08:51:42.815 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fe9_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1819675, FileId: 0x15a60000000541c3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T08:51:43.377 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fe9_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1819679, FileId: 0x15a70000000541c3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T08:55:29.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T09:10:25.154 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1820725, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:10:25.169 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1820727, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:10:34.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T09:10:35.160 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1820740, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:10:35.160 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1820742, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:10:35.332 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1820746, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:10:35.347 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1820748, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:25:39.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T09:35:09.538 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1822100, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:35:09.554 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1822103, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:35:14.105 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1822112, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:35:14.120 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1822115, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:35:14.120 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1822116, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:35:14.120 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1822118, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:35:24.124 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1822131, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:35:24.124 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1822134, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:35:24.124 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1822135, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:35:24.139 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1822137, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T09:40:44.265 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T09:55:49.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T09:56:13.052 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48080, Count: 6479, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3945, Count: 32355, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.HK5CZ3, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdb_2.MAI, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: updater.exe, Pid: 828, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e2a0267-73b5-43f9-af00-bc3a66e94269.tmp, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86bf966e-f983-4203-b3af-db0d22cb0878.tmp, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8389490-1aef-484a-be0d-043e75dc4a0f.tmp, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: updater.exe, Pid: 6280, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\810a2724-c96d-4f2b-a21e-11c69bf7a1f8.tmp, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d98cba60-c052-441a-9e46-66be0bd8847c.tmp, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: updater.exe, Pid: 6760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e62c370d-3460-4423-8dbb-c2f79ba90980.tmp, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: updater.exe, Pid: 3328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6220636b-3b79-4811-b7e3-59c00263bf5a.tmp, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\098cb612-05e0-4e76-bff0-ad3f9e2cb34b.tmp, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d33f9d5-b540-49f7-bb7d-5c92dfac4971.tmp, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: updater.exe, Pid: 3060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60d3c0d0-144c-47eb-8144-79e0da59ad6f.tmp, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3498386f-b411-4746-9507-c5ea1c6020a1.tmp, EstimatedImpact: 0% 2026-05-05T09:56:13.052 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-05T10:10:26.503 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1824070, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T10:10:26.519 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1824072, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T10:10:36.510 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1824085, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T10:10:36.510 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1824086, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T10:10:36.510 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1824087, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T10:10:54.260 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T10:25:59.252 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T10:41:04.253 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T10:56:09.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T11:10:26.569 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1827386, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T11:10:26.584 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1827388, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T11:10:36.596 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1827401, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T11:10:36.611 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1827403, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T11:11:14.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T11:26:19.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T11:41:24.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T11:56:13.066 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48095, Count: 6480, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4800, Count: 38826, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.HK5CZ3, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdb_2.MAI, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: updater.exe, Pid: 828, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e2a0267-73b5-43f9-af00-bc3a66e94269.tmp, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86bf966e-f983-4203-b3af-db0d22cb0878.tmp, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8389490-1aef-484a-be0d-043e75dc4a0f.tmp, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c95b3e30-2e1a-4acd-9047-0ce3d7149a61.tmp, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d33f9d5-b540-49f7-bb7d-5c92dfac4971.tmp, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d98cba60-c052-441a-9e46-66be0bd8847c.tmp, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: updater.exe, Pid: 6280, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\810a2724-c96d-4f2b-a21e-11c69bf7a1f8.tmp, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: updater.exe, Pid: 6760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e62c370d-3460-4423-8dbb-c2f79ba90980.tmp, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: updater.exe, Pid: 3328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6220636b-3b79-4811-b7e3-59c00263bf5a.tmp, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: updater.exe, Pid: 7388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3dff48f-8a7c-4fd6-acac-cdce5f82e3f4.tmp, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\098cb612-05e0-4e76-bff0-ad3f9e2cb34b.tmp, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: updater.exe, Pid: 3060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60d3c0d0-144c-47eb-8144-79e0da59ad6f.tmp, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3498386f-b411-4746-9507-c5ea1c6020a1.tmp, EstimatedImpact: 0% 2026-05-05T11:56:13.066 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-05T11:56:29.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T12:10:27.970 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1830695, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T12:10:27.986 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1830697, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T12:10:37.975 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1830710, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T12:10:37.990 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1830714, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T12:11:34.267 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T12:26:39.265 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T12:41:44.260 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T12:56:49.256 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T13:10:26.020 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1834014, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T13:10:26.036 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1834016, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T13:10:36.035 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1834029, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T13:10:36.035 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1834032, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T13:11:54.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T13:26:59.260 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T13:42:04.265 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T13:42:24.979 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829ffb_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1835777, FileId: 0x3ca0000000550d6, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T13:56:13.071 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50044, Count: 6594, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5580, Count: 45297, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.HK5CZ3, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 19, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdb_2.MAI, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 828, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e2a0267-73b5-43f9-af00-bc3a66e94269.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86bf966e-f983-4203-b3af-db0d22cb0878.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8389490-1aef-484a-be0d-043e75dc4a0f.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c95b3e30-2e1a-4acd-9047-0ce3d7149a61.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ec20a8b4-3c54-45e7-a37e-5422467a5d0f.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d33f9d5-b540-49f7-bb7d-5c92dfac4971.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d98cba60-c052-441a-9e46-66be0bd8847c.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\accd1a44-8549-42ec-b0b2-622a8dc11db5.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 6280, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\810a2724-c96d-4f2b-a21e-11c69bf7a1f8.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 6760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e62c370d-3460-4423-8dbb-c2f79ba90980.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 7388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3dff48f-8a7c-4fd6-acac-cdce5f82e3f4.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\098cb612-05e0-4e76-bff0-ad3f9e2cb34b.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 3328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6220636b-3b79-4811-b7e3-59c00263bf5a.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 3060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60d3c0d0-144c-47eb-8144-79e0da59ad6f.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3498386f-b411-4746-9507-c5ea1c6020a1.tmp, EstimatedImpact: 0% 2026-05-05T13:56:13.071 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-05T13:57:09.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T14:10:27.944 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1837368, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T14:10:27.960 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1837370, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T14:10:37.952 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1837383, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T14:10:37.968 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1837385, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T14:10:38.186 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1837389, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T14:10:38.186 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1837391, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T14:12:14.260 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T14:27:19.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T14:35:14.217 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1838743, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T14:42:24.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T14:57:29.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T15:10:35.612 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1840724, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T15:12:34.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T15:27:39.257 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T15:42:44.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T15:56:13.080 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50164, Count: 6609, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6420, Count: 51768, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.HK5CZ3, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 19, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdb_2.MAI, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bed7d0e4-8cf8-4ea6-9223-81a4e2fca021.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 828, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e2a0267-73b5-43f9-af00-bc3a66e94269.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 3060, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f95e3538-b9e8-4ab9-954b-f9adbf66259d.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86bf966e-f983-4203-b3af-db0d22cb0878.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8389490-1aef-484a-be0d-043e75dc4a0f.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\098cb612-05e0-4e76-bff0-ad3f9e2cb34b.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c95b3e30-2e1a-4acd-9047-0ce3d7149a61.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ec20a8b4-3c54-45e7-a37e-5422467a5d0f.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d33f9d5-b540-49f7-bb7d-5c92dfac4971.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d98cba60-c052-441a-9e46-66be0bd8847c.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\accd1a44-8549-42ec-b0b2-622a8dc11db5.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 6280, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\810a2724-c96d-4f2b-a21e-11c69bf7a1f8.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 7388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3dff48f-8a7c-4fd6-acac-cdce5f82e3f4.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 6760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e62c370d-3460-4423-8dbb-c2f79ba90980.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 7140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9a266fb9-4e7b-4961-8412-ec5b707bd027.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 3328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6220636b-3b79-4811-b7e3-59c00263bf5a.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 3060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60d3c0d0-144c-47eb-8144-79e0da59ad6f.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3498386f-b411-4746-9507-c5ea1c6020a1.tmp, EstimatedImpact: 0% 2026-05-05T15:56:13.080 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-05T15:57:49.253 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T16:12:54.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T16:27:59.256 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T16:43:04.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T16:58:09.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T17:10:37.059 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1847359, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T17:13:14.266 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T17:28:19.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T17:43:24.256 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T17:56:13.091 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50164, Count: 6610, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7185, Count: 58239, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.HK5CZ3, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 23, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdb_2.MAI, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 828, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e2a0267-73b5-43f9-af00-bc3a66e94269.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bed7d0e4-8cf8-4ea6-9223-81a4e2fca021.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 3060, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f95e3538-b9e8-4ab9-954b-f9adbf66259d.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86bf966e-f983-4203-b3af-db0d22cb0878.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8389490-1aef-484a-be0d-043e75dc4a0f.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\098cb612-05e0-4e76-bff0-ad3f9e2cb34b.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\accd1a44-8549-42ec-b0b2-622a8dc11db5.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 6280, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\810a2724-c96d-4f2b-a21e-11c69bf7a1f8.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ec20a8b4-3c54-45e7-a37e-5422467a5d0f.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8a4326d9-304d-4445-935e-6f8ad2504860.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 3328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6220636b-3b79-4811-b7e3-59c00263bf5a.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d98cba60-c052-441a-9e46-66be0bd8847c.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 3060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60d3c0d0-144c-47eb-8144-79e0da59ad6f.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3498386f-b411-4746-9507-c5ea1c6020a1.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c95b3e30-2e1a-4acd-9047-0ce3d7149a61.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\73da0fc3-83a0-467d-a57e-6178f9d533e6.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 7388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3dff48f-8a7c-4fd6-acac-cdce5f82e3f4.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 6760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e62c370d-3460-4423-8dbb-c2f79ba90980.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d33f9d5-b540-49f7-bb7d-5c92dfac4971.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 7140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9a266fb9-4e7b-4961-8412-ec5b707bd027.tmp, EstimatedImpact: 0% 2026-05-05T17:56:13.091 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-05T17:58:29.265 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T18:13:34.253 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T18:28:39.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T18:43:44.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T18:58:49.260 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T19:10:36.297 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1853999, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T19:13:54.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T19:28:59.252 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T19:35:32.348 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1855409, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T19:44:04.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T19:56:13.102 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50377, Count: 6624, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7890, Count: 64710, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.HK5CZ3, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 27, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdb_2.MAI, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bed7d0e4-8cf8-4ea6-9223-81a4e2fca021.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 828, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e2a0267-73b5-43f9-af00-bc3a66e94269.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 3020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\00bef48a-f157-4c4e-9bf8-ca783e07bb78.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 3060, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f95e3538-b9e8-4ab9-954b-f9adbf66259d.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86bf966e-f983-4203-b3af-db0d22cb0878.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8389490-1aef-484a-be0d-043e75dc4a0f.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\098cb612-05e0-4e76-bff0-ad3f9e2cb34b.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\accd1a44-8549-42ec-b0b2-622a8dc11db5.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 6280, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\810a2724-c96d-4f2b-a21e-11c69bf7a1f8.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ec20a8b4-3c54-45e7-a37e-5422467a5d0f.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8a4326d9-304d-4445-935e-6f8ad2504860.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c95b3e30-2e1a-4acd-9047-0ce3d7149a61.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 7964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24f5629b-face-48c8-a2eb-ebce05839ab6.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d98cba60-c052-441a-9e46-66be0bd8847c.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37f008e1-35bf-4b39-8261-a40cc9c36f30.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 3328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6220636b-3b79-4811-b7e3-59c00263bf5a.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 3060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60d3c0d0-144c-47eb-8144-79e0da59ad6f.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\73da0fc3-83a0-467d-a57e-6178f9d533e6.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 7388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3dff48f-8a7c-4fd6-acac-cdce5f82e3f4.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3498386f-b411-4746-9507-c5ea1c6020a1.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 6760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e62c370d-3460-4423-8dbb-c2f79ba90980.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 7140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9a266fb9-4e7b-4961-8412-ec5b707bd027.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d33f9d5-b540-49f7-bb7d-5c92dfac4971.tmp, EstimatedImpact: 0% 2026-05-05T19:56:13.102 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-05T19:59:09.262 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T20:14:14.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T20:29:19.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpFC_MemScanPassLocalExceptionsToEngine new=0 old1 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-05T20:36:08.248 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-05T20:36:08.248 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-05T20:36:08.248 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-05T20:36:08.248 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-05T20:36:08.248 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-05T20:36:08.248 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-05T20:36:08.248 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-05T20:36:08.248 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-05T20:36:08.248 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-05T20:36:08.248 MdCoreSvc is supported in this platform and OS 2026-05-05T20:36:08.762 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-05T20:36:08.762 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-05T20:36:08.762 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-05T20:44:24.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T20:59:29.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T21:14:34.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T21:29:39.260 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T21:44:44.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T21:56:13.116 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50377, Count: 6624, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8730, Count: 71190, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.HK5CZ3, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 27, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdb_2.MAI, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 828, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e2a0267-73b5-43f9-af00-bc3a66e94269.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 3020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\00bef48a-f157-4c4e-9bf8-ca783e07bb78.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bed7d0e4-8cf8-4ea6-9223-81a4e2fca021.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 3060, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f95e3538-b9e8-4ab9-954b-f9adbf66259d.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86bf966e-f983-4203-b3af-db0d22cb0878.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8389490-1aef-484a-be0d-043e75dc4a0f.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 3328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6220636b-3b79-4811-b7e3-59c00263bf5a.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f89b612d-f3ad-44b9-935e-39909531eb40.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\098cb612-05e0-4e76-bff0-ad3f9e2cb34b.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 7388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3dff48f-8a7c-4fd6-acac-cdce5f82e3f4.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 6280, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\810a2724-c96d-4f2b-a21e-11c69bf7a1f8.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37f008e1-35bf-4b39-8261-a40cc9c36f30.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c95b3e30-2e1a-4acd-9047-0ce3d7149a61.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 7140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9a266fb9-4e7b-4961-8412-ec5b707bd027.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ec20a8b4-3c54-45e7-a37e-5422467a5d0f.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8a4326d9-304d-4445-935e-6f8ad2504860.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 3060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60d3c0d0-144c-47eb-8144-79e0da59ad6f.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d33f9d5-b540-49f7-bb7d-5c92dfac4971.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3498386f-b411-4746-9507-c5ea1c6020a1.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 7964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24f5629b-face-48c8-a2eb-ebce05839ab6.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d98cba60-c052-441a-9e46-66be0bd8847c.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 6760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e62c370d-3460-4423-8dbb-c2f79ba90980.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\accd1a44-8549-42ec-b0b2-622a8dc11db5.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\73da0fc3-83a0-467d-a57e-6178f9d533e6.tmp, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-05T21:56:13.116 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-05T21:59:49.259 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T22:10:25.377 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1863962, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-05T22:14:54.264 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T22:29:59.260 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T22:45:04.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T23:00:09.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T23:15:14.253 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T23:30:19.257 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T23:45:24.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-05T23:55:24.263 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-05T23:55:24.294 Job Notification: New process added to job (7832) 2026-05-05T23:55:24.294 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-05T23:55:24.294 Job Notification: New process added to job (7360) 2026-05-05T23:55:24.294 Aggressive catchup quick scan threshold: 788104704698 / 25920000000000 2026-05-05T23:55:24.294 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:7832] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7360]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-05T23:55:24.357 Job Notification: New process added to job (4212) 2026-05-05T23:55:24.357 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-05T23:55:24.357 Job Notification: New process added to job (3044) 2026-05-05T23:55:24.372 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:4212] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3044]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-05T23:55:24.794 Job Notification: New process added to job (7332) 2026-05-05T23:55:24.826 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-05T23:55:24.841 [RTP] Duplicating the current plugin configuration object... 2026-05-05T23:55:24.841 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-05T23:55:24.841 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-05T23:55:24.841 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-05T23:55:24.841 [RTP] No config change detected. Not updating plugin configuration. 2026-05-05T23:55:24.841 [RTP] No config changes found. No configuration switch. 2026-05-05T23:55:24.841 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-05T23:55:24.904 Task(GetDeviceTicket -AccessKey AB477A3E-7733-47B4-1BFC-C3E7DD9C4F77 ) launched as network service 2026-05-05T23:55:25.357 Job Notification: Process exited from job (7332) 2026-05-05T23:55:26.422 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-05T23:55:26.422 [Cloud] Start of cloud request. Passive mode: 0 2026-05-05T23:55:26.422 [Cloud] Queued cloud request. 2026-05-05T23:55:26.422 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-05T23:55:26.422 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-05T23:55:26.422 [Cloud] Start of cloud request. Passive mode: 0 2026-05-05T23:55:26.422 [Cloud] Queued cloud request. 2026-05-05T23:55:26.438 Job Notification: New process added to job (6288) 2026-05-05T23:55:26.438 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 6DC1292D-CAB7-346D-EC38-A1E4F6683A27) launched 2026-05-05T23:55:26.453 Job Notification: New process added to job (6476) 2026-05-05T23:55:26.453 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6288] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6476]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-05T23:55:26.469 Job Notification: New process added to job (6192) 2026-05-05T23:55:26.469 Job Notification: Process exited from job (6288) 2026-05-05T23:55:26.469 Job Notification: Process exited from job (6476) 2026-05-05T23:55:26.485 [Cloud] Dequeued cloud request. 2026-05-05T23:55:26.485 [Cloud] Dequeued cloud request. 2026-05-05T23:55:26.485 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-05T23:55:26.485 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-05T23:55:26.703 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-05T23:55:26.719 [Cloud] End of cloud request. 2026-05-05T23:55:26.719 [Cloud] End of cloud request. 2026-05-05T23:55:26.922 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-05T23:56:13.121 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50377, Count: 6624, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9375, Count: 77661, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.HK5CZ3, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 180, Count: 30, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdb_2.MAI, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 828, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e2a0267-73b5-43f9-af00-bc3a66e94269.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 3020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\00bef48a-f157-4c4e-9bf8-ca783e07bb78.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bed7d0e4-8cf8-4ea6-9223-81a4e2fca021.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 3060, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f95e3538-b9e8-4ab9-954b-f9adbf66259d.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86bf966e-f983-4203-b3af-db0d22cb0878.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8389490-1aef-484a-be0d-043e75dc4a0f.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d33f9d5-b540-49f7-bb7d-5c92dfac4971.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 6760, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e62c370d-3460-4423-8dbb-c2f79ba90980.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\098cb612-05e0-4e76-bff0-ad3f9e2cb34b.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 7660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f89b612d-f3ad-44b9-935e-39909531eb40.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 7388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3dff48f-8a7c-4fd6-acac-cdce5f82e3f4.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 5264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37f008e1-35bf-4b39-8261-a40cc9c36f30.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 6312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\accd1a44-8549-42ec-b0b2-622a8dc11db5.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 3328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6220636b-3b79-4811-b7e3-59c00263bf5a.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 6280, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\810a2724-c96d-4f2b-a21e-11c69bf7a1f8.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 8040, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ec20a8b4-3c54-45e7-a37e-5422467a5d0f.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 3060, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60d3c0d0-144c-47eb-8144-79e0da59ad6f.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8a4326d9-304d-4445-935e-6f8ad2504860.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 3008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f7b625e9-0f2a-4438-a430-c3780fa32efe.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 2948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b3eb991-2489-4435-a19f-f79d6b00551b.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3498386f-b411-4746-9507-c5ea1c6020a1.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 7964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24f5629b-face-48c8-a2eb-ebce05839ab6.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 7948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d98cba60-c052-441a-9e46-66be0bd8847c.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 6516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c95b3e30-2e1a-4acd-9047-0ce3d7149a61.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 7140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9a266fb9-4e7b-4961-8412-ec5b707bd027.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\73da0fc3-83a0-467d-a57e-6178f9d533e6.tmp, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-05T23:56:13.121 ProcessImageName: updater.exe, Pid: 6268, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-05T23:56:17.999 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\35D6920E-6D4B-45C2-ADD6-CA2AF8FAD63Bd80.1dcdceac2b7f940 2026-05-05T23:56:18.045 Verifying engine and signature files (source: 0) ... 2026-05-05T23:56:18.045 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2F83A1A7-C170-4B1B-985F-939C18B89025}\mpengine.dll] due to PPL. 2026-05-05T23:56:18.045 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2F83A1A7-C170-4B1B-985F-939C18B89025}\mpasbase.vdm] (file in cache) 2026-05-05T23:56:18.045 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2F83A1A7-C170-4B1B-985F-939C18B89025}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-05T23:56:18.061 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2F83A1A7-C170-4B1B-985F-939C18B89025}\mpasdlta.vdm] 2026-05-05T23:56:18.061 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2F83A1A7-C170-4B1B-985F-939C18B89025}\mpavbase.vdm] (file in cache) 2026-05-05T23:56:18.061 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2F83A1A7-C170-4B1B-985F-939C18B89025}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-05T23:56:18.077 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2F83A1A7-C170-4B1B-985F-939C18B89025}\mpavdlta.vdm] 2026-05-05T23:56:18.280 [Engine] IsHybridMode: 0 2026-05-05T23:56:18.280 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-05T23:56:18.342 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-48079BF1FAD4990F019A6156D2463D2FC999DE8A.bin): 0x00000002 2026-05-05T23:56:18.342 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-48079BF1FAD4990F019A6156D2463D2FC999DE8A.bin) 2026-05-05T23:56:18.342 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-05T23:56:18.342 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-05T23:56:18.342 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-05T23:56:18.342 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-05T23:56:27.065 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-05T23:56:27.065 [AutoExclusion] Applied roles from cache. 2026-05-05T23:56:27.065 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpFC_MemScanPassLocalExceptionsToEngine new=0 old1 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-05T23:56:27.081 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0EA68020, lRefCount: 5, hr=0 2026-05-05T23:56:27.081 [Engine] New active engine 00007FFD0D908020 replacing engine 00007FFD0EA68020. Number of active engines: 2 2026-05-05T23:56:27.081 EngineInit:Global ASOC is enabled 2026-05-05T23:56:27.081 EngineInit:ASOO is enabled for developer volumes 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-05T23:56:27.097 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-05T23:56:27.112 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-05T23:56:27.112 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-05T23:56:27.112 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-05T23:56:27.112 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-05T23:56:27.112 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-05T23:56:27.128 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-05T23:56:27.128 [Plugin] Initializing RTP plugin state... 2026-05-05T23:56:27.128 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-05T23:56:27.128 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎05‎-‎2026 01:56:13 Last Perf:‎05‎-‎05‎-‎2026 01:56:13 First RTP Scan:‎05‎-‎05‎-‎2026 01:56:23 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:390 Misses:2056 BM Queue:0,42,0 Proc:0,42,0 File:0,27,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1869882 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:2039909458 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2782 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:145542 TotalHits:680079 InstanceCacheInserts:965578 InstanceCacheUpdates:0 InstanceCacheDeletes:172359 InstanceCacheHits:2990 InstanceCacheMisses:1036783 InstanceCacheOverflows:782037 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (379/267) Success: 267, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-05T23:56:27.128 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2F83A1A7-C170-4B1B-985F-939C18B89025} 2026-05-05T23:56:27.128 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-05T23:56:27.128 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{09325F02-9483-4E11-A290-5F557383123E} removed 2026-05-05T23:56:27.128 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E3873735-C42A-46AC-9E5E-8DC975862437}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E3873735-C42A-46AC-9E5E-8DC975862437}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-05T23:56:27.128 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-05T23:56:27.128 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-05T23:56:27.128 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-05T23:56:27.128 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-05T23:56:27.128 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-05-2026 23:56:27 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-05-2026 23:56:27 2026-05-05T23:56:27.128 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-05T23:56:27.128 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-05T23:56:27.128 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-05T23:56:27.128 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-05T23:56:27.128 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-05T23:56:27.128 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-05T23:56:27.128 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-05T23:56:27.128 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-05T23:56:27.128 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-05T23:56:27.128 MdCoreSvc is supported in this platform and OS Signature updated on 05-05-2026 23:56:27 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.466.0 AV Signature Version: 1.449.466.0 ************************************************************ 2026-05-05T23:56:27.128 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-05T23:56:27.128 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\35D6920E-6D4B-45C2-ADD6-CA2AF8FAD63Bd80.1dcdceac2b7f940 2026-05-05T23:56:27.144 Process scan (postsignatureupdatescan) started. 2026-05-05T23:56:27.190 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-05T23:56:27.190 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-05T23:56:27.394 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-05T23:56:27.394 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-05T23:56:27.394 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-05T23:56:27.394 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-05T23:56:27.394 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). Signature updated via MicrosoftUpdateServer on 05-05-2026 23:56:27 ************************************************************ 2026-05-05T23:56:27.394 [Engine] Engine 00007FFD0EA68020 no longer in use. Number of active engines: 1 2026-05-05T23:56:27.394 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-05T23:56:27.394 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-05T23:56:27.409 Job Notification: Process exited from job (4212) 2026-05-05T23:56:27.409 Job Notification: Process exited from job (7832) 2026-05-05T23:56:27.409 Job Notification: Process exited from job (7360) 2026-05-05T23:56:27.409 Job Notification: Process exited from job (3044) 2026-05-05T23:56:27.628 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-05T23:56:27.628 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-05T23:56:27.628 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-05T23:56:28.144 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50377, Count: 6624, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-05T23:56:28.144 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9375, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.HK5CZ3, EstimatedImpact: 0% 2026-05-05T23:56:28.144 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 180, Count: 30, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_829fdb_2.MAI, EstimatedImpact: 0% 2026-05-05T23:56:28.144 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-05T23:56:28.144 ProcessImageName: updater.exe, Pid: 828, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e2a0267-73b5-43f9-af00-bc3a66e94269.tmp, EstimatedImpact: 0% 2026-05-05T23:56:28.144 ProcessImageName: updater.exe, Pid: 3020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\00bef48a-f157-4c4e-9bf8-ca783e07bb78.tmp, EstimatedImpact: 0% 2026-05-05T23:56:28.144 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bed7d0e4-8cf8-4ea6-9223-81a4e2fca021.tmp, EstimatedImpact: 0% 2026-05-05T23:56:28.144 ProcessImageName: updater.exe, Pid: 3060, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f95e3538-b9e8-4ab9-954b-f9adbf66259d.tmp, EstimatedImpact: 0% 2026-05-05T23:56:28.144 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\86bf966e-f983-4203-b3af-db0d22cb0878.tmp, EstimatedImpact: 0% 2026-05-05T23:56:28.144 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-05T23:56:28.144 ProcessImageName: updater.exe, Pid: 7560, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8389490-1aef-484a-be0d-043e75dc4a0f.tmp, EstimatedImpact: 0% 2026-05-05T23:56:28.144 ProcessImageName: updater.exe, Pid: 6460, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d33f9d5-b540-49f7-bb7d-5c92dfac4971.tmp, EstimatedImpact: 0% 2026-05-05T23:56:28.144 ProcessImageName: updater.exe, Pid: 7092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\098cb612-05e0-4e76-bff0-ad3f9e2cb34b.tmp, EstimatedImpact: 0% 2026-05-05T23:56:28.190 [Engine] RSIG_UNLOADENGINE, 00007FFD0EA68020, err=0x0 2026-05-05T23:56:28.222 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E3873735-C42A-46AC-9E5E-8DC975862437} removed 2026-05-05T23:56:32.597 Process scan (postsignatureupdatescan) completed. 2026-05-06T00:00:29.262 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T00:01:27.107 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-06T00:10:27.535 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1870735, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:10:27.550 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1870737, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:10:37.546 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1870750, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:10:37.546 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1870752, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:10:37.749 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1870756, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:10:37.765 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1870758, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:15:34.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T00:30:39.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T00:35:22.452 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1872132, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:35:22.452 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1872135, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:35:28.490 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1872153, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:35:28.506 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1872156, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:35:28.506 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1872157, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:35:28.506 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1872159, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:35:38.504 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1872172, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:35:38.519 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1872174, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:35:38.519 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1872176, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T00:45:44.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T01:00:49.250 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T01:10:25.548 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1874099, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T01:10:25.563 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1874101, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T01:10:35.551 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1874114, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T01:10:35.551 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1874116, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T01:10:35.566 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1874118, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T01:10:35.566 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1874120, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T01:15:54.260 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T01:30:59.253 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T01:46:04.259 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T01:56:27.093 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 675, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.WYP7Y3, EstimatedImpact: 0% 2026-05-06T01:56:27.093 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 437, Count: 53, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-05-06T01:56:27.093 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-06T01:56:27.093 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39c75cdf-50a0-4071-bc3c-1356075d90e6.tmp, EstimatedImpact: 0% 2026-05-06T01:56:27.093 ProcessImageName: updater.exe, Pid: 4204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a5b3ca2-52ea-46e6-9b0b-d7ffe6f76839.tmp, EstimatedImpact: 0% 2026-05-06T02:01:09.263 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T02:01:53.844 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:1805E675-25D2-4554-A0FA-699B8E2226CD, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-06T02:01:53.844 Scheduled scan with Id 1805E675-25D2-4554-A0FA-699B8E2226CD configured CPU priority: normal (LowCpuPriority: 0) 2026-05-06T02:01:53.844 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-06T02:01:53.844 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-06T02:01:53.844 [SFC] System file cache build is not needed (already completed) 2026-05-06T02:02:03.053 Engine:Triggered AR EMS scan 2026-05-06T02:02:03.053 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.068 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.100 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.115 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.146 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.162 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.178 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.225 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.240 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.256 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.287 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.303 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.318 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.350 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.365 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.381 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.412 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.475 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.490 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.521 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.537 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.584 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-06T02:02:03.631 Bm signature throttled:0x00002db31bed458f 2026-05-06T02:02:16.568 QuickScan:ScanID:1805E675-25D2-4554-A0FA-699B8E2226CD: Quick scan finished with error 0 2026-05-06T02:02:16.584 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-06T02:02:17.089 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-06T02:02:17.089 [RTP] Duplicating the current plugin configuration object... 2026-05-06T02:02:17.089 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-06T02:02:17.089 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-06T02:02:17.089 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-06T02:02:17.089 [RTP] No config change detected. Not updating plugin configuration. 2026-05-06T02:02:17.089 [RTP] No config changes found. No configuration switch. 2026-05-06T02:02:17.089 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-06T02:10:26.840 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1877647, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T02:10:26.840 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1877649, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T02:10:36.853 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1877662, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T02:10:36.853 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1877663, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T02:10:36.869 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1877665, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T02:16:14.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T02:31:19.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T02:46:24.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T03:01:29.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T03:10:25.906 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1881023, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T03:10:25.921 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1881025, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T03:10:35.920 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1881038, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T03:10:35.935 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1881041, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T03:16:34.250 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T03:31:39.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T03:46:44.250 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T03:56:27.092 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1425, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.WYP7Y3, EstimatedImpact: 0% 2026-05-06T03:56:27.092 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 1005, Count: 75, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\js\jquery-1.7.1.min.js->(SCRIPT0000), EstimatedImpact: 0% 2026-05-06T03:56:27.092 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-06T03:56:27.092 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39c75cdf-50a0-4071-bc3c-1356075d90e6.tmp, EstimatedImpact: 0% 2026-05-06T03:56:27.092 ProcessImageName: updater.exe, Pid: 4204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a5b3ca2-52ea-46e6-9b0b-d7ffe6f76839.tmp, EstimatedImpact: 0% 2026-05-06T03:56:27.092 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33863cab-c584-4d15-985e-2fab7623a044.tmp, EstimatedImpact: 0% 2026-05-06T03:56:27.092 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-06T04:01:49.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T04:10:26.309 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1884348, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:10:26.325 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1884350, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:10:36.313 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1884362, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:10:36.313 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1884364, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:10:36.329 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1884366, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:10:36.329 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1884368, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:06.843 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1885870, FileId: 0x1a37000000053fad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:19.578 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886388, FileId: 0x24dc00000004c52f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:19.609 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886391, FileId: 0x24dd00000004c52f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:19.687 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886395, FileId: 0x24de00000004c52f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:19.718 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886398, FileId: 0x24df00000004c52f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:19.734 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886401, FileId: 0x24e000000004c52f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:19.765 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886404, FileId: 0x24e100000004c52f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:19.812 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886407, FileId: 0x24e200000004c52f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:19.843 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886410, FileId: 0x24e300000004c52f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:19.875 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886413, FileId: 0x24e400000004c52f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:19.937 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886419, FileId: 0x24e600000004c52f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:20.421 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886422, FileId: 0x24e700000004c52f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:20.816 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886425, FileId: 0x24e800000004c52f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.515 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886437, FileId: 0x8d00000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.546 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886440, FileId: 0x8d10000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.577 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886443, FileId: 0x8d20000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.655 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886446, FileId: 0x8d30000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.671 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886449, FileId: 0x8d40000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.702 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886452, FileId: 0x8d50000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.733 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886455, FileId: 0x8d60000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.765 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886458, FileId: 0x8d70000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.827 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886461, FileId: 0x8d80000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.858 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886464, FileId: 0x8d90000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.890 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886467, FileId: 0x8da0000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.905 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886470, FileId: 0x8db0000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.936 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886473, FileId: 0x8dc0000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.968 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886476, FileId: 0x8dd0000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:21.999 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886479, FileId: 0x8de0000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:22.405 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886492, FileId: 0x8df0000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:22.796 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1886501, FileId: 0x8e00000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T04:16:54.250 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T04:31:59.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T04:47:04.252 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T05:02:09.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T05:10:26.327 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1889539, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:10:26.343 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1889541, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:10:26.764 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1889547, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:10:26.764 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1889549, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:10:28.134 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1889572, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:10:28.134 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1889574, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:10:29.012 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1889579, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:10:29.012 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1889581, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:10:39.030 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1889596, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:10:39.030 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1889598, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:10:39.170 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1889602, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:10:39.186 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1889604, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:15:28.656 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1890068, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:15:28.656 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1890070, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:15:38.813 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1890086, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:15:38.813 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1890088, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:17:14.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T05:32:19.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T05:35:28.589 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1891194, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:35:28.605 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1891197, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:35:34.405 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1891206, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:35:34.421 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1891209, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:35:44.435 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1891226, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:35:44.435 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1891229, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:35:48.011 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1891246, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:35:48.026 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1891249, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:35:48.026 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1891251, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:35:48.026 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1891253, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:35:58.016 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1891267, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:35:58.016 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1891269, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:35:58.016 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1891270, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:47:24.259 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T05:55:34.346 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a076_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1892362, FileId: 0x34000000055130, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:55:34.962 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a076_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1892366, FileId: 0x35000000055130, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:56:27.095 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52471, Count: 6873, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-06T05:56:27.095 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2490, Count: 19413, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.WYP7Y3, EstimatedImpact: 0% 2026-05-06T05:56:27.095 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 308, Count: 11, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping5828_146131018\UpdaterSetup.exe, EstimatedImpact: 1% 2026-05-06T05:56:27.095 ProcessImageName: UpdaterSetup.exe, Pid: 6236, TotalTime: 140, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Google6236_1528849180\bin\updater.exe, EstimatedImpact: 63% 2026-05-06T05:56:27.095 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 77, Count: 3, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe, EstimatedImpact: 0% 2026-05-06T05:56:27.095 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 71, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1.MAI, EstimatedImpact: 0% 2026-05-06T05:56:27.095 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-06T05:56:27.095 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-06T05:56:27.095 ProcessImageName: updater.exe, Pid: 7136, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_url_fetcher_7136_556100023\qualification_win32.crx, EstimatedImpact: 0% 2026-05-06T05:56:27.095 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0fb60f9b-b592-4a7c-bebf-632afd435e1a.tmp, EstimatedImpact: 0% 2026-05-06T05:56:27.095 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 11% 2026-05-06T05:56:27.095 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39c75cdf-50a0-4071-bc3c-1356075d90e6.tmp, EstimatedImpact: 0% 2026-05-06T05:56:27.095 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20e6031c-c2f8-4c2f-afd4-fe5a04bb9942.tmp, EstimatedImpact: 0% 2026-05-06T05:56:27.095 ProcessImageName: updater.exe, Pid: 4592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f56d5f-489d-4144-b538-6814033f5953.tmp, EstimatedImpact: 0% 2026-05-06T05:56:27.095 ProcessImageName: updater.exe, Pid: 4204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a5b3ca2-52ea-46e6-9b0b-d7ffe6f76839.tmp, EstimatedImpact: 0% 2026-05-06T05:56:27.095 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33863cab-c584-4d15-985e-2fab7623a044.tmp, EstimatedImpact: 0% 2026-05-06T05:56:27.095 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\228b6962-d3c4-4eb7-bf49-b4556f930c9c.tmp, EstimatedImpact: 0% 2026-05-06T05:56:27.095 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-06T05:57:16.922 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a077_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1892465, FileId: 0xa130000000550b8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T05:57:17.453 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a077_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1892469, FileId: 0xa140000000550b8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T06:02:29.256 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T06:10:22.004 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1893210, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T06:17:34.262 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T06:32:39.259 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T06:47:44.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T07:02:49.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T07:15:40.632 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1896857, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T07:17:54.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T07:32:59.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T07:48:04.257 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T07:56:27.107 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53108, Count: 6923, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3225, Count: 25884, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.WYP7Y3, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 308, Count: 11, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping5828_146131018\UpdaterSetup.exe, EstimatedImpact: 1% 2026-05-06T07:56:27.107 ProcessImageName: UpdaterSetup.exe, Pid: 6236, TotalTime: 140, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Google6236_1528849180\bin\updater.exe, EstimatedImpact: 63% 2026-05-06T07:56:27.107 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 122, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 75, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1.MAI, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: updater.exe, Pid: 7136, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_url_fetcher_7136_556100023\qualification_win32.crx, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0fb60f9b-b592-4a7c-bebf-632afd435e1a.tmp, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 11% 2026-05-06T07:56:27.107 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9173ea9b-4578-4d34-9457-edff22c47c7a.tmp, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39c75cdf-50a0-4071-bc3c-1356075d90e6.tmp, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20e6031c-c2f8-4c2f-afd4-fe5a04bb9942.tmp, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: updater.exe, Pid: 4592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f56d5f-489d-4144-b538-6814033f5953.tmp, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: updater.exe, Pid: 4204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a5b3ca2-52ea-46e6-9b0b-d7ffe6f76839.tmp, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33863cab-c584-4d15-985e-2fab7623a044.tmp, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: updater.exe, Pid: 3492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c2ab5004-fbc3-4e03-9870-64b6f4b738ab.tmp, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\228b6962-d3c4-4eb7-bf49-b4556f930c9c.tmp, EstimatedImpact: 0% 2026-05-06T07:56:27.107 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-06T08:03:09.250 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T08:18:14.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T08:33:19.250 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T08:48:24.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T09:03:29.261 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T09:15:32.609 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1903491, FileId: 0xc70000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T09:18:34.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T09:33:39.250 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T09:48:44.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T09:56:27.117 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53154, Count: 6927, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4020, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.WYP7Y3, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 308, Count: 11, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping5828_146131018\UpdaterSetup.exe, EstimatedImpact: 1% 2026-05-06T09:56:27.117 ProcessImageName: UpdaterSetup.exe, Pid: 6236, TotalTime: 140, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Google6236_1528849180\bin\updater.exe, EstimatedImpact: 63% 2026-05-06T09:56:27.117 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 122, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 79, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1.MAI, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 7136, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_url_fetcher_7136_556100023\qualification_win32.crx, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0fb60f9b-b592-4a7c-bebf-632afd435e1a.tmp, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 11% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24545906-993b-4384-866b-c37ae5bb914d.tmp, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9173ea9b-4578-4d34-9457-edff22c47c7a.tmp, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39c75cdf-50a0-4071-bc3c-1356075d90e6.tmp, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20e6031c-c2f8-4c2f-afd4-fe5a04bb9942.tmp, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 4592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f56d5f-489d-4144-b538-6814033f5953.tmp, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 4204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a5b3ca2-52ea-46e6-9b0b-d7ffe6f76839.tmp, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33863cab-c584-4d15-985e-2fab7623a044.tmp, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 3492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c2ab5004-fbc3-4e03-9870-64b6f4b738ab.tmp, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\228b6962-d3c4-4eb7-bf49-b4556f930c9c.tmp, EstimatedImpact: 0% 2026-05-06T09:56:27.117 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-06T10:03:49.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T10:15:41.906 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1906833, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T10:18:54.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T10:33:59.259 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T10:49:04.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T11:04:09.256 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T11:15:33.299 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1910162, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T11:19:14.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T11:34:19.252 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T11:49:24.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T11:56:27.121 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53154, Count: 6927, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4785, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.WYP7Y3, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 308, Count: 11, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping5828_146131018\UpdaterSetup.exe, EstimatedImpact: 1% 2026-05-06T11:56:27.121 ProcessImageName: UpdaterSetup.exe, Pid: 6236, TotalTime: 140, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Google6236_1528849180\bin\updater.exe, EstimatedImpact: 63% 2026-05-06T11:56:27.121 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 122, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 79, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1.MAI, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 7136, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_url_fetcher_7136_556100023\qualification_win32.crx, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94d17f57-3d75-4d60-b53f-f90d66a55f0f.tmp, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0fb60f9b-b592-4a7c-bebf-632afd435e1a.tmp, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 11% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24545906-993b-4384-866b-c37ae5bb914d.tmp, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9173ea9b-4578-4d34-9457-edff22c47c7a.tmp, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a787fa8-79f3-47c7-9c0b-108e5edbbbd0.tmp, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33863cab-c584-4d15-985e-2fab7623a044.tmp, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39c75cdf-50a0-4071-bc3c-1356075d90e6.tmp, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c42c5794-e2c4-49fd-abf3-1c0857c5865c.tmp, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20e6031c-c2f8-4c2f-afd4-fe5a04bb9942.tmp, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 4592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f56d5f-489d-4144-b538-6814033f5953.tmp, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 4204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a5b3ca2-52ea-46e6-9b0b-d7ffe6f76839.tmp, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 3492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c2ab5004-fbc3-4e03-9870-64b6f4b738ab.tmp, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\228b6962-d3c4-4eb7-bf49-b4556f930c9c.tmp, EstimatedImpact: 0% 2026-05-06T11:56:27.121 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-06T12:04:29.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T12:19:34.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T12:34:39.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T12:49:44.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T12:51:15.785 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a093_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1915446, FileId: 0x33000000004c520, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T13:04:49.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T13:19:54.259 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T13:34:59.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T13:50:04.253 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T13:56:27.123 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53260, Count: 6941, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5550, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.WYP7Y3, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 308, Count: 11, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping5828_146131018\UpdaterSetup.exe, EstimatedImpact: 1% 2026-05-06T13:56:27.123 ProcessImageName: UpdaterSetup.exe, Pid: 6236, TotalTime: 140, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Google6236_1528849180\bin\updater.exe, EstimatedImpact: 63% 2026-05-06T13:56:27.123 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 83, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1.MAI, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 122, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 7136, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_url_fetcher_7136_556100023\qualification_win32.crx, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94d17f57-3d75-4d60-b53f-f90d66a55f0f.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0fb60f9b-b592-4a7c-bebf-632afd435e1a.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 11% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c42c5794-e2c4-49fd-abf3-1c0857c5865c.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24545906-993b-4384-866b-c37ae5bb914d.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9173ea9b-4578-4d34-9457-edff22c47c7a.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20e6031c-c2f8-4c2f-afd4-fe5a04bb9942.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 4592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f56d5f-489d-4144-b538-6814033f5953.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 4204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a5b3ca2-52ea-46e6-9b0b-d7ffe6f76839.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33863cab-c584-4d15-985e-2fab7623a044.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 2580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d111b10a-077a-42e2-a532-e7e59e7bf09a.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\228b6962-d3c4-4eb7-bf49-b4556f930c9c.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a787fa8-79f3-47c7-9c0b-108e5edbbbd0.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 6212, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67e56aba-1984-437a-8f31-d8a95ca62059.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 3492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c2ab5004-fbc3-4e03-9870-64b6f4b738ab.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39c75cdf-50a0-4071-bc3c-1356075d90e6.tmp, EstimatedImpact: 0% 2026-05-06T13:56:27.123 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-06T14:05:09.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T14:15:43.454 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1920147, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T14:20:14.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T14:35:19.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T14:50:24.252 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T15:05:29.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T15:20:34.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T15:35:39.247 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T15:35:56.550 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1924601, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T15:50:44.250 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T15:56:27.135 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53260, Count: 6942, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6420, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.WYP7Y3, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 308, Count: 11, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping5828_146131018\UpdaterSetup.exe, EstimatedImpact: 1% 2026-05-06T15:56:27.135 ProcessImageName: UpdaterSetup.exe, Pid: 6236, TotalTime: 140, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Google6236_1528849180\bin\updater.exe, EstimatedImpact: 63% 2026-05-06T15:56:27.135 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 87, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1.MAI, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 122, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 7136, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_url_fetcher_7136_556100023\qualification_win32.crx, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 7336, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20d12322-250d-4aff-8f9d-42ee2ad676f1.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94d17f57-3d75-4d60-b53f-f90d66a55f0f.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\095b7a46-57b4-4a63-b85d-b53c11f5f672.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0fb60f9b-b592-4a7c-bebf-632afd435e1a.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 11% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 6212, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67e56aba-1984-437a-8f31-d8a95ca62059.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24545906-993b-4384-866b-c37ae5bb914d.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\228b6962-d3c4-4eb7-bf49-b4556f930c9c.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9173ea9b-4578-4d34-9457-edff22c47c7a.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c42c5794-e2c4-49fd-abf3-1c0857c5865c.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20e6031c-c2f8-4c2f-afd4-fe5a04bb9942.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 4592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f56d5f-489d-4144-b538-6814033f5953.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 4204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a5b3ca2-52ea-46e6-9b0b-d7ffe6f76839.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39c75cdf-50a0-4071-bc3c-1356075d90e6.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\379e92a1-d86e-4cdc-8fe1-e7e88377b3e1.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33863cab-c584-4d15-985e-2fab7623a044.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 3492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c2ab5004-fbc3-4e03-9870-64b6f4b738ab.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 2580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d111b10a-077a-42e2-a532-e7e59e7bf09a.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a787fa8-79f3-47c7-9c0b-108e5edbbbd0.tmp, EstimatedImpact: 0% 2026-05-06T15:56:27.135 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-06T16:05:49.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T16:15:41.853 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1926817, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T16:20:54.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T16:35:59.256 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T16:51:04.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T17:06:09.259 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T17:21:14.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T17:36:19.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T17:51:24.257 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T17:56:27.143 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53260, Count: 6942, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7155, Count: 58248, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.WYP7Y3, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 308, Count: 11, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping5828_146131018\UpdaterSetup.exe, EstimatedImpact: 1% 2026-05-06T17:56:27.143 ProcessImageName: UpdaterSetup.exe, Pid: 6236, TotalTime: 140, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Google6236_1528849180\bin\updater.exe, EstimatedImpact: 63% 2026-05-06T17:56:27.143 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 87, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1.MAI, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 122, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 7136, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_url_fetcher_7136_556100023\qualification_win32.crx, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 7336, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20d12322-250d-4aff-8f9d-42ee2ad676f1.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94d17f57-3d75-4d60-b53f-f90d66a55f0f.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0fb60f9b-b592-4a7c-bebf-632afd435e1a.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\095b7a46-57b4-4a63-b85d-b53c11f5f672.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 11% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39c75cdf-50a0-4071-bc3c-1356075d90e6.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\379e92a1-d86e-4cdc-8fe1-e7e88377b3e1.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c42c5794-e2c4-49fd-abf3-1c0857c5865c.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20e6031c-c2f8-4c2f-afd4-fe5a04bb9942.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24545906-993b-4384-866b-c37ae5bb914d.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 4592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f56d5f-489d-4144-b538-6814033f5953.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 4204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a5b3ca2-52ea-46e6-9b0b-d7ffe6f76839.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33863cab-c584-4d15-985e-2fab7623a044.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9173ea9b-4578-4d34-9457-edff22c47c7a.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 2580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d111b10a-077a-42e2-a532-e7e59e7bf09a.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c736c6a7-8f2d-4ddf-a198-39066b688659.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a787fa8-79f3-47c7-9c0b-108e5edbbbd0.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5f997e3-ad71-4d4e-b745-fdd8a9d1495f.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 3492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c2ab5004-fbc3-4e03-9870-64b6f4b738ab.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 6212, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67e56aba-1984-437a-8f31-d8a95ca62059.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\228b6962-d3c4-4eb7-bf49-b4556f930c9c.tmp, EstimatedImpact: 0% 2026-05-06T17:56:27.143 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-06T18:06:29.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T18:15:42.975 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1933456, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T18:21:34.247 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T18:36:39.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T18:51:44.247 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T19:06:49.247 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T19:21:54.252 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T19:36:59.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T19:52:04.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T19:56:27.154 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53305, Count: 6947, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7830, Count: 64719, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.WYP7Y3, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 308, Count: 11, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping5828_146131018\UpdaterSetup.exe, EstimatedImpact: 1% 2026-05-06T19:56:27.154 ProcessImageName: UpdaterSetup.exe, Pid: 6236, TotalTime: 140, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Google6236_1528849180\bin\updater.exe, EstimatedImpact: 63% 2026-05-06T19:56:27.154 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 89, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1.MAI, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 122, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 7136, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_url_fetcher_7136_556100023\qualification_win32.crx, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 7336, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20d12322-250d-4aff-8f9d-42ee2ad676f1.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94d17f57-3d75-4d60-b53f-f90d66a55f0f.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0fb60f9b-b592-4a7c-bebf-632afd435e1a.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\095b7a46-57b4-4a63-b85d-b53c11f5f672.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 11% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24545906-993b-4384-866b-c37ae5bb914d.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9173ea9b-4578-4d34-9457-edff22c47c7a.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 6212, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67e56aba-1984-437a-8f31-d8a95ca62059.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 7096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60f8fd98-3768-47a1-9588-eb0ed701e04d.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a787fa8-79f3-47c7-9c0b-108e5edbbbd0.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\379e92a1-d86e-4cdc-8fe1-e7e88377b3e1.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39c75cdf-50a0-4071-bc3c-1356075d90e6.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20e6031c-c2f8-4c2f-afd4-fe5a04bb9942.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5f997e3-ad71-4d4e-b745-fdd8a9d1495f.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 4592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f56d5f-489d-4144-b538-6814033f5953.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 4204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a5b3ca2-52ea-46e6-9b0b-d7ffe6f76839.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 7272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\210f3c6f-a369-4383-9f95-fb29c94252e9.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33863cab-c584-4d15-985e-2fab7623a044.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 3492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c2ab5004-fbc3-4e03-9870-64b6f4b738ab.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 2580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d111b10a-077a-42e2-a532-e7e59e7bf09a.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\228b6962-d3c4-4eb7-bf49-b4556f930c9c.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c736c6a7-8f2d-4ddf-a198-39066b688659.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c42c5794-e2c4-49fd-abf3-1c0857c5865c.tmp, EstimatedImpact: 0% 2026-05-06T19:56:27.154 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-06T20:07:09.256 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T20:15:33.977 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1940076, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T20:22:14.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T20:36:10.558 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1941241, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T20:37:19.250 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T20:52:24.260 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T21:07:29.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T21:22:34.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T21:37:39.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T21:52:44.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T21:56:27.168 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53350, Count: 6952, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8520, Count: 71190, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.WYP7Y3, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 308, Count: 11, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping5828_146131018\UpdaterSetup.exe, EstimatedImpact: 1% 2026-05-06T21:56:27.168 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 150, Count: 92, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1.MAI, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: UpdaterSetup.exe, Pid: 6236, TotalTime: 140, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Google6236_1528849180\bin\updater.exe, EstimatedImpact: 63% 2026-05-06T21:56:27.168 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 122, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 7136, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_url_fetcher_7136_556100023\qualification_win32.crx, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13305fec-6836-4b41-9531-7749102345c7.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 7336, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20d12322-250d-4aff-8f9d-42ee2ad676f1.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94d17f57-3d75-4d60-b53f-f90d66a55f0f.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0fb60f9b-b592-4a7c-bebf-632afd435e1a.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\095b7a46-57b4-4a63-b85d-b53c11f5f672.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 11% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 7272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\210f3c6f-a369-4383-9f95-fb29c94252e9.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39c75cdf-50a0-4071-bc3c-1356075d90e6.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\379e92a1-d86e-4cdc-8fe1-e7e88377b3e1.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20e6031c-c2f8-4c2f-afd4-fe5a04bb9942.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24545906-993b-4384-866b-c37ae5bb914d.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9173ea9b-4578-4d34-9457-edff22c47c7a.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 4592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f56d5f-489d-4144-b538-6814033f5953.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 4204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a5b3ca2-52ea-46e6-9b0b-d7ffe6f76839.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a787fa8-79f3-47c7-9c0b-108e5edbbbd0.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d06c27dd-1ae4-4582-98f0-475db51c0799.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 3492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c2ab5004-fbc3-4e03-9870-64b6f4b738ab.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 2580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d111b10a-077a-42e2-a532-e7e59e7bf09a.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\228b6962-d3c4-4eb7-bf49-b4556f930c9c.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c736c6a7-8f2d-4ddf-a198-39066b688659.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e0ed0ee-7657-4256-b338-e693b3b6c49f.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 6212, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67e56aba-1984-437a-8f31-d8a95ca62059.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 7096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60f8fd98-3768-47a1-9588-eb0ed701e04d.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5f997e3-ad71-4d4e-b745-fdd8a9d1495f.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33863cab-c584-4d15-985e-2fab7623a044.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c42c5794-e2c4-49fd-abf3-1c0857c5865c.tmp, EstimatedImpact: 0% 2026-05-06T21:56:27.168 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-06T22:07:49.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T22:15:33.022 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1946743, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T22:22:54.258 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T22:34:17.346 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a0f6_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1947803, FileId: 0xc080000000550b8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T22:34:19.350 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a0f6_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1947833, FileId: 0xc120000000550b8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T22:34:19.632 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a0f6_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #1947863, FileId: 0xc1c0000000550b8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T22:37:59.247 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T22:53:04.252 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T23:08:09.257 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T23:15:42.845 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1950172, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-06T23:23:14.256 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T23:38:19.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T23:53:24.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-06T23:55:24.250 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-06T23:55:24.266 Job Notification: New process added to job (7996) 2026-05-06T23:55:24.281 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-06T23:55:24.281 Job Notification: New process added to job (6988) 2026-05-06T23:55:24.281 Aggressive catchup quick scan threshold: 788104407433 / 25920000000000 2026-05-06T23:55:24.281 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:7996] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6988]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-06T23:55:24.344 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-06T23:55:24.344 Job Notification: New process added to job (3028) 2026-05-06T23:55:24.344 Job Notification: New process added to job (5996) 2026-05-06T23:55:24.360 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3028] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5996]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-06T23:55:24.594 Job Notification: New process added to job (2160) 2026-05-06T23:55:24.656 Task(GetDeviceTicket -AccessKey CD8C2CD3-2E60-92EB-C98B-B3179F637DFF ) launched as network service 2026-05-06T23:55:24.781 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-06T23:55:24.781 [RTP] Duplicating the current plugin configuration object... 2026-05-06T23:55:24.781 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-06T23:55:24.781 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-06T23:55:24.781 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-06T23:55:24.781 [RTP] No config change detected. Not updating plugin configuration. 2026-05-06T23:55:24.781 [RTP] No config changes found. No configuration switch. 2026-05-06T23:55:24.781 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-06T23:55:25.222 Job Notification: Process exited from job (2160) 2026-05-06T23:55:26.301 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-06T23:55:26.301 [Cloud] Start of cloud request. Passive mode: 0 2026-05-06T23:55:26.301 [Cloud] Queued cloud request. 2026-05-06T23:55:26.301 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-06T23:55:26.316 [Cloud] Dequeued cloud request. 2026-05-06T23:55:26.316 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-06T23:55:26.316 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-06T23:55:26.316 [Cloud] Start of cloud request. Passive mode: 0 2026-05-06T23:55:26.316 [Cloud] Queued cloud request. 2026-05-06T23:55:26.316 [Cloud] Dequeued cloud request. 2026-05-06T23:55:26.332 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-06T23:55:26.535 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-06T23:55:26.535 [Cloud] End of cloud request. 2026-05-06T23:55:26.535 [Cloud] End of cloud request. 2026-05-06T23:55:26.819 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-06T23:55:38.383 Job Notification: Process exited from job (6192) 2026-05-06T23:56:27.180 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53350, Count: 6954, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9345, Count: 77661, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.WYP7Y3, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 308, Count: 11, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping5828_146131018\UpdaterSetup.exe, EstimatedImpact: 1% 2026-05-06T23:56:27.180 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 210, Count: 162, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1.MAI, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: UpdaterSetup.exe, Pid: 6236, TotalTime: 140, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Google6236_1528849180\bin\updater.exe, EstimatedImpact: 63% 2026-05-06T23:56:27.180 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 122, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 7136, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_url_fetcher_7136_556100023\qualification_win32.crx, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13305fec-6836-4b41-9531-7749102345c7.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 7336, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20d12322-250d-4aff-8f9d-42ee2ad676f1.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\095b7a46-57b4-4a63-b85d-b53c11f5f672.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94d17f57-3d75-4d60-b53f-f90d66a55f0f.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0fb60f9b-b592-4a7c-bebf-632afd435e1a.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log.old, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 11% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 7476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\379e92a1-d86e-4cdc-8fe1-e7e88377b3e1.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 8052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24545906-993b-4384-866b-c37ae5bb914d.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 8032, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\25ec8ec2-90d3-4aab-984e-708bbe471026.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 6172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c693c502-0bc0-4eb0-9efd-e24cfd9294ec.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 7976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9173ea9b-4578-4d34-9457-edff22c47c7a.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5f997e3-ad71-4d4e-b745-fdd8a9d1495f.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33863cab-c584-4d15-985e-2fab7623a044.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 5836, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39c75cdf-50a0-4071-bc3c-1356075d90e6.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 4796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20e6031c-c2f8-4c2f-afd4-fe5a04bb9942.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 4592, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33f56d5f-489d-4144-b538-6814033f5953.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 4204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a5b3ca2-52ea-46e6-9b0b-d7ffe6f76839.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 3520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d06c27dd-1ae4-4582-98f0-475db51c0799.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c42c5794-e2c4-49fd-abf3-1c0857c5865c.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 3492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c2ab5004-fbc3-4e03-9870-64b6f4b738ab.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 2580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d111b10a-077a-42e2-a532-e7e59e7bf09a.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 7272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\210f3c6f-a369-4383-9f95-fb29c94252e9.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\228b6962-d3c4-4eb7-bf49-b4556f930c9c.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c736c6a7-8f2d-4ddf-a198-39066b688659.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e0ed0ee-7657-4256-b338-e693b3b6c49f.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 7096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\60f8fd98-3768-47a1-9588-eb0ed701e04d.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a787fa8-79f3-47c7-9c0b-108e5edbbbd0.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 6212, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67e56aba-1984-437a-8f31-d8a95ca62059.tmp, EstimatedImpact: 0% 2026-05-06T23:56:27.180 ProcessImageName: updater.exe, Pid: 6224, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-06T23:56:41.572 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\6A0499EA-38D9-4EB9-B967-BBA5F67B95351564.1dcddb3fb715c7c 2026-05-06T23:56:41.635 Verifying engine and signature files (source: 0) ... 2026-05-06T23:56:41.635 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{86FAD2D1-2E1B-4612-8330-FE07B07A0590}\mpengine.dll] due to PPL. 2026-05-06T23:56:41.635 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{86FAD2D1-2E1B-4612-8330-FE07B07A0590}\mpasbase.vdm] (file in cache) 2026-05-06T23:56:41.635 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{86FAD2D1-2E1B-4612-8330-FE07B07A0590}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-06T23:56:41.666 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{86FAD2D1-2E1B-4612-8330-FE07B07A0590}\mpasdlta.vdm] 2026-05-06T23:56:41.666 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{86FAD2D1-2E1B-4612-8330-FE07B07A0590}\mpavbase.vdm] (file in cache) 2026-05-06T23:56:41.666 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{86FAD2D1-2E1B-4612-8330-FE07B07A0590}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-06T23:56:41.682 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{86FAD2D1-2E1B-4612-8330-FE07B07A0590}\mpavdlta.vdm] 2026-05-06T23:56:41.853 [Engine] IsHybridMode: 0 2026-05-06T23:56:41.853 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-06T23:56:41.916 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-870F7C16DEA4DEDA3E2CCA2DACB6B113BB6E4E05.bin): 0x00000002 2026-05-06T23:56:41.916 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-870F7C16DEA4DEDA3E2CCA2DACB6B113BB6E4E05.bin) 2026-05-06T23:56:41.916 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-06T23:56:41.916 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-06T23:56:41.916 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-06T23:56:41.916 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-06T23:56:50.998 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-06T23:56:50.998 [AutoExclusion] Applied roles from cache. 2026-05-06T23:56:50.998 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-06T23:56:51.014 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D908020, lRefCount: 5, hr=0 2026-05-06T23:56:51.014 [Engine] New active engine 00007FFD0EA68020 replacing engine 00007FFD0D908020. Number of active engines: 2 2026-05-06T23:56:51.014 EngineInit:Global ASOC is enabled 2026-05-06T23:56:51.014 EngineInit:ASOO is enabled for developer volumes 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-06T23:56:51.030 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-06T23:56:51.045 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-06T23:56:51.045 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-06T23:56:51.045 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-06T23:56:51.045 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-06T23:56:51.045 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-06T23:56:51.061 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-06T23:56:51.061 [Plugin] Initializing RTP plugin state... 2026-05-06T23:56:51.061 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-06T23:56:51.061 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎06‎-‎2026 01:56:27 Last Perf:‎05‎-‎06‎-‎2026 01:56:27 First RTP Scan:‎05‎-‎06‎-‎2026 01:56:28 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:418 Misses:60608 BM Queue:0,45,0 Proc:0,45,0 File:0,23,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:2010833 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-2114731470 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2808 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:208210 TotalHits:706818 InstanceCacheInserts:1009209 InstanceCacheUpdates:0 InstanceCacheDeletes:180551 InstanceCacheHits:3051 InstanceCacheMisses:1139717 InstanceCacheOverflows:817415 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (334/299) Success: 299, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-06T23:56:51.061 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{86FAD2D1-2E1B-4612-8330-FE07B07A0590} 2026-05-06T23:56:51.061 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2F83A1A7-C170-4B1B-985F-939C18B89025}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2F83A1A7-C170-4B1B-985F-939C18B89025}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-06T23:56:51.061 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-06T23:56:51.061 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EE5CBE55-50C5-4C5D-B06B-9D6C721E9700} removed 2026-05-06T23:56:51.061 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-06T23:56:51.061 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-06T23:56:51.061 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-06T23:56:51.061 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-06T23:56:51.061 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-06-2026 23:56:51 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-06-2026 23:56:51 2026-05-06T23:56:51.061 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-06T23:56:51.061 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-06T23:56:51.061 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-06T23:56:51.061 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-06T23:56:51.061 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-06T23:56:51.061 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-06T23:56:51.061 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-06T23:56:51.061 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-06T23:56:51.061 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-06T23:56:51.061 MdCoreSvc is supported in this platform and OS Signature updated on 05-06-2026 23:56:51 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.488.0 AV Signature Version: 1.449.488.0 ************************************************************ 2026-05-06T23:56:51.061 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-06T23:56:51.061 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\6A0499EA-38D9-4EB9-B967-BBA5F67B95351564.1dcddb3fb715c7c 2026-05-06T23:56:51.077 Process scan (postsignatureupdatescan) started. 2026-05-06T23:56:51.123 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-06T23:56:51.123 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-06T23:56:51.342 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-06T23:56:51.342 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-06T23:56:51.342 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-06T23:56:51.342 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-06T23:56:51.342 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-06T23:56:51.342 [Engine] Engine 00007FFD0D908020 no longer in use. Number of active engines: 1 2026-05-06T23:56:51.342 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-06T23:56:51.342 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). Signature updated via MicrosoftUpdateServer on 05-06-2026 23:56:51 ************************************************************ 2026-05-06T23:56:51.358 Job Notification: Process exited from job (3028) 2026-05-06T23:56:51.358 Job Notification: Process exited from job (5996) 2026-05-06T23:56:51.373 Job Notification: Process exited from job (7996) 2026-05-06T23:56:51.373 Job Notification: Process exited from job (6988) 2026-05-06T23:56:51.545 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-06T23:56:51.545 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-06T23:56:51.545 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-06T23:56:52.045 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53350, Count: 6954, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-06T23:56:52.045 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9360, Count: 77688, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.WYP7Y3, EstimatedImpact: 0% 2026-05-06T23:56:52.045 ProcessImageName: updater.exe, Pid: 5828, TotalTime: 308, Count: 11, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_Unpacker_BeginUnzipping5828_146131018\UpdaterSetup.exe, EstimatedImpact: 1% 2026-05-06T23:56:52.045 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 210, Count: 162, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a071_1.MAI, EstimatedImpact: 0% 2026-05-06T23:56:52.045 ProcessImageName: UpdaterSetup.exe, Pid: 6236, TotalTime: 140, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Google6236_1528849180\bin\updater.exe, EstimatedImpact: 63% 2026-05-06T23:56:52.045 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 122, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe, EstimatedImpact: 0% 2026-05-06T23:56:52.045 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-06T23:56:52.045 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-06T23:56:52.045 ProcessImageName: updater.exe, Pid: 7136, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files\GoogleUpdater_chrome_url_fetcher_7136_556100023\qualification_win32.crx, EstimatedImpact: 0% 2026-05-06T23:56:52.045 ProcessImageName: updater.exe, Pid: 6560, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13305fec-6836-4b41-9531-7749102345c7.tmp, EstimatedImpact: 0% 2026-05-06T23:56:52.045 ProcessImageName: updater.exe, Pid: 7336, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20d12322-250d-4aff-8f9d-42ee2ad676f1.tmp, EstimatedImpact: 0% 2026-05-06T23:56:52.045 ProcessImageName: updater.exe, Pid: 1240, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\095b7a46-57b4-4a63-b85d-b53c11f5f672.tmp, EstimatedImpact: 0% 2026-05-06T23:56:52.045 ProcessImageName: updater.exe, Pid: 7936, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\94d17f57-3d75-4d60-b53f-f90d66a55f0f.tmp, EstimatedImpact: 0% 2026-05-06T23:56:52.045 ProcessImageName: updater.exe, Pid: 7672, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0fb60f9b-b592-4a7c-bebf-632afd435e1a.tmp, EstimatedImpact: 0% 2026-05-06T23:56:52.092 [Engine] RSIG_UNLOADENGINE, 00007FFD0D908020, err=0x0 2026-05-06T23:56:52.092 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2F83A1A7-C170-4B1B-985F-939C18B89025} removed 2026-05-06T23:56:56.577 Process scan (postsignatureupdatescan) completed. 2026-05-07T00:01:51.043 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-07T00:08:29.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T00:15:32.869 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2011922, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T00:15:32.884 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2011924, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T00:15:42.883 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2011937, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T00:15:42.899 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2011940, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T00:15:42.899 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2011941, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T00:23:34.250 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T00:38:39.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T00:48:02.535 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2014913, FileId: 0x15610000000550b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T00:48:14.051 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2015380, FileId: 0x43b00000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T00:48:14.051 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a102_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2015381, FileId: 0x13d80000000550b4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T00:53:44.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T01:08:49.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T01:15:33.199 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2016998, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:15:33.215 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2017000, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:15:43.212 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2017013, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:15:43.227 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2017015, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:15:43.384 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2017019, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:15:43.384 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2017021, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:23:54.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T01:27:13.958 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a103_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2017658, FileId: 0xd790000000550b8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:27:14.505 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a103_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2017662, FileId: 0xd7a0000000550b8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:36:00.665 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2018172, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:36:00.665 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2018175, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:36:05.212 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2018186, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:36:05.227 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2018189, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:36:05.227 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2018191, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:36:15.226 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2018204, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:36:15.241 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2018206, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:36:15.241 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2018208, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T01:38:59.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T01:54:04.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T01:56:51.014 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 46970, Count: 6393, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-07T01:56:51.014 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 825, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.9SWMZ3, EstimatedImpact: 0% 2026-05-07T01:56:51.014 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_3.MAI, EstimatedImpact: 0% 2026-05-07T01:56:51.014 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce7cf7f-fd8b-4df8-9020-cd8b7a341844.tmp, EstimatedImpact: 0% 2026-05-07T01:56:51.014 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-07T01:56:51.014 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58b77501-09f9-4075-97d2-7c9474aa657f.tmp, EstimatedImpact: 0% 2026-05-07T02:01:53.852 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:3319FC0E-C815-4D55-BDE7-D03F5CC1F7C4, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-07T02:01:53.852 Scheduled scan with Id 3319FC0E-C815-4D55-BDE7-D03F5CC1F7C4 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-07T02:01:53.867 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-07T02:01:53.867 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-07T02:01:53.867 [SFC] System file cache build is not needed (already completed) 2026-05-07T02:02:03.275 Engine:Triggered AR EMS scan 2026-05-07T02:02:03.275 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.291 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.322 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.353 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.400 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.416 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.432 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.463 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.478 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.494 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.525 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.541 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.557 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.572 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.603 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.619 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.635 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.697 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.713 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.744 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.760 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.807 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-07T02:02:03.853 Bm signature throttled:0x00002db31bed458f 2026-05-07T02:02:16.869 QuickScan:ScanID:3319FC0E-C815-4D55-BDE7-D03F5CC1F7C4: Quick scan finished with error 0 2026-05-07T02:02:16.885 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-07T02:02:17.386 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-07T02:02:17.386 [RTP] Duplicating the current plugin configuration object... 2026-05-07T02:02:17.386 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-07T02:02:17.386 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-07T02:02:17.386 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-07T02:02:17.386 [RTP] No config change detected. Not updating plugin configuration. 2026-05-07T02:02:17.386 [RTP] No config changes found. No configuration switch. 2026-05-07T02:02:17.386 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-07T02:09:09.253 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T02:15:33.043 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2020600, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T02:15:33.058 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2020602, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T02:15:43.045 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2020615, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T02:15:43.060 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2020617, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T02:15:43.060 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2020619, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T02:15:43.069 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2020621, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T02:24:14.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T02:39:19.253 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T02:54:24.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T03:09:29.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T03:15:31.876 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2023951, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T03:15:31.891 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2023953, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T03:15:41.880 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2023966, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T03:15:41.880 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2023968, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T03:15:41.895 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2023970, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T03:15:41.895 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2023972, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T03:24:34.252 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T03:39:39.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T03:54:44.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T03:56:51.024 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47197, Count: 6415, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-07T03:56:51.024 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1425, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.9SWMZ3, EstimatedImpact: 0% 2026-05-07T03:56:51.024 ProcessImageName: php-cgi.exe, Pid: 992, TotalTime: 109, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-07T03:56:51.024 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-07T03:56:51.024 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_3.MAI, EstimatedImpact: 0% 2026-05-07T03:56:51.024 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87211b36-5b08-4e11-a08f-a6ccbdd445fa.tmp, EstimatedImpact: 0% 2026-05-07T03:56:51.024 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce7cf7f-fd8b-4df8-9020-cd8b7a341844.tmp, EstimatedImpact: 0% 2026-05-07T03:56:51.024 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-07T03:56:51.024 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\309812cf-bd4f-4bf7-ab66-49ec0f351fc9.tmp, EstimatedImpact: 0% 2026-05-07T03:56:51.024 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58b77501-09f9-4075-97d2-7c9474aa657f.tmp, EstimatedImpact: 0% 2026-05-07T04:09:49.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T04:15:32.108 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2027456, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T04:15:32.124 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2027458, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T04:15:42.117 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2027471, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T04:15:42.132 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2027474, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T04:24:54.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T04:39:59.250 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T04:43:42.800 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a10e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2029022, FileId: 0x125e00000000a137, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T04:43:43.378 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a10e_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2029026, FileId: 0x125f00000000a137, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T04:55:04.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T05:10:09.253 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T05:15:32.887 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2030791, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T05:15:32.903 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2030793, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T05:15:42.896 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2030806, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T05:15:42.911 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2030809, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T05:25:14.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T05:40:19.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T05:55:24.254 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T05:56:51.033 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48560, Count: 6489, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-07T05:56:51.033 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2160, Count: 19413, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.9SWMZ3, EstimatedImpact: 0% 2026-05-07T05:56:51.033 ProcessImageName: php-cgi.exe, Pid: 992, TotalTime: 109, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-07T05:56:51.033 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_3.MAI, EstimatedImpact: 0% 2026-05-07T05:56:51.033 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-07T05:56:51.033 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-07T05:56:51.033 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87211b36-5b08-4e11-a08f-a6ccbdd445fa.tmp, EstimatedImpact: 0% 2026-05-07T05:56:51.033 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce7cf7f-fd8b-4df8-9020-cd8b7a341844.tmp, EstimatedImpact: 0% 2026-05-07T05:56:51.033 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-07T05:56:51.033 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\309812cf-bd4f-4bf7-ab66-49ec0f351fc9.tmp, EstimatedImpact: 0% 2026-05-07T05:56:51.033 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58b77501-09f9-4075-97d2-7c9474aa657f.tmp, EstimatedImpact: 0% 2026-05-07T05:56:51.033 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e47ffd3-895f-4f2c-aec0-fe7114d40e8f.tmp, EstimatedImpact: 0% 2026-05-07T05:56:51.033 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44135bc7-edcd-4d91-8164-4835fc4b14be.tmp, EstimatedImpact: 0% 2026-05-07T06:10:29.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T06:15:32.161 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2034146, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:15:32.161 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2034148, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:15:42.173 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2034161, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:15:42.173 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2034163, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:15:42.361 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2034167, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:15:42.376 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2034169, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:25:34.255 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T06:36:05.348 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2035294, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:36:05.348 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2035297, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:36:09.841 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2035304, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:36:09.841 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2035307, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:36:09.841 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2035309, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:36:09.841 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2035311, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:36:19.835 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2035324, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:36:19.835 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2035326, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:36:19.835 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2035328, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:36:19.835 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2035330, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T06:40:39.253 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T06:55:44.241 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T07:10:49.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T07:15:33.730 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2037494, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T07:15:33.745 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2037496, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T07:15:43.745 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2037509, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T07:15:43.760 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2037512, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T07:17:14.525 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a11d_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2037599, FileId: 0x3ab00000004c453, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T07:17:15.135 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a11d_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2037612, FileId: 0x2a0100000004c483, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T07:25:54.252 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T07:40:59.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T07:56:04.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T07:56:51.037 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48682, Count: 6514, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-07T07:56:51.037 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2865, Count: 25884, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.9SWMZ3, EstimatedImpact: 0% 2026-05-07T07:56:51.037 ProcessImageName: php-cgi.exe, Pid: 992, TotalTime: 109, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-07T07:56:51.037 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_3.MAI, EstimatedImpact: 0% 2026-05-07T07:56:51.037 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-07T07:56:51.037 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-07T07:56:51.037 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\970bc64a-e085-4337-b695-8e2067d4eeb4.tmp, EstimatedImpact: 0% 2026-05-07T07:56:51.037 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87211b36-5b08-4e11-a08f-a6ccbdd445fa.tmp, EstimatedImpact: 0% 2026-05-07T07:56:51.037 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce7cf7f-fd8b-4df8-9020-cd8b7a341844.tmp, EstimatedImpact: 0% 2026-05-07T07:56:51.037 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-07T07:56:51.037 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59ce1171-0f76-4c10-8237-2d4bb2af162a.tmp, EstimatedImpact: 0% 2026-05-07T07:56:51.037 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\309812cf-bd4f-4bf7-ab66-49ec0f351fc9.tmp, EstimatedImpact: 0% 2026-05-07T07:56:51.037 ProcessImageName: updater.exe, Pid: 7656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0c6e1ab-c802-4a09-a106-9da3d334b1a6.tmp, EstimatedImpact: 0% 2026-05-07T07:56:51.037 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58b77501-09f9-4075-97d2-7c9474aa657f.tmp, EstimatedImpact: 0% 2026-05-07T07:56:51.037 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44135bc7-edcd-4d91-8164-4835fc4b14be.tmp, EstimatedImpact: 0% 2026-05-07T07:56:51.037 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e47ffd3-895f-4f2c-aec0-fe7114d40e8f.tmp, EstimatedImpact: 0% 2026-05-07T08:11:09.253 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T08:15:34.252 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2040847, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T08:15:34.252 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2040849, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T08:15:44.280 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2040862, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T08:15:44.280 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2040865, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T08:26:14.247 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T08:41:19.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T08:56:24.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T09:11:29.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T09:15:33.210 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2044154, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T09:15:33.210 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2044156, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T09:15:43.225 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2044168, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T09:15:43.240 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2044171, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T09:26:34.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T09:41:39.253 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T09:56:44.252 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T09:56:51.043 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48682, Count: 6514, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3480, Count: 32355, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.9SWMZ3, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: php-cgi.exe, Pid: 992, TotalTime: 109, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-07T09:56:51.043 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 105, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_3.MAI, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\970bc64a-e085-4337-b695-8e2067d4eeb4.tmp, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87211b36-5b08-4e11-a08f-a6ccbdd445fa.tmp, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce7cf7f-fd8b-4df8-9020-cd8b7a341844.tmp, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58b77501-09f9-4075-97d2-7c9474aa657f.tmp, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59ce1171-0f76-4c10-8237-2d4bb2af162a.tmp, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\309812cf-bd4f-4bf7-ab66-49ec0f351fc9.tmp, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a1b730f6-1e59-4547-a65f-6c38f8742e86.tmp, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: updater.exe, Pid: 7656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0c6e1ab-c802-4a09-a106-9da3d334b1a6.tmp, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: updater.exe, Pid: 5464, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bbddd290-7e12-4f56-8eeb-99390401916e.tmp, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e47ffd3-895f-4f2c-aec0-fe7114d40e8f.tmp, EstimatedImpact: 0% 2026-05-07T09:56:51.043 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44135bc7-edcd-4d91-8164-4835fc4b14be.tmp, EstimatedImpact: 0% 2026-05-07T10:11:49.247 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T10:15:33.480 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2047469, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T10:15:33.496 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2047471, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T10:15:43.510 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2047484, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T10:15:43.510 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2047487, FileId: 0x46550000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T10:26:54.252 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T10:41:59.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T10:44:45.975 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a12a_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2049085, FileId: 0xe7000000004c50f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T10:44:46.537 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a12a_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2049089, FileId: 0xe7100000004c50f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T10:57:04.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T10:57:29.605 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a12d_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2049789, FileId: 0x3c5900000000585d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T10:57:30.152 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a12d_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2049793, FileId: 0x3c5a00000000585d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:12:09.252 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T11:15:34.356 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2050802, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:15:34.356 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2050804, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:15:44.362 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2050817, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:15:44.362 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2050819, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:15:44.518 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2050822, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:15:44.534 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2050824, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:27:14.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T11:36:09.921 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2051947, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:36:09.952 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2051949, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:36:14.774 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2051959, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:36:14.790 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2051962, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:36:14.790 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2051964, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:36:14.790 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2051966, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:36:24.778 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2051979, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:36:24.778 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2051981, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:36:24.794 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2051983, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:36:24.794 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2051985, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T11:42:19.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T11:56:51.046 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48758, Count: 6521, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4245, Count: 38826, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.9SWMZ3, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 26, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_3.MAI, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: php-cgi.exe, Pid: 992, TotalTime: 109, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-07T11:56:51.046 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\970bc64a-e085-4337-b695-8e2067d4eeb4.tmp, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87211b36-5b08-4e11-a08f-a6ccbdd445fa.tmp, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\55e100d4-2cb2-48f0-a0af-649d3f73425b.tmp, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce7cf7f-fd8b-4df8-9020-cd8b7a341844.tmp, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59ce1171-0f76-4c10-8237-2d4bb2af162a.tmp, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\309812cf-bd4f-4bf7-ab66-49ec0f351fc9.tmp, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a1b730f6-1e59-4547-a65f-6c38f8742e86.tmp, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 7656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0c6e1ab-c802-4a09-a106-9da3d334b1a6.tmp, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58b77501-09f9-4075-97d2-7c9474aa657f.tmp, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\318c8e16-37df-4863-baba-3202c9050dcd.tmp, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 5464, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bbddd290-7e12-4f56-8eeb-99390401916e.tmp, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e47ffd3-895f-4f2c-aec0-fe7114d40e8f.tmp, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44135bc7-edcd-4d91-8164-4835fc4b14be.tmp, EstimatedImpact: 0% 2026-05-07T11:56:51.046 ProcessImageName: updater.exe, Pid: 2104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f11d5968-a427-4b2a-933c-9526e221335d.tmp, EstimatedImpact: 0% 2026-05-07T11:57:24.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T12:12:29.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T12:27:34.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T12:42:39.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T12:57:44.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T13:12:49.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T13:15:43.462 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2057496, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T13:27:54.247 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T13:42:59.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T13:56:51.053 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48788, Count: 6524, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4875, Count: 45297, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.9SWMZ3, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 135, Count: 26, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_3.MAI, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: php-cgi.exe, Pid: 992, TotalTime: 109, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-07T13:56:51.053 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\970bc64a-e085-4337-b695-8e2067d4eeb4.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87211b36-5b08-4e11-a08f-a6ccbdd445fa.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\55e100d4-2cb2-48f0-a0af-649d3f73425b.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce7cf7f-fd8b-4df8-9020-cd8b7a341844.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58b77501-09f9-4075-97d2-7c9474aa657f.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59ce1171-0f76-4c10-8237-2d4bb2af162a.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\309812cf-bd4f-4bf7-ab66-49ec0f351fc9.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 7656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0c6e1ab-c802-4a09-a106-9da3d334b1a6.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 2996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\052cd220-e711-4d19-af27-c160ec9fc40f.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\318c8e16-37df-4863-baba-3202c9050dcd.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a1b730f6-1e59-4547-a65f-6c38f8742e86.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 5464, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bbddd290-7e12-4f56-8eeb-99390401916e.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3787bfb-3c86-44a9-8dab-1b0c695014b6.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e47ffd3-895f-4f2c-aec0-fe7114d40e8f.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44135bc7-edcd-4d91-8164-4835fc4b14be.tmp, EstimatedImpact: 0% 2026-05-07T13:56:51.053 ProcessImageName: updater.exe, Pid: 2104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f11d5968-a427-4b2a-933c-9526e221335d.tmp, EstimatedImpact: 0% 2026-05-07T13:58:04.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T14:13:09.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T14:28:14.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T14:43:19.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T14:58:24.252 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T15:13:29.239 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T15:15:33.045 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2064146, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T15:28:34.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T15:43:39.250 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T15:56:51.057 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50739, Count: 6635, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5685, Count: 51768, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.9SWMZ3, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 165, Count: 35, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_3.MAI, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: php-cgi.exe, Pid: 992, TotalTime: 109, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-07T15:56:51.057 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\970bc64a-e085-4337-b695-8e2067d4eeb4.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87211b36-5b08-4e11-a08f-a6ccbdd445fa.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\55e100d4-2cb2-48f0-a0af-649d3f73425b.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce7cf7f-fd8b-4df8-9020-cd8b7a341844.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59ce1171-0f76-4c10-8237-2d4bb2af162a.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe55bd79-ac84-44d2-8483-6b6352bfa0b2.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\309812cf-bd4f-4bf7-ab66-49ec0f351fc9.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58b77501-09f9-4075-97d2-7c9474aa657f.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 7656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0c6e1ab-c802-4a09-a106-9da3d334b1a6.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\318c8e16-37df-4863-baba-3202c9050dcd.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 7388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7754df57-91cf-4685-b96b-2ecdab8c9177.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a1b730f6-1e59-4547-a65f-6c38f8742e86.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 5464, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bbddd290-7e12-4f56-8eeb-99390401916e.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3787bfb-3c86-44a9-8dab-1b0c695014b6.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e47ffd3-895f-4f2c-aec0-fe7114d40e8f.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 2996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\052cd220-e711-4d19-af27-c160ec9fc40f.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44135bc7-edcd-4d91-8164-4835fc4b14be.tmp, EstimatedImpact: 0% 2026-05-07T15:56:51.057 ProcessImageName: updater.exe, Pid: 2104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f11d5968-a427-4b2a-933c-9526e221335d.tmp, EstimatedImpact: 0% 2026-05-07T15:58:44.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T16:13:49.239 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T16:15:43.612 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2067479, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T16:28:54.252 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T16:42:46.057 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a14e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2068998, FileId: 0x16d8000000054cb6, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T16:43:59.247 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T16:59:04.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T17:14:09.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T17:29:14.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T17:44:19.238 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T17:56:51.061 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50754, Count: 6638, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6255, Count: 58239, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.9SWMZ3, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 225, Count: 43, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_3.MAI, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: php-cgi.exe, Pid: 992, TotalTime: 109, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-07T17:56:51.061 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\970bc64a-e085-4337-b695-8e2067d4eeb4.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2cdad04-d7d1-4a1b-92b3-4a61536bdb04.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87211b36-5b08-4e11-a08f-a6ccbdd445fa.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\55e100d4-2cb2-48f0-a0af-649d3f73425b.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce7cf7f-fd8b-4df8-9020-cd8b7a341844.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a1b730f6-1e59-4547-a65f-6c38f8742e86.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59ce1171-0f76-4c10-8237-2d4bb2af162a.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\309812cf-bd4f-4bf7-ab66-49ec0f351fc9.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cf241b3-1ed7-4dda-b17a-111805c94eb7.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e47ffd3-895f-4f2c-aec0-fe7114d40e8f.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 2996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\052cd220-e711-4d19-af27-c160ec9fc40f.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 7656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0c6e1ab-c802-4a09-a106-9da3d334b1a6.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44135bc7-edcd-4d91-8164-4835fc4b14be.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 2104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f11d5968-a427-4b2a-933c-9526e221335d.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe55bd79-ac84-44d2-8483-6b6352bfa0b2.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3787bfb-3c86-44a9-8dab-1b0c695014b6.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 7388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7754df57-91cf-4685-b96b-2ecdab8c9177.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58b77501-09f9-4075-97d2-7c9474aa657f.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\318c8e16-37df-4863-baba-3202c9050dcd.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 5464, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bbddd290-7e12-4f56-8eeb-99390401916e.tmp, EstimatedImpact: 0% 2026-05-07T17:56:51.061 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-07T17:59:24.238 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T18:14:29.241 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T18:15:43.874 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2074143, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T18:29:34.247 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T18:44:39.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T18:59:44.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T19:14:49.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T19:29:54.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T19:44:59.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T19:56:51.068 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51466, Count: 6701, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6945, Count: 64710, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.9SWMZ3, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 225, Count: 43, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_3.MAI, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: php-cgi.exe, Pid: 992, TotalTime: 109, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-07T19:56:51.068 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\970bc64a-e085-4337-b695-8e2067d4eeb4.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2cdad04-d7d1-4a1b-92b3-4a61536bdb04.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87211b36-5b08-4e11-a08f-a6ccbdd445fa.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce7cf7f-fd8b-4df8-9020-cd8b7a341844.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\55e100d4-2cb2-48f0-a0af-649d3f73425b.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59ce1171-0f76-4c10-8237-2d4bb2af162a.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3787bfb-3c86-44a9-8dab-1b0c695014b6.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\309812cf-bd4f-4bf7-ab66-49ec0f351fc9.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe55bd79-ac84-44d2-8483-6b6352bfa0b2.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 5464, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bbddd290-7e12-4f56-8eeb-99390401916e.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 7388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7754df57-91cf-4685-b96b-2ecdab8c9177.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 7016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\654759c8-259d-4063-a8a7-41374d078f4d.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 2996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\052cd220-e711-4d19-af27-c160ec9fc40f.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\318c8e16-37df-4863-baba-3202c9050dcd.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 2104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f11d5968-a427-4b2a-933c-9526e221335d.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44135bc7-edcd-4d91-8164-4835fc4b14be.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 5500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be6c71c0-98e2-4c6e-bd10-a332341e7554.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 7656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0c6e1ab-c802-4a09-a106-9da3d334b1a6.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cf241b3-1ed7-4dda-b17a-111805c94eb7.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e47ffd3-895f-4f2c-aec0-fe7114d40e8f.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58b77501-09f9-4075-97d2-7c9474aa657f.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a1b730f6-1e59-4547-a65f-6c38f8742e86.tmp, EstimatedImpact: 0% 2026-05-07T19:56:51.068 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-07T20:00:04.239 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T20:15:09.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T20:15:33.147 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2080760, FileId: 0x55f000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T20:30:14.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T20:45:19.239 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T21:00:24.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T21:15:29.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T21:30:34.237 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T21:36:18.736 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2085237, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T21:45:39.241 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T21:56:51.071 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51466, Count: 6702, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7590, Count: 71181, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.9SWMZ3, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 225, Count: 43, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_3.MAI, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: php-cgi.exe, Pid: 992, TotalTime: 109, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-07T21:56:51.071 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2cdad04-d7d1-4a1b-92b3-4a61536bdb04.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\970bc64a-e085-4337-b695-8e2067d4eeb4.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e176f639-b597-428d-ae96-1a169fba2d19.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87211b36-5b08-4e11-a08f-a6ccbdd445fa.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\55e100d4-2cb2-48f0-a0af-649d3f73425b.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce7cf7f-fd8b-4df8-9020-cd8b7a341844.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 5500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be6c71c0-98e2-4c6e-bd10-a332341e7554.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 7016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\654759c8-259d-4063-a8a7-41374d078f4d.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148d0c41-148d-453d-8dfb-4d3743d9d9d8.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3787bfb-3c86-44a9-8dab-1b0c695014b6.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59ce1171-0f76-4c10-8237-2d4bb2af162a.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e47ffd3-895f-4f2c-aec0-fe7114d40e8f.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 2996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\052cd220-e711-4d19-af27-c160ec9fc40f.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\309812cf-bd4f-4bf7-ab66-49ec0f351fc9.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 2572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d669fbc-b8c7-4397-a38d-ee100e7027ef.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58b77501-09f9-4075-97d2-7c9474aa657f.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44135bc7-edcd-4d91-8164-4835fc4b14be.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 2104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f11d5968-a427-4b2a-933c-9526e221335d.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 7656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0c6e1ab-c802-4a09-a106-9da3d334b1a6.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a1b730f6-1e59-4547-a65f-6c38f8742e86.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe55bd79-ac84-44d2-8483-6b6352bfa0b2.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\318c8e16-37df-4863-baba-3202c9050dcd.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cf241b3-1ed7-4dda-b17a-111805c94eb7.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 7388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7754df57-91cf-4685-b96b-2ecdab8c9177.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 5464, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bbddd290-7e12-4f56-8eeb-99390401916e.tmp, EstimatedImpact: 0% 2026-05-07T21:56:51.071 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-07T22:00:44.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T22:15:44.981 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2087439, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-07T22:15:49.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 2026-05-07T22:20:17.856 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-07T22:20:17.872 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-07T22:20:17.872 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-07T22:20:17.872 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-07T22:20:17.872 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-07T22:20:17.872 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-07T22:20:17.872 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-07T22:20:17.872 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-07T22:20:17.872 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-07T22:20:17.872 MdCoreSvc is supported in this platform and OS 2026-05-07T22:20:18.360 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-07T22:20:18.360 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-07T22:20:18.360 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-07T22:30:54.236 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T22:45:59.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T23:01:04.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T23:16:09.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T23:31:14.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T23:46:19.251 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-07T23:55:24.243 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-07T23:55:24.259 Job Notification: New process added to job (1676) 2026-05-07T23:55:24.274 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-07T23:55:24.274 Job Notification: New process added to job (6292) 2026-05-07T23:55:24.274 Aggressive catchup quick scan threshold: 788104072514 / 25920000000000 2026-05-07T23:55:24.274 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:1676] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6292]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-07T23:55:24.321 Job Notification: New process added to job (6252) 2026-05-07T23:55:24.337 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-07T23:55:24.337 Job Notification: New process added to job (6460) 2026-05-07T23:55:24.337 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6252] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6460]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-07T23:55:24.540 Job Notification: New process added to job (4260) 2026-05-07T23:55:24.540 Task(GetDeviceTicket -AccessKey 5765DEF5-0DE5-1C65-256E-98C339A8C18D ) launched as network service 2026-05-07T23:55:24.774 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-07T23:55:24.790 [RTP] Duplicating the current plugin configuration object... 2026-05-07T23:55:24.790 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-07T23:55:24.790 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-07T23:55:24.790 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-07T23:55:24.790 [RTP] No config change detected. Not updating plugin configuration. 2026-05-07T23:55:24.790 [RTP] No config changes found. No configuration switch. 2026-05-07T23:55:24.790 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-07T23:55:24.993 Job Notification: Process exited from job (4260) 2026-05-07T23:55:26.067 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-07T23:55:26.067 [Cloud] Start of cloud request. Passive mode: 0 2026-05-07T23:55:26.067 [Cloud] Queued cloud request. 2026-05-07T23:55:26.067 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-07T23:55:26.067 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-07T23:55:26.067 [Cloud] Start of cloud request. Passive mode: 0 2026-05-07T23:55:26.067 [Cloud] Queued cloud request. 2026-05-07T23:55:26.098 Job Notification: New process added to job (4736) 2026-05-07T23:55:26.098 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 4BB45F6C-76A0-4BF1-E04A-497A74F079FC) launched 2026-05-07T23:55:26.098 Job Notification: New process added to job (5476) 2026-05-07T23:55:26.098 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:4736] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5476]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-07T23:55:26.114 Job Notification: New process added to job (7144) 2026-05-07T23:55:26.129 Job Notification: Process exited from job (4736) 2026-05-07T23:55:26.129 Job Notification: Process exited from job (5476) 2026-05-07T23:55:26.129 [Cloud] Dequeued cloud request. 2026-05-07T23:55:26.129 [Cloud] Dequeued cloud request. 2026-05-07T23:55:26.129 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-07T23:55:26.129 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-07T23:55:26.426 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-07T23:55:26.426 [Cloud] End of cloud request. 2026-05-07T23:55:26.442 [Cloud] End of cloud request. 2026-05-07T23:55:26.583 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-07T23:56:51.075 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51466, Count: 6702, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8340, Count: 77652, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.9SWMZ3, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 225, Count: 43, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_3.MAI, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: php-cgi.exe, Pid: 992, TotalTime: 109, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-07T23:56:51.075 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2cdad04-d7d1-4a1b-92b3-4a61536bdb04.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e176f639-b597-428d-ae96-1a169fba2d19.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\970bc64a-e085-4337-b695-8e2067d4eeb4.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87211b36-5b08-4e11-a08f-a6ccbdd445fa.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce7cf7f-fd8b-4df8-9020-cd8b7a341844.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\55e100d4-2cb2-48f0-a0af-649d3f73425b.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 7324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ec5e6e65-e3b0-49c3-b245-bec2e2a260f1.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 5464, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bbddd290-7e12-4f56-8eeb-99390401916e.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 5500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be6c71c0-98e2-4c6e-bd10-a332341e7554.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a1b730f6-1e59-4547-a65f-6c38f8742e86.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 7016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\654759c8-259d-4063-a8a7-41374d078f4d.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 7840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\148d0c41-148d-453d-8dfb-4d3743d9d9d8.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3787bfb-3c86-44a9-8dab-1b0c695014b6.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 7704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59ce1171-0f76-4c10-8237-2d4bb2af162a.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 2996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\052cd220-e711-4d19-af27-c160ec9fc40f.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 7664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\309812cf-bd4f-4bf7-ab66-49ec0f351fc9.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e47ffd3-895f-4f2c-aec0-fe7114d40e8f.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 7656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0c6e1ab-c802-4a09-a106-9da3d334b1a6.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff833d48-b70f-4b5a-8de7-c0782c9202be.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 6152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\318c8e16-37df-4863-baba-3202c9050dcd.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 2572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d669fbc-b8c7-4397-a38d-ee100e7027ef.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 2104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f11d5968-a427-4b2a-933c-9526e221335d.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44135bc7-edcd-4d91-8164-4835fc4b14be.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 7388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7754df57-91cf-4685-b96b-2ecdab8c9177.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 6748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3cf241b3-1ed7-4dda-b17a-111805c94eb7.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe55bd79-ac84-44d2-8483-6b6352bfa0b2.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 6536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58b77501-09f9-4075-97d2-7c9474aa657f.tmp, EstimatedImpact: 0% 2026-05-07T23:56:51.075 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-07T23:56:58.583 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\60B6BFC4-1935-4FE8-B237-7A3F4C2C911517d0.1dcde7d2fafabc0 2026-05-07T23:56:58.646 Verifying engine and signature files (source: 0) ... 2026-05-07T23:56:58.646 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{80648E9B-59AB-477A-8E10-7BBEC7B28BC6}\mpengine.dll] due to PPL. 2026-05-07T23:56:58.646 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{80648E9B-59AB-477A-8E10-7BBEC7B28BC6}\mpasbase.vdm] (file in cache) 2026-05-07T23:56:58.646 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{80648E9B-59AB-477A-8E10-7BBEC7B28BC6}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-07T23:56:58.661 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{80648E9B-59AB-477A-8E10-7BBEC7B28BC6}\mpasdlta.vdm] 2026-05-07T23:56:58.661 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{80648E9B-59AB-477A-8E10-7BBEC7B28BC6}\mpavbase.vdm] (file in cache) 2026-05-07T23:56:58.661 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{80648E9B-59AB-477A-8E10-7BBEC7B28BC6}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-07T23:56:58.677 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{80648E9B-59AB-477A-8E10-7BBEC7B28BC6}\mpavdlta.vdm] 2026-05-07T23:56:58.802 [Engine] IsHybridMode: 0 2026-05-07T23:56:58.802 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-07T23:56:58.817 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-7B148A2BF2174365C932479632CE1CEDE173C53E.bin): 0x00000002 2026-05-07T23:56:58.817 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-7B148A2BF2174365C932479632CE1CEDE173C53E.bin) 2026-05-07T23:56:58.817 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-07T23:56:58.817 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-07T23:56:58.817 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-07T23:56:58.817 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-07T23:57:07.884 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-07T23:57:07.884 [AutoExclusion] Applied roles from cache. 2026-05-07T23:57:07.884 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-07T23:57:07.900 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0EA68020, lRefCount: 5, hr=0 2026-05-07T23:57:07.900 [Engine] New active engine 00007FFD0D908020 replacing engine 00007FFD0EA68020. Number of active engines: 2 2026-05-07T23:57:07.900 EngineInit:Global ASOC is enabled 2026-05-07T23:57:07.900 EngineInit:ASOO is enabled for developer volumes 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-07T23:57:07.915 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-07T23:57:07.931 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-07T23:57:07.931 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-07T23:57:07.931 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-07T23:57:07.931 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)! 2026-05-07T23:57:07.931 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValiditApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-07T23:57:07.947 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-07T23:57:07.947 [Plugin] Initializing RTP plugin state... 2026-05-07T23:57:07.947 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-07T23:57:07.947 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎07‎-‎2026 01:56:51 Last Perf:‎05‎-‎07‎-‎2026 01:56:51 First RTP Scan:‎05‎-‎07‎-‎2026 01:56:58 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:438 Misses:2126 BM Queue:0,95,0 Proc:0,95,0 File:0,21,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:2093126 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-2024518708 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2905 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:212742 TotalHits:733527 InstanceCacheInserts:1052727 InstanceCacheUpdates:0 InstanceCacheDeletes:188743 InstanceCacheHits:3110 InstanceCacheMisses:1184255 InstanceCacheOverflows:852682 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (285/284) Success: 284, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-07T23:57:07.947 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{80648E9B-59AB-477A-8E10-7BBEC7B28BC6} 2026-05-07T23:57:07.947 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{86FAD2D1-2E1B-4612-8330-FE07B07A0590}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{86FAD2D1-2E1B-4612-8330-FE07B07A0590}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-07T23:57:07.947 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-07T23:57:07.947 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C9E998A6-BD96-4E7B-9799-248149BFBF61} removed 2026-05-07T23:57:07.947 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-07T23:57:07.947 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-07T23:57:07.947 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-07T23:57:07.947 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-07T23:57:07.947 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-07-2026 23:57:07 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-07-2026 23:57:07 2026-05-07T23:57:07.947 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-07T23:57:07.947 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-07T23:57:07.947 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-07T23:57:07.947 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-07T23:57:07.947 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-07T23:57:07.947 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-07T23:57:07.947 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-07T23:57:07.947 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-07T23:57:07.947 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-07T23:57:07.947 MdCoreSvc is supported in this platform and OS Signature updated on 05-07-2026 23:57:07 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.503.0 AV Signature Version: 1.449.503.0 ************************************************************ 2026-05-07T23:57:07.947 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-07T23:57:07.947 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\60B6BFC4-1935-4FE8-B237-7A3F4C2C911517d0.1dcde7d2fafabc0 2026-05-07T23:57:07.978 Process scan (postsignatureupdatescan) started. 2026-05-07T23:57:08.009 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-07T23:57:08.009 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 05-07-2026 23:57:08 ************************************************************ 2026-05-07T23:57:08.197 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-07T23:57:08.197 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-07T23:57:08.197 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-07T23:57:08.197 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-07T23:57:08.197 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-07T23:57:08.197 Job Notification: Process exited from job (6252) 2026-05-07T23:57:08.197 Job Notification: Process exited from job (6460) 2026-05-07T23:57:08.212 Job Notification: Process exited from job (1676) 2026-05-07T23:57:08.212 Job Notification: Process exited from job (6292) 2026-05-07T23:57:08.228 [Engine] Engine 00007FFD0EA68020 no longer in use. Number of active engines: 1 2026-05-07T23:57:08.228 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-07T23:57:08.228 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-07T23:57:08.415 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-07T23:57:08.415 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-07T23:57:08.415 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-07T23:57:08.900 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 51466, Count: 6702, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-07T23:57:08.900 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8340, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.9SWMZ3, EstimatedImpact: 0% 2026-05-07T23:57:08.900 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 225, Count: 43, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a101_3.MAI, EstimatedImpact: 0% 2026-05-07T23:57:08.900 ProcessImageName: php-cgi.exe, Pid: 992, TotalTime: 109, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-07T23:57:08.900 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-07T23:57:08.900 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-07T23:57:08.900 ProcessImageName: updater.exe, Pid: 5880, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2cdad04-d7d1-4a1b-92b3-4a61536bdb04.tmp, EstimatedImpact: 0% 2026-05-07T23:57:08.900 ProcessImageName: updater.exe, Pid: 1200, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e176f639-b597-428d-ae96-1a169fba2d19.tmp, EstimatedImpact: 0% 2026-05-07T23:57:08.900 ProcessImageName: updater.exe, Pid: 6980, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\970bc64a-e085-4337-b695-8e2067d4eeb4.tmp, EstimatedImpact: 0% 2026-05-07T23:57:08.900 ProcessImageName: updater.exe, Pid: 7832, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87211b36-5b08-4e11-a08f-a6ccbdd445fa.tmp, EstimatedImpact: 0% 2026-05-07T23:57:08.900 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce7cf7f-fd8b-4df8-9020-cd8b7a341844.tmp, EstimatedImpact: 0% 2026-05-07T23:57:08.900 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\55e100d4-2cb2-48f0-a0af-649d3f73425b.tmp, EstimatedImpact: 0% 2026-05-07T23:57:08.947 [Engine] RSIG_UNLOADENGINE, 00007FFD0EA68020, err=0x0 2026-05-07T23:57:08.962 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{86FAD2D1-2E1B-4612-8330-FE07B07A0590} removed 2026-05-07T23:57:13.290 Process scan (postsignatureupdatescan) completed. 2026-05-08T00:01:24.250 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T00:02:07.923 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-08T00:15:33.999 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2094193, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T00:15:34.015 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2094195, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T00:15:44.002 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2094207, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T00:15:44.002 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2094209, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T00:15:44.018 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2094211, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T00:15:44.018 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2094213, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T00:16:29.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T00:31:34.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T00:46:39.239 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T01:01:44.238 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T01:15:34.716 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2097545, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T01:15:34.732 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2097547, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T01:15:44.720 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2097560, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T01:15:44.720 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2097562, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T01:15:44.735 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2097564, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T01:15:44.735 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2097566, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T01:16:49.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T01:31:54.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T01:46:59.241 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T01:57:07.909 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 766, Count: 6471, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.XQ0MZ3, EstimatedImpact: 0% 2026-05-08T01:57:07.909 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 512, Count: 56, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-05-08T01:57:07.909 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-08T01:57:07.909 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b68a686-f22c-43ee-a74f-a555685ed781.tmp, EstimatedImpact: 0% 2026-05-08T02:01:53.860 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:23C80ACE-20F7-4C31-B48C-377C2EA54CF9, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-08T02:01:53.860 Scheduled scan with Id 23C80ACE-20F7-4C31-B48C-377C2EA54CF9 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-08T02:01:53.860 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-08T02:01:53.860 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-08T02:01:53.860 [SFC] System file cache build is not needed (already completed) 2026-05-08T02:02:03.383 Engine:Triggered AR EMS scan 2026-05-08T02:02:03.383 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.398 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.430 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.445 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.476 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.492 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.508 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.539 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.570 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.586 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.601 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.633 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.648 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.664 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.695 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.711 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.726 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.789 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.820 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.836 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.867 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.898 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-08T02:02:03.930 Bm signature throttled:0x00002db31bed458f 2026-05-08T02:02:04.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T02:02:17.133 QuickScan:ScanID:23C80ACE-20F7-4C31-B48C-377C2EA54CF9: Quick scan finished with error 0 2026-05-08T02:02:17.133 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-08T02:02:17.633 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-08T02:02:17.633 [RTP] Duplicating the current plugin configuration object... 2026-05-08T02:02:17.633 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-08T02:02:17.633 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-08T02:02:17.633 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-08T02:02:17.633 [RTP] No config change detected. Not updating plugin configuration. 2026-05-08T02:02:17.633 [RTP] No config changes found. No configuration switch. 2026-05-08T02:02:17.633 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-08T02:14:55.965 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a15e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2102423, FileId: 0x6392000000008979, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:15:06.715 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a15e_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2102878, FileId: 0x16a000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:15:34.949 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2102918, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:15:34.964 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2102920, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:15:44.955 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2102932, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:15:44.955 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2102934, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:15:45.127 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2102938, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:15:45.127 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2102940, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:17:09.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T02:32:14.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T02:36:23.555 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2104145, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:36:23.571 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2104147, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:36:27.719 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2104166, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:36:27.735 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2104169, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:36:27.735 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2104171, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:36:37.748 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2104184, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:36:37.748 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2104187, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T02:47:19.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T02:48:53.172 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a15f_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2104863, FileId: 0xa92900000000a0a0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T03:02:24.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T03:15:32.797 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2106338, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T03:15:32.812 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2106340, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T03:15:42.810 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2106353, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T03:15:42.810 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2106354, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T03:15:42.826 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2106356, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T03:17:29.238 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T03:32:34.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T03:47:39.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T03:57:07.920 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45139, Count: 6290, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-05-08T03:57:07.920 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1561, Count: 12942, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.XQ0MZ3, EstimatedImpact: 0% 2026-05-08T03:57:07.920 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-08T03:57:07.920 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a15e_1.MAI, EstimatedImpact: 0% 2026-05-08T03:57:07.920 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a756bebf-bae1-4913-92f1-b5620ee449dc.tmp, EstimatedImpact: 0% 2026-05-08T03:57:07.920 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-08T03:57:07.920 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f12dd309-f6af-442c-bdf9-2f57ab4fbab6.tmp, EstimatedImpact: 0% 2026-05-08T03:57:07.920 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b68a686-f22c-43ee-a74f-a555685ed781.tmp, EstimatedImpact: 0% 2026-05-08T03:57:07.920 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102be84-b52b-4e85-b2db-45993631ee5e.tmp, EstimatedImpact: 0% 2026-05-08T04:02:44.237 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T04:15:32.440 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2109669, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T04:15:32.456 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2109671, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T04:15:42.446 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2109684, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T04:15:42.461 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2109686, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T04:17:49.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T04:32:54.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T04:47:59.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T05:03:04.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T05:15:33.545 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2112995, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T05:15:33.561 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2112997, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T05:15:43.559 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2113010, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T05:15:43.574 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2113013, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T05:18:09.249 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T05:33:14.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T05:48:19.237 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T05:57:07.929 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 45154, Count: 6293, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-05-08T05:57:07.929 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2281, Count: 19413, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.XQ0MZ3, EstimatedImpact: 0% 2026-05-08T05:57:07.929 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-08T05:57:07.929 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a15e_1.MAI, EstimatedImpact: 0% 2026-05-08T05:57:07.929 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-08T05:57:07.929 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a756bebf-bae1-4913-92f1-b5620ee449dc.tmp, EstimatedImpact: 0% 2026-05-08T05:57:07.929 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-08T05:57:07.929 ProcessImageName: updater.exe, Pid: 6704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f8753ea-1de5-418a-b830-e5ca1f961e8b.tmp, EstimatedImpact: 0% 2026-05-08T05:57:07.929 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f12dd309-f6af-442c-bdf9-2f57ab4fbab6.tmp, EstimatedImpact: 0% 2026-05-08T05:57:07.929 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b68a686-f22c-43ee-a74f-a555685ed781.tmp, EstimatedImpact: 0% 2026-05-08T05:57:07.929 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\584e423d-0dcf-4ca9-87c1-ec4683320332.tmp, EstimatedImpact: 0% 2026-05-08T05:57:07.929 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102be84-b52b-4e85-b2db-45993631ee5e.tmp, EstimatedImpact: 0% 2026-05-08T06:03:24.247 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T06:15:35.616 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2116338, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T06:15:35.631 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2116340, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T06:15:45.643 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2116353, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T06:15:45.643 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2116356, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T06:18:29.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T06:26:53.321 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a166_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2116968, FileId: 0x85400000004c51d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T06:33:34.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T06:48:39.236 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T07:03:44.236 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T07:15:34.604 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2119658, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T07:15:34.604 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2119660, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T07:15:44.613 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2119673, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T07:15:44.613 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2119675, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T07:15:44.780 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2119679, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T07:15:44.780 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2119681, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T07:18:49.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T07:33:54.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T07:36:27.812 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2120822, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T07:36:27.827 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2120824, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T07:36:32.450 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2120843, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T07:36:32.465 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2120846, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T07:36:32.465 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2120848, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T07:36:42.458 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2120861, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T07:36:42.474 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2120864, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T07:48:59.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T07:57:07.934 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49585, Count: 6559, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-05-08T07:57:07.934 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2896, Count: 25884, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.XQ0MZ3, EstimatedImpact: 0% 2026-05-08T07:57:07.934 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-08T07:57:07.934 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a15e_1.MAI, EstimatedImpact: 0% 2026-05-08T07:57:07.934 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-08T07:57:07.934 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a756bebf-bae1-4913-92f1-b5620ee449dc.tmp, EstimatedImpact: 0% 2026-05-08T07:57:07.934 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f83361c9-0f9f-4ac8-8563-f07da7ed2fe2.tmp, EstimatedImpact: 0% 2026-05-08T07:57:07.934 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-08T07:57:07.934 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102be84-b52b-4e85-b2db-45993631ee5e.tmp, EstimatedImpact: 0% 2026-05-08T07:57:07.934 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7abd6c4-29b3-4baa-bdb6-5d58cb366771.tmp, EstimatedImpact: 0% 2026-05-08T07:57:07.934 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f12dd309-f6af-442c-bdf9-2f57ab4fbab6.tmp, EstimatedImpact: 0% 2026-05-08T07:57:07.934 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\814e8a57-54ab-4491-a89d-121aea6950fe.tmp, EstimatedImpact: 0% 2026-05-08T07:57:07.934 ProcessImageName: updater.exe, Pid: 6704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f8753ea-1de5-418a-b830-e5ca1f961e8b.tmp, EstimatedImpact: 0% 2026-05-08T07:57:07.934 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b68a686-f22c-43ee-a74f-a555685ed781.tmp, EstimatedImpact: 0% 2026-05-08T07:57:07.934 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\584e423d-0dcf-4ca9-87c1-ec4683320332.tmp, EstimatedImpact: 0% 2026-05-08T08:04:04.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T08:15:33.090 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2122998, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T08:15:33.106 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2123000, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T08:15:43.102 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2123013, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T08:15:43.117 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2123016, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T08:19:09.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T08:34:14.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T08:49:19.236 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T08:52:56.906 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a167_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2125071, FileId: 0x6683000000008979, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T09:04:24.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T09:15:33.811 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2126326, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T09:15:33.827 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2126328, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T09:15:43.818 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2126341, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T09:15:43.834 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2126344, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T09:19:29.248 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T09:34:34.241 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T09:49:39.241 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T09:57:07.939 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 49706, Count: 6568, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3556, Count: 32355, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.XQ0MZ3, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a15e_1.MAI, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f83361c9-0f9f-4ac8-8563-f07da7ed2fe2.tmp, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a756bebf-bae1-4913-92f1-b5620ee449dc.tmp, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102be84-b52b-4e85-b2db-45993631ee5e.tmp, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7abd6c4-29b3-4baa-bdb6-5d58cb366771.tmp, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f12dd309-f6af-442c-bdf9-2f57ab4fbab6.tmp, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: updater.exe, Pid: 6704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f8753ea-1de5-418a-b830-e5ca1f961e8b.tmp, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee7ff530-4ab5-4384-8c58-6440895ae4b2.tmp, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b68a686-f22c-43ee-a74f-a555685ed781.tmp, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\814e8a57-54ab-4491-a89d-121aea6950fe.tmp, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\584e423d-0dcf-4ca9-87c1-ec4683320332.tmp, EstimatedImpact: 0% 2026-05-08T09:57:07.939 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7f9e2e4-ddb2-4ed5-8b5c-acfdbc5cc4de.tmp, EstimatedImpact: 0% 2026-05-08T10:04:44.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T10:15:35.068 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2129633, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T10:15:35.084 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2129635, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T10:15:45.071 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2129648, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T10:15:45.071 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2129650, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T10:15:45.086 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2129652, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T10:15:45.086 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2129654, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T10:19:49.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T10:34:54.247 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T10:49:59.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T11:05:04.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T11:15:34.629 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2132956, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T11:15:34.645 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2132958, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T11:15:44.643 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2132971, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T11:15:44.643 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2132972, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T11:15:44.658 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2132973, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T11:20:09.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T11:35:14.239 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T11:50:19.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T11:57:07.946 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52647, Count: 6745, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4501, Count: 38826, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.XQ0MZ3, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a15e_1.MAI, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a756bebf-bae1-4913-92f1-b5620ee449dc.tmp, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f83361c9-0f9f-4ac8-8563-f07da7ed2fe2.tmp, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98c2b062-8f76-4124-8600-6bad05ccb964.tmp, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102be84-b52b-4e85-b2db-45993631ee5e.tmp, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7abd6c4-29b3-4baa-bdb6-5d58cb366771.tmp, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: updater.exe, Pid: 6704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f8753ea-1de5-418a-b830-e5ca1f961e8b.tmp, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f12dd309-f6af-442c-bdf9-2f57ab4fbab6.tmp, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee7ff530-4ab5-4384-8c58-6440895ae4b2.tmp, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b68a686-f22c-43ee-a74f-a555685ed781.tmp, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\584e423d-0dcf-4ca9-87c1-ec4683320332.tmp, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\814e8a57-54ab-4491-a89d-121aea6950fe.tmp, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7f9e2e4-ddb2-4ed5-8b5c-acfdbc5cc4de.tmp, EstimatedImpact: 0% 2026-05-08T11:57:07.946 ProcessImageName: updater.exe, Pid: 2684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58ae3a35-0bf7-4e87-a294-e604fcc97401.tmp, EstimatedImpact: 0% 2026-05-08T12:05:24.238 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T12:15:33.901 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2136268, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:15:33.917 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2136270, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:15:43.905 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2136283, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:15:43.921 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2136285, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:15:44.093 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2136289, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:15:44.093 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2136291, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:20:29.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T12:35:34.238 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T12:36:32.555 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2137441, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:36:32.571 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2137443, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:36:37.977 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2137462, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:36:37.993 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2137465, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:36:37.993 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2137467, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:36:37.993 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2137469, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:36:47.991 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2137482, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:36:48.006 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2137485, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:50:39.239 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T12:58:57.032 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a172_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2138699, FileId: 0x24cd000000047129, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T12:58:57.610 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a172_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2138703, FileId: 0x24ce000000047129, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T13:05:44.234 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T13:15:34.951 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2139627, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T13:15:34.967 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2139629, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T13:15:44.966 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2139642, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T13:15:44.982 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2139644, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T13:15:44.982 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2139646, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T13:20:49.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T13:35:54.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T13:50:59.247 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T13:57:07.945 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52647, Count: 6746, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5386, Count: 45297, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.XQ0MZ3, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a15e_1.MAI, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 6064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f47d7c6e-c8e7-4355-a695-ff0fc285ae7d.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a756bebf-bae1-4913-92f1-b5620ee449dc.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f83361c9-0f9f-4ac8-8563-f07da7ed2fe2.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98c2b062-8f76-4124-8600-6bad05ccb964.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7f9e2e4-ddb2-4ed5-8b5c-acfdbc5cc4de.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7abd6c4-29b3-4baa-bdb6-5d58cb366771.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 2684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58ae3a35-0bf7-4e87-a294-e604fcc97401.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102be84-b52b-4e85-b2db-45993631ee5e.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3220146-0256-4efb-b15e-4bfba3d26cd2.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 6704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f8753ea-1de5-418a-b830-e5ca1f961e8b.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f12dd309-f6af-442c-bdf9-2f57ab4fbab6.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee7ff530-4ab5-4384-8c58-6440895ae4b2.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\814e8a57-54ab-4491-a89d-121aea6950fe.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b68a686-f22c-43ee-a74f-a555685ed781.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffbf934e-5f48-458a-b705-0e7929a056fb.tmp, EstimatedImpact: 0% 2026-05-08T13:57:07.945 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\584e423d-0dcf-4ca9-87c1-ec4683320332.tmp, EstimatedImpact: 0% 2026-05-08T14:06:04.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T14:21:09.247 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T14:36:14.241 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T14:51:19.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T15:06:24.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T15:15:43.829 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2146295, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T15:21:29.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T15:36:34.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T15:51:39.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T15:57:07.952 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52647, Count: 6746, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6241, Count: 51768, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.XQ0MZ3, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a15e_1.MAI, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 6064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f47d7c6e-c8e7-4355-a695-ff0fc285ae7d.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a756bebf-bae1-4913-92f1-b5620ee449dc.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f83361c9-0f9f-4ac8-8563-f07da7ed2fe2.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee7ff530-4ab5-4384-8c58-6440895ae4b2.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102be84-b52b-4e85-b2db-45993631ee5e.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\814e8a57-54ab-4491-a89d-121aea6950fe.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f12dd309-f6af-442c-bdf9-2f57ab4fbab6.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98c2b062-8f76-4124-8600-6bad05ccb964.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffbf934e-5f48-458a-b705-0e7929a056fb.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c76a64a-7c29-41f9-bf97-eec59db0c117.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\584e423d-0dcf-4ca9-87c1-ec4683320332.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7f9e2e4-ddb2-4ed5-8b5c-acfdbc5cc4de.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 6704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f8753ea-1de5-418a-b830-e5ca1f961e8b.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 2684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58ae3a35-0bf7-4e87-a294-e604fcc97401.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7abd6c4-29b3-4baa-bdb6-5d58cb366771.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3220146-0256-4efb-b15e-4bfba3d26cd2.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 6912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad7d5d2c-67e4-4ae7-90e3-dcbbed1f408b.tmp, EstimatedImpact: 0% 2026-05-08T15:57:07.952 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b68a686-f22c-43ee-a74f-a555685ed781.tmp, EstimatedImpact: 0% 2026-05-08T16:06:44.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T16:21:49.233 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T16:36:54.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T16:51:59.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T17:07:04.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T17:15:43.384 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2152926, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T17:22:09.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T17:37:14.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T17:40:11.013 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a177_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2154307, FileId: 0x550000000053fb7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T17:52:19.237 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T17:57:07.957 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52647, Count: 6747, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6811, Count: 58239, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.XQ0MZ3, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a15e_1.MAI, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 6064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f47d7c6e-c8e7-4355-a695-ff0fc285ae7d.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 876, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ba28f84-5716-458a-8705-db07ec5620e8.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f83361c9-0f9f-4ac8-8563-f07da7ed2fe2.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a756bebf-bae1-4913-92f1-b5620ee449dc.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 6912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad7d5d2c-67e4-4ae7-90e3-dcbbed1f408b.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\814e8a57-54ab-4491-a89d-121aea6950fe.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f12dd309-f6af-442c-bdf9-2f57ab4fbab6.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b68a686-f22c-43ee-a74f-a555685ed781.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffbf934e-5f48-458a-b705-0e7929a056fb.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98c2b062-8f76-4124-8600-6bad05ccb964.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\584e423d-0dcf-4ca9-87c1-ec4683320332.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30c93f2b-e30a-4d2d-8dd2-06ad55fe9014.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7f9e2e4-ddb2-4ed5-8b5c-acfdbc5cc4de.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102be84-b52b-4e85-b2db-45993631ee5e.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 2684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58ae3a35-0bf7-4e87-a294-e604fcc97401.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e2be5a5-29aa-451b-aa54-bf81d56bd64d.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7abd6c4-29b3-4baa-bdb6-5d58cb366771.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 6704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f8753ea-1de5-418a-b830-e5ca1f961e8b.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3220146-0256-4efb-b15e-4bfba3d26cd2.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee7ff530-4ab5-4384-8c58-6440895ae4b2.tmp, EstimatedImpact: 0% 2026-05-08T17:57:07.957 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c76a64a-7c29-41f9-bf97-eec59db0c117.tmp, EstimatedImpact: 0% 2026-05-08T18:07:24.239 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 2026-05-08T18:07:28.761 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-08T18:07:28.777 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-08T18:07:28.777 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-08T18:07:28.777 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-08T18:07:28.777 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-08T18:07:28.777 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-08T18:07:28.777 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-08T18:07:28.777 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-08T18:07:28.777 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-08T18:07:28.777 MdCoreSvc is supported in this platform and OS 2026-05-08T18:07:29.277 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-08T18:07:29.277 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-08T18:07:29.277 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-08T18:22:29.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T18:37:34.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T18:52:39.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T19:07:44.246 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T19:15:44.158 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2159588, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T19:22:49.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T19:37:54.234 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T19:52:59.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T19:57:07.971 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52677, Count: 6750, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7471, Count: 64710, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.XQ0MZ3, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a15e_1.MAI, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 6064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f47d7c6e-c8e7-4355-a695-ff0fc285ae7d.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 876, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ba28f84-5716-458a-8705-db07ec5620e8.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a756bebf-bae1-4913-92f1-b5620ee449dc.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f83361c9-0f9f-4ac8-8563-f07da7ed2fe2.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 6912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad7d5d2c-67e4-4ae7-90e3-dcbbed1f408b.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7abd6c4-29b3-4baa-bdb6-5d58cb366771.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f12dd309-f6af-442c-bdf9-2f57ab4fbab6.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee7ff530-4ab5-4384-8c58-6440895ae4b2.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 6704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f8753ea-1de5-418a-b830-e5ca1f961e8b.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aac6c9f5-9c23-4fad-8964-99ff7e7f8251.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffbf934e-5f48-458a-b705-0e7929a056fb.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2733acaf-9cd1-4998-8ad8-3b6b8e2ed6cb.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\584e423d-0dcf-4ca9-87c1-ec4683320332.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30c93f2b-e30a-4d2d-8dd2-06ad55fe9014.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7f9e2e4-ddb2-4ed5-8b5c-acfdbc5cc4de.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102be84-b52b-4e85-b2db-45993631ee5e.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c76a64a-7c29-41f9-bf97-eec59db0c117.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 2684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58ae3a35-0bf7-4e87-a294-e604fcc97401.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e2be5a5-29aa-451b-aa54-bf81d56bd64d.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b68a686-f22c-43ee-a74f-a555685ed781.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3220146-0256-4efb-b15e-4bfba3d26cd2.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\814e8a57-54ab-4491-a89d-121aea6950fe.tmp, EstimatedImpact: 0% 2026-05-08T19:57:07.971 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98c2b062-8f76-4124-8600-6bad05ccb964.tmp, EstimatedImpact: 0% 2026-05-08T20:08:04.234 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T20:23:09.239 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T20:38:14.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T20:53:19.233 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T21:08:24.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T21:15:43.900 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2166248, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T21:23:29.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T21:38:34.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T21:53:39.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T21:57:07.981 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 52783, Count: 6757, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8191, Count: 71181, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.XQ0MZ3, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: php-cgi.exe, Pid: 2092, TotalTime: 216, Count: 6, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-08T21:57:07.981 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 28, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a15e_1.MAI, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 876, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ba28f84-5716-458a-8705-db07ec5620e8.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 6064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f47d7c6e-c8e7-4355-a695-ff0fc285ae7d.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f83361c9-0f9f-4ac8-8563-f07da7ed2fe2.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a756bebf-bae1-4913-92f1-b5620ee449dc.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 8084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7abd6c4-29b3-4baa-bdb6-5d58cb366771.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 5352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aac6c9f5-9c23-4fad-8964-99ff7e7f8251.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c76a64a-7c29-41f9-bf97-eec59db0c117.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ffbf934e-5f48-458a-b705-0e7929a056fb.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13d78016-fbf6-4539-b640-e3db861df946.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee7ff530-4ab5-4384-8c58-6440895ae4b2.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b68a686-f22c-43ee-a74f-a555685ed781.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 7516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\814e8a57-54ab-4491-a89d-121aea6950fe.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 2056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e2be5a5-29aa-451b-aa54-bf81d56bd64d.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f12dd309-f6af-442c-bdf9-2f57ab4fbab6.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 2684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58ae3a35-0bf7-4e87-a294-e604fcc97401.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102be84-b52b-4e85-b2db-45993631ee5e.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 6940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3220146-0256-4efb-b15e-4bfba3d26cd2.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 6912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad7d5d2c-67e4-4ae7-90e3-dcbbed1f408b.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7f9e2e4-ddb2-4ed5-8b5c-acfdbc5cc4de.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 4004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30c93f2b-e30a-4d2d-8dd2-06ad55fe9014.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\584e423d-0dcf-4ca9-87c1-ec4683320332.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 6704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f8753ea-1de5-418a-b830-e5ca1f961e8b.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2733acaf-9cd1-4998-8ad8-3b6b8e2ed6cb.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 5680, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6cfc6ef1-9241-4367-ba77-34e712f842df.tmp, EstimatedImpact: 0% 2026-05-08T21:57:07.981 ProcessImageName: updater.exe, Pid: 8176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98c2b062-8f76-4124-8600-6bad05ccb964.tmp, EstimatedImpact: 0% 2026-05-08T22:08:44.231 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T22:23:49.231 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T22:26:43.630 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a187_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2170231, FileId: 0xaa7000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T22:38:54.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T22:53:59.245 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T23:09:04.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T23:15:42.982 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2172959, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-08T23:24:09.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T23:39:14.234 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T23:54:19.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-08T23:55:24.244 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-08T23:55:24.259 Job Notification: New process added to job (6416) 2026-05-08T23:55:24.275 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-08T23:55:24.275 Job Notification: New process added to job (5560) 2026-05-08T23:55:24.275 Aggressive catchup quick scan threshold: 788104175777 / 25920000000000 2026-05-08T23:55:24.275 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6416] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5560]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-08T23:55:24.338 Job Notification: New process added to job (3784) 2026-05-08T23:55:24.338 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-08T23:55:24.353 Job Notification: New process added to job (6796) 2026-05-08T23:55:24.353 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3784] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6796]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-08T23:55:24.509 Job Notification: New process added to job (3220) 2026-05-08T23:55:24.541 Task(GetDeviceTicket -AccessKey 20A87958-5381-6B60-B7D0-6FC69A231729 ) launched as network service 2026-05-08T23:55:24.791 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-08T23:55:24.822 [RTP] Duplicating the current plugin configuration object... 2026-05-08T23:55:24.822 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-08T23:55:24.822 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-08T23:55:24.822 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-08T23:55:24.822 [RTP] No config change detected. Not updating plugin configuration. 2026-05-08T23:55:24.822 [RTP] No config changes found. No configuration switch. 2026-05-08T23:55:24.822 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-08T23:55:25.166 Job Notification: Process exited from job (3220) 2026-05-08T23:55:26.240 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-08T23:55:26.240 [Cloud] Start of cloud request. Passive mode: 0 2026-05-08T23:55:26.240 [Cloud] Queued cloud request. 2026-05-08T23:55:26.240 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-08T23:55:26.240 [Cloud] Dequeued cloud request. 2026-05-08T23:55:26.240 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-08T23:55:26.240 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-08T23:55:26.240 [Cloud] Start of cloud request. Passive mode: 0 2026-05-08T23:55:26.240 [Cloud] Queued cloud request. 2026-05-08T23:55:26.240 [Cloud] Dequeued cloud request. 2026-05-08T23:55:26.240 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-08T23:55:26.443 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-08T23:55:26.443 [Cloud] End of cloud request. 2026-05-08T23:55:26.459 [Cloud] End of cloud request. 2026-05-08T23:55:26.741 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-08T23:55:38.302 Job Notification: Process exited from job (7144) 2026-05-08T23:56:07.917 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\0738F170-9C3E-40DD-88FD-299FF6BB327B17c.1dcdf463be6a7c7 2026-05-08T23:56:07.980 Verifying engine and signature files (source: 0) ... 2026-05-08T23:56:07.980 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{41AE0427-0028-49D9-993E-D713FEB256CB}\mpengine.dll] due to PPL. 2026-05-08T23:56:07.980 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{41AE0427-0028-49D9-993E-D713FEB256CB}\mpasbase.vdm] (file in cache) 2026-05-08T23:56:07.980 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{41AE0427-0028-49D9-993E-D713FEB256CB}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-08T23:56:07.996 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{41AE0427-0028-49D9-993E-D713FEB256CB}\mpasdlta.vdm] 2026-05-08T23:56:07.996 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{41AE0427-0028-49D9-993E-D713FEB256CB}\mpavbase.vdm] (file in cache) 2026-05-08T23:56:07.996 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{41AE0427-0028-49D9-993E-D713FEB256CB}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-08T23:56:08.011 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{41AE0427-0028-49D9-993E-D713FEB256CB}\mpavdlta.vdm] 2026-05-08T23:56:08.199 [Engine] IsHybridMode: 0 2026-05-08T23:56:08.199 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-08T23:56:08.261 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-2B6073A27398CC8841AEF72144FCE07590DB214D.bin): 0x00000002 2026-05-08T23:56:08.261 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-2B6073A27398CC8841AEF72144FCE07590DB214D.bin) 2026-05-08T23:56:08.261 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-08T23:56:08.261 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-08T23:56:08.261 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-08T23:56:08.261 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-08T23:56:17.158 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-08T23:56:17.158 [AutoExclusion] Applied roles from cache. 2026-05-08T23:56:17.158 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-08T23:56:17.174 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D908020, lRefCount: 5, hr=0 2026-05-08T23:56:17.174 [Engine] New active engine 00007FFD0EA68020 replacing engine 00007FFD0D908020. Number of active engines: 2 2026-05-08T23:56:17.190 EngineInit:Global ASOC is enabled 2026-05-08T23:56:17.190 EngineInit:ASOO is enabled for developer volumes 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-08T23:56:17.205 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-08T23:56:17.205 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\d5957240480eb2d2af8c5e42f74759a933e8060e Dynamic Signature Compilation Timestamp:04-28-2026 02:02:07 Persistence Type:Duration Time remaining:50065408 2026-05-08T23:56:17.205 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\52aa51796d89b5c7def8a4425e4155c24046dc82 Dynamic Signature Compilation Timestamp:04-28-2026 02:02:07 Persistence Type:Duration Time remaining:50065408 2026-05-08T23:56:17.221 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-08T23:56:17.221 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-08T23:56:17.221 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-08T23:56:17.221 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-08T23:56:17.221 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-08T23:56:17.221 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-08T23:56:17.221 [Plugin] Initializing RTP plugin state... 2026-05-08T23:56:17.221 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-08T23:56:17.221 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎08‎-‎2026 01:57:08 Last Perf:‎05‎-‎08‎-‎2026 01:57:07 First RTP Scan:‎05‎-‎08‎-‎2026 01:57:08 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:420 Misses:2100 BM Queue:0,52,0 Proc:0,45,0 File:0,19,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:2175275 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-1934420566 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:2909 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:216961 TotalHits:755631 InstanceCacheInserts:1096189 InstanceCacheUpdates:0 InstanceCacheDeletes:196935 InstanceCacheHits:3157 InstanceCacheMisses:1228654 InstanceCacheOverflows:887905 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (309/291) Success: 291, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-08T23:56:17.221 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{41AE0427-0028-49D9-993E-D713FEB256CB} 2026-05-08T23:56:17.221 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{80648E9B-59AB-477A-8E10-7BBEC7B28BC6}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{80648E9B-59AB-477A-8E10-7BBEC7B28BC6}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-08T23:56:17.221 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-08T23:56:17.221 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B7DE6BF4-98D5-4664-9A1F-C5DC71790DE5} removed 2026-05-08T23:56:17.236 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-08T23:56:17.236 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-08T23:56:17.236 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-08T23:56:17.236 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-08T23:56:17.236 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-08-2026 23:56:17 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-08-2026 23:56:17 2026-05-08T23:56:17.236 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-08T23:56:17.236 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-08T23:56:17.236 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-08T23:56:17.236 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-08T23:56:17.236 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-08T23:56:17.236 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-08T23:56:17.236 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-08T23:56:17.236 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-08T23:56:17.236 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-08T23:56:17.236 MdCoreSvc is supported in this platform and OS Signature updated on 05-08-2026 23:56:17 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.519.0 AV Signature Version: 1.449.519.0 ************************************************************ 2026-05-08T23:56:17.236 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-08T23:56:17.236 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\0738F170-9C3E-40DD-88FD-299FF6BB327B17c.1dcdf463be6a7c7 2026-05-08T23:56:17.252 Process scan (postsignatureupdatescan) started. 2026-05-08T23:56:17.283 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-08T23:56:17.283 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-08T23:56:17.471 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-08T23:56:17.471 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-08T23:56:17.471 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-08T23:56:17.471 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-08T23:56:17.471 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). Signature updated via MicrosoftUpdateServer on 05-08-2026 23:56:17 ************************************************************ 2026-05-08T23:56:17.502 [Engine] Engine 00007FFD0D908020 no longer in use. Number of active engines: 1 2026-05-08T23:56:17.502 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-08T23:56:17.502 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-08T23:56:17.518 Job Notification: Process exited from job (3784) 2026-05-08T23:56:17.518 Job Notification: Process exited from job (6796) 2026-05-08T23:56:17.533 Job Notification: Process exited from job (6416) 2026-05-08T23:56:17.533 Job Notification: Process exited from job (5560) 2026-05-08T23:56:17.705 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-08T23:56:17.705 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-08T23:56:17.705 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-08T23:56:18.315 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 53382, Count: 6778, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-05-08T23:56:18.315 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8912, Count: 77607, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.XQ0MZ3, EstimatedImpact: 0% 2026-05-08T23:56:18.315 ProcessImageName: php-cgi.exe, Pid: 2092, TotalTime: 216, Count: 6, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-08T23:56:18.315 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 120, Count: 33, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a15e_1.MAI, EstimatedImpact: 0% 2026-05-08T23:56:18.315 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-08T23:56:18.315 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-08T23:56:18.315 ProcessImageName: updater.exe, Pid: 6064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f47d7c6e-c8e7-4355-a695-ff0fc285ae7d.tmp, EstimatedImpact: 0% 2026-05-08T23:56:18.315 ProcessImageName: updater.exe, Pid: 5068, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a6f09abf-62c5-44a0-9bc7-f6849f6a52c5.tmp, EstimatedImpact: 0% 2026-05-08T23:56:18.315 ProcessImageName: updater.exe, Pid: 876, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ba28f84-5716-458a-8705-db07ec5620e8.tmp, EstimatedImpact: 0% 2026-05-08T23:56:18.315 ProcessImageName: updater.exe, Pid: 6412, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a756bebf-bae1-4913-92f1-b5620ee449dc.tmp, EstimatedImpact: 0% 2026-05-08T23:56:18.315 ProcessImageName: updater.exe, Pid: 3324, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f83361c9-0f9f-4ac8-8563-f07da7ed2fe2.tmp, EstimatedImpact: 0% 2026-05-08T23:56:18.315 ProcessImageName: updater.exe, Pid: 6780, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-08T23:56:18.315 ProcessImageName: updater.exe, Pid: 7812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee7ff530-4ab5-4384-8c58-6440895ae4b2.tmp, EstimatedImpact: 0% 2026-05-08T23:56:18.361 [Engine] RSIG_UNLOADENGINE, 00007FFD0D908020, err=0x0 2026-05-08T23:56:18.361 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{80648E9B-59AB-477A-8E10-7BBEC7B28BC6} removed 2026-05-08T23:56:22.815 Process scan (postsignatureupdatescan) completed. 2026-05-09T00:01:17.216 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-09T00:09:24.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T00:15:34.119 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2176398, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T00:15:34.135 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2176400, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T00:15:44.137 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2176413, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T00:15:44.153 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2176416, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T00:24:29.238 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T00:39:34.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T00:54:39.231 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T01:00:35.619 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a194_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2250983, FileId: 0xe0000000dc35e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T01:00:47.978 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a195_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2251958, FileId: 0xe0000000dc563, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T01:00:47.978 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a194_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2251959, FileId: 0xe0000000dc565, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T01:04:35.549 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-05-09T01:06:11.580 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-05-09T01:09:44.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T01:15:34.476 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2318743, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T01:15:34.491 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2318745, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T01:15:44.481 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2319121, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T01:15:44.481 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2319123, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T01:15:44.496 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2319125, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T01:15:44.496 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2319127, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T01:24:49.237 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T01:39:54.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T01:54:59.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T01:56:17.193 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50376, Count: 6393, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\.htaccess, EstimatedImpact: 2% 2026-05-09T01:56:17.193 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 765, Count: 6480, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PF38Y3, EstimatedImpact: 0% 2026-05-09T01:56:17.193 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 106, Count: 9, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a195_1.MAD, EstimatedImpact: 0% 2026-05-09T01:56:17.193 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-09T01:56:17.193 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-09T01:56:17.193 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\827923eb-6ff4-4e9f-8256-c5e38df4bbc8.tmp, EstimatedImpact: 0% 2026-05-09T01:56:17.193 ProcessImageName: updater.exe, Pid: 3008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1ad24db-9cc6-446d-8ccd-c8038878e952.tmp, EstimatedImpact: 0% 2026-05-09T02:01:53.967 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:0C4CA74C-249C-4EF3-9848-A0E865C1E04F, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-09T02:01:53.967 Scheduled scan with Id 0C4CA74C-249C-4EF3-9848-A0E865C1E04F configured CPU priority: normal (LowCpuPriority: 0) 2026-05-09T02:01:53.967 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-09T02:01:53.967 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-09T02:01:53.967 [SFC] System file cache build is not needed (already completed) 2026-05-09T02:02:06.468 Engine:Triggered AR EMS scan 2026-05-09T02:02:06.468 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.484 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.515 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.531 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.562 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.578 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.593 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.625 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.656 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.671 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.703 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.718 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.734 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.765 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.781 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.812 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.828 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.890 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.921 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.937 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:06.968 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:07.015 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-09T02:02:07.031 Bm signature throttled:0x00002db31bed458f 2026-05-09T02:02:49.488 QuickScan:ScanID:0C4CA74C-249C-4EF3-9848-A0E865C1E04F: Quick scan finished with error 0 2026-05-09T02:02:49.488 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-09T02:02:49.995 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-09T02:02:49.995 [RTP] Duplicating the current plugin configuration object... 2026-05-09T02:02:49.995 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-09T02:02:49.995 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-09T02:02:49.995 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-09T02:02:49.995 [RTP] No config change detected. Not updating plugin configuration. 2026-05-09T02:02:49.995 [RTP] No config changes found. No configuration switch. 2026-05-09T02:02:49.995 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-09T02:10:04.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T02:15:34.411 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2388941, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T02:15:34.427 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2388943, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T02:15:44.420 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2388956, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T02:15:44.436 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2388958, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T02:15:44.436 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2388960, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T02:25:09.231 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T02:40:14.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T02:55:19.236 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T03:10:24.238 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T03:15:34.199 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2392290, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:15:34.215 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2392292, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:15:44.218 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2392305, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:15:44.218 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2392307, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:15:44.358 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2392311, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:15:44.374 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2392313, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:25:29.239 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T03:36:45.660 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2393476, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:36:45.675 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2393478, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:36:48.816 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2393488, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:36:48.816 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2393490, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:36:48.832 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2393492, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:36:48.832 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2393494, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:36:58.808 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2393507, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:36:58.808 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2393508, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:36:58.824 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2393510, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T03:40:34.237 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T03:55:39.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T03:56:17.195 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50436, Count: 6399, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\.htaccess, EstimatedImpact: 0% 2026-05-09T03:56:17.195 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1440, Count: 12951, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PF38Y3, EstimatedImpact: 0% 2026-05-09T03:56:17.195 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 106, Count: 9, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a195_1.MAD, EstimatedImpact: 0% 2026-05-09T03:56:17.195 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-09T03:56:17.195 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-09T03:56:17.195 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4258d6ff-2216-45c2-b2a5-b463bd7db52f.tmp, EstimatedImpact: 0% 2026-05-09T03:56:17.195 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\827923eb-6ff4-4e9f-8256-c5e38df4bbc8.tmp, EstimatedImpact: 0% 2026-05-09T03:56:17.195 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cc2a890-4834-4a8b-ac8c-3b5cae912bd9.tmp, EstimatedImpact: 0% 2026-05-09T03:56:17.195 ProcessImageName: updater.exe, Pid: 3700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d13f0ac-5069-4f6a-8d96-2bb1e03568b9.tmp, EstimatedImpact: 0% 2026-05-09T03:56:17.195 ProcessImageName: updater.exe, Pid: 3008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1ad24db-9cc6-446d-8ccd-c8038878e952.tmp, EstimatedImpact: 0% 2026-05-09T04:10:44.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T04:15:33.798 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2395636, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T04:15:33.814 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2395638, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T04:15:43.806 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2395651, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T04:15:43.822 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2395653, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T04:25:49.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T04:40:54.244 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T04:55:59.236 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T05:11:04.243 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T05:15:34.250 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2398954, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T05:15:34.266 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2398956, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T05:15:44.259 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2398968, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T05:15:44.275 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2398972, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T05:26:09.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T05:41:14.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T05:46:36.721 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a19e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2400671, FileId: 0xcb600000004c4f8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T05:46:37.299 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a19e_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2400675, FileId: 0xcb700000004c4f8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T05:56:17.198 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 50558, Count: 6411, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\.htaccess, EstimatedImpact: 0% 2026-05-09T05:56:17.198 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2145, Count: 19422, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PF38Y3, EstimatedImpact: 0% 2026-05-09T05:56:17.198 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 106, Count: 13, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a195_1.MAD, EstimatedImpact: 0% 2026-05-09T05:56:17.198 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-09T05:56:17.198 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-09T05:56:17.198 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4258d6ff-2216-45c2-b2a5-b463bd7db52f.tmp, EstimatedImpact: 0% 2026-05-09T05:56:17.198 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\827923eb-6ff4-4e9f-8256-c5e38df4bbc8.tmp, EstimatedImpact: 0% 2026-05-09T05:56:17.198 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cc2a890-4834-4a8b-ac8c-3b5cae912bd9.tmp, EstimatedImpact: 0% 2026-05-09T05:56:17.198 ProcessImageName: updater.exe, Pid: 3700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d13f0ac-5069-4f6a-8d96-2bb1e03568b9.tmp, EstimatedImpact: 0% 2026-05-09T05:56:17.198 ProcessImageName: updater.exe, Pid: 3008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1ad24db-9cc6-446d-8ccd-c8038878e952.tmp, EstimatedImpact: 0% 2026-05-09T05:56:17.198 ProcessImageName: updater.exe, Pid: 2360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f875b635-61bb-4b36-ba96-e4a595473df3.tmp, EstimatedImpact: 0% 2026-05-09T05:56:17.198 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T05:56:19.231 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T06:02:37.724 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a1_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401576, FileId: 0xd0b00000004c4f8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:38.282 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a1_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401580, FileId: 0xd0c00000004c4f8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:50.222 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401642, FileId: 0xb60000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:50.738 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401654, FileId: 0xb70000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:50.785 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401657, FileId: 0xb80000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:50.847 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401661, FileId: 0xb90000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:50.878 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401664, FileId: 0xba0000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:50.894 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401667, FileId: 0xbb0000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:50.941 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401670, FileId: 0xbc0000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:50.972 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401673, FileId: 0xbd0000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:51.003 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401676, FileId: 0xbe0000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:51.035 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401679, FileId: 0xbf0000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:51.066 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401682, FileId: 0xc00000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:51.082 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401685, FileId: 0xc10000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:51.609 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401689, FileId: 0xc20000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.120 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401692, FileId: 0xc30000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.542 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401696, FileId: 0xc40000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.574 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401699, FileId: 0xc50000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.589 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401702, FileId: 0xc60000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.605 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401705, FileId: 0xc70000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.620 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401708, FileId: 0xc80000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.636 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401711, FileId: 0xc90000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.667 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401714, FileId: 0xca0000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.699 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401717, FileId: 0xcb0000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.730 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401720, FileId: 0xcc0000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.761 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401723, FileId: 0xcd0000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.792 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401726, FileId: 0xce0000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.808 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401729, FileId: 0xcf0000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.839 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401732, FileId: 0xd00000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.870 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401735, FileId: 0xd10000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:52.886 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401738, FileId: 0xd20000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:53.339 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401751, FileId: 0xd30000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:02:53.730 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1a2_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2401760, FileId: 0xd40000000545db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:11:24.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T06:15:32.828 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2402513, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:15:32.843 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2402515, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:15:42.831 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2402528, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:15:42.831 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2402530, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:15:42.846 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2402532, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:15:42.846 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2402534, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T06:26:29.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T06:41:34.239 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T06:56:39.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T07:11:44.241 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T07:15:34.115 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2405833, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T07:15:34.131 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2405835, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T07:15:44.123 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2405848, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T07:15:44.139 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2405851, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T07:26:49.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T07:41:54.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T07:56:17.207 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55220, Count: 6811, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-09T07:56:17.207 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3120, Count: 25893, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PF38Y3, EstimatedImpact: 0% 2026-05-09T07:56:17.207 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 181, Count: 84, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a195_1.MAD, EstimatedImpact: 0% 2026-05-09T07:56:17.207 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-09T07:56:17.207 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-09T07:56:17.207 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4258d6ff-2216-45c2-b2a5-b463bd7db52f.tmp, EstimatedImpact: 0% 2026-05-09T07:56:17.207 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\827923eb-6ff4-4e9f-8256-c5e38df4bbc8.tmp, EstimatedImpact: 0% 2026-05-09T07:56:17.207 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29ff4b10-ae92-412b-a687-98c32f50e37e.tmp, EstimatedImpact: 0% 2026-05-09T07:56:17.207 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cc2a890-4834-4a8b-ac8c-3b5cae912bd9.tmp, EstimatedImpact: 0% 2026-05-09T07:56:17.207 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3a4bf08-2bc5-4dcc-95c9-0a0ff6b2d780.tmp, EstimatedImpact: 0% 2026-05-09T07:56:17.207 ProcessImageName: updater.exe, Pid: 3700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d13f0ac-5069-4f6a-8d96-2bb1e03568b9.tmp, EstimatedImpact: 0% 2026-05-09T07:56:17.207 ProcessImageName: updater.exe, Pid: 3008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1ad24db-9cc6-446d-8ccd-c8038878e952.tmp, EstimatedImpact: 0% 2026-05-09T07:56:17.207 ProcessImageName: updater.exe, Pid: 2360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f875b635-61bb-4b36-ba96-e4a595473df3.tmp, EstimatedImpact: 0% 2026-05-09T07:56:17.207 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T07:56:59.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T08:12:04.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T08:15:34.546 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2409143, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T08:15:34.561 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2409145, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T08:15:44.549 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2409158, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T08:15:44.549 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2409160, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T08:15:44.564 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2409162, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T08:15:44.564 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2409164, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T08:27:09.236 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T08:36:48.896 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2410332, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T08:36:48.912 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2410334, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T08:36:53.521 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2410346, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T08:36:53.536 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2410349, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T08:36:53.552 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2410351, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T08:37:03.536 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2410364, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T08:37:03.536 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2410366, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T08:37:03.739 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2410370, FileId: 0xc80000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T08:42:14.242 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T08:57:19.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T09:12:24.227 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T09:27:29.237 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T09:42:34.237 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T09:51:18.560 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1ac_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2414483, FileId: 0x1e1200000004c522, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T09:51:19.372 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1ac_18.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2414513, FileId: 0x1e1c00000004c522, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T09:51:20.547 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1ac_30.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2414546, FileId: 0x1e2700000004c522, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T09:51:32.683 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1ad_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2414600, FileId: 0x17d600000004c45c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T09:51:33.844 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1ad_1a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2414633, FileId: 0x17e100000004c45c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T09:51:34.538 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1ad_30.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2414663, FileId: 0x17eb00000004c45c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T09:56:17.209 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55251, Count: 6816, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3825, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PF38Y3, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 301, Count: 220, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a195_1.MAD, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb139-14cc-4dd8-a179-eab148637e71.tmp, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4258d6ff-2216-45c2-b2a5-b463bd7db52f.tmp, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\827923eb-6ff4-4e9f-8256-c5e38df4bbc8.tmp, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: updater.exe, Pid: 3700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d13f0ac-5069-4f6a-8d96-2bb1e03568b9.tmp, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: updater.exe, Pid: 3008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1ad24db-9cc6-446d-8ccd-c8038878e952.tmp, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: updater.exe, Pid: 2360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f875b635-61bb-4b36-ba96-e4a595473df3.tmp, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cc2a890-4834-4a8b-ac8c-3b5cae912bd9.tmp, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29ff4b10-ae92-412b-a687-98c32f50e37e.tmp, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0a2a521d-39c5-4ed5-baa4-9cc053e59a0f.tmp, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cf0417fd-2922-492d-8176-8de492d1db41.tmp, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3a4bf08-2bc5-4dcc-95c9-0a0ff6b2d780.tmp, EstimatedImpact: 0% 2026-05-09T09:56:17.209 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T09:57:39.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T10:12:44.241 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T10:15:32.658 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2416011, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T10:27:49.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T10:42:54.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T10:57:59.236 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T11:13:04.237 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T11:28:09.227 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T11:43:14.229 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T11:56:17.213 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55251, Count: 6816, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4515, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PF38Y3, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 301, Count: 220, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a195_1.MAD, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb139-14cc-4dd8-a179-eab148637e71.tmp, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4258d6ff-2216-45c2-b2a5-b463bd7db52f.tmp, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\827923eb-6ff4-4e9f-8256-c5e38df4bbc8.tmp, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f377164-191c-4b46-8530-495dfc302a18.tmp, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29ff4b10-ae92-412b-a687-98c32f50e37e.tmp, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0a2a521d-39c5-4ed5-baa4-9cc053e59a0f.tmp, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cc2a890-4834-4a8b-ac8c-3b5cae912bd9.tmp, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cf0417fd-2922-492d-8176-8de492d1db41.tmp, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3a4bf08-2bc5-4dcc-95c9-0a0ff6b2d780.tmp, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: updater.exe, Pid: 3700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d13f0ac-5069-4f6a-8d96-2bb1e03568b9.tmp, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: updater.exe, Pid: 3008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1ad24db-9cc6-446d-8ccd-c8038878e952.tmp, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: updater.exe, Pid: 2360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f875b635-61bb-4b36-ba96-e4a595473df3.tmp, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T11:56:17.213 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T11:58:19.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T12:13:24.238 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T12:15:42.818 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2422650, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T12:28:29.237 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T12:43:34.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T12:58:39.239 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T13:13:44.227 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T13:28:49.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T13:36:57.260 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2427158, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T13:43:54.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T13:56:17.224 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55281, Count: 6818, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5340, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PF38Y3, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 301, Count: 220, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a195_1.MAD, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4258d6ff-2216-45c2-b2a5-b463bd7db52f.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb139-14cc-4dd8-a179-eab148637e71.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 7284, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c5ebb45-0b7d-4c55-9174-4cec6021158f.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\827923eb-6ff4-4e9f-8256-c5e38df4bbc8.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3a4bf08-2bc5-4dcc-95c9-0a0ff6b2d780.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f377164-191c-4b46-8530-495dfc302a18.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cf0417fd-2922-492d-8176-8de492d1db41.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 2360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f875b635-61bb-4b36-ba96-e4a595473df3.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29ff4b10-ae92-412b-a687-98c32f50e37e.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cc2a890-4834-4a8b-ac8c-3b5cae912bd9.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 7684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\226e0e85-fc94-4455-8ef8-501e8f49c7cb.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0a2a521d-39c5-4ed5-baa4-9cc053e59a0f.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\df54faaa-44a2-4005-a271-6c1b1fbf1bca.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 3008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1ad24db-9cc6-446d-8ccd-c8038878e952.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 3700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d13f0ac-5069-4f6a-8d96-2bb1e03568b9.tmp, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T13:56:17.224 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T13:58:59.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T14:14:04.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T14:29:09.239 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T14:44:14.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T14:59:19.229 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T15:14:24.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T15:15:43.544 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2432654, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T15:29:29.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T15:44:34.237 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T15:56:17.231 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 57187, Count: 6927, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6045, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PF38Y3, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 331, Count: 226, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a195_1.MAD, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4258d6ff-2216-45c2-b2a5-b463bd7db52f.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb139-14cc-4dd8-a179-eab148637e71.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 7284, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c5ebb45-0b7d-4c55-9174-4cec6021158f.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\827923eb-6ff4-4e9f-8256-c5e38df4bbc8.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 3008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1ad24db-9cc6-446d-8ccd-c8038878e952.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f377164-191c-4b46-8530-495dfc302a18.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3a4bf08-2bc5-4dcc-95c9-0a0ff6b2d780.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cc2a890-4834-4a8b-ac8c-3b5cae912bd9.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 3700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d13f0ac-5069-4f6a-8d96-2bb1e03568b9.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29ff4b10-ae92-412b-a687-98c32f50e37e.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cf0417fd-2922-492d-8176-8de492d1db41.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 7684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\226e0e85-fc94-4455-8ef8-501e8f49c7cb.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0a2a521d-39c5-4ed5-baa4-9cc053e59a0f.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\808cf0fd-1785-42d4-8136-69da8d7168b7.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\df54faaa-44a2-4005-a271-6c1b1fbf1bca.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 2360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f875b635-61bb-4b36-ba96-e4a595473df3.tmp, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T15:56:17.231 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T15:59:39.231 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T16:14:44.239 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T16:29:49.238 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T16:44:54.227 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T16:59:59.227 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T17:03:03.283 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a1b6_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2438583, FileId: 0x3bc000000055261, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T17:15:04.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T17:30:09.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T17:45:14.237 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T17:56:17.245 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 57202, Count: 6932, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6540, Count: 58248, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PF38Y3, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 346, Count: 234, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a195_1.MAD, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 7284, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c5ebb45-0b7d-4c55-9174-4cec6021158f.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4258d6ff-2216-45c2-b2a5-b463bd7db52f.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb139-14cc-4dd8-a179-eab148637e71.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\827923eb-6ff4-4e9f-8256-c5e38df4bbc8.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29ff4b10-ae92-412b-a687-98c32f50e37e.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\808cf0fd-1785-42d4-8136-69da8d7168b7.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cc2a890-4834-4a8b-ac8c-3b5cae912bd9.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 3700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d13f0ac-5069-4f6a-8d96-2bb1e03568b9.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cf0417fd-2922-492d-8176-8de492d1db41.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3a4bf08-2bc5-4dcc-95c9-0a0ff6b2d780.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a07ee-a030-4925-9d23-d25280424d5c.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\df54faaa-44a2-4005-a271-6c1b1fbf1bca.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 3008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1ad24db-9cc6-446d-8ccd-c8038878e952.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 2360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f875b635-61bb-4b36-ba96-e4a595473df3.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f377164-191c-4b46-8530-495dfc302a18.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 7684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\226e0e85-fc94-4455-8ef8-501e8f49c7cb.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5842830f-6258-47f7-9582-aa715aef8bd8.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0a2a521d-39c5-4ed5-baa4-9cc053e59a0f.tmp, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T17:56:17.245 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T18:00:19.234 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T18:15:24.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T18:15:44.262 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2442624, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T18:30:29.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T18:45:34.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T19:00:39.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T19:15:43.731 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2445993, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T19:15:44.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T19:30:49.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T19:45:54.240 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T19:56:17.245 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59257, Count: 7169, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7320, Count: 64719, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PF38Y3, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 346, Count: 234, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a195_1.MAD, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb139-14cc-4dd8-a179-eab148637e71.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 7284, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c5ebb45-0b7d-4c55-9174-4cec6021158f.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4258d6ff-2216-45c2-b2a5-b463bd7db52f.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 6484, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3516118e-c8e6-49b4-95ff-045628162541.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\827923eb-6ff4-4e9f-8256-c5e38df4bbc8.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\808cf0fd-1785-42d4-8136-69da8d7168b7.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 6236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5bc5487d-374e-445a-8975-d11ae45236ae.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 2360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f875b635-61bb-4b36-ba96-e4a595473df3.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cc2a890-4834-4a8b-ac8c-3b5cae912bd9.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cf0417fd-2922-492d-8176-8de492d1db41.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\df54faaa-44a2-4005-a271-6c1b1fbf1bca.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3a4bf08-2bc5-4dcc-95c9-0a0ff6b2d780.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a07ee-a030-4925-9d23-d25280424d5c.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29ff4b10-ae92-412b-a687-98c32f50e37e.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f377164-191c-4b46-8530-495dfc302a18.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 3700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d13f0ac-5069-4f6a-8d96-2bb1e03568b9.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\093e63af-88e6-401b-8776-7958fab1f38f.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 3008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1ad24db-9cc6-446d-8ccd-c8038878e952.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5842830f-6258-47f7-9582-aa715aef8bd8.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0a2a521d-39c5-4ed5-baa4-9cc053e59a0f.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 7684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\226e0e85-fc94-4455-8ef8-501e8f49c7cb.tmp, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T19:56:17.245 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T20:00:59.229 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T20:16:04.236 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T20:31:09.238 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T20:46:14.231 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T21:01:19.227 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T21:15:42.797 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2453034, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T21:16:24.227 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T21:31:29.231 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T21:46:34.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T21:56:17.260 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59642, Count: 7202, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8205, Count: 71190, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PF38Y3, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 346, Count: 234, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a195_1.MAD, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 7284, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c5ebb45-0b7d-4c55-9174-4cec6021158f.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb139-14cc-4dd8-a179-eab148637e71.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 6484, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3516118e-c8e6-49b4-95ff-045628162541.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4258d6ff-2216-45c2-b2a5-b463bd7db52f.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\827923eb-6ff4-4e9f-8256-c5e38df4bbc8.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f377164-191c-4b46-8530-495dfc302a18.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 7332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7b92986-319c-4dc2-b87b-43392a92abb8.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\df54faaa-44a2-4005-a271-6c1b1fbf1bca.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0a2a521d-39c5-4ed5-baa4-9cc053e59a0f.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\808cf0fd-1785-42d4-8136-69da8d7168b7.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cc2a890-4834-4a8b-ac8c-3b5cae912bd9.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cf0417fd-2922-492d-8176-8de492d1db41.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29ff4b10-ae92-412b-a687-98c32f50e37e.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3a4bf08-2bc5-4dcc-95c9-0a0ff6b2d780.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a07ee-a030-4925-9d23-d25280424d5c.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 3700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d13f0ac-5069-4f6a-8d96-2bb1e03568b9.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 6236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5bc5487d-374e-445a-8975-d11ae45236ae.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 3008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1ad24db-9cc6-446d-8ccd-c8038878e952.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 2360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f875b635-61bb-4b36-ba96-e4a595473df3.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5842830f-6258-47f7-9582-aa715aef8bd8.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 7684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\226e0e85-fc94-4455-8ef8-501e8f49c7cb.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\093e63af-88e6-401b-8776-7958fab1f38f.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd15c292-df60-4573-984c-bb597508c72e.tmp, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T21:56:17.260 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T22:01:39.225 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T22:16:44.231 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T22:31:49.225 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T22:46:54.225 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T23:01:59.224 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T23:15:46.025 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2459677, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-09T23:17:04.234 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T23:32:09.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T23:47:14.238 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-09T23:55:24.233 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-09T23:55:24.249 Job Notification: New process added to job (6552) 2026-05-09T23:55:24.264 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-09T23:55:24.264 Job Notification: New process added to job (7136) 2026-05-09T23:55:24.264 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6552] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7136]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-09T23:55:24.280 Aggressive catchup quick scan threshold: 788103200698 / 25920000000000 2026-05-09T23:55:24.311 Job Notification: New process added to job (3220) 2026-05-09T23:55:24.311 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-09T23:55:24.311 Job Notification: New process added to job (7096) 2026-05-09T23:55:24.327 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3220] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7096]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-09T23:55:24.796 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-09T23:55:24.796 [RTP] Duplicating the current plugin configuration object... 2026-05-09T23:55:24.796 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-09T23:55:24.796 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-09T23:55:24.796 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-09T23:55:24.796 [RTP] No config change detected. Not updating plugin configuration. 2026-05-09T23:55:24.796 [RTP] No config changes found. No configuration switch. 2026-05-09T23:55:24.796 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-09T23:55:24.874 Job Notification: New process added to job (7488) 2026-05-09T23:55:24.889 Task(GetDeviceTicket -AccessKey E0C327FC-94B8-6891-2372-51401399A2AD ) launched as network service 2026-05-09T23:55:25.358 Job Notification: Process exited from job (7488) 2026-05-09T23:55:26.467 [RTP] [Mini-filter] MpQueryRuntimeDrivers called. bytesToCopy = 36, ntStatus = 0xc0000023 2026-05-09T23:55:26.467 [RTP] [Mini-filter] MpQueryRuntimeDrivers called. bytesToCopy = 384, ntStatus = 0x0 2026-05-09T23:55:26.467 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-09T23:55:26.467 [Cloud] Start of cloud request. Passive mode: 0 2026-05-09T23:55:26.467 [Cloud] Queued cloud request. 2026-05-09T23:55:26.467 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-09T23:55:26.467 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-09T23:55:26.467 [Cloud] Start of cloud request. Passive mode: 0 2026-05-09T23:55:26.467 [Cloud] Queued cloud request. 2026-05-09T23:55:26.499 Job Notification: New process added to job (6912) 2026-05-09T23:55:26.499 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey B5847574-1088-D706-E912-EFA16632AB5F) launched 2026-05-09T23:55:26.499 Job Notification: New process added to job (3028) 2026-05-09T23:55:26.514 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:6912] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3028]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-09T23:55:26.514 Job Notification: New process added to job (6748) 2026-05-09T23:55:26.530 Job Notification: Process exited from job (6912) 2026-05-09T23:55:26.530 Job Notification: Process exited from job (3028) 2026-05-09T23:55:26.546 [Cloud] Dequeued cloud request. 2026-05-09T23:55:26.546 [Cloud] Dequeued cloud request. 2026-05-09T23:55:26.546 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-09T23:55:26.546 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-09T23:55:26.764 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-09T23:55:26.764 [Cloud] End of cloud request. 2026-05-09T23:55:26.780 [Cloud] End of cloud request. 2026-05-09T23:55:26.975 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-09T23:56:10.730 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\C0E1CDD2-DB1E-46A5-B9DB-60FD1CD1C81C19d0.1dce00f67d564a1 2026-05-09T23:56:10.808 Verifying engine and signature files (source: 0) ... 2026-05-09T23:56:10.808 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CBB7029E-AC1E-4E82-98A0-083C746D2A4F}\mpengine.dll] due to PPL. 2026-05-09T23:56:10.808 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CBB7029E-AC1E-4E82-98A0-083C746D2A4F}\mpasbase.vdm] (file in cache) 2026-05-09T23:56:10.808 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CBB7029E-AC1E-4E82-98A0-083C746D2A4F}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-09T23:56:10.824 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CBB7029E-AC1E-4E82-98A0-083C746D2A4F}\mpasdlta.vdm] 2026-05-09T23:56:10.824 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CBB7029E-AC1E-4E82-98A0-083C746D2A4F}\mpavbase.vdm] (file in cache) 2026-05-09T23:56:10.824 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CBB7029E-AC1E-4E82-98A0-083C746D2A4F}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-09T23:56:10.839 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CBB7029E-AC1E-4E82-98A0-083C746D2A4F}\mpavdlta.vdm] 2026-05-09T23:56:11.027 [Engine] IsHybridMode: 0 2026-05-09T23:56:11.027 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-09T23:56:11.105 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-E7A8FAACEBB3743F19AD3DAC06B196610933F72B.bin): 0x00000002 2026-05-09T23:56:11.105 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-E7A8FAACEBB3743F19AD3DAC06B196610933F72B.bin) 2026-05-09T23:56:11.105 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-09T23:56:11.105 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-09T23:56:11.105 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-09T23:56:11.105 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-05-09T23:56:17.261 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59642, Count: 7202, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9105, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PF38Y3, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 346, Count: 234, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a195_1.MAD, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 6484, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3516118e-c8e6-49b4-95ff-045628162541.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 7284, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c5ebb45-0b7d-4c55-9174-4cec6021158f.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 7108, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f9dd9bfc-f615-4a24-8451-b104652f68e2.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4258d6ff-2216-45c2-b2a5-b463bd7db52f.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb139-14cc-4dd8-a179-eab148637e71.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\827923eb-6ff4-4e9f-8256-c5e38df4bbc8.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 7684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\226e0e85-fc94-4455-8ef8-501e8f49c7cb.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 6960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\414386ba-03ca-40c0-926f-f45559b050f4.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0a2a521d-39c5-4ed5-baa4-9cc053e59a0f.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 7124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\093e63af-88e6-401b-8776-7958fab1f38f.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 6316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\808cf0fd-1785-42d4-8136-69da8d7168b7.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 6236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5bc5487d-374e-445a-8975-d11ae45236ae.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 7332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7b92986-319c-4dc2-b87b-43392a92abb8.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 5952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0cc2a890-4834-4a8b-ac8c-3b5cae912bd9.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cf0417fd-2922-492d-8176-8de492d1db41.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\df54faaa-44a2-4005-a271-6c1b1fbf1bca.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 4328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a3a4bf08-2bc5-4dcc-95c9-0a0ff6b2d780.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a07ee-a030-4925-9d23-d25280424d5c.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 7004, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f377164-191c-4b46-8530-495dfc302a18.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 3912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d539f659-4a63-4349-89a6-cb49dbd3d982.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 3700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d13f0ac-5069-4f6a-8d96-2bb1e03568b9.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 3008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1ad24db-9cc6-446d-8ccd-c8038878e952.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 2092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5842830f-6258-47f7-9582-aa715aef8bd8.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 2360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f875b635-61bb-4b36-ba96-e4a595473df3.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 7876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29ff4b10-ae92-412b-a687-98c32f50e37e.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 1064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd15c292-df60-4573-984c-bb597508c72e.tmp, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 7920, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-09T23:56:17.261 ProcessImageName: updater.exe, Pid: 4312, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-09T23:56:20.319 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-09T23:56:20.319 [AutoExclusion] Applied roles from cache. 2026-05-09T23:56:20.319 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-09T23:56:20.335 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0EA68020, lRefCount: 5, hr=0 2026-05-09T23:56:20.335 [Engine] New active engine 00007FFD0D908020 replacing engine 00007FFD0EA68020. Number of active engines: 2 2026-05-09T23:56:20.335 EngineInit:Global ASOC is enabled 2026-05-09T23:56:20.335 EngineInit:ASOO is enabled for developer volumes 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-09T23:56:20.350 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-09T23:56:20.350 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-09T23:56:20.366 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-09T23:56:20.366 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-09T23:56:20.366 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-09T23:56:20.366 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-09T23:56:20.366 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-09T23:56:20.366 [Plugin] Initializing RTP plugin state... 2026-05-09T23:56:20.366 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-09T23:56:20.366 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎09‎-‎2026 01:56:17 Last Perf:‎05‎-‎09‎-‎2026 01:56:17 First RTP Scan:‎05‎-‎09‎-‎2026 01:56:17 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:3137 Misses:119851 BM Queue:0,292,0 Proc:0,42,0 File:0,292,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:2462012 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-1533482162 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:19009 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:468268 TotalHits:790126 InstanceCacheInserts:1146509 InstanceCacheUpdates:0 InstanceCacheDeletes:205127 InstanceCacheHits:5243 InstanceCacheMisses:1603405 InstanceCacheOverflows:927947 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (364/287) Success: 287, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-09T23:56:20.366 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CBB7029E-AC1E-4E82-98A0-083C746D2A4F} 2026-05-09T23:56:20.366 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{41AE0427-0028-49D9-993E-D713FEB256CB}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{41AE0427-0028-49D9-993E-D713FEB256CB}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-09T23:56:20.382 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-09T23:56:20.382 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{94DEC23F-2E0A-499D-9933-1505EC3897F4} removed 2026-05-09T23:56:20.382 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-09T23:56:20.382 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-09T23:56:20.382 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-09T23:56:20.382 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-09T23:56:20.382 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-09-2026 23:56:20 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-09-2026 23:56:20 2026-05-09T23:56:20.382 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-09T23:56:20.382 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-09T23:56:20.382 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-09T23:56:20.382 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-09T23:56:20.382 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-09T23:56:20.382 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-09T23:56:20.382 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-09T23:56:20.382 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-09T23:56:20.382 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-09T23:56:20.382 MdCoreSvc is supported in this platform and OS Signature updated on 05-09-2026 23:56:20 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.534.0 AV Signature Version: 1.449.534.0 ************************************************************ 2026-05-09T23:56:20.382 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-09T23:56:20.382 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\C0E1CDD2-DB1E-46A5-B9DB-60FD1CD1C81C19d0.1dce00f67d564a1 2026-05-09T23:56:20.397 Process scan (postsignatureupdatescan) started. Signature updated via MicrosoftUpdateServer on 05-09-2026 23:56:20 ************************************************************ 2026-05-09T23:56:20.444 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-09T23:56:20.444 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-09T23:56:20.444 Job Notification: Process exited from job (3220) 2026-05-09T23:56:20.460 Job Notification: Process exited from job (7096) 2026-05-09T23:56:20.460 Job Notification: Process exited from job (6552) 2026-05-09T23:56:20.460 Job Notification: Process exited from job (7136) 2026-05-09T23:56:20.616 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-09T23:56:20.616 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-09T23:56:20.616 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-09T23:56:20.616 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-09T23:56:20.616 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-09T23:56:20.647 [Engine] Engine 00007FFD0EA68020 no longer in use. Number of active engines: 1 2026-05-09T23:56:20.647 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-09T23:56:20.647 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-09T23:56:20.866 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-09T23:56:20.866 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-09T23:56:20.866 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-09T23:56:21.210 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59642, Count: 7202, MaxTime: 921, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-09T23:56:21.210 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9105, Count: 77670, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.PF38Y3, EstimatedImpact: 0% 2026-05-09T23:56:21.210 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 346, Count: 234, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a195_1.MAD, EstimatedImpact: 0% 2026-05-09T23:56:21.210 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 93, Count: 2, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-09T23:56:21.210 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 75, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-09T23:56:21.210 ProcessImageName: updater.exe, Pid: 6484, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3516118e-c8e6-49b4-95ff-045628162541.tmp, EstimatedImpact: 0% 2026-05-09T23:56:21.210 ProcessImageName: updater.exe, Pid: 7284, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c5ebb45-0b7d-4c55-9174-4cec6021158f.tmp, EstimatedImpact: 0% 2026-05-09T23:56:21.210 ProcessImageName: updater.exe, Pid: 7108, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f9dd9bfc-f615-4a24-8451-b104652f68e2.tmp, EstimatedImpact: 0% 2026-05-09T23:56:21.210 ProcessImageName: updater.exe, Pid: 8020, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4258d6ff-2216-45c2-b2a5-b463bd7db52f.tmp, EstimatedImpact: 0% 2026-05-09T23:56:21.210 ProcessImageName: updater.exe, Pid: 7320, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb139-14cc-4dd8-a179-eab148637e71.tmp, EstimatedImpact: 0% 2026-05-09T23:56:21.210 ProcessImageName: updater.exe, Pid: 6504, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\827923eb-6ff4-4e9f-8256-c5e38df4bbc8.tmp, EstimatedImpact: 0% 2026-05-09T23:56:21.210 ProcessImageName: updater.exe, Pid: 7684, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\226e0e85-fc94-4455-8ef8-501e8f49c7cb.tmp, EstimatedImpact: 0% 2026-05-09T23:56:21.210 ProcessImageName: updater.exe, Pid: 6960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\414386ba-03ca-40c0-926f-f45559b050f4.tmp, EstimatedImpact: 0% 2026-05-09T23:56:21.210 ProcessImageName: updater.exe, Pid: 6356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0a2a521d-39c5-4ed5-baa4-9cc053e59a0f.tmp, EstimatedImpact: 0% 2026-05-09T23:56:21.257 [Engine] RSIG_UNLOADENGINE, 00007FFD0EA68020, err=0x0 2026-05-09T23:56:21.257 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{41AE0427-0028-49D9-993E-D713FEB256CB} removed 2026-05-09T23:56:26.804 Process scan (postsignatureupdatescan) completed. 2026-05-10T00:01:20.356 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-10T00:02:19.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T00:15:32.366 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2463160, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T00:15:32.366 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2463162, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T00:15:42.385 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2463176, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T00:15:42.385 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2463179, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T00:17:24.238 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T00:32:29.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T00:47:34.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T01:02:39.237 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T01:15:35.362 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2466498, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T01:15:35.377 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2466500, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T01:15:45.369 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2466514, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T01:15:45.385 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2466517, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T01:17:44.236 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T01:32:49.223 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T01:47:54.236 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T01:56:20.346 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 1093, Count: 80, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\js\jquery-1.7.1.min.js->(SCRIPT0000), EstimatedImpact: 0% 2026-05-10T01:56:20.346 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 870, Count: 6471, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.0CNKZ3, EstimatedImpact: 0% 2026-05-10T01:56:20.346 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c765063c-f021-450d-b58f-3ded19b430e1.tmp, EstimatedImpact: 0% 2026-05-10T01:56:20.346 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3afdb4-3ec4-4ef1-bf2d-9581dddff6b2.tmp, EstimatedImpact: 0% 2026-05-10T02:01:53.887 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:184E4778-50ED-4B14-AD6D-9E5A1D16911A, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-10T02:01:53.887 Scheduled scan with Id 184E4778-50ED-4B14-AD6D-9E5A1D16911A configured CPU priority: normal (LowCpuPriority: 0) 2026-05-10T02:01:53.887 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-10T02:01:53.887 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-10T02:01:53.887 [SFC] System file cache build is not needed (already completed) 2026-05-10T02:02:03.637 Engine:Triggered AR EMS scan 2026-05-10T02:02:03.637 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.653 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.684 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.700 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.747 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.762 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.778 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.825 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.840 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.872 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.887 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.919 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.934 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.950 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.981 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:03.997 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:04.028 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:04.090 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:04.106 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:04.137 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:04.153 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:04.215 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-10T02:02:04.231 Bm signature throttled:0x00002db31bed458f 2026-05-10T02:02:17.684 QuickScan:ScanID:184E4778-50ED-4B14-AD6D-9E5A1D16911A: Quick scan finished with error 0 2026-05-10T02:02:17.684 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-10T02:02:18.184 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-10T02:02:18.184 [RTP] Duplicating the current plugin configuration object... 2026-05-10T02:02:18.184 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-10T02:02:18.184 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-10T02:02:18.184 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-10T02:02:18.184 [RTP] No config change detected. Not updating plugin configuration. 2026-05-10T02:02:18.184 [RTP] No config changes found. No configuration switch. 2026-05-10T02:02:18.184 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-10T02:02:59.231 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T02:15:33.342 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2470206, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T02:15:33.357 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2470208, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T02:15:43.357 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2470241, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T02:15:43.373 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2470243, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T02:15:43.373 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2470244, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T02:18:04.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T02:33:09.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T02:48:14.229 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T03:03:19.234 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T03:15:32.439 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2473576, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T03:15:32.454 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2473578, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T03:15:42.462 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2473591, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T03:15:42.462 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2473593, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T03:18:24.227 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T03:22:08.091 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a7_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2475143, FileId: 0x4ef0000000568e7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T03:22:08.091 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a8_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2475146, FileId: 0xfa10000000550ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T03:22:08.091 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a6_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2475147, FileId: 0x4f00000000568e7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T03:22:19.669 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a8_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2475607, FileId: 0x415900000004c461, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T03:22:19.669 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a6_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2475608, FileId: 0x37000000056900, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T03:22:19.700 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a7_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2475610, FileId: 0x12a0000000568f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T03:22:21.700 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a9_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2475626, FileId: 0xa4dc00000000b06e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T03:33:29.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T03:48:34.229 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T03:56:20.357 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48394, Count: 6377, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\category\stiri\stiri-locale\bca5136f33b2a05190944584fb55ee3e.html, EstimatedImpact: 0% 2026-05-10T03:56:20.357 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1530, Count: 12942, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.0CNKZ3, EstimatedImpact: 0% 2026-05-10T03:56:20.357 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-10T03:56:20.357 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 15, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a7_1.MAI, EstimatedImpact: 0% 2026-05-10T03:56:20.357 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c765063c-f021-450d-b58f-3ded19b430e1.tmp, EstimatedImpact: 0% 2026-05-10T03:56:20.357 ProcessImageName: updater.exe, Pid: 6548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\196aa07f-335b-4749-b7fd-05ef280ae7f0.tmp, EstimatedImpact: 0% 2026-05-10T03:56:20.357 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3afdb4-3ec4-4ef1-bf2d-9581dddff6b2.tmp, EstimatedImpact: 0% 2026-05-10T03:56:20.357 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cb4128f-fcb0-4d18-ae23-dec909e7a43e.tmp, EstimatedImpact: 0% 2026-05-10T04:03:39.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T04:15:32.186 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2478573, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:15:32.186 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2478575, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:15:42.198 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2478589, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:15:42.198 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2478591, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:15:42.354 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2478595, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:15:42.370 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2478597, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:18:44.223 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T04:33:43.645 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3ae_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2479601, FileId: 0x269100000004c50f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:33:49.222 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T04:37:04.493 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2479789, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:37:04.508 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2479791, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:37:08.809 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2479810, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:37:08.825 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2479813, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:37:08.825 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2479815, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:37:08.825 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2479817, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:37:18.812 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2479829, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:37:18.812 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2479831, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:37:18.827 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2479833, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:37:18.827 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2479835, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T04:48:54.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T05:03:59.222 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T05:15:33.284 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2481942, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T05:15:33.300 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2481944, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T05:15:43.300 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2481958, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T05:15:43.315 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2481961, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T05:19:04.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T05:34:09.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T05:49:14.223 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T05:56:20.372 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 48424, Count: 6380, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\category\stiri\stiri-locale\bca5136f33b2a05190944584fb55ee3e.html, EstimatedImpact: 0% 2026-05-10T05:56:20.372 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2310, Count: 19413, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.0CNKZ3, EstimatedImpact: 0% 2026-05-10T05:56:20.372 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-10T05:56:20.372 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e73d5d1-94b2-4ff3-8538-9205be7a2a32.tmp, EstimatedImpact: 0% 2026-05-10T05:56:20.372 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 30, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a7_1.MAI, EstimatedImpact: 0% 2026-05-10T05:56:20.372 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-10T05:56:20.372 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c765063c-f021-450d-b58f-3ded19b430e1.tmp, EstimatedImpact: 0% 2026-05-10T05:56:20.372 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43ba7561-1711-4070-b719-d20d174b3223.tmp, EstimatedImpact: 0% 2026-05-10T05:56:20.372 ProcessImageName: updater.exe, Pid: 6548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\196aa07f-335b-4749-b7fd-05ef280ae7f0.tmp, EstimatedImpact: 0% 2026-05-10T05:56:20.372 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3afdb4-3ec4-4ef1-bf2d-9581dddff6b2.tmp, EstimatedImpact: 0% 2026-05-10T05:56:20.372 ProcessImageName: updater.exe, Pid: 3504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1885d2e7-5e43-4bb3-b296-8f4bdf704e84.tmp, EstimatedImpact: 0% 2026-05-10T05:56:20.372 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cb4128f-fcb0-4d18-ae23-dec909e7a43e.tmp, EstimatedImpact: 0% 2026-05-10T06:04:19.224 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T06:15:31.109 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2485281, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T06:15:31.125 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2485283, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T06:15:41.114 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2485297, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T06:15:41.114 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2485298, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T06:15:41.130 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2485300, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T06:19:24.236 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T06:34:29.225 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T06:46:50.264 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3b3_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2487018, FileId: 0x4dc00000004c527, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T06:46:51.042 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3b3_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2487022, FileId: 0x4dd00000004c527, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T06:49:34.233 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T07:01:31.560 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a43c_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2488095, FileId: 0x49b00000002c384, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T07:01:32.092 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a43c_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2488099, FileId: 0x49c00000002c384, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T07:04:39.233 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T07:15:33.870 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2488879, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T07:15:33.870 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2488881, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T07:15:43.885 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2488895, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T07:15:43.901 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2488897, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T07:15:43.901 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2488898, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T07:19:44.221 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T07:34:49.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T07:49:54.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T07:56:20.387 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55180, Count: 7008, MaxTime: 421, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-10T07:56:20.387 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3090, Count: 25884, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.0CNKZ3, EstimatedImpact: 0% 2026-05-10T07:56:20.387 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-10T07:56:20.387 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-10T07:56:20.387 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 45, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a7_1.MAI, EstimatedImpact: 0% 2026-05-10T07:56:20.387 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e73d5d1-94b2-4ff3-8538-9205be7a2a32.tmp, EstimatedImpact: 0% 2026-05-10T07:56:20.387 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c765063c-f021-450d-b58f-3ded19b430e1.tmp, EstimatedImpact: 0% 2026-05-10T07:56:20.387 ProcessImageName: updater.exe, Pid: 6960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89a6b7b1-3c31-403c-b92f-40d7960d8524.tmp, EstimatedImpact: 0% 2026-05-10T07:56:20.387 ProcessImageName: updater.exe, Pid: 6548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\196aa07f-335b-4749-b7fd-05ef280ae7f0.tmp, EstimatedImpact: 0% 2026-05-10T07:56:20.387 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43ba7561-1711-4070-b719-d20d174b3223.tmp, EstimatedImpact: 0% 2026-05-10T07:56:20.387 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3afdb4-3ec4-4ef1-bf2d-9581dddff6b2.tmp, EstimatedImpact: 0% 2026-05-10T07:56:20.387 ProcessImageName: updater.exe, Pid: 3504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1885d2e7-5e43-4bb3-b296-8f4bdf704e84.tmp, EstimatedImpact: 0% 2026-05-10T07:56:20.387 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b652ef78-c01c-45c8-84ac-44288da3e60e.tmp, EstimatedImpact: 0% 2026-05-10T07:56:20.387 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cb4128f-fcb0-4d18-ae23-dec909e7a43e.tmp, EstimatedImpact: 0% 2026-05-10T08:04:59.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T08:15:33.003 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2492623, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T08:15:33.019 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2492625, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T08:15:43.012 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2492639, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T08:15:43.012 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2492642, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T08:15:43.012 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2492643, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T08:20:04.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T08:35:09.236 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T08:50:14.233 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T09:05:19.222 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T09:15:32.712 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2495961, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:15:32.728 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2495963, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:15:42.731 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2495977, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:15:42.731 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2495979, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:15:43.027 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2495983, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:15:43.027 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2495985, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:20:24.231 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T09:25:32.532 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82aa21_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2496529, FileId: 0x58700000004c528, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:25:33.126 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82aa21_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2496533, FileId: 0x58800000004c528, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:35:29.231 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T09:37:08.912 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2497178, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:37:08.912 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2497180, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:37:12.023 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2497190, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:37:12.039 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2497193, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:37:12.039 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2497195, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:37:22.045 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2497208, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:37:22.045 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2497211, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T09:50:34.229 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T09:56:20.386 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55467, Count: 7034, MaxTime: 421, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 3780, Count: 32364, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.0CNKZ3, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 28, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a7_1.MAI, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e73d5d1-94b2-4ff3-8538-9205be7a2a32.tmp, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11ccbcbd-5b91-4fd2-8a13-634211a2f946.tmp, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c765063c-f021-450d-b58f-3ded19b430e1.tmp, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: updater.exe, Pid: 6960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89a6b7b1-3c31-403c-b92f-40d7960d8524.tmp, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: updater.exe, Pid: 6548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\196aa07f-335b-4749-b7fd-05ef280ae7f0.tmp, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43ba7561-1711-4070-b719-d20d174b3223.tmp, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0504391d-f9b7-4622-a845-5c5490f8f40b.tmp, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3afdb4-3ec4-4ef1-bf2d-9581dddff6b2.tmp, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: updater.exe, Pid: 3504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1885d2e7-5e43-4bb3-b296-8f4bdf704e84.tmp, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b652ef78-c01c-45c8-84ac-44288da3e60e.tmp, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cb4128f-fcb0-4d18-ae23-dec909e7a43e.tmp, EstimatedImpact: 0% 2026-05-10T09:56:20.386 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95e803b1-5e7f-46a0-aec0-d7f32b2541b1.tmp, EstimatedImpact: 0% 2026-05-10T10:05:39.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T10:15:33.464 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2499318, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T10:15:33.480 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2499320, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T10:15:43.476 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2499334, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T10:15:43.491 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2499337, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T10:20:44.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T10:35:49.235 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T10:50:54.234 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T11:05:59.234 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T11:15:34.964 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2502625, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T11:15:34.979 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2502627, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T11:15:44.968 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2502641, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T11:15:44.983 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2502643, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T11:15:44.983 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2502645, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T11:15:44.983 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2502647, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T11:20:55.352 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82aef1_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2502935, FileId: 0x2454000000054cb6, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T11:20:56.024 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82aef1_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2502939, FileId: 0x2455000000054cb6, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T11:21:04.222 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T11:36:09.223 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T11:51:14.222 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T11:56:20.390 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55467, Count: 7035, MaxTime: 421, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 4650, Count: 38835, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.0CNKZ3, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 75, Count: 32, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a7_1.MAI, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e73d5d1-94b2-4ff3-8538-9205be7a2a32.tmp, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11ccbcbd-5b91-4fd2-8a13-634211a2f946.tmp, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c765063c-f021-450d-b58f-3ded19b430e1.tmp, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: updater.exe, Pid: 6960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89a6b7b1-3c31-403c-b92f-40d7960d8524.tmp, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43ba7561-1711-4070-b719-d20d174b3223.tmp, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: updater.exe, Pid: 6548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\196aa07f-335b-4749-b7fd-05ef280ae7f0.tmp, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a6f3391-43f6-4a8b-b495-6146bd1f893a.tmp, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0504391d-f9b7-4622-a845-5c5490f8f40b.tmp, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3afdb4-3ec4-4ef1-bf2d-9581dddff6b2.tmp, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: updater.exe, Pid: 3504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1885d2e7-5e43-4bb3-b296-8f4bdf704e84.tmp, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b652ef78-c01c-45c8-84ac-44288da3e60e.tmp, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cb4128f-fcb0-4d18-ae23-dec909e7a43e.tmp, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95e803b1-5e7f-46a0-aec0-d7f32b2541b1.tmp, EstimatedImpact: 0% 2026-05-10T11:56:20.390 ProcessImageName: updater.exe, Pid: 180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6fcff271-cd72-442f-bdcd-4d363831df8a.tmp, EstimatedImpact: 0% 2026-05-10T12:06:19.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T12:15:33.667 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2505952, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T12:15:33.683 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2505954, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T12:15:43.676 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2505968, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T12:15:43.676 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2505969, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T12:15:43.692 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2505971, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T12:21:24.221 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T12:36:29.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T12:51:34.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T13:03:00.283 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82b1f4_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2508572, FileId: 0x21ea00000004c45c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T13:03:01.127 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82b1f4_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2508578, FileId: 0x21eb00000004c45c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T13:06:39.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T13:15:34.147 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2509272, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T13:15:34.147 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2509274, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T13:21:44.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T13:36:49.221 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T13:51:54.225 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T13:56:20.393 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55512, Count: 7039, MaxTime: 421, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 5505, Count: 45306, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.0CNKZ3, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 36, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a7_1.MAI, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e73d5d1-94b2-4ff3-8538-9205be7a2a32.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11ccbcbd-5b91-4fd2-8a13-634211a2f946.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c765063c-f021-450d-b58f-3ded19b430e1.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 6960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89a6b7b1-3c31-403c-b92f-40d7960d8524.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43ba7561-1711-4070-b719-d20d174b3223.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 6548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\196aa07f-335b-4749-b7fd-05ef280ae7f0.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a6f3391-43f6-4a8b-b495-6146bd1f893a.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 7052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a56b808f-465f-4f8c-a449-d797575bbce7.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0504391d-f9b7-4622-a845-5c5490f8f40b.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3afdb4-3ec4-4ef1-bf2d-9581dddff6b2.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 3504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1885d2e7-5e43-4bb3-b296-8f4bdf704e84.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b652ef78-c01c-45c8-84ac-44288da3e60e.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cb4128f-fcb0-4d18-ae23-dec909e7a43e.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95e803b1-5e7f-46a0-aec0-d7f32b2541b1.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6fcff271-cd72-442f-bdcd-4d363831df8a.tmp, EstimatedImpact: 0% 2026-05-10T13:56:20.393 ProcessImageName: updater.exe, Pid: 5900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-10T14:06:59.229 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T14:22:04.225 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T14:37:09.223 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T14:37:12.126 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2513825, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T14:52:14.224 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T15:07:19.222 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T15:15:42.923 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2515999, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T15:22:24.229 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T15:37:29.233 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T15:52:34.233 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T15:56:20.406 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55512, Count: 7039, MaxTime: 421, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 6450, Count: 51777, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.0CNKZ3, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 36, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a7_1.MAI, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e73d5d1-94b2-4ff3-8538-9205be7a2a32.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11ccbcbd-5b91-4fd2-8a13-634211a2f946.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 7440, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e939b961-9e8e-4f22-8709-bda84c052d1c.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c765063c-f021-450d-b58f-3ded19b430e1.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\472e71a3-dc85-4547-9dc8-fc3b15eb8988.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a6f3391-43f6-4a8b-b495-6146bd1f893a.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 6548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\196aa07f-335b-4749-b7fd-05ef280ae7f0.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 7052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a56b808f-465f-4f8c-a449-d797575bbce7.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43ba7561-1711-4070-b719-d20d174b3223.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 6960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89a6b7b1-3c31-403c-b92f-40d7960d8524.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3357e570-80ce-402d-869e-ab56d306b323.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0504391d-f9b7-4622-a845-5c5490f8f40b.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3afdb4-3ec4-4ef1-bf2d-9581dddff6b2.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 3504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1885d2e7-5e43-4bb3-b296-8f4bdf704e84.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b652ef78-c01c-45c8-84ac-44288da3e60e.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cb4128f-fcb0-4d18-ae23-dec909e7a43e.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95e803b1-5e7f-46a0-aec0-d7f32b2541b1.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6fcff271-cd72-442f-bdcd-4d363831df8a.tmp, EstimatedImpact: 0% 2026-05-10T15:56:20.406 ProcessImageName: updater.exe, Pid: 5900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-10T16:07:39.222 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T16:22:44.222 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T16:37:49.227 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T16:52:54.222 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T17:07:59.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T17:23:04.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T17:38:09.222 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T17:53:14.220 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T17:56:20.414 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 55739, Count: 7060, MaxTime: 421, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7200, Count: 58248, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.0CNKZ3, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 90, Count: 36, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a7_1.MAI, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e73d5d1-94b2-4ff3-8538-9205be7a2a32.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11ccbcbd-5b91-4fd2-8a13-634211a2f946.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 7440, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e939b961-9e8e-4f22-8709-bda84c052d1c.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c765063c-f021-450d-b58f-3ded19b430e1.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\472e71a3-dc85-4547-9dc8-fc3b15eb8988.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a6f3391-43f6-4a8b-b495-6146bd1f893a.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 7052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a56b808f-465f-4f8c-a449-d797575bbce7.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 6960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89a6b7b1-3c31-403c-b92f-40d7960d8524.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43ba7561-1711-4070-b719-d20d174b3223.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 1432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fd4f5f5b-d3c0-4e65-817e-df3f49ce4d05.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 6548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\196aa07f-335b-4749-b7fd-05ef280ae7f0.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3357e570-80ce-402d-869e-ab56d306b323.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0504391d-f9b7-4622-a845-5c5490f8f40b.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3afdb4-3ec4-4ef1-bf2d-9581dddff6b2.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 3504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1885d2e7-5e43-4bb3-b296-8f4bdf704e84.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b652ef78-c01c-45c8-84ac-44288da3e60e.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cb4128f-fcb0-4d18-ae23-dec909e7a43e.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95e803b1-5e7f-46a0-aec0-d7f32b2541b1.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6fcff271-cd72-442f-bdcd-4d363831df8a.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29359022-cd4e-41a4-b37f-3c2c57e8cc6c.tmp, EstimatedImpact: 0% 2026-05-10T17:56:20.414 ProcessImageName: updater.exe, Pid: 5900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-10T18:08:19.229 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T18:13:49.678 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82b373_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2525892, FileId: 0x1910000000054cbf, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T18:13:50.115 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82b373_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2525923, FileId: 0x191a000000054cbf, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T18:13:51.584 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82b373_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2525953, FileId: 0x1927000000054cbf, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T18:15:34.577 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2526132, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T18:17:44.647 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82b375_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2526283, FileId: 0x66300000005512f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T18:17:46.219 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82b375_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2526316, FileId: 0x66e00000005512f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T18:17:46.532 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82b375_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2526346, FileId: 0x67800000005512f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T18:23:24.225 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T18:38:29.229 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T18:53:34.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T19:08:39.222 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T19:23:44.218 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T19:37:15.621 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2530760, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T19:38:49.221 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T19:53:54.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T19:56:20.421 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59719, Count: 7405, MaxTime: 953, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 7965, Count: 64719, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.0CNKZ3, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 225, Count: 174, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a7_1.MAI, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11ccbcbd-5b91-4fd2-8a13-634211a2f946.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b8ca8d-5d3f-4c10-944b-417fd44be137.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e73d5d1-94b2-4ff3-8538-9205be7a2a32.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 7440, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e939b961-9e8e-4f22-8709-bda84c052d1c.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c765063c-f021-450d-b58f-3ded19b430e1.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43ba7561-1711-4070-b719-d20d174b3223.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 1432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fd4f5f5b-d3c0-4e65-817e-df3f49ce4d05.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 6960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89a6b7b1-3c31-403c-b92f-40d7960d8524.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3357e570-80ce-402d-869e-ab56d306b323.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccf2d02e-4675-4035-af8a-9629c3a26ec5.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0504391d-f9b7-4622-a845-5c5490f8f40b.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3afdb4-3ec4-4ef1-bf2d-9581dddff6b2.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 3504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1885d2e7-5e43-4bb3-b296-8f4bdf704e84.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b652ef78-c01c-45c8-84ac-44288da3e60e.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 3360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc879c79-1224-438c-b402-a66dd841d381.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cb4128f-fcb0-4d18-ae23-dec909e7a43e.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95e803b1-5e7f-46a0-aec0-d7f32b2541b1.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\472e71a3-dc85-4547-9dc8-fc3b15eb8988.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 6548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\196aa07f-335b-4749-b7fd-05ef280ae7f0.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 7052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a56b808f-465f-4f8c-a449-d797575bbce7.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a6f3391-43f6-4a8b-b495-6146bd1f893a.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6fcff271-cd72-442f-bdcd-4d363831df8a.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29359022-cd4e-41a4-b37f-3c2c57e8cc6c.tmp, EstimatedImpact: 0% 2026-05-10T19:56:20.421 ProcessImageName: updater.exe, Pid: 5900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-10T20:08:59.222 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T20:15:42.841 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2532912, FileId: 0x560000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T20:24:04.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T20:39:09.218 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T20:54:14.232 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T21:09:19.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T21:24:24.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T21:39:29.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T21:54:34.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T21:56:20.433 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59719, Count: 7406, MaxTime: 953, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 8760, Count: 71190, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.0CNKZ3, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 255, Count: 178, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a7_1.MAI, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e73d5d1-94b2-4ff3-8538-9205be7a2a32.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b8ca8d-5d3f-4c10-944b-417fd44be137.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11ccbcbd-5b91-4fd2-8a13-634211a2f946.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 7440, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e939b961-9e8e-4f22-8709-bda84c052d1c.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c765063c-f021-450d-b58f-3ded19b430e1.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 6960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89a6b7b1-3c31-403c-b92f-40d7960d8524.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a6f3391-43f6-4a8b-b495-6146bd1f893a.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43ba7561-1711-4070-b719-d20d174b3223.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29359022-cd4e-41a4-b37f-3c2c57e8cc6c.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 6548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\196aa07f-335b-4749-b7fd-05ef280ae7f0.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 6904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\283969db-d162-45ed-be48-7ef80338114c.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3357e570-80ce-402d-869e-ab56d306b323.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccf2d02e-4675-4035-af8a-9629c3a26ec5.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0504391d-f9b7-4622-a845-5c5490f8f40b.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3afdb4-3ec4-4ef1-bf2d-9581dddff6b2.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 3504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1885d2e7-5e43-4bb3-b296-8f4bdf704e84.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b652ef78-c01c-45c8-84ac-44288da3e60e.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 3360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc879c79-1224-438c-b402-a66dd841d381.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cb4128f-fcb0-4d18-ae23-dec909e7a43e.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95e803b1-5e7f-46a0-aec0-d7f32b2541b1.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 1432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fd4f5f5b-d3c0-4e65-817e-df3f49ce4d05.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\472e71a3-dc85-4547-9dc8-fc3b15eb8988.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\51028082-bcbc-4ba5-95ca-92b289ff0493.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 7052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a56b808f-465f-4f8c-a449-d797575bbce7.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6fcff271-cd72-442f-bdcd-4d363831df8a.tmp, EstimatedImpact: 0% 2026-05-10T21:56:20.433 ProcessImageName: updater.exe, Pid: 5900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-10T22:09:39.220 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T22:15:34.498 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2539533, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T22:24:44.225 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T22:39:49.229 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T22:54:54.224 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T23:09:59.221 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T23:15:43.370 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2542875, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-10T23:25:04.217 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T23:40:09.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T23:55:14.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-10T23:55:24.221 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-10T23:55:24.236 Job Notification: New process added to job (7196) 2026-05-10T23:55:24.252 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-10T23:55:24.252 Job Notification: New process added to job (3952) 2026-05-10T23:55:24.252 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:7196] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3952]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-10T23:55:24.268 Aggressive catchup quick scan threshold: 788103813661 / 25920000000000 2026-05-10T23:55:24.299 Job Notification: New process added to job (7864) 2026-05-10T23:55:24.299 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-10T23:55:24.314 Job Notification: New process added to job (6364) 2026-05-10T23:55:24.346 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:7864] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6364]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-10T23:55:24.564 Job Notification: New process added to job (3360) 2026-05-10T23:55:24.580 Task(GetDeviceTicket -AccessKey E582BD3F-D0AD-A6F0-AECA-D969AC178010 ) launched as network service 2026-05-10T23:55:24.768 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-10T23:55:24.768 [RTP] Duplicating the current plugin configuration object... 2026-05-10T23:55:24.768 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-10T23:55:24.768 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-10T23:55:24.768 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-10T23:55:24.768 [RTP] No config change detected. Not updating plugin configuration. 2026-05-10T23:55:24.768 [RTP] No config changes found. No configuration switch. 2026-05-10T23:55:24.768 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-10T23:55:25.455 Job Notification: Process exited from job (3360) 2026-05-10T23:55:26.580 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-10T23:55:26.580 [Cloud] Start of cloud request. Passive mode: 0 2026-05-10T23:55:26.580 [Cloud] Queued cloud request. 2026-05-10T23:55:26.580 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-10T23:55:26.580 [Cloud] Dequeued cloud request. 2026-05-10T23:55:26.580 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-10T23:55:26.580 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-10T23:55:26.580 [Cloud] Start of cloud request. Passive mode: 0 2026-05-10T23:55:26.580 [Cloud] Queued cloud request. 2026-05-10T23:55:26.580 [Cloud] Dequeued cloud request. 2026-05-10T23:55:26.580 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-10T23:55:26.893 [Cloud] End of cloud request. 2026-05-10T23:55:27.094 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-10T23:55:30.244 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-10T23:55:30.244 [Cloud] End of cloud request. 2026-05-10T23:55:30.744 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-10T23:55:38.734 Job Notification: Process exited from job (6748) 2026-05-10T23:56:20.443 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59719, Count: 7408, MaxTime: 953, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9600, Count: 77661, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.0CNKZ3, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 270, Count: 186, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a7_1.MAI, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b8ca8d-5d3f-4c10-944b-417fd44be137.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11ccbcbd-5b91-4fd2-8a13-634211a2f946.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e73d5d1-94b2-4ff3-8538-9205be7a2a32.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 7440, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e939b961-9e8e-4f22-8709-bda84c052d1c.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c765063c-f021-450d-b58f-3ded19b430e1.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 6960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\89a6b7b1-3c31-403c-b92f-40d7960d8524.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 6548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\196aa07f-335b-4749-b7fd-05ef280ae7f0.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43ba7561-1711-4070-b719-d20d174b3223.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29359022-cd4e-41a4-b37f-3c2c57e8cc6c.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 5772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6a6f3391-43f6-4a8b-b495-6146bd1f893a.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 6620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\51028082-bcbc-4ba5-95ca-92b289ff0493.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 6904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\283969db-d162-45ed-be48-7ef80338114c.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 5300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3357e570-80ce-402d-869e-ab56d306b323.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccf2d02e-4675-4035-af8a-9629c3a26ec5.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 4264, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0504391d-f9b7-4622-a845-5c5490f8f40b.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0300faa5-1951-4dbe-ae85-afbfb59e0237.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 3784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3afdb4-3ec4-4ef1-bf2d-9581dddff6b2.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 3504, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1885d2e7-5e43-4bb3-b296-8f4bdf704e84.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b652ef78-c01c-45c8-84ac-44288da3e60e.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 3360, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc879c79-1224-438c-b402-a66dd841d381.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 2456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cb4128f-fcb0-4d18-ae23-dec909e7a43e.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 2008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\269d0c0f-f914-46bf-ace7-21b6e28ee4fe.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 1812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95e803b1-5e7f-46a0-aec0-d7f32b2541b1.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 1432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fd4f5f5b-d3c0-4e65-817e-df3f49ce4d05.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 7844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\472e71a3-dc85-4547-9dc8-fc3b15eb8988.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 7052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a56b808f-465f-4f8c-a449-d797575bbce7.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6fcff271-cd72-442f-bdcd-4d363831df8a.tmp, EstimatedImpact: 0% 2026-05-10T23:56:20.443 ProcessImageName: updater.exe, Pid: 5900, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-10T23:56:34.720 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\85FB140B-F5D6-48AE-9C51-5503C7A73DF416c.1dce0d8a08ab337 2026-05-10T23:56:34.783 Verifying engine and signature files (source: 0) ... 2026-05-10T23:56:34.783 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4}\mpengine.dll] due to PPL. 2026-05-10T23:56:34.783 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4}\mpasbase.vdm] (file in cache) 2026-05-10T23:56:34.783 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-10T23:56:34.799 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4}\mpasdlta.vdm] 2026-05-10T23:56:34.799 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4}\mpavbase.vdm] (file in cache) 2026-05-10T23:56:34.799 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-10T23:56:34.814 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4}\mpavdlta.vdm] 2026-05-10T23:56:34.986 [Engine] IsHybridMode: 0 2026-05-10T23:56:34.986 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-10T23:56:35.051 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-E91F26E9DDCBB1DD3977966FD8D00FC463CDCB04.bin): 0x00000002 2026-05-10T23:56:35.051 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-E91F26E9DDCBB1DD3977966FD8D00FC463CDCB04.bin) 2026-05-10T23:56:35.051 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-10T23:56:35.051 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-10T23:56:35.051 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-10T23:56:35.051 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-10T23:56:44.409 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-10T23:56:44.409 [AutoExclusion] Applied roles from cache. 2026-05-10T23:56:44.409 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-10T23:56:44.409 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFD0D908020, lRefCount: 5, hr=0 2026-05-10T23:56:44.409 [Engine] New active engine 00007FFD0EA68020 replacing engine 00007FFD0D908020. Number of active engines: 2 2026-05-10T23:56:44.424 EngineInit:Global ASOC is enabled 2026-05-10T23:56:44.424 EngineInit:ASOO is enabled for developer volumes 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-10T23:56:44.456 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-10T23:56:44.471 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-10T23:56:44.471 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-10T23:56:44.471 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-10T23:56:44.471 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-10T23:56:44.471 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-10T23:56:44.487 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-10T23:56:44.487 [Plugin] Initializing RTP plugin state... 2026-05-10T23:56:44.487 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-10T23:56:44.487 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎10‎-‎2026 01:56:20 Last Perf:‎05‎-‎10‎-‎2026 01:56:20 First RTP Scan:‎05‎-‎10‎-‎2026 01:56:21 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:813 Misses:2552 BM Queue:0,43,0 Proc:0,43,0 File:0,23,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:2545210 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-1439567568 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:16510 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:474973 TotalHits:858028 InstanceCacheInserts:1190179 InstanceCacheUpdates:0 InstanceCacheDeletes:213319 InstanceCacheHits:5330 InstanceCacheMisses:1648371 InstanceCacheOverflows:963338 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:0ms (255/263) Success: 263, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-10T23:56:44.487 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4} 2026-05-10T23:56:44.487 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C0E7A068-8B07-43B6-945F-C3689CE5CDB9} removed 2026-05-10T23:56:44.487 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CBB7029E-AC1E-4E82-98A0-083C746D2A4F}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CBB7029E-AC1E-4E82-98A0-083C746D2A4F}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-10T23:56:44.487 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-10T23:56:44.487 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-10T23:56:44.487 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-10T23:56:44.487 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-10T23:56:44.487 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-10T23:56:44.487 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-10-2026 23:56:44 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-10-2026 23:56:44 2026-05-10T23:56:44.487 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-10T23:56:44.487 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-10T23:56:44.487 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-10T23:56:44.487 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-10T23:56:44.487 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-10T23:56:44.487 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-10T23:56:44.487 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-10T23:56:44.487 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-10T23:56:44.487 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-10T23:56:44.487 MdCoreSvc is supported in this platform and OS Signature updated on 05-10-2026 23:56:44 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.551.0 AV Signature Version: 1.449.551.0 ************************************************************ 2026-05-10T23:56:44.487 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-10T23:56:44.487 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\85FB140B-F5D6-48AE-9C51-5503C7A73DF416c.1dce0d8a08ab337 2026-05-10T23:56:44.503 Process scan (postsignatureupdatescan) started. 2026-05-10T23:56:44.549 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-10T23:56:44.549 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-10T23:56:44.753 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-10T23:56:44.753 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-10T23:56:44.753 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-10T23:56:44.753 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-10T23:56:44.768 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). Signature updated via MicrosoftUpdateServer on 05-10-2026 23:56:44 ************************************************************ 2026-05-10T23:56:44.768 [Engine] Engine 00007FFD0D908020 no longer in use. Number of active engines: 1 2026-05-10T23:56:44.768 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-10T23:56:44.768 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-10T23:56:44.768 Job Notification: Process exited from job (7864) 2026-05-10T23:56:44.768 Job Notification: Process exited from job (6364) 2026-05-10T23:56:44.784 Job Notification: Process exited from job (7196) 2026-05-10T23:56:44.784 Job Notification: Process exited from job (3952) 2026-05-10T23:56:44.971 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-10T23:56:44.971 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-10T23:56:44.971 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-10T23:56:45.549 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 59719, Count: 7408, MaxTime: 953, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-10T23:56:45.549 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 9600, Count: 77688, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.0CNKZ3, EstimatedImpact: 0% 2026-05-10T23:56:45.549 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 270, Count: 186, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82a3a7_1.MAI, EstimatedImpact: 0% 2026-05-10T23:56:45.549 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 77, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-10T23:56:45.549 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-10T23:56:45.549 ProcessImageName: updater.exe, Pid: 5832, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b8ca8d-5d3f-4c10-944b-417fd44be137.tmp, EstimatedImpact: 0% 2026-05-10T23:56:45.549 ProcessImageName: updater.exe, Pid: 4832, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\11ccbcbd-5b91-4fd2-8a13-634211a2f946.tmp, EstimatedImpact: 0% 2026-05-10T23:56:45.549 ProcessImageName: updater.exe, Pid: 7368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e73d5d1-94b2-4ff3-8538-9205be7a2a32.tmp, EstimatedImpact: 0% 2026-05-10T23:56:45.549 ProcessImageName: updater.exe, Pid: 7440, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e939b961-9e8e-4f22-8709-bda84c052d1c.tmp, EstimatedImpact: 0% 2026-05-10T23:56:45.549 ProcessImageName: updater.exe, Pid: 6216, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c765063c-f021-450d-b58f-3ded19b430e1.tmp, EstimatedImpact: 0% 2026-05-10T23:56:45.549 ProcessImageName: updater.exe, Pid: 6548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\196aa07f-335b-4749-b7fd-05ef280ae7f0.tmp, EstimatedImpact: 0% 2026-05-10T23:56:45.549 ProcessImageName: updater.exe, Pid: 7448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43ba7561-1711-4070-b719-d20d174b3223.tmp, EstimatedImpact: 0% 2026-05-10T23:56:45.549 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29359022-cd4e-41a4-b37f-3c2c57e8cc6c.tmp, EstimatedImpact: 0% 2026-05-10T23:56:45.612 [Engine] RSIG_UNLOADENGINE, 00007FFD0D908020, err=0x0 2026-05-10T23:56:45.628 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CBB7029E-AC1E-4E82-98A0-083C746D2A4F} removed 2026-05-10T23:56:50.846 Process scan (postsignatureupdatescan) completed. 2026-05-11T00:01:44.445 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-11T00:10:19.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T00:15:33.696 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2546319, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T00:15:33.696 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2546321, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T00:15:43.708 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2546334, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T00:15:43.708 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2546336, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T00:15:43.864 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2546340, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T00:15:43.864 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2546342, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T00:25:24.222 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T00:37:20.655 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2547558, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T00:37:20.655 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2547560, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T00:37:25.249 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2547572, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T00:37:25.265 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2547575, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T00:37:25.265 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2547577, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T00:37:35.263 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2547590, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T00:37:35.279 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2547593, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T00:40:29.217 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T00:55:34.221 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T01:10:39.219 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T01:15:34.311 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2549698, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T01:15:34.326 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2549700, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T01:15:44.314 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2549713, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T01:15:44.329 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2549715, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T01:15:44.329 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2549717, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T01:15:44.329 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2549719, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T01:25:44.231 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T01:40:49.225 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T01:55:54.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T01:56:44.424 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1036, Count: 6471, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.DGMZZ3, EstimatedImpact: 0% 2026-05-11T01:56:44.424 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 604, Count: 65, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\home.tpl.php, EstimatedImpact: 0% 2026-05-11T01:56:44.424 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-11T01:56:44.424 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-11T01:56:44.424 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-11T01:56:44.424 ProcessImageName: updater.exe, Pid: 6956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\de9189c1-2893-4551-bc59-15a16db62205.tmp, EstimatedImpact: 0% 2026-05-11T01:56:44.424 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce78c1ea-dc48-4021-bb5f-2075012e7580.tmp, EstimatedImpact: 0% 2026-05-11T02:01:53.891 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:56B07488-653F-4052-A8E6-26E4A4A88987, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-11T02:01:53.891 Scheduled scan with Id 56B07488-653F-4052-A8E6-26E4A4A88987 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-11T02:01:53.891 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-11T02:01:53.891 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-11T02:01:53.891 [SFC] System file cache build is not needed (already completed) 2026-05-11T02:02:05.252 Engine:Triggered AR EMS scan 2026-05-11T02:02:05.252 Engine:EMS scan for process: lsass pid: 612, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.283 Engine:EMS scan for process: svchost pid: 696, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.299 Engine:EMS scan for process: svchost pid: 752, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.315 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.362 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.377 Engine:EMS scan for process: svchost pid: 964, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.393 Engine:EMS scan for process: svchost pid: 1020, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.440 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.455 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.487 Engine:EMS scan for process: svchost pid: 1220, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.502 Engine:EMS scan for process: svchost pid: 1504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.518 Engine:EMS scan for process: svchost pid: 1996, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.549 Engine:EMS scan for process: svchost pid: 1528, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.565 Engine:EMS scan for process: svchost pid: 1588, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.596 Engine:EMS scan for process: svchost pid: 2596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.612 Engine:EMS scan for process: svchost pid: 504, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.627 Engine:EMS scan for process: svchost pid: 4812, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.705 Engine:EMS scan for process: svchost pid: 4724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.721 Engine:EMS scan for process: svchost pid: 4824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.753 Engine:EMS scan for process: svchost pid: 4880, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.799 Engine:EMS scan for process: explorer pid: 3884, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.846 Engine:EMS scan for process: svchost pid: 4280, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-11T02:02:05.862 Bm signature throttled:0x00002db31bed458f 2026-05-11T02:02:21.080 QuickScan:ScanID:56B07488-653F-4052-A8E6-26E4A4A88987: Quick scan finished with error 0 2026-05-11T02:02:21.096 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-11T02:02:21.596 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-11T02:02:21.596 [RTP] Duplicating the current plugin configuration object... 2026-05-11T02:02:21.596 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-11T02:02:21.596 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-11T02:02:21.596 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-11T02:02:21.596 [RTP] No config change detected. Not updating plugin configuration. 2026-05-11T02:02:21.596 [RTP] No config changes found. No configuration switch. 2026-05-11T02:02:21.596 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-11T02:10:59.224 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T02:15:34.913 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2553461, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T02:15:34.929 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2553463, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T02:15:44.904 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2553475, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T02:15:44.904 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2553477, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T02:15:44.920 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2553479, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T02:15:44.936 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2553481, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T02:26:04.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T02:28:09.742 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82b38a_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2555362, FileId: 0x360f00000000a023, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T02:28:21.445 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82b38b_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2555820, FileId: 0x2de00000005690c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T02:28:21.445 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82b38a_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #2555822, FileId: 0x50d00000004c4ab, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T02:41:09.218 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T02:56:14.217 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T03:11:19.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T03:15:32.208 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2558429, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T03:15:32.223 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2558431, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T03:15:42.220 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2558444, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T03:15:42.236 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2558447, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T03:26:24.224 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T03:41:29.217 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T03:56:34.226 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T03:56:44.430 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47393, Count: 6414, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-11T03:56:44.430 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 1861, Count: 12942, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.DGMZZ3, EstimatedImpact: 0% 2026-05-11T03:56:44.430 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-11T03:56:44.430 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82b38a_1.MAI, EstimatedImpact: 0% 2026-05-11T03:56:44.430 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-11T03:56:44.430 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-11T03:56:44.430 ProcessImageName: updater.exe, Pid: 7332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb94ff40-c5d0-461d-b127-ea8671d420df.tmp, EstimatedImpact: 0% 2026-05-11T03:56:44.430 ProcessImageName: updater.exe, Pid: 6956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\de9189c1-2893-4551-bc59-15a16db62205.tmp, EstimatedImpact: 0% 2026-05-11T03:56:44.430 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c34eea2-3704-42ac-8149-451cc748a63c.tmp, EstimatedImpact: 0% 2026-05-11T03:56:44.430 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce78c1ea-dc48-4021-bb5f-2075012e7580.tmp, EstimatedImpact: 0% 2026-05-11T04:11:39.227 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T04:15:33.699 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2561777, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T04:15:33.715 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2561779, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T04:15:43.722 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2561792, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T04:15:43.722 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2561795, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T04:26:44.225 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T04:41:49.221 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T04:56:54.216 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T05:11:59.228 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T05:15:34.032 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2565086, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T05:15:34.048 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2565088, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T05:15:44.043 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2565101, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T05:15:44.043 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2565103, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T05:15:44.215 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2565107, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T05:15:44.215 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2565109, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T05:27:04.225 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T05:37:25.339 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2566306, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T05:37:25.355 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2566308, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T05:37:29.686 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2566327, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T05:37:29.701 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2566330, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T05:37:29.701 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2566332, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T05:37:29.701 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2566334, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T05:37:39.703 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2566347, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T05:37:39.719 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2566350, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T05:42:09.230 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T05:56:44.440 ProcessImageName: httpd.exe, Pid: 1804, TotalTime: 47408, Count: 6417, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-11T05:56:44.440 ProcessImageName: MySQLWorkbench.exe, Pid: 744, TotalTime: 2521, Count: 19413, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\AppData\Roaming\MySQL\Workbench\sql_workspaces\Local_instance_mysql-1.autosave\connection_id.DGMZZ3, EstimatedImpact: 0% 2026-05-11T05:56:44.440 ProcessImageName: svchost.exe, Pid: 4812, TotalTime: 62, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-11T05:56:44.440 ProcessImageName: mysqld.exe, Pid: 1196, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sql9f8_82b38a_1.MAI, EstimatedImpact: 0% 2026-05-11T05:56:44.440 ProcessImageName: updater.exe, Pid: 4712, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-11T05:56:44.440 ProcessImageName: updater.exe, Pid: 7452, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\85c41c4d-cf89-426b-a978-c8953bc1e078.tmp, EstimatedImpact: 0% 2026-05-11T05:56:44.440 ProcessImageName: svchost.exe, Pid: 4724, TotalTime: 15, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-11T05:56:44.440 ProcessImageName: updater.exe, Pid: 8072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a60f5bba-80b9-45ab-8bbc-c9ed802be336.tmp, EstimatedImpact: 0% 2026-05-11T05:56:44.440 ProcessImageName: updater.exe, Pid: 5212, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30d38065-cf42-49f6-9442-b1401a4ab1fb.tmp, EstimatedImpact: 0% 2026-05-11T05:56:44.440 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c34eea2-3704-42ac-8149-451cc748a63c.tmp, EstimatedImpact: 0% 2026-05-11T05:56:44.440 ProcessImageName: updater.exe, Pid: 2072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce78c1ea-dc48-4021-bb5f-2075012e7580.tmp, EstimatedImpact: 0% 2026-05-11T05:56:44.440 ProcessImageName: updater.exe, Pid: 7332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb94ff40-c5d0-461d-b127-ea8671d420df.tmp, EstimatedImpact: 0% 2026-05-11T05:56:44.440 ProcessImageName: updater.exe, Pid: 6956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\de9189c1-2893-4551-bc59-15a16db62205.tmp, EstimatedImpact: 0% 2026-05-11T05:57:14.219 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T06:12:19.218 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T06:15:32.648 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2568463, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T06:15:32.664 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2568465, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T06:15:42.664 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2568477, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T06:15:42.680 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2568479, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T06:15:42.680 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2568481, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T06:27:24.218 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T06:42:29.223 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T06:57:34.229 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T07:12:39.223 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T07:15:34.125 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2571779, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:15:34.140 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2571781, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:15:44.139 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2571794, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:15:44.139 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2571795, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:15:44.154 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2571796, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:27:44.229 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T07:37:35.076 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\Prs911E.tmp. Process: \Device\HarddiskVolume2\Windows\System32\rdpclip.exe, Status: 0xc0000001, State: 0, ScanRequest #2573667, FileId: 0x2b000000095f55, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:37:37.428 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-11T07:37:37.428 [Cloud] Start of cloud request. Passive mode: 0 2026-05-11T07:37:37.428 [Cloud] Queued cloud request. 2026-05-11T07:37:37.428 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-11T07:37:37.459 Job Notification: New process added to job (328) 2026-05-11T07:37:37.459 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 92C46982-F4A5-F003-B40E-DB48A935A703) launched 2026-05-11T07:37:37.459 Job Notification: New process added to job (7332) 2026-05-11T07:37:37.475 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:328] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:7332]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-11T07:37:37.491 Job Notification: New process added to job (6188) 2026-05-11T07:37:37.491 Job Notification: Process exited from job (328) 2026-05-11T07:37:37.491 Job Notification: Process exited from job (7332) 2026-05-11T07:37:37.506 [Cloud] Dequeued cloud request. 2026-05-11T07:37:37.506 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-11T07:37:37.821 [Cloud] End of cloud request. 2026-05-11T07:37:38.336 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-11T07:38:45.549 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Users\Administrator\AppData\Local\Google\Chrome\User Data\Safe Browsing\UrlMalBin.store.4_13422955379535863. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2574576, FileId: 0x1c80000000268f0, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 -------------------------------------------------------------------------------- Windows Defender (77BDAF73-B396-481F-9042-AD358843EC24) Service Log Started On 05-11-2026 07:39:26 ************************************************************ OS install time: 05/14/2019 05:52:54.0 UTC Current time: 05/11/2026 07:39:26.281293600 UTC (8687 ms since boot) 2026-05-11T07:39:26.292 MpEnsureProcessMitigationPolicy(0x7) returns 0 2026-05-11T07:39:26.292 ProductId: 2, ProductFeature: 0, LaunchedProtected: 3, IsWcos: 0, IsContainerOs: 0, DirtyShutdownDetected: 0, PassiveRemediation: 0, IsHybridModePolicyEnabled: 0, IsVerifiedAndReputableTrustModeEnabled: 0 2026-05-11T07:39:26.308 [WPP] Starting WPP trace with buffersize 4MB, maxfilesize: 16MB, filename: MpWppTracing-20260511-073926-00000003-fffffffeffffffff.bin ... 2026-05-11T07:39:26.323 [WPP] Trace session started - MpWppTracing-20260511-073926-00000003-fffffffeffffffff.bin 2026-05-11T07:39:26.323 [RbM] Rollback manager succesfully initialized. 2026-05-11T07:39:26.323 [RbM] Rollback manager EnableRollbackManager called. 2026-05-11T07:39:26.323 [RbM] Rollback manager EnableRollbackManager completed. 2026-05-11T07:39:26.323 [PlatUpd] Service launched successfully from: C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0 2026-05-11T07:39:26.323 [PlatUpd] Failed to read Misc config regarding new coreservice lifecycle management, using legacy core service lifecycle management anyway. hr = 0x80070002 2026-05-11T07:39:26.323 Failed to retrieve config value from engine or configurations for config key (MdTimerInitalDelay) hr = 0x80004004 2026-05-11T07:39:26.323 Failed to retrieve config value from engine or configurations for config key (MdTimerMonitorInterval) hr = 0x80004004 2026-05-11T07:39:26.323 Failed to retrieve config value from engine or configurations for config key (MdDisableResController) hr = 0x80004004 2026-05-11T07:39:26.323 Failed to retrieve config value from engine or configurations for config key (MdEnableDailySensorChecks) hr = 0x80004004 2026-05-11T07:39:26.323 Failed to retrieve config value from engine or configurations for config key (MdAlertMonitorWindow) hr = 0x80004004 2026-05-11T07:39:26.323 Failed to retrieve config value from engine or configurations for config key (MdAlertMinInterval) hr = 0x80004004 2026-05-11T07:39:26.323 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x80004004 2026-05-11T07:39:26.323 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x80004004 2026-05-11T07:39:26.323 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x80004004 2026-05-11T07:39:26.323 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorEnableLeakDetector) hr = 0x80004004 2026-05-11T07:39:26.323 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x80004004 2026-05-11T07:39:26.339 MdCoreSvc is supported in this platform and OS 2026-05-11T07:39:26.339 MdCoreSvc is supported in this platform and OS 2026-05-11T07:39:26.339 [PlatUpd] MDCoreSvc is supported by the version of the platform we are switching to. Making sure the service is registered with SCM 2026-05-11T07:39:26.339 [PlatUpd] Starting MdCoreSvc service 2026-05-11T07:39:26.339 [PlatUpd] Validating and fixing WMI MOF schema - Running command: "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpCmdRun.exe" -RegisterWmiSchema -Root "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0" 2026-05-11T07:39:28.995 [PlatUpd] MpAddMpUxRegistration succeeded 2026-05-11T07:39:28.995 [PlatUpd] MpManagementUpdateHandler: starting update for install path %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0. 2026-05-11T07:39:28.995 [PlatUpd] MpManagementUpdateHandler: calling MpUpdateManagement() 2026-05-11T07:39:28.995 [PlatUpd] MpUpdateManagement: Management platform update started for components (3) 2026-05-11T07:39:28.995 [PlatUpd] Defender MDM CSP platform update not supported on Server SKUs 2026-05-11T07:39:28.995 [PlatUpd] WMI/PS provider platform update started 2026-05-11T07:39:28.995 [PlatUpd] WMI/PS provider platform update not required 2026-05-11T07:39:28.995 [PlatUpd] MpUpdateManagement: Management platform update completed 2026-05-11T07:39:28.995 MdCoreSvc is supported in this platform and OS 2026-05-11T07:39:28.995 [PlatUpd] MDCoreSvc is supported by the version of the platform we are switching to. Making sure the service is registered with SCM 2026-05-11T07:39:28.995 [PlatUpd] Starting MdCoreSvc service 2026-05-11T07:39:29.183 [PlatUpd] Firewall rules updated for %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MsMpEng.exe 2026-05-11T07:39:29.183 [PlatUpd] MpCheckAndUpdateBinaryLocationTo(%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0): 10 items checked, 1 required update. hrMui: 0x1 hrEtw: 0 2026-05-11T07:39:29.198 [TS] Troublshooting mode is not available! 2026-05-11T07:39:29.198 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0, Scenario: Consumer, Source: Unknown, ConfigChange: Remove 2026-05-11T07:39:29.198 CheckProductDisabled(fWaitWSC: 1, fRemoveConfigs: 0) ... 2026-05-11T07:39:29.198 [Service] Enabling IOAV/IEV/ShellExt/EtwLogger registrations ... 2026-05-11T07:39:29.198 [Service] Enabling AutoLoggers ... 2026-05-11T07:39:29.198 [Service] Enabling AMSI registration ... 2026-05-11T07:39:29.198 [Service] Leaving EnableIOAVWorker(1, 0) with hr = 0 2026-05-11T07:39:29.198 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-11T07:39:29.214 Cache C:\ProgramData\Microsoft\Windows Defender\Scans\History\CacheManager\302F501F-0000-0000-0000-501F00000000-1.bin loaded.**********Cache stats************ No. Of buckets -> 39062 Each Bucket has max capacity of -> 1 entries number of Entries is 21106 Number of invalid entries is 0 Number of inserts issued is 721688 Number of replaces issued is 0 Number of insert failures is 5 Number of inserts with duplicate entries is 14706 Number of lookups is 70309586 Number of lookup misses is 2734978 Number of fast lookup misses is 46656969 Number of false fast lookups is 2734978 Number of invalidations is 463198 Number of maintenance invalidations is 119099 Current File Size is 958464 Journal ID = 1d50a16ac8ba444 Trusted image state = 4 USN = 12f847 Setup boot count = 2 2026-05-11T07:39:29.214 Verifying license file... 2026-05-11T07:39:29.214 Verified [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\msmplics.dll] (file in cache) 2026-05-11T07:39:29.214 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-11T07:39:29.214 SharedSignatureRoot not configured. Disabling remote image load for msmpeng.exe. Once disabled, it can no longer be enabled without a service restart. hr=0 2026-05-11T07:39:29.214 Loaded module#0 MpComServer. 2026-05-11T07:39:29.214 Loaded module#1 StartupPolicies. 2026-05-11T07:39:29.230 COM server initialized successfully. 2026-05-11T07:39:29.245 MpRefreshDefenderCoreConfigs: failed because engine is not ready, we cannot let the process continue because we might start core service while its configuration is not ready. 2026-05-11T07:39:29.261 [Plugin] Verifying C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\mprtp.dll ... 2026-05-11T07:39:29.261 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\mprtp.dll] due to PPL. 2026-05-11T07:39:29.292 [RTP] [RTP] FilterCommunicator object 0x0000023A33252C60 initialized (\MicrosoftMalwareProtectionAsyncPortWD, , ), threads: 0 normal, 0 very low, 0 alt, thread pool threads: 4 normal, 0 very low, 0 alt 2026-05-11T07:39:29.292 [RTP] Setting DisableAsyncScanOnClose to 0 (hr=0). 2026-05-11T07:39:29.292 [RTP] Setting DisableAsyncScanOnOpen to 0 in wdfilter (hr=0). 2026-05-11T07:39:29.292 [RTP] Setting FilterExperimentMode to 0 (hr=0). 2026-05-11T07:39:29.292 [RTP] Setting DisableDriverUnload to 1 (hr=0). 2026-05-11T07:39:29.292 [RTP] Setting RegLinkHardeningMode to 0 (hr=0). 2026-05-11T07:39:29.292 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-11T07:39:29.292 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-11T07:39:29.292 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-11T07:39:29.292 [RTP] Setting PreventPagingFileAbuse to 1 (hr=0). 2026-05-11T07:39:29.292 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-11T07:39:29.292 [RTP] [RTP] LastAccessTimeSuppression for network files is enabled by configuration. 2026-05-11T07:39:29.292 [RTP] [RTP] FilterCommunicator object 0x0000023A3386F400 initialized (\MicrosoftMalwareProtectionPortWD, \MicrosoftMalwareProtectionVeryLowIoPortWD, \MicrosoftMalwareProtectionRemoteIoPortWD), threads: 6 normal, 2 very low, 0 alt, thread pool threads: 0 normal, 0 very low, 6 alt 2026-05-11T07:39:29.292 [RTP] SyncDssAvailableThreads cap limit initialized by MiscConfig to: 14 2026-05-11T07:39:29.292 [RTP] [RtpCopyAccelerator] Windows19H1 0, WindowsCobalt 0, IsServerSKU 1, IsPassiveOrSideBySidePassiveMode 0, IsDevMode 0, fIsWindowsInhouseBuild 0, BuildLabEx 14393.7070.amd64fre.rs1_release.240606-1636 2026-05-11T07:39:29.292 [RTP] [RTP] StartCommunication 0x0000023A33252C60 (\MicrosoftMalwareProtectionAsyncPortWD, ), threads: 0 normal, 0 very low, 0 alt, thread pool threads: 4 normal, 0 very low, 0 alt 2026-05-11T07:39:29.292 [init][RTP] RTPPlugin initialization completed 2026-05-11T07:39:29.292 OS boot count = 2 2026-05-11T07:39:29.292 OS Install = 0 2026-05-11T07:39:29.308 [init] MpAddMpUxRegistrationForToast failed (Ignored). hr = 0x8000401a 2026-05-11T07:39:29.308 [KSL] Entering CKSLEngine::Initialize. 2026-05-11T07:39:29.308 [KSL] Leaving CKSLEngine::Initialize(0). 2026-05-11T07:39:29.308 [KSL] Entering CKSLEngine::EnableKSL. State: [1] 2026-05-11T07:39:29.308 [KSL] MpInstallKslD: hr=0x1 2026-05-11T07:39:29.308 [KSL] MpRegisterKslD: hr=0 2026-05-11T07:39:29.308 [KSL] MpStartKslD: hr=0 2026-05-11T07:39:29.308 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-11T07:39:29.308 Loading engine... 2026-05-11T07:39:29.339 Verifying engine and signature files (source: 1) ... 2026-05-11T07:39:29.339 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4}\mpengine.dll] due to PPL. 2026-05-11T07:39:29.339 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4}\mpasbase.vdm] (file in cache) 2026-05-11T07:39:29.339 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4}\mpasdlta.vdm] (file in cache) 2026-05-11T07:39:29.339 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4}\mpavbase.vdm] (file in cache) 2026-05-11T07:39:29.339 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4}\mpavdlta.vdm] (file in cache) 2026-05-11T07:39:29.480 [Engine] IsHybridMode: 0 2026-05-11T07:39:29.480 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-11T07:39:29.563 Database:Using offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-E91F26E9DDCBB1DD3977966FD8D00FC463CDCB04.bin) IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-11T07:39:33.578 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-11T07:39:33.578 [AutoExclusion] Applied roles from cache. 2026-05-11T07:39:33.578 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-11T07:39:33.594 [Engine] New active engine 00007FFE955B8020 (no old engine). Number of active engines: 1 2026-05-11T07:39:33.594 EngineInit:Global ASOC is enabled 2026-05-11T07:39:33.594 EngineInit:ASOO is enabled for developer volumes 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:39:33.625 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:39:33.625 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-11T07:39:33.625 [SigStatUpd] CSignatureStatus: back to good 2026-05-11T07:39:33.625 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-11T07:39:33.641 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-11T07:39:33.641 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-11T07:39:33.641 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-11T07:39:33.641 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-11T07:39:33.641 Opening Sense registry key to get process path failed with hr=0x80070002. Fallback to programfiles. 2026-05-11T07:39:33.641 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-11T07:39:33.641 [Plugin] Initializing RTP plugin state... 2026-05-11T07:39:33.641 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-11T07:39:33.641 [RTP] ****************************RTP Perf Log*************************** RTP Start:N/A Last Perf:(null) First RTP Scan:N/A Plugin States: AV:2 AS:2 RTP:2 OA:2 BM:2 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:0 System File Cache: Hits:0 Misses:0 BM Queue:0,0,0 Proc:0,0,0 File:0,0,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,1,0 SetEngine:1,1,0 SetState:0,0,0 SetUser:0,0,0 Config:0,0,0 ProcExcl:0,0,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:0 Pending:0 RegSize:2882 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:2102 AsyncQCurrent:0 BMFlags:8 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:1282 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:5604 TotalHits:0 InstanceCacheInserts:18 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:2 InstanceCacheMisses:1657 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:-1ms (0/0) Success: 0, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-11T07:39:33.641 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4} 2026-05-11T07:39:33.641 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-11T07:39:33.641 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-11T07:39:33.641 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-11T07:39:33.641 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-11T07:39:33.641 MdCoreSvc is supported in this platform and OS 2026-05-11T07:39:33.641 Engine loaded! 2026-05-11T07:39:33.641 Engine:Failure in process enumeration: Image:, Error:GetImageNameConfigurationEx, 0x80078020, PID: 0 2026-05-11T07:39:33.641 Engine:Failure in process enumeration: Image:, Error:GetImageNameConfigurationEx, 0x80078020, PID: 4 2026-05-11T07:39:33.641 [DLP] Create FeatureControlState instance 2026-05-11T07:39:33.656 RegisterSModeChangeListener: hr = 0x1 2026-05-11T07:39:33.656 RegisterHybridModeChangeListener: hr = 0x1 2026-05-11T07:39:33.656 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-11T07:39:33.672 [AutoPurge] Auto purger task is scheduled to run in 600000(ms) from now with period 86400000(ms) 2026-05-11T07:39:33.672 [SigReleaseHb] Initialized with Stage 0 2026-05-11T07:39:33.672 [EmergencySigManager] Emergency sig checks are currently disabled. Timer interval: 15 minutes. 2026-05-11T07:39:33.672 [SCC][CID=16078_3040] Initializing ... 2026-05-11T07:39:33.672 [SCC][CID=16078_3040] SCC Initialize! The feature is OFF on this machine (E5 = 0), hr: 0x80004001 2026-05-11T07:39:33.672 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-11T07:39:33.672 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-11T07:39:33.672 [NRI] Stopping NIS service ... 2026-05-11T07:39:33.672 [RTP] [RTP] Killbits updated: 0x200000000000000 -> 0x4000000 2026-05-11T07:39:33.672 [RTP] [RTP] LastAccessTimeSuppression is enabled (default behavior). Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.551.0 AV Signature Version: 1.449.551.0 ************************************************************ 2026-05-11T07:39:33.672 Resource usage Monitoring is enabled 2026-05-11T07:39:33.672 Job Notification: New process added to job (2084) 2026-05-11T07:39:33.672 Ci Endpoint Security Policy Installation: Unsupported, hr = 0x00000001 2026-05-11T07:39:33.688 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-11T07:39:33.688 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-11T07:39:33.688 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-11T07:39:33.688 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-11T07:39:33.688 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-11T07:39:33.688 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-11T07:39:33.688 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-11T07:39:33.688 [RTP] Generating the base plugin configuration ... 2026-05-11T07:39:33.688 [RTP] Path exclusion changed, new size in bytes: 2 2026-05-11T07:39:33.688 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-11T07:39:33.688 [RTP] Calling GenerateEngineConfigStruct (0x3e) ... 2026-05-11T07:39:33.703 [RTP] [RTP] RTPPlugin state has changed as follow: ASStatus:0->1, AVStatus:0->1, RTPStatus:0->1 2026-05-11T07:39:33.703 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-11T07:39:33.703 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-11T07:39:33.703 [RTP] [RTP] StartCommunication 0x0000023A3386F400 (\MicrosoftMalwareProtectionPortWD, \MicrosoftMalwareProtectionVeryLowIoPortWD), threads: 6 normal, 2 very low, 0 alt, thread pool threads: 0 normal, 0 very low, 6 alt 2026-05-11T07:39:33.703 [RTP] [RTP] RTP worker threads ready [6 threads] 2026-05-11T07:39:33.703 [RTP] [Mini-filter] First scan on a volume: \Device\HarddiskVolume2\Windows\System32\drivers\wd\WdNisDrv.sys 2026-05-11T07:39:33.766 Job Notification: New process added to job (3976) 2026-05-11T07:39:33.781 Job Notification: New process added to job (3980) 2026-05-11T07:39:33.781 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3976] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3980]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-11T07:39:33.883 Job Notification: New process added to job (3600) 2026-05-11T07:39:33.899 Job Notification: New process added to job (4036) 2026-05-11T07:39:34.024 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-11T07:39:34.149 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-11T07:39:34.149 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-11T07:39:34.149 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-11T07:39:34.305 Job Notification: Process exited from job (3600) 2026-05-11T07:39:34.321 Job Notification: Process exited from job (4036) 2026-05-11T07:39:34.321 Job Notification: Process exited from job (3976) 2026-05-11T07:39:34.337 Job Notification: Process exited from job (3980) 2026-05-11T07:39:34.337 [PlatUpd] WMI MOF schema validation completed successfully 2026-05-11T07:39:35.681 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-11T07:39:36.588 [RTP] Duplicating the current plugin configuration object... 2026-05-11T07:39:36.588 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-11T07:39:36.588 [RTP] Updating plugin configuration due to recent config changes (0x600) ... 2026-05-11T07:39:36.588 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-05-11T07:39:36.588 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x600, Changed: 0x218 2026-05-11T07:39:42.036 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #46, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:39:42.052 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #49, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:40:29.258 Process scan (poststartupscan) started. 2026-05-11T07:40:29.258 Process scan (poststartupscan) completed. 2026-05-11T07:40:29.766 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-05-11T07:40:29.782 [RTP] [RtpConfig] Config change detected, type: 1024 2026-05-11T07:40:32.325 [RTP] Duplicating the current plugin configuration object... 2026-05-11T07:40:32.325 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-11T07:40:32.325 [RTP] Updating plugin configuration due to recent config changes (0x400) ... 2026-05-11T07:40:32.325 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-05-11T07:40:32.325 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x400, Changed: 0x218 2026-05-11T07:41:26.738 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #229, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:41:26.754 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #231, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:44:33.656 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-11T07:44:33.703 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T07:45:06.169 ReportLowfi(ctfmon.exe, 0x437a0835) from 0x0006b6bd6566d2d9 2026-05-11T07:45:10.872 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1350, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:45:10.872 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1352, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:45:19.356 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\Prs8506.tmp. Process: \Device\HarddiskVolume2\Windows\System32\rdpclip.exe, Status: 0xc0000001, State: 0, ScanRequest #1607, FileId: 0xa00000001e9f8, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:45:20.887 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1710, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:45:20.887 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1712, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:45:20.887 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1714, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:45:31.161 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1777, FileId: 0x1f0000000568a5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:45:41.573 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1829, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:45:41.620 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1831, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:45:49.268 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1872, FileId: 0x1f0000000568a5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:46:00.349 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Google\Chrome\User Data\Default\Shared Dictionary\db. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1875, FileId: 0x1c000000042e93, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:46:13.725 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1900, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:46:13.725 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1902, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:46:16.799 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1906, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:46:16.806 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1909, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:46:16.806 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1911, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:46:16.810 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1913, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:46:26.807 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1957, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:46:26.807 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1959, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:46:26.823 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1962, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:49:26.727 [AutoPurge] Verification Routine tasks have started. 2026-05-11T07:49:26.727 [AutoPurge] Routine task for Cache Maintenance has started. 2026-05-11T07:49:26.727 [AutoPurge] Routine task for Cache Maintenance ... 2026-05-11T07:49:26.727 [AutoPurge] Routine task for MpSFCBuild ... 2026-05-11T07:49:26.727 [AutoPurge] MpCmIsBuildCompleted() - S_OK 2026-05-11T07:49:26.727 [AutoPurge] MpSignalMaintenanceMode ...ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-11T07:49:26.743 Engine:EMS scan for process: lsass pid: 608, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:26.774 Engine:EMS scan for process: svchost pid: 708, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:26.790 Engine:EMS scan for process: svchost pid: 764, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:26.805 Engine:EMS scan for process: svchost pid: 852, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:26.852 Engine:EMS scan for process: svchost pid: 860, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:26.856 [AutoPurge] Cleanup Routine tasks have started. 2026-05-11T07:49:26.902 Engine:EMS scan for process: svchost pid: 936, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:26.917 Engine:EMS scan for process: svchost pid: 944, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:26.933 Engine:EMS scan for process: svchost pid: 340, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:26.949 Engine:EMS scan for process: svchost pid: 400, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:26.964 Engine:EMS scan for process: svchost pid: 1060, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:26.964 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:26.980 Engine:EMS scan for process: svchost pid: 1348, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:26.980 Engine:EMS scan for process: svchost pid: 8, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:26.995 Engine:EMS scan for process: svchost pid: 1324, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:27.011 Engine:EMS scan for process: svchost pid: 1884, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:27.011 Engine:EMS scan for process: svchost pid: 2788, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:27.027 Engine:EMS scan for process: svchost pid: 3632, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:27.027 Engine:EMS scan for process: svchost pid: 104, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:27.042 Engine:EMS scan for process: explorer pid: 4772, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-05-11T07:49:27.392 QuickScan:ScanID:A50888CC-828F-1CB7-C7D3-72F3FFC0C3C8: Quick scan finished with error 0 2026-05-11T07:49:27.712 EnsureProtectedFolderAcls(), hr = 0x0 2026-05-11T07:49:27.712 [AutoPurge] MpReinforceServiceAcls: 0 2026-05-11T07:49:27.727 [AutoPurge] Readded platform files to MOAC after ACL enforcement. hr=0 2026-05-11T07:49:28.278 Detection State: Finished(0) Failed(0) CriticalFailed(0) Additional Actions(0) 2026-05-11T07:49:28.278 [AutoPurge] Purged 2 expired detection item(s) from a total of 2. 2026-05-11T07:49:28.278 [AutoPurge] 0 expired file(s) deleted under C:\ProgramData\Microsoft\Windows Defender\Scans\History\Store (total: 0, expiration in 86400 seconds) Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:65538 Start time:05-11-2026 07:49:28 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-11-2026 07:49:28 2026-05-11T07:49:28.309 [PlatUpd] Purging orphaned platform update directories under C:\ProgramData\Microsoft\Windows Defender\Platform ... 2026-05-11T07:49:28.309 [PlatUpd] Not purging current location C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0 ... 2026-05-11T07:49:28.309 [PlatUpd] Not purging backup location C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0 ... 2026-05-11T07:49:28.309 [PlatUpd] Deleting orphaned platform update directory C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0 ... 2026-05-11T07:49:28.340 [PlatUpd] Deleting orphaned platform update directory C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25060.7-0 ... 2026-05-11T07:49:28.462 [PlatUpd] Purging orphaned platform update directories under C:\Program Files\Windows Defender\Platform ... 2026-05-11T07:49:28.463 [AutoPurge] Cleanup Routine tasks have ended. 2026-05-11T07:49:29.294 [AutoPurge] Removing expired default signature package ... 2026-05-11T07:49:29.656 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\__PSScriptPolicyTest_04im2xt0.wcv.psm1. Process: \Device\HarddiskVolume2\Windows\System32\sdiagnhost.exe, Status: 0xc0000001, State: 0, ScanRequest #2325, FileId: 0x39440000000054d9, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T07:49:29.906 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-05-11T07:49:29.906 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-11T07:49:29.906 [RTP] [RtpConfig] Config change detected, type: 2 2026-05-11T07:49:29.906 [RTP] [RtpConfig] Config change detected, type: 2 2026-05-11T07:49:29.906 [RTP] [RtpConfig] Config change detected, type: 4 2026-05-11T07:49:29.906 [RTP] [RtpConfig] Config change detected, type: 8 2026-05-11T07:49:29.906 [RTP] [RtpConfig] Config change detected, type: 16 2026-05-11T07:49:29.906 [RTP] [RtpConfig] Config change detected, type: 1024 2026-05-11T07:49:29.906 [RTP] [RtpConfig] Config change detected, type: 2048 2026-05-11T07:49:29.906 [RTP] Setting DisableAsyncScanOnClose to 0 (hr=0). 2026-05-11T07:49:29.906 [RTP] Setting DisableAsyncScanOnOpen to 0 in wdfilter (hr=0). 2026-05-11T07:49:29.906 [RTP] Setting FilterExperimentMode to 0 (hr=0). 2026-05-11T07:49:29.906 [RTP] Setting DisableDriverUnload to 1 (hr=0). 2026-05-11T07:49:29.906 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-11T07:49:29.906 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-11T07:49:29.906 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-11T07:49:29.906 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-11T07:49:29.906 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-11T07:49:29.906 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-11T07:49:29.906 [RTP] [RTP] LastAccessTimeSuppression for network files is enabled by configuration. 2026-05-11T07:49:29.906 [RTP] [RtpConfig] Config change detected, type: 64 2026-05-11T07:49:29.984 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-11T07:49:29.984 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-11T07:49:29.984 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-11T07:49:30.000 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-11T07:49:30.000 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-11T07:49:30.361 [AutoPurge] Verification Routine tasks have ended. 2026-05-11T07:49:32.610 [RTP] Duplicating the current plugin configuration object... 2026-05-11T07:49:32.610 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-11T07:49:32.610 [RTP] Updating plugin configuration due to recent config changes (0x43e) ... 2026-05-11T07:49:32.610 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-11T07:49:32.610 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-05-11T07:49:32.610 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x43e, Changed: 0x218 2026-05-11T07:49:33.235 Engine:Setting original file name "spwizres.dll" for "c:\windows\winsxs\x86_microsoft-windows-s..on-wizard-framework_31bf3856ad364e35_10.0.14393.4169_none_cff66023f3ab495c\spwizimg.dll", hr=0x0 2026-05-11T07:49:33.693 Timer callback: Initializating/verifying scheduled tasks ... 2026-05-11T07:49:33.740 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-11T07:49:33.905 Job Notification: New process added to job (2576) 2026-05-11T07:49:33.905 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-11T07:49:33.952 Job Notification: New process added to job (4928) 2026-05-11T07:49:33.968 Task(Scan -ScheduleJob -RestrictPrivileges -ScanType 2 -ScanTrigger 52) is scheduled to run in 72185598(ms) from now at 05:52 (03:52 UTC) with period 86400000(ms). Daily task start time is randomized to reduce spikes. 2026-05-11T07:49:33.968 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:2576] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4928]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-11T07:49:34.093 Job Notification: New process added to job (2000) 2026-05-11T07:49:34.093 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-11T07:49:34.124 Job Notification: New process added to job (4200) 2026-05-11T07:49:34.140 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:2000] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4200]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-11T07:49:36.755 Engine:Setting original file name "BCP47Lang.dll" for "c:\windows\system32\bcp47langs.dll", hr=0x0 2026-05-11T07:49:37.395 Engine:Setting original file name "rundll32.exe" for "c:\windows\syswow64\rundll32.exe", hr=0x0 2026-05-11T07:49:38.895 Engine:Setting original file name "user32" for "c:\windows\syswow64\user32.dll", hr=0x0 2026-05-11T07:49:39.052 Engine:Setting original file name "imm32" for "c:\windows\system32\imm32.dll", hr=0x0 2026-05-11T07:49:39.911 Engine:Setting original file name "MSCORLIB.DLL" for "c:\windows\microsoft.net\framework\v4.0.30319\mscorlib.tlb", hr=0x0 2026-05-11T07:49:42.628 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rd8f0uq.dll", hr=0x0 2026-05-11T07:49:42.971 Engine:Setting original file name "gdi32" for "c:\windows\syswow64\gdi32.dll", hr=0x0 2026-05-11T07:49:43.127 Engine:Setting original file name "mf.dll" for "c:\windows\winsxs\wow64_microsoft-windows-mediafoundation_31bf3856ad364e35_10.0.14393.6897_none_1c2d72c59be7c439\mfpmp.exe", hr=0x0 2026-05-11T07:49:43.737 Engine:Setting original file name "MSCOREE.DLL" for "c:\windows\microsoft.net\framework\v4.0.30319\mscoree.tlb", hr=0x0 2026-05-11T07:49:43.925 Engine:Setting original file name "WinSetupUI.exe" for "c:\windows\system32\winsetupui.dll", hr=0x0 2026-05-11T07:49:44.251 Engine:Setting original file name "mf.dll" for "c:\windows\system32\mfpmp.exe", hr=0x0 2026-05-11T07:49:48.751 Engine:Setting original file name "kernel32" for "c:\windows\system32\kernel32.dll", hr=0x0 2026-05-11T07:49:49.534 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\amd64_netfx4-scripting_engine_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_414026caf1235658\microsoft.jscript.tlb", hr=0x0 2026-05-11T07:49:50.832 Engine:Setting original file name "Microsoft® Windows® Operating System" for "c:\windows\system32\pcasvc.dll", hr=0x0 2026-05-11T07:49:54.603 Engine:Setting original file name "xpprof32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\xpprof64.dll", hr=0x0 2026-05-11T07:49:55.302 Engine:Setting original file name "AppVEntSubsystemContoller.dll" for "c:\windows\system32\appventsubsystemcontroller.dll", hr=0x0 2026-05-11T07:49:57.089 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\syswow64\mp43decd.dll", hr=0x0 2026-05-11T07:49:57.961 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rhp5zg2.dll", hr=0x0 2026-05-11T07:49:58.007 Engine:Setting original file name "System.Runtime" for "c:\windows\microsoft.net\assembly\gac_msil\system.runtime\v4.0_4.0.0.0__b03f5f7f11d50a3a\system.runtime.dll", hr=0x0 2026-05-11T07:49:58.671 Engine:Setting original file name "ISOLMIG.DLL" for "c:\windows\system32\migisol.dll", hr=0x0 2026-05-11T07:50:00.676 Engine:Setting original file name "mscorlib.dll" for "c:\windows\assembly\nativeimages_v4.0.30319_32\mscorlib\498c7104625960f6669ede39f5ed3d8b\mscorlib.ni.dll", hr=0x0 2026-05-11T07:50:00.754 Engine:Setting original file name "gdi32" for "c:\windows\winsxs\wow64_microsoft-windows-gdi32full_31bf3856ad364e35_10.0.14393.6167_none_d602658fb633015e\gdi32full.dll", hr=0x0 2026-05-11T07:50:02.115 Engine:Setting original file name "MicrosoftRawCodec" for "c:\windows\winsxs\wow64_microsoft-windows-windowscodecraw_31bf3856ad364e35_10.0.14393.5501_none_14dba92e46d1ced2\windowscodecsraw.dll", hr=0x0 2026-05-11T07:50:03.475 Engine:Setting original file name "k5sprt32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\k5sprt64.dll", hr=0x0 2026-05-11T07:50:05.361 Engine:Setting original file name "Placeholder.dll" for "c:\windows\winsxs\x86_netfx4-penimc_v0400_b03f5f7f11d50a3a_4.0.15552.18226_none_96e18f6875a45554\penimc_v0400.dll", hr=0x0 2026-05-11T07:50:06.377 Engine:Setting original file name "System.Windows.Forms.dll" for "c:\windows\winsxs\amd64_netfx4-sys_windows_forms_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_66f5a950fbd66177\system.windows.forms.tlb", hr=0x0 2026-05-11T07:50:06.823 Engine:Setting original file name "RRASUPG.DLL" for "c:\windows\system32\setup\rasmigplugin.dll", hr=0x0 2026-05-11T07:50:10.457 Engine:Setting original file name " " for "c:\program files (x86)\google\chrome\application\147.0.7727.138\dxcompiler.dll", hr=0x0 2026-05-11T07:50:10.950 Engine:Setting original file name "dpnet.dll" for "c:\windows\winsxs\x86_microsoft-windows-d..directplay4-payload_31bf3856ad364e35_1.0.14393.0_none_125d9db136df768d\dplayx.dll", hr=0x0 2026-05-11T07:50:11.413 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rrpyj42.dll", hr=0x0 2026-05-11T07:50:12.605 Engine:Setting original file name "dxmasf.dll" for "c:\windows\winsxs\wow64_microsoft-windows-mediaplayer-core_31bf3856ad364e35_10.0.14393.6522_none_8b51e64ede2d4df2\msdxm.ocx", hr=0x0 2026-05-11T07:50:14.039 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rdpjm0d.dll", hr=0x0 2026-05-11T07:50:14.911 Engine:Setting original file name "gdi32" for "c:\windows\system32\gdi32.dll", hr=0x0 2026-05-11T07:50:15.690 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\system32\mp43decd.dll", hr=0x0 2026-05-11T07:50:16.036 Engine:Setting original file name " " for "c:\program files\microsoft vs code\unins000.exe", hr=0x0 2026-05-11T07:50:16.894 Engine:Setting original file name "CloudStorageWizard.dll" for "c:\windows\system32\cloudstoragewizard.exe", hr=0x0 2026-05-11T07:50:17.882 Engine:Setting original file name "security.dll" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-minwin_31bf3856ad364e35_10.0.14393.5427_none_bd5e20eb215a6289\sspicli.dll", hr=0x0 2026-05-11T07:50:18.038 Engine:Setting original file name "Notepad++" for "c:\users\administrator.extern\appdata\local\temp\npp.8.9.3.installer.x64.exe", hr=0x0 2026-05-11T07:50:18.321 Engine:Setting original file name "ISOLMIG.DLL" for "c:\windows\syswow64\migisol.dll", hr=0x0 2026-05-11T07:50:18.587 Engine:Setting original file name "Microsoft(r) DirectX for Windows(r) - Out Of Band" for "c:\program files (x86)\google\chrome\application\147.0.7727.138\dxil.dll", hr=0x0 2026-05-11T07:50:21.846 Engine:Setting original file name "hiberrsm.exe" for "c:\windows\system32\winresume.exe", hr=0x0 2026-05-11T07:50:23.191 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\5C781E29-0497-4F31-8CBE-7A5E1FA49EEA1478.1dce11ad052f1c6 2026-05-11T07:50:23.253 Verifying engine and signature files (source: 0) ... 2026-05-11T07:50:23.253 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A}\mpengine.dll] due to PPL. 2026-05-11T07:50:23.253 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A}\mpasbase.vdm] (file in cache) 2026-05-11T07:50:23.253 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-11T07:50:23.284 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A}\mpasdlta.vdm] 2026-05-11T07:50:23.284 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A}\mpavbase.vdm] (file in cache) 2026-05-11T07:50:23.284 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-11T07:50:23.331 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A}\mpavdlta.vdm] 2026-05-11T07:50:23.640 Engine:Setting original file name "devinfoset.DLL" for "c:\windows\system32\devobj.dll", hr=0x0 2026-05-11T07:50:24.742 Engine:Setting original file name "System.Drawing.dll" for "c:\windows\winsxs\x86_netfx4-system_drawing_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_6c370d8116a1eb32\system.drawing.tlb", hr=0x0 2026-05-11T07:50:25.230 Engine:Setting original file name "RRASUPG.DLL" for "c:\windows\syswow64\setup\rasmigplugin.dll", hr=0x0 2026-05-11T07:50:26.527 Engine:Setting original file name "Vulkan Runtime" for "c:\program files (x86)\google\chrome\application\147.0.7727.138\vulkan-1.dll", hr=0x0 2026-05-11T07:50:26.589 Engine:Setting original file name "mp4sdmod.dll" for "c:\windows\system32\mp4sdecd.dll", hr=0x0 2026-05-11T07:50:27.200 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rkcbalz.dll", hr=0x0 2026-05-11T07:50:27.919 Engine:Setting original file name "krb5_32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\krb5_64.dll", hr=0x0 2026-05-11T07:50:28.574 [Engine] IsHybridMode: 0 2026-05-11T07:50:28.574 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-11T07:50:28.589 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-9563A4111C9DA42B42EF89915FEF8F765AC2E643.bin): 0x00000002 2026-05-11T07:50:28.605 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-9563A4111C9DA42B42EF89915FEF8F765AC2E643.bin) 2026-05-11T07:50:28.605 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-11T07:50:28.605 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-11T07:50:28.605 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-11T07:50:28.605 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-05-11T07:50:28.894 Engine:Setting original file name "mavinject64.exe" for "c:\windows\system32\mavinject.exe", hr=0x0 2026-05-11T07:50:30.137 Engine:Setting original file name "System.EnterpriseServices.dll" for "c:\windows\winsxs\x86_netfx4-system_enterpriseservices_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_78cda70ae5417545\system.enterpriseservices.tlb", hr=0x0 2026-05-11T07:50:31.584 Engine:Setting original file name "Install.exe" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rziiii6.exe", hr=0x0 2026-05-11T07:50:32.181 Engine:Setting original file name "Windows.Security.Credentials.UI.CredentialPicker.exe" for "c:\windows\syswow64\windows.security.credentials.ui.credentialpicker.dll", hr=0x0 2026-05-11T07:50:32.353 Engine:Setting original file name "comerr32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\comerr64.dll", hr=0x0 2026-05-11T07:50:34.485 Engine:Setting original file name "PSAPI" for "c:\windows\syswow64\psapi.dll", hr=0x0 2026-05-11T07:50:35.340 Engine:Setting original file name "updater.exe" for "c:\program files (x86)\google\update\googleupdate.exe", hr=0x0 2026-05-11T07:50:35.857 Engine:Setting original file name "rundll32.exe" for "c:\windows\system32\rundll32.exe", hr=0x0 2026-05-11T07:50:36.031 Engine:Setting original file name "System.Drawing.dll" for "c:\windows\winsxs\amd64_netfx4-system_drawing_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_2489d6aa0225c22c\system.drawing.tlb", hr=0x0 2026-05-11T07:50:36.110 Engine:Setting original file name "MrmCore.dll" for "c:\windows\system32\mrmcorer.dll", hr=0x0 2026-05-11T07:50:36.125 Engine:Setting original file name "dpnathlp.dll" for "c:\windows\system32\dpnet.dll", hr=0x0 2026-05-11T07:50:36.843 Engine:Setting original file name "CloudStorageWizard.dll" for "c:\windows\winsxs\x86_microsoft-windows-cloudstoragewizard_31bf3856ad364e35_10.0.14393.4169_none_0e1140222fc9b7ce\cloudstoragewizard.exe", hr=0x0 2026-05-11T07:50:36.874 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\x86_netfx4-scripting_engine_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_88ed5da2059f7f5e\microsoft.jscript.tlb", hr=0x0 2026-05-11T07:51:01.619 Engine:Setting original file name "setup" for "c:\programdata\package cache\{c649ede4-f16a-4486-a117-dcc2f2a35165}\vc_redist.x64.exe", hr=0x0 2026-05-11T07:51:10.853 Engine:Setting original file name "winsqlite3" for "c:\windows\winsxs\wow64_microsoft-windows-winsqlite3_31bf3856ad364e35_10.0.14393.6897_none_962b58f4b89684db\winsqlite3.dll", hr=0x0 2026-05-11T07:51:12.414 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rprsqob.dll", hr=0x0 2026-05-11T07:51:13.154 Engine:Setting original file name "setup" for "c:\program files (x86)\google\chrome\application\147.0.7727.138\installer\chrmstp.exe", hr=0x0 2026-05-11T07:51:14.094 Engine:Setting original file name "gssapi32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\gssapi64.dll", hr=0x0 2026-05-11T07:51:14.875 Engine:Setting original file name "nlsbres.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-i..ocale-nls.resources_31bf3856ad364e35_10.0.14393.1066_en-us_5d26a00a4d281ead\winnlsres.dll.mui", hr=0x0 2026-05-11T07:51:15.924 Engine:Setting original file name "nlsbres.dll.mui" for "c:\windows\winsxs\amd64_microsoft-windows-i..ocale-nls.resources_31bf3856ad364e35_10.0.14393.0_en-us_0a793c2fd4f2e04f\winnlsres.dll.mui", hr=0x0 2026-05-11T07:51:17.251 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\system32\mpg4decd.dll", hr=0x0 2026-05-11T07:51:18.588 Engine:Setting original file name "MSCOREE.DLL" for "c:\windows\winsxs\amd64_netfx4-mscoree_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_a40ab9cb7925b9cc\mscoree.tlb", hr=0x0 2026-05-11T07:51:18.666 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$r44dcag.dll", hr=0x0 2026-05-11T07:51:19.840 Engine:Setting original file name "WerMgr" for "c:\windows\winsxs\wow64_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.14393.7070_none_a09a15c994ca8d29\wermgr.exe", hr=0x0 2026-05-11T07:51:21.076 Engine:Setting original file name "imm32" for "c:\windows\syswow64\imm32.dll", hr=0x0 2026-05-11T07:51:21.250 Engine:Setting original file name "osloader.exe" for "c:\windows\system32\winload.exe", hr=0x0 2026-05-11T07:51:23.934 Engine:Setting original file name "kernel32" for "c:\windows\syswow64\kernel32.dll", hr=0x0 2026-05-11T07:51:24.108 Engine:Setting original file name "MrmCore.dll" for "c:\windows\winsxs\wow64_microsoft-windows-c..t-resources-mrmcore_31bf3856ad364e35_10.0.14393.4169_none_6b956afef0d52dd1\mrmcorer.dll", hr=0x0 2026-05-11T07:51:24.279 Engine:Setting original file name "AppVEntSubsystems.dll" for "c:\windows\system32\appventsubsystems64.dll", hr=0x0 2026-05-11T07:51:25.080 Engine:Setting original file name "System.EnterpriseServices.dll" for "c:\windows\winsxs\amd64_netfx4-system_enterpriseservices_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_31207033d0c54c3f\system.enterpriseservices.tlb", hr=0x0 2026-05-11T07:51:26.441 Engine:Setting original file name "DismProvPS.DLL" for "c:\windows\winsxs\temp\inflight\e568ec038efcd90101000000a40ad40d\amd64_microsoft-windows-d..ing-management-core_31bf3856ad364e35_10.0.14393.4169_none_a0f63c76854e9c47\dismcoreps.dll", hr=0x0 2026-05-11T07:51:26.866 Engine:Setting original file name "WindowsCodecs" for "c:\windows\winsxs\wow64_microsoft-windows-windowscodec_31bf3856ad364e35_10.0.14393.5127_none_1694a68c3011c592\windowscodecs.dll", hr=0x0 2026-05-11T07:51:27.155 Engine:Setting original file name "CMMIGR.DLL" for "c:\windows\system32\setup\pbkmigr.dll", hr=0x0 2026-05-11T07:51:28.130 Engine:Setting original file name "audioadg.exe" for "c:\windows\winsxs\amd64_microsoft-windows-audio-audiocore_31bf3856ad364e35_10.0.14393.5127_none_ec5e08e63f32a576\audiodg.exe", hr=0x0 2026-05-11T07:51:29.115 Engine:Setting original file name "Microsoft® Windows® Operating System" for "c:\windows\system32\aitstatic.exe", hr=0x0 2026-05-11T07:51:33.733 Engine:Setting original file name "Windows.Security.Credentials.UI.CredentialPicker.exe" for "c:\windows\system32\windows.security.credentials.ui.credentialpicker.dll", hr=0x0 2026-05-11T07:51:34.432 Engine:Setting original file name "WindowsCodecs" for "c:\windows\system32\windowscodecs.dll", hr=0x0 2026-05-11T07:51:34.463 Engine:Setting original file name "mp4sdmod.dll" for "c:\windows\winsxs\wow64_microsoft-windows-mp4sdecd_31bf3856ad364e35_10.0.14393.5125_none_8efb8535fc1ca60b\mp4sdecd.dll", hr=0x0 2026-05-11T07:51:34.541 Engine:Setting original file name "spwizres.dll" for "c:\windows\system32\spwizimg.dll", hr=0x0 2026-05-11T07:51:34.572 Engine:Setting original file name "extractr.exe" for "c:\windows\system32\wimserv.exe", hr=0x0 2026-05-11T07:51:34.604 Engine:Setting original file name "gdi32" for "c:\windows\system32\gdi32full.dll", hr=0x0 2026-05-11T07:51:35.418 Engine:Setting original file name "kernel32" for "c:\windows\winsxs\amd64_microsoft-windows-kernel32.resources_31bf3856ad364e35_10.0.14393.6343_en-us_b2c5c5ff7fe56066\kernel32.dll.mui", hr=0x0 2026-05-11T07:51:35.941 Engine:Setting original file name "WLRMNDR.EXE" for "c:\windows\system32\wlrmdr.exe", hr=0x0 2026-05-11T07:51:36.397 Engine:Setting original file name "dnsapi" for "c:\windows\syswow64\dnsapi.dll", hr=0x0 2026-05-11T07:51:36.803 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$ri9nkvj.dll", hr=0x0 2026-05-11T07:51:37.349 Engine:Setting original file name "WerMgr" for "c:\windows\system32\wermgr.exe", hr=0x0 2026-05-11T07:51:37.694 Engine:Setting original file name "PSAPI" for "c:\windows\system32\psapi.dll", hr=0x0 2026-05-11T07:51:38.818 Engine:Setting original file name "wcp.dll" for "c:\windows\system32\ssshim.dll", hr=0x0 2026-05-11T07:51:40.831 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\syswow64\mpg4decd.dll", hr=0x0 2026-05-11T07:51:41.532 Engine:Setting original file name "wow64lg2.dll" for "c:\windows\system32\wow64win.dll", hr=0x0 2026-05-11T07:51:42.064 Engine:Setting original file name "mscorlib.dll" for "c:\windows\winsxs\x86_netfx4-mscorlib_ni_b03f5f7f11d50a3a_4.0.15552.18230_none_8b0799dcf7b88c09\mscorlib.ni.dll", hr=0x0 2026-05-11T07:51:42.343 Engine:Setting original file name "BCP47Lang.dll" for "c:\windows\winsxs\wow64_microsoft-windows-bcp47languages_31bf3856ad364e35_10.0.14393.2457_none_1a5fc83a65dd036f\bcp47langs.dll", hr=0x0 2026-05-11T07:51:42.468 Engine:Setting original file name "powershell.exe" for "c:\windows\syswow64\windowspowershell\v1.0\powershell.exe", hr=0x0 2026-05-11T07:51:43.109 Engine:Setting original file name "MicrosoftRawCodec" for "c:\windows\system32\windowscodecsraw.dll", hr=0x0 2026-05-11T07:51:43.450 Engine:Setting original file name "setup" for "c:\program files (x86)\google\chrome\application\147.0.7727.138\installer\setup.exe", hr=0x0 2026-05-11T07:51:43.575 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\amd64_netfx4-system_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_1c2deb8b76e95843\system.tlb", hr=0x0 2026-05-11T07:51:43.997 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\microsoft.net\assembly\gac_msil\accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\accessibility.dll", hr=0x0 2026-05-11T07:51:44.294 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rigs9x9.dll", hr=0x0 2026-05-11T07:51:46.076 Engine:Setting original file name "AppVEntSubsystems.dll" for "c:\windows\winsxs\wow64_microsoft-windows-appmanagement-appvwow_31bf3856ad364e35_10.0.14393.5192_none_33542f4781539df6\appventsubsystems32.dll", hr=0x0 2026-05-11T07:51:46.092 Engine:Setting original file name "EmbeddedAppLauncherConfig.exe" for "c:\windows\system32\embeddedapplauncherconfig.dll", hr=0x0 2026-05-11T07:51:48.600 Engine:Setting original file name "dnsapi" for "c:\windows\winsxs\amd64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.14393.6981_none_0afa05717df35a75\dnsapi.dll", hr=0x0 2026-05-11T07:51:49.551 Engine:Setting original file name "DismProvPS.DLL" for "c:\windows\winsxs\amd64_microsoft-windows-d..ing-management-core_31bf3856ad364e35_10.0.14393.0_none_58a891804171bf9b\dismcoreps.dll", hr=0x0 2026-05-11T07:51:49.880 Engine:Setting original file name "CMMIGR.DLL" for "c:\windows\winsxs\wow64_microsoft-windows-rasapi_31bf3856ad364e35_10.0.14393.4169_none_ed4e402dde75758a\pbkmigr.dll", hr=0x0 2026-05-11T07:51:49.880 Engine:Setting original file name "System.Windows.Forms.dll" for "c:\windows\winsxs\x86_netfx4-sys_windows_forms_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_aea2e02810528a7d\system.windows.forms.tlb", hr=0x0 2026-05-11T07:51:50.519 Engine:Setting original file name "wcp.dll" for "c:\windows\winsxs\x86_microsoft-windows-packagemanager_31bf3856ad364e35_10.0.14393.2457_none_0659f8bf958f6270\ssshim.dll", hr=0x0 2026-05-11T07:51:51.864 Engine:Setting original file name "winsqlite3" for "c:\windows\system32\winsqlite3.dll", hr=0x0 2026-05-11T07:51:52.896 Engine:Setting original file name "mscorlib.dll" for "c:\windows\winsxs\amd64_netfx4-mscorlib_ni_b03f5f7f11d50a3a_4.0.15552.18230_none_435a6305e33c6303\mscorlib.ni.dll", hr=0x0 2026-05-11T07:51:53.460 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\x86_netfx4-system_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_63db22628b658149\system.tlb", hr=0x0 2026-05-11T07:51:55.133 Engine:Setting original file name "powershell.exe" for "c:\windows\winsxs\amd64_microsoft-windows-powershell-exe_31bf3856ad364e35_10.0.14393.206_none_a31a3bc69ffbbdcf\powershell.exe", hr=0x0 2026-05-11T07:51:56.056 Engine:Setting original file name "msdxm.ocx" for "c:\windows\system32\dxmasf.dll", hr=0x0 2026-05-11T07:51:57.448 Engine:Setting original file name "mpengine.dll" for "c:\programdata\microsoft\windows defender\definition updates\stableengineetwlocation\mpengine_etw.dll", hr=0x0 2026-05-11T07:51:57.745 Engine:Setting original file name "user32" for "c:\windows\system32\user32.dll", hr=0x0 2026-05-11T07:51:57.998 Engine:Setting original file name "mscorlib.dll" for "c:\windows\assembly\nativeimages_v4.0.30319_64\mscorlib\dce6e448ed37486e729f4e6b35401127\mscorlib.ni.dll", hr=0x0 2026-05-11T07:51:58.248 Engine:Setting original file name "mavinject32.exe" for "c:\windows\syswow64\mavinject.exe", hr=0x0 2026-05-11T07:51:58.552 Engine:Setting original file name "ntkrnlmp.exe" for "c:\windows\system32\ntoskrnl.exe", hr=0x0 2026-05-11T07:51:58.599 Engine:Setting original file name "apisetschema" for "c:\windows\system32\apisetschema.dll", hr=0x0 2026-05-11T07:51:59.167 OriginalFileName Maintenance::17868 files in Moac, 0 skipped (cached), 125 filename set 2026-05-11T07:51:59.167 [AutoPurge] Routine task for Cache Maintenance has ended. IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-11T07:53:56.062 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-11T07:53:56.062 [AutoExclusion] Applied roles from cache. 2026-05-11T07:53:56.062 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-11T07:53:56.094 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFE955B8020, lRefCount: 5, hr=0 2026-05-11T07:53:56.094 [Engine] New active engine 00007FFE7ECB8020 replacing engine 00007FFE955B8020. Number of active engines: 2 2026-05-11T07:53:56.094 EngineInit:Global ASOC is enabled 2026-05-11T07:53:56.094 EngineInit:ASOO is enabled for developer volumes 2026-05-11T07:53:56.109 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-11T07:53:56.109 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:53:56.109 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-11T07:53:56.109 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:53:56.125 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T07:53:56.125 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-11T07:53:56.151 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-11T07:53:56.151 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-11T07:53:56.151 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)! 2026-05-11T07:53:56.151 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValiditApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-11T07:53:56.174 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-11T07:53:56.174 [Plugin] Initializing RTP plugin state... 2026-05-11T07:53:56.174 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-11T07:53:56.174 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎11‎-‎2026 09:39:33 Last Perf:‎05‎-‎11‎-‎2026 09:39:33 First RTP Scan:‎05‎-‎11‎-‎2026 09:39:33 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:1297 Misses:1576 BM Queue:0,120,0 Proc:0,115,0 File:0,35,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,1,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:3070 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:4585614 AsyncQCurrent:0 BMFlags:40095 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:28176 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:42786 TotalHits:8871 InstanceCacheInserts:492 InstanceCacheUpdates:0 InstanceCacheDeletes:357 InstanceCacheHits:108 InstanceCacheMisses:34955 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:7ms (1347/176) Success: 176, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-11T07:53:56.174 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A} 2026-05-11T07:53:56.175 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-11T07:53:56.175 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7D95507F-401B-4CCA-9CE3-6EB6B0D98FAA} removed 2026-05-11T07:53:56.175 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-11T07:53:56.176 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-11T07:53:56.176 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-11T07:53:56.176 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-11T07:53:56.176 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-11T07:53:56.177 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-11-2026 07:53:56 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-11-2026 07:53:56 2026-05-11T07:53:56.179 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-11T07:53:56.179 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-11T07:53:56.180 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-11T07:53:56.180 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-11T07:53:56.181 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-11T07:53:56.182 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-11T07:53:56.182 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-11T07:53:56.182 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-11T07:53:56.182 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-11T07:53:56.182 MdCoreSvc is supported in this platform and OS 2026-05-11T07:53:56.227 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-11T07:53:56.228 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated on 05-11-2026 07:53:56 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.557.0 AV Signature Version: 1.449.557.0 ************************************************************ 2026-05-11T07:53:56.243 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-11T07:53:56.243 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\5C781E29-0497-4F31-8CBE-7A5E1FA49EEA1478.1dce11ad052f1c6 2026-05-11T07:53:56.431 Process scan (postsignatureupdatescan) started. 2026-05-11T07:53:56.525 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-11T07:53:56.525 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-11T07:53:56.525 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-11T07:53:56.525 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-11T07:53:56.525 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-11T07:53:56.525 [Engine] Engine 00007FFE955B8020 no longer in use. Number of active engines: 1 2026-05-11T07:53:56.525 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-11T07:53:56.525 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-11T07:53:56.650 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-11T07:53:56.650 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-11T07:53:56.650 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-11T07:53:56.746 ProcessImageName: explorer.exe, Pid: 4772, TotalTime: 1002, Count: 41, MaxTime: 328, MaxTimeFile: \Device\HarddiskVolume2\xampp\uninstall.exe, EstimatedImpact: 1% 2026-05-11T07:53:56.746 ProcessImageName: sdiagnhost.exe, Pid: 5244, TotalTime: 743, Count: 46, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\18344eae5132b5503889ff27e9e6abd8\System.Management.Automation.ni.dll, EstimatedImpact: 10% 2026-05-11T07:53:56.746 ProcessImageName: WmiPrvSE.exe, Pid: 1084, TotalTime: 508, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\pacer.sys, EstimatedImpact: 63% 2026-05-11T07:53:56.746 ProcessImageName: xampp-control.exe, Pid: 4168, TotalTime: 260, Count: 19, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 2% 2026-05-11T07:53:56.746 ProcessImageName: svchost.exe, Pid: 860, TotalTime: 232, Count: 8, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpClient.dll, EstimatedImpact: 0% 2026-05-11T07:53:56.746 ProcessImageName: taskhostw.exe, Pid: 4488, TotalTime: 152, Count: 15, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\SDIAG_fea30cdb-6e28-44ba-ae81-522e509dc79d\DiagPackage.diagpkg, EstimatedImpact: 64% 2026-05-11T07:53:56.746 ProcessImageName: mofcomp.exe, Pid: 3600, TotalTime: 108, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\ProtectionManagement.mof, EstimatedImpact: 40% 2026-05-11T07:53:56.746 ProcessImageName: ngentask.exe, Pid: 1724, TotalTime: 105, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log->(UTF-8), EstimatedImpact: 20% 2026-05-11T07:53:56.746 ProcessImageName: ngentask.exe, Pid: 5648, TotalTime: 90, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log->(UTF-8), EstimatedImpact: 6% 2026-05-11T07:53:56.746 ProcessImageName: taskhostw.exe, Pid: 4276, TotalTime: 77, Count: 5, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\RegBack\SAM, EstimatedImpact: 2% 2026-05-11T07:53:56.746 ProcessImageName: httpd.exe, Pid: 2540, TotalTime: 76, Count: 8, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-05-11T07:53:56.746 ProcessImageName: MpUXSrv.exe, Pid: 4328, TotalTime: 61, Count: 3, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Windows Defender\mpuxhostproxy.dll, EstimatedImpact: 6% 2026-05-11T07:53:56.746 ProcessImageName: GoogleUpdate.exe, Pid: 2940, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 31% 2026-05-11T07:53:56.776 [Engine] RSIG_UNLOADENGINE, 00007FFE955B8020, err=0x0 2026-05-11T07:53:56.777 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D8FFAB65-AE88-4EF9-8E48-FA28388A8EE4} removed Signature updated via MicrosoftUpdateServer on 05-11-2026 07:53:57 ************************************************************ 2026-05-11T07:53:57.413 Job Notification: Process exited from job (2576) 2026-05-11T07:53:57.413 Job Notification: Process exited from job (2000) 2026-05-11T07:53:57.413 Job Notification: Process exited from job (4200) 2026-05-11T07:53:57.437 Job Notification: Process exited from job (4928) 2026-05-11T07:54:06.176 Process scan (postsignatureupdatescan) completed. 2026-05-11T07:58:56.115 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-11T07:59:38.700 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T08:14:43.699 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T08:15:23.457 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\ProgramData\USOShared\Logs\User\UpdateUx.001.etl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #3865, FileId: 0x43de000000008865, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x2000, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T08:15:35.637 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #3938, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T08:15:35.637 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #3940, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 -------------------------------------------------------------------------------- Windows Defender (77BDAF73-B396-481F-9042-AD358843EC24) Service Log Started On 05-11-2026 10:19:05 ************************************************************ OS install time: 05/14/2019 05:52:54.0 UTC Current time: 05/11/2026 10:19:05.644905800 UTC (11859 ms since boot) 2026-05-11T10:19:05.639 MpEnsureProcessMitigationPolicy(0x7) returns 0 2026-05-11T10:19:05.654 ProductId: 2, ProductFeature: 0, LaunchedProtected: 3, IsWcos: 0, IsContainerOs: 0, DirtyShutdownDetected: 0, PassiveRemediation: 0, IsHybridModePolicyEnabled: 0, IsVerifiedAndReputableTrustModeEnabled: 0 2026-05-11T10:19:05.701 [WPP] Starting WPP trace with buffersize 4MB, maxfilesize: 16MB, filename: MpWppTracing-20260511-101905-00000003-fffffffeffffffff.bin ... 2026-05-11T10:19:05.717 [WPP] Trace session started - MpWppTracing-20260511-101905-00000003-fffffffeffffffff.bin 2026-05-11T10:19:05.717 [RbM] Rollback manager succesfully initialized. 2026-05-11T10:19:05.717 [RbM] Rollback manager EnableRollbackManager called. 2026-05-11T10:19:05.717 [RbM] Rollback manager EnableRollbackManager completed. 2026-05-11T10:19:05.717 [PlatUpd] Service launched successfully from: C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0 2026-05-11T10:19:05.717 [PlatUpd] Failed to read Misc config regarding new coreservice lifecycle management, using legacy core service lifecycle management anyway. hr = 0x80070002 2026-05-11T10:19:05.717 Failed to retrieve config value from engine or configurations for config key (MdTimerInitalDelay) hr = 0x80004004 2026-05-11T10:19:05.717 Failed to retrieve config value from engine or configurations for config key (MdTimerMonitorInterval) hr = 0x80004004 2026-05-11T10:19:05.717 Failed to retrieve config value from engine or configurations for config key (MdDisableResController) hr = 0x80004004 2026-05-11T10:19:05.717 Failed to retrieve config value from engine or configurations for config key (MdEnableDailySensorChecks) hr = 0x80004004 2026-05-11T10:19:05.717 Failed to retrieve config value from engine or configurations for config key (MdAlertMonitorWindow) hr = 0x80004004 2026-05-11T10:19:05.717 Failed to retrieve config value from engine or configurations for config key (MdAlertMinInterval) hr = 0x80004004 2026-05-11T10:19:05.717 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x80004004 2026-05-11T10:19:05.717 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x80004004 2026-05-11T10:19:05.717 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x80004004 2026-05-11T10:19:05.717 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorEnableLeakDetector) hr = 0x80004004 2026-05-11T10:19:05.717 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x80004004 2026-05-11T10:19:05.733 MdCoreSvc is supported in this platform and OS 2026-05-11T10:19:05.733 MdCoreSvc is supported in this platform and OS 2026-05-11T10:19:05.733 [PlatUpd] MDCoreSvc is supported by the version of the platform we are switching to. Making sure the service is registered with SCM 2026-05-11T10:19:05.733 [PlatUpd] Starting MdCoreSvc service 2026-05-11T10:19:06.154 [PlatUpd] Validating and fixing WMI MOF schema - Running command: "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpCmdRun.exe" -RegisterWmiSchema -Root "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0" 2026-05-11T10:19:08.733 [PlatUpd] MpAddMpUxRegistration succeeded 2026-05-11T10:19:08.733 [PlatUpd] MpManagementUpdateHandler: starting update for install path %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0. 2026-05-11T10:19:08.733 [PlatUpd] MpManagementUpdateHandler: calling MpUpdateManagement() 2026-05-11T10:19:08.733 [PlatUpd] MpUpdateManagement: Management platform update started for components (3) 2026-05-11T10:19:08.733 [PlatUpd] Defender MDM CSP platform update not supported on Server SKUs 2026-05-11T10:19:08.733 [PlatUpd] WMI/PS provider platform update started 2026-05-11T10:19:08.733 [PlatUpd] WMI/PS provider platform update not required 2026-05-11T10:19:08.733 [PlatUpd] MpUpdateManagement: Management platform update completed 2026-05-11T10:19:08.733 MdCoreSvc is supported in this platform and OS 2026-05-11T10:19:08.733 [PlatUpd] MDCoreSvc is supported by the version of the platform we are switching to. Making sure the service is registered with SCM 2026-05-11T10:19:08.733 [PlatUpd] Starting MdCoreSvc service 2026-05-11T10:19:08.873 [PlatUpd] Firewall rules updated for %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MsMpEng.exe 2026-05-11T10:19:08.873 [PlatUpd] MpCheckAndUpdateBinaryLocationTo(%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0): 10 items checked, 1 required update. hrMui: 0x1 hrEtw: 0 2026-05-11T10:19:08.889 [TS] Troublshooting mode is not available! 2026-05-11T10:19:08.889 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0, Scenario: Consumer, Source: Unknown, ConfigChange: Remove 2026-05-11T10:19:08.889 CheckProductDisabled(fWaitWSC: 1, fRemoveConfigs: 0) ... 2026-05-11T10:19:08.889 [Service] Enabling IOAV/IEV/ShellExt/EtwLogger registrations ... 2026-05-11T10:19:08.889 [Service] Enabling AutoLoggers ... 2026-05-11T10:19:08.889 [Service] Enabling AMSI registration ... 2026-05-11T10:19:08.889 [Service] Leaving EnableIOAVWorker(1, 0) with hr = 0 2026-05-11T10:19:08.904 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-11T10:19:08.904 Cache C:\ProgramData\Microsoft\Windows Defender\Scans\History\CacheManager\302F501F-0000-0000-0000-501F00000000-1.bin loaded.**********Cache stats************ No. Of buckets -> 39062 Each Bucket has max capacity of -> 1 entries number of Entries is 17746 Number of invalid entries is 0 Number of inserts issued is 721942 Number of replaces issued is 0 Number of insert failures is 5 Number of inserts with duplicate entries is 14714 Number of lookups is 70326838 Number of lookup misses is 2737077 Number of fast lookup misses is 46666792 Number of false fast lookups is 2737077 Number of invalidations is 463360 Number of maintenance invalidations is 122550 Current File Size is 958464 Journal ID = 1d50a16ac8ba444 Trusted image state = 4 USN = 12f847 Setup boot count = 2 2026-05-11T10:19:08.904 Verifying license file... 2026-05-11T10:19:08.904 Verified [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\msmplics.dll] (file in cache) 2026-05-11T10:19:08.904 SharedSignatureRoot not configured. Disabling remote image load for msmpeng.exe. Once disabled, it can no longer be enabled without a service restart. hr=0 2026-05-11T10:19:08.904 Loaded module#0 MpComServer. 2026-05-11T10:19:08.904 Loaded module#1 StartupPolicies. 2026-05-11T10:19:08.904 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-11T10:19:08.920 COM server initialized successfully. 2026-05-11T10:19:08.936 MpRefreshDefenderCoreConfigs: failed because engine is not ready, we cannot let the process continue because we might start core service while its configuration is not ready. 2026-05-11T10:19:08.951 [Plugin] Verifying C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\mprtp.dll ... 2026-05-11T10:19:08.951 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\mprtp.dll] due to PPL. 2026-05-11T10:19:08.967 [RTP] [RTP] FilterCommunicator object 0x000001EDB7FC2470 initialized (\MicrosoftMalwareProtectionAsyncPortWD, , ), threads: 0 normal, 0 very low, 0 alt, thread pool threads: 4 normal, 0 very low, 0 alt 2026-05-11T10:19:08.967 [RTP] Setting DisableAsyncScanOnClose to 0 (hr=0). 2026-05-11T10:19:08.967 [RTP] Setting DisableAsyncScanOnOpen to 0 in wdfilter (hr=0). 2026-05-11T10:19:08.967 [RTP] Setting FilterExperimentMode to 0 (hr=0). 2026-05-11T10:19:08.967 [RTP] Setting DisableDriverUnload to 1 (hr=0). 2026-05-11T10:19:08.967 [RTP] Setting RegLinkHardeningMode to 0 (hr=0). 2026-05-11T10:19:08.967 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-11T10:19:08.967 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-11T10:19:08.967 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-11T10:19:08.967 [RTP] Setting PreventPagingFileAbuse to 1 (hr=0). 2026-05-11T10:19:08.967 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-11T10:19:08.967 [RTP] [RTP] LastAccessTimeSuppression for network files is enabled by configuration. 2026-05-11T10:19:08.967 [RTP] [RTP] FilterCommunicator object 0x000001EDB8616120 initialized (\MicrosoftMalwareProtectionPortWD, \MicrosoftMalwareProtectionVeryLowIoPortWD, \MicrosoftMalwareProtectionRemoteIoPortWD), threads: 6 normal, 2 very low, 0 alt, thread pool threads: 0 normal, 0 very low, 6 alt 2026-05-11T10:19:08.967 [RTP] SyncDssAvailableThreads cap limit initialized by MiscConfig to: 14 2026-05-11T10:19:08.967 [RTP] [RtpCopyAccelerator] Windows19H1 0, WindowsCobalt 0, IsServerSKU 1, IsPassiveOrSideBySidePassiveMode 0, IsDevMode 0, fIsWindowsInhouseBuild 0, BuildLabEx 14393.9060.amd64fre.rs1_release.260412-0758 2026-05-11T10:19:08.967 [RTP] [RTP] StartCommunication 0x000001EDB7FC2470 (\MicrosoftMalwareProtectionAsyncPortWD, ), threads: 0 normal, 0 very low, 0 alt, thread pool threads: 4 normal, 0 very low, 0 alt 2026-05-11T10:19:08.967 [init][RTP] RTPPlugin initialization completed 2026-05-11T10:19:08.967 OS boot count = 2 2026-05-11T10:19:08.967 OS Install = 0 2026-05-11T10:19:08.983 [init] MpAddMpUxRegistrationForToast failed (Ignored). hr = 0x8000401a 2026-05-11T10:19:08.983 [KSL] Entering CKSLEngine::Initialize. 2026-05-11T10:19:08.983 [KSL] Leaving CKSLEngine::Initialize(0). 2026-05-11T10:19:08.983 [KSL] Entering CKSLEngine::EnableKSL. State: [1] 2026-05-11T10:19:08.983 [KSL] MpInstallKslD: hr=0x1 2026-05-11T10:19:08.983 [KSL] MpRegisterKslD: hr=0 2026-05-11T10:19:08.983 [KSL] MpStartKslD: hr=0 2026-05-11T10:19:08.983 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-11T10:19:08.983 Loading engine... 2026-05-11T10:19:08.998 Verifying engine and signature files (source: 1) ... 2026-05-11T10:19:08.998 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A}\mpengine.dll] due to PPL. 2026-05-11T10:19:08.998 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A}\mpasbase.vdm] (file in cache) 2026-05-11T10:19:08.998 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A}\mpasdlta.vdm] (file in cache) 2026-05-11T10:19:08.998 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A}\mpavbase.vdm] (file in cache) 2026-05-11T10:19:08.998 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A}\mpavdlta.vdm] (file in cache) 2026-05-11T10:19:09.170 [Engine] IsHybridMode: 0 2026-05-11T10:19:09.170 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-11T10:19:09.201 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-F839438782F5D4A6A832383808E800F02AB5712A.bin): 0x00000002 2026-05-11T10:19:09.201 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-F839438782F5D4A6A832383808E800F02AB5712A.bin) 2026-05-11T10:19:09.201 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-11T10:19:09.201 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-11T10:19:09.201 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-11T10:19:09.201 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-11T10:19:20.529 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-11T10:19:20.529 [AutoExclusion] Applied roles from cache. 2026-05-11T10:19:20.529 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-11T10:19:20.545 [Engine] New active engine 00007FFFF5878020 (no old engine). Number of active engines: 1 2026-05-11T10:19:20.545 EngineInit:Global ASOC is enabled 2026-05-11T10:19:20.545 EngineInit:ASOO is enabled for developer volumes 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:19:20.576 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:19:20.592 [SigStatUpd] CSignatureStatus: back to good 2026-05-11T10:19:20.592 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-11T10:19:20.592 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-11T10:19:20.592 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-11T10:19:20.592 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-11T10:19:20.608 Opening Sense registry key to get process path failed with hr=0x80070002. Fallback to programfiles. 2026-05-11T10:19:20.608 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-11T10:19:20.608 [Plugin] Initializing RTP plugin state... 2026-05-11T10:19:20.608 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-11T10:19:20.608 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A} 2026-05-11T10:19:20.608 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-11T10:19:20.608 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-11T10:19:20.608 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-11T10:19:20.608 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-11T10:19:20.608 MdCoreSvc is supported in this platform and OS 2026-05-11T10:19:20.608 Engine loaded! 2026-05-11T10:19:20.608 [DLP] Create FeatureControlState instance 2026-05-11T10:19:20.608 RegisterSModeChangeListener: hr = 0x1 2026-05-11T10:19:20.608 RegisterHybridModeChangeListener: hr = 0x1 2026-05-11T10:19:20.608 [AutoPurge] Auto purger task is scheduled to run in 600000(ms) from now with period 86400000(ms) 2026-05-11T10:19:20.608 [SigReleaseHb] Initialized with Stage 0 2026-05-11T10:19:20.608 [EmergencySigManager] Emergency sig checks are currently disabled. Timer interval: 15 minutes. 2026-05-11T10:19:20.608 [SCC][CID=26828_2452] Initializing ... 2026-05-11T10:19:20.608 [SCC][CID=26828_2452] SCC Initialize! The feature is OFF on this machine (E5 = 0), hr: 0x80004001 2026-05-11T10:19:20.608 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-11T10:19:20.608 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-11T10:19:20.608 [NRI] Stopping NIS service ... 2026-05-11T10:19:20.608 [RTP] [RTP] Killbits updated: 0x200000000000000 -> 0x4000000 2026-05-11T10:19:20.608 [RTP] [RTP] LastAccessTimeSuppression is enabled (default behavior). Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.557.0 AV Signature Version: 1.449.557.0 ************************************************************ 2026-05-11T10:19:20.608 Resource usage Monitoring is enabled 2026-05-11T10:19:20.608 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-11T10:19:20.608 [RTP] ****************************RTP Perf Log*************************** RTP Start:N/A Last Perf:(null) First RTP Scan:N/A Plugin States: AV:2 AS:2 RTP:2 OA:2 BM:2 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:0 System File Cache: Hits:0 Misses:0 BM Queue:0,0,0 Proc:0,0,0 File:0,0,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:3,3,0 SetEngine:1,1,0 SetState:1,1,0 SetUser:0,0,0 Config:0,0,0 ProcExcl:0,0,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:0 Pending:0 RegSize:2882 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:0 AsyncQCurrent:0 BMFlags:136 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:1476 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:5826 TotalHits:0 InstanceCacheInserts:19 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:2 InstanceCacheMisses:1738 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:-1ms (0/0) Success: 0, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-11T10:19:20.623 Engine:Failure in process enumeration: Image:, Error:GetImageNameConfigurationEx, 0x80078020, PID: 0 2026-05-11T10:19:20.623 Engine:Failure in process enumeration: Image:, Error:GetImageNameConfigurationEx, 0x80078020, PID: 4 2026-05-11T10:19:20.623 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-11T10:19:20.670 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-11T10:19:20.670 Ci Endpoint Security Policy Installation: Unsupported, hr = 0x00000001 2026-05-11T10:19:20.670 Job Notification: New process added to job (2244) 2026-05-11T10:19:20.686 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-11T10:19:20.686 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-11T10:19:20.686 Job Notification: New process added to job (1964) 2026-05-11T10:19:20.686 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-11T10:19:20.686 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-11T10:19:20.686 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-11T10:19:20.686 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-11T10:19:20.686 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-11T10:19:20.701 [RTP] Generating the base plugin configuration ... 2026-05-11T10:19:20.701 [RTP] Path exclusion changed, new size in bytes: 2 2026-05-11T10:19:20.701 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-11T10:19:20.701 [RTP] Calling GenerateEngineConfigStruct (0x3e) ... 2026-05-11T10:19:20.701 [RTP] [RTP] RTPPlugin state has changed as follow: ASStatus:0->1, AVStatus:0->1, RTPStatus:0->1 2026-05-11T10:19:20.701 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-11T10:19:20.701 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-11T10:19:20.701 [RTP] [RTP] StartCommunication 0x000001EDB8616120 (\MicrosoftMalwareProtectionPortWD, \MicrosoftMalwareProtectionVeryLowIoPortWD), threads: 6 normal, 2 very low, 0 alt, thread pool threads: 0 normal, 0 very low, 6 alt 2026-05-11T10:19:20.701 [RTP] [RTP] RTP worker threads ready [6 threads] 2026-05-11T10:19:20.795 Job Notification: New process added to job (2524) 2026-05-11T10:19:20.795 [RTP] [Mini-filter] First scan on a volume: \Device\HarddiskVolume2\Windows\System32\drivers\wd\WdNisDrv.sys 2026-05-11T10:19:20.998 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:1964] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2524]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-11T10:19:21.076 Job Notification: Process exited from job (1964) 2026-05-11T10:19:21.076 [PlatUpd] WMI MOF schema validation completed successfully 2026-05-11T10:19:21.092 Job Notification: Process exited from job (2524) 2026-05-11T10:19:21.139 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-11T10:19:21.186 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-11T10:19:21.186 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-11T10:19:21.186 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-11T10:19:22.686 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-11T10:19:23.717 [RTP] Duplicating the current plugin configuration object... 2026-05-11T10:19:23.717 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-11T10:19:23.717 [RTP] Updating plugin configuration due to recent config changes (0x600) ... 2026-05-11T10:19:23.717 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-05-11T10:19:23.717 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x600, Changed: 0x218 2026-05-11T10:19:24.608 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #18, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:19:24.608 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #20, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:19:24.764 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #24, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:19:24.779 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #26, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:20:08.984 Process scan (poststartupscan) started. 2026-05-11T10:20:08.984 Process scan (poststartupscan) completed. 2026-05-11T10:20:09.500 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-05-11T10:20:09.500 [RTP] [RtpConfig] Config change detected, type: 1024 2026-05-11T10:20:12.078 [RTP] Duplicating the current plugin configuration object... 2026-05-11T10:20:12.078 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-11T10:20:12.078 [RTP] Updating plugin configuration due to recent config changes (0x400) ... 2026-05-11T10:20:12.078 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-05-11T10:20:12.078 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x400, Changed: 0x218 2026-05-11T10:21:07.648 Engine:Setting original file name "pcalua.exe" for "c:\windows\system32\pcadm.dll", hr=0x0 2026-05-11T10:21:08.148 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #503, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:08.163 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #506, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:08.866 Engine:Setting original file name "rundll32.exe" for "c:\windows\system32\rundll32.exe", hr=0x0 2026-05-11T10:21:10.148 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Windows\Temp\953FA0CC-1442-45B6-84B8-E0C2768E5428. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #587, FileId: 0xd000000022ad9, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:10.148 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Windows\Temp\58FE3942-5AE3-42EC-8DA7-B59A970C5BDB. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #585, FileId: 0xd000000022a74, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:10.148 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Windows\Temp\66D737E8-3630-4C75-BF31-83EF62463FFD. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #591, FileId: 0xf000000022c17, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:10.148 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Windows\Temp\BBBCE546-072E-4DEC-9687-54E94D29ED61. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #590, FileId: 0x9000000022bbb, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:10.163 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Windows\Temp\921B7F11-ECA9-4C74-92F4-FC9FB405B0D1. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #592, FileId: 0xd000000023585, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:11.101 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Windows\Temp\5A7C1581-D672-4610-A687-A953FA70AB00. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #610, FileId: 0xa000000022627, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:11.101 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Windows\Temp\2688C941-2BA2-4E21-90A4-26E3BA9BFA55. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #611, FileId: 0x31f0000000226a8, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:11.101 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Windows\Temp\48218F62-FA00-4BD4-AC5F-CC847EC6CBFA. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #613, FileId: 0xd00000002271f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:11.116 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Windows\Temp\B1EFA8F3-20EA-4CD4-96D9-CB8E536AFD15. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #615, FileId: 0xa1000000021a7e, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:11.116 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Windows\Temp\E8A24A74-467E-4BAB-A942-BE3DAA417906. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #614, FileId: 0x31000000021a5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:11.929 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Windows\Temp\9E5ED3A5-ADB2-45A4-A77D-0DF26B9A40B3. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #633, FileId: 0x190000000002ea, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:11.945 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Windows\Temp\F2FFB181-7B58-445F-B1D7-ACA5051D3E2B. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #636, FileId: 0x117000000022841, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:11.945 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Windows\Temp\A42FB5E5-121E-442F-A849-08B157399FBF. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #634, FileId: 0xd00000002281a, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:11.945 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Windows\Temp\DFD41FE8-D2F1-4558-8F03-B57D4D75AC0E. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #638, FileId: 0x180000000229f8, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:11.945 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Windows\Temp\B41DC032-831F-47C3-93CC-22C436639E03. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #637, FileId: 0xd0000000228eb, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:12.320 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Windows\Temp\CD4EE29C-FA70-45D9-8EF3-D8F90A882F8B. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #705, FileId: 0xd000000022738, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:12.335 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Windows\Temp\90534C3C-D405-4F87-A68D-A676D32F5A04. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #708, FileId: 0x10000000022ad9, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:14.460 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Windows\Temp\97E32B2B-62F3-4E56-94AE-FF59FBC41E6E. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #796, FileId: 0x120000000002c8, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:14.460 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Windows\Temp\D0100B33-6250-4797-9A83-34044C12C2C3. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #797, FileId: 0x3230000000226a8, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:14.476 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Windows\Temp\BD77CE13-7DFF-4A90-87D7-4F87BC5F4603. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #802, FileId: 0xf00000002273a, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:14.476 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Windows\Temp\12CF4934-C7C5-4A36-B9BF-D789488A815D. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #800, FileId: 0x1000000002271f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:14.476 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Windows\Temp\72E913ED-2156-4F29-A5B5-32EF3E8F8254. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #801, FileId: 0xf000000022738, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:14.538 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Windows\Temp\FA6218D7-E49F-4AB9-91D7-51B35C5ACFEA. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #811, FileId: 0xa00000001b540, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:14.538 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Windows\Temp\EB85C88D-5AF1-42D4-A04F-C41FCAB4F083. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #816, FileId: 0x7e00000001edbb, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:14.538 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Windows\Temp\D97FDC25-8858-4A7F-885F-306CC14FBDF2. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #815, FileId: 0x9700000001eda5, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:14.538 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Windows\Temp\17FCE571-E515-46A5-AE83-089807579B50. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #814, FileId: 0x7700000001eda4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:21:14.554 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Windows\Temp\182F5A9E-723E-4D53-9EBC-327D07C3EC5B. Process: \Device\HarddiskVolume2\Windows\System32\spoolsv.exe, Status: 0xc0000001, State: 0, ScanRequest #812, FileId: 0x7000000001eda1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:22:51.871 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Windows\Logs\CBS\CBS.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #986, FileId: 0xf000000009ac0, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x820, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:24:20.569 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-11T10:24:20.616 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T10:24:55.223 ReportLowfi(C:\Windows\System32\Tasks\Microsoft\Windows\Shell\CreateObjectTask, 0xd32c80e2) from 0x00076ebd53f78220 BEGIN BM telemetry GUID:{E131545F-7389-95E1-B77D-FB9F1D2891E6} SignatureID:138211129873636 SigSha:dc4cddc90a9cfd516376f3a0c9cac7aecfbb6f96 ThreatLevel:0 ProcessID:868 ProcessCreationTime:134229683402072364 SessionID:0 CreationTime:05-11-2026 10:24:55 ImagePath:C:\Windows\System32\svchost.exe Taint Info:Friendly: N; Reason: ; Modules: C:\Windows\System32\NetSetupSvc.dll:25,C:\Windows\System32\NetSetupEngine.dll:25,C:\Windows\System32\ImplatSetup.dll:25,C:\Windows\System32\wbem\NCProv.dll:25,C:\Windows\System32\ntdll.dll:25,C:\Windows\System32\ntdll.dll:25,C:\Windows\System32\keepaliveprovider.dll:25,C:\Windows\System32\NcaSvc.dll:25,C:\Windows\System32\httpprxp.dll:25,C:\Windows\System32\wuaueng.dll:25,C:\Windows\System32\NetSetupSvc.dll:25,C:\Windows\System32\wups.dll:25,C:\Windows\System32\NetSetupEngine.dll:25,C:\Windows\System32\ImplatSetup.dll:25,C:\Windows\System32\ImplatSetup.dll:25,C:\Windows\System32\wups2.dll:25,C:\Windows\System32\esent.dll:25,C:\Windows\System32\wuuhext.dll:25,C:\Windows\System32\updatepolicy.dll:25,C:\Windows\System32\policymanager.dll:25,; Parents: Operations:None END BM telemetry Internal signature match:subtype=Lowfi, sigseq=0x0000055508082E77, sigsha=b991b0cf7e6ae7da2757bb1fcf8ffccf4cc094ca, cached=false, source=0, resourceid=0xba94a9bb 2026-05-11T10:24:55.301 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-11T10:24:55.301 [Cloud] Start of cloud request. Passive mode: 0 2026-05-11T10:24:55.301 [Cloud] Queued cloud request. 2026-05-11T10:24:55.301 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-11T10:24:55.333 Job Notification: New process added to job (2400) 2026-05-11T10:24:55.333 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 4DC09FE9-B7B1-BD32-1598-43F401DD5E7C) launched 2026-05-11T10:24:55.348 Job Notification: New process added to job (692) 2026-05-11T10:24:55.348 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:2400] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:692]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-11T10:24:55.364 Job Notification: New process added to job (2548) 2026-05-11T10:24:55.379 Job Notification: Process exited from job (2400) 2026-05-11T10:24:55.379 Job Notification: Process exited from job (692) 2026-05-11T10:24:55.395 [Cloud] Dequeued cloud request. 2026-05-11T10:24:55.395 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\c842025f8141a0f393a003e27d8a20c56085de3d Dynamic Signature Compilation Timestamp:05-11-2026 10:24:36 Persistence Type:Duration Time remaining:1728000000 2026-05-11T10:24:55.744 [Cloud] End of cloud request. Internal signature match:subtype=Lowfi, sigseq=0x0000055508082E77, sigsha=b991b0cf7e6ae7da2757bb1fcf8ffccf4cc094ca, cached=false, source=0, resourceid=0xba94a9bb Internal signature match:subtype=Lowfi, sigseq=0x00000070DE3CA1F0, sigsha=da39a3ee5e6b4b0d3255bfef95601890afd80709, cached=false, source=0, resourceid=0xba94a9bb 2026-05-11T10:24:55.744 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xbfee5dd7ffffffe 2026-05-11T10:24:55.744 Dynamic signature received 2026-05-11T10:24:55.759 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE Internal signature match:subtype=Lowfi, sigseq=0x0000055508082E77, sigsha=b991b0cf7e6ae7da2757bb1fcf8ffccf4cc094ca, cached=false, source=0, resourceid=0xba94a9bb 2026-05-11T10:24:56.197 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-11T10:24:56.213 [Cloud] Start of cloud request. Passive mode: 0 2026-05-11T10:24:56.213 [Cloud] Queued cloud request. 2026-05-11T10:24:56.213 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-11T10:24:56.213 [Cloud] Dequeued cloud request. 2026-05-11T10:24:56.213 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-11T10:24:56.213 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-05-11T10:24:56.213 [Cloud] Start of cloud request. Passive mode: 0 2026-05-11T10:24:56.213 [Cloud] Queued cloud request. 2026-05-11T10:24:56.213 [Cloud] Dequeued cloud request. 2026-05-11T10:24:56.213 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-11T10:24:56.244 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-11T10:24:56.291 [Cloud] End of cloud request. 2026-05-11T10:24:56.444 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-11T10:24:56.444 [Cloud] End of cloud request. 2026-05-11T10:24:56.791 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-11T10:29:08.375 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\62f204ac0ba259da374905c1b6c11fb0\mscorlib.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1473, FileId: 0x11c000000022841, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:29:16.891 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System\575fb95e371d6c6ad13d3fe07cd9a297\System.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1474, FileId: 0xf00000002416f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:29:20.610 Timer callback: Initializating/verifying scheduled tasks ... 2026-05-11T10:29:20.610 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-11T10:29:20.719 Job Notification: New process added to job (3836) 2026-05-11T10:29:20.735 Task(Scan -ScheduleJob -RestrictPrivileges -ScanType 2 -ScanTrigger 52) is scheduled to run in 52762092(ms) from now at 03:08 (01:08 UTC) with period 86400000(ms). Daily task start time is randomized to reduce spikes. 2026-05-11T10:29:20.766 Job Notification: New process added to job (3788) 2026-05-11T10:29:20.766 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-11T10:29:20.782 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3836] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3788]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-11T10:29:20.860 Job Notification: New process added to job (1224) 2026-05-11T10:29:20.860 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-11T10:29:20.860 Job Notification: New process added to job (2852) 2026-05-11T10:29:20.875 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:1224] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2852]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-11T10:29:27.688 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\CD4115B9-268F-4784-9134-6464DC1933DE105c.1dce131091c64dc 2026-05-11T10:29:27.751 Verifying engine and signature files (source: 0) ... 2026-05-11T10:29:27.751 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CAA03DBD-042E-497A-AE4D-0FF37B80C2CA}\mpengine.dll] due to PPL. 2026-05-11T10:29:27.751 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CAA03DBD-042E-497A-AE4D-0FF37B80C2CA}\mpasbase.vdm] (file in cache) 2026-05-11T10:29:27.751 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CAA03DBD-042E-497A-AE4D-0FF37B80C2CA}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-11T10:29:27.782 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\d025d64fbbbe5b160aa3992b439e673a\System.Core.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1524, FileId: 0x3c1000000027457, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:29:27.782 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CAA03DBD-042E-497A-AE4D-0FF37B80C2CA}\mpasdlta.vdm] 2026-05-11T10:29:27.782 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CAA03DBD-042E-497A-AE4D-0FF37B80C2CA}\mpavbase.vdm] (file in cache) 2026-05-11T10:29:27.782 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CAA03DBD-042E-497A-AE4D-0FF37B80C2CA}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-11T10:29:27.844 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CAA03DBD-042E-497A-AE4D-0FF37B80C2CA}\mpavdlta.vdm] 2026-05-11T10:29:34.297 [Engine] IsHybridMode: 0 2026-05-11T10:29:34.297 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-11T10:29:34.313 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-33D5A5E12F65407EE5E06351DCBFB7CBA2036856.bin): 0x00000002 2026-05-11T10:29:34.329 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-33D5A5E12F65407EE5E06351DCBFB7CBA2036856.bin) 2026-05-11T10:29:34.329 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-11T10:29:34.329 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-11T10:29:34.329 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-11T10:29:34.329 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-05-11T10:29:41.954 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\e09dc225aa3f042f5ab40ca1dbf69d0b\WindowsBase.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1525, FileId: 0x22000000027b6f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:29:58.501 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\764f2565a84ad859974c35b38b0ad0e4\PresentationCore.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1573, FileId: 0x1d0000000027cee, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:30:44.985 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\40df4cd938575fa34acb40499afcd7d7\System.Drawing.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1575, FileId: 0xf000000029eba, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:31:00.969 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\02e87934e7274b8be86fb83117c5f6ba\System.Windows.Forms.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1576, FileId: 0x1b000000033945, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:33:29.035 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Data\60aed966f69780a57ca672e074b4121b\System.Data.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1586, FileId: 0x410000000291bd, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:33:34.425 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\4b52832207ebe3093cc2a5980bfe1d5c\System.Xml.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1587, FileId: 0x1b00000005349f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-11T10:34:35.488 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-11T10:34:35.504 [AutoExclusion] Applied roles from cache. 2026-05-11T10:34:35.504 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-11T10:34:35.566 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFFF5878020, lRefCount: 5, hr=0 2026-05-11T10:34:35.566 [Engine] New active engine 00007FFFF1708020 replacing engine 00007FFFF5878020. Number of active engines: 2 2026-05-11T10:34:35.566 EngineInit:Global ASOC is enabled 2026-05-11T10:34:35.566 EngineInit:ASOO is enabled for developer volumes 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:34:35.597 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-11T10:34:35.597 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-11T10:34:35.613 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-11T10:34:35.613 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-11T10:34:35.613 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-11T10:34:35.613 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-11T10:34:35.613 [Plugin] Initializing RTP plugin state... 2026-05-11T10:34:35.613 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-11T10:34:35.613 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CAA03DBD-042E-497A-AE4D-0FF37B80C2CA} 2026-05-11T10:34:35.613 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{63A04CEA-AFA7-413A-8FCF-119C38A0851C} removed 2026-05-11T10:34:35.613 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-11T10:34:35.613 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-11T10:34:35.613 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-11T10:34:35.613 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-11T10:34:35.629 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-11T10:34:35.629 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-11-2026 10:34:35 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-11-2026 10:34:35 2026-05-11T10:34:35.629 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-11T10:34:35.629 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-11T10:34:35.629 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-11T10:34:35.629 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-11T10:34:35.629 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-11T10:34:35.629 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-11T10:34:35.629 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-11T10:34:35.629 MdCoreSvc is supported in this platform and OS 2026-05-11T10:34:35.629 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎11‎-‎2026 12:19:20 Last Perf:‎05‎-‎11‎-‎2026 12:19:20 First RTP Scan:‎05‎-‎11‎-‎2026 12:19:20 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:282 Misses:1069 BM Queue:0,242,0 Proc:0,115,0 File:0,213,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:2,4,0 SetEngine:1,1,0 SetState:1,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:1591 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:15034652 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:35573 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:90610 TotalHits:21701 InstanceCacheInserts:396 InstanceCacheUpdates:0 InstanceCacheDeletes:64 InstanceCacheHits:3 InstanceCacheMisses:41747 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:3ms (1836/528) Success: 528, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-11T10:34:35.629 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-11T10:34:35.629 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-11T10:34:35.629 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-11T10:34:35.691 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-11T10:34:35.691 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated on 05-11-2026 10:34:35 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.559.0 AV Signature Version: 1.449.559.0 ************************************************************ 2026-05-11T10:34:35.691 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-11T10:34:35.691 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\CD4115B9-268F-4784-9134-6464DC1933DE105c.1dce131091c64dc 2026-05-11T10:34:35.691 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-11T10:34:35.707 Process scan (postsignatureupdatescan) started. 2026-05-11T10:34:36.066 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-11T10:34:36.066 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-11T10:34:36.066 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-11T10:34:36.066 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-11T10:34:36.066 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-11T10:34:36.066 [Engine] Engine 00007FFFF5878020 no longer in use. Number of active engines: 1 2026-05-11T10:34:36.176 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 2367, Count: 95, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\appraiser.dll, EstimatedImpact: 0% 2026-05-11T10:34:36.176 ProcessImageName: spoolsv.exe, Pid: 1604, TotalTime: 1866, Count: 178, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\DRIVER~1\FILERE~1\PR9F38~1.INF\Amd64\FXSRES.DLL, EstimatedImpact: 18% 2026-05-11T10:34:36.176 ProcessImageName: WmiPrvSE.exe, Pid: 688, TotalTime: 1155, Count: 45, MaxTime: 250, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wmp.dll, EstimatedImpact: 5% 2026-05-11T10:34:36.176 ProcessImageName: svchost.exe, Pid: 2052, TotalTime: 966, Count: 7, MaxTime: 703, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 0% 2026-05-11T10:34:36.176 ProcessImageName: ngentask.exe, Pid: 1944, TotalTime: 398, Count: 25, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll, EstimatedImpact: 34% 2026-05-11T10:34:36.176 ProcessImageName: taskhostw.exe, Pid: 2940, TotalTime: 353, Count: 14, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll, EstimatedImpact: 24% 2026-05-11T10:34:36.176 ProcessImageName: , Pid: 4, TotalTime: 195, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\TS_C2E3.tmp, EstimatedImpact: 1% 2026-05-11T10:34:36.176 ProcessImageName: svchost.exe, Pid: 3000, TotalTime: 170, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\moshost.dll, EstimatedImpact: 100% 2026-05-11T10:34:36.176 ProcessImageName: ngentask.exe, Pid: 2768, TotalTime: 167, Count: 16, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log->(UTF-8), EstimatedImpact: 15% 2026-05-11T10:34:36.176 ProcessImageName: svchost.exe, Pid: 992, TotalTime: 139, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\dssvc.dll, EstimatedImpact: 0% 2026-05-11T10:34:36.176 ProcessImageName: services.exe, Pid: 588, TotalTime: 124, Count: 2, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\sppsvc.exe, EstimatedImpact: 0% 2026-05-11T10:34:36.176 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 107, Count: 3, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\gpsvc.dll, EstimatedImpact: 0% 2026-05-11T10:34:36.176 ProcessImageName: svchost.exe, Pid: 736, TotalTime: 93, Count: 2, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WmiPrvSE.exe, EstimatedImpact: 0% 2026-05-11T10:34:36.176 ProcessImageName: msdtc.exe, Pid: 4068, TotalTime: 92, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\msdtctm.dll, EstimatedImpact: 21% 2026-05-11T10:34:36.176 ProcessImageName: WmiPrvSE.exe, Pid: 3872, TotalTime: 92, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 84% 2026-05-11T10:34:36.176 ProcessImageName: GoogleUpdate.exe, Pid: 2996, TotalTime: 92, Count: 5, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.8957_none_7ddfefb083425c7d\comctl32.dll, EstimatedImpact: 28% 2026-05-11T10:34:36.222 [Engine] RSIG_UNLOADENGINE, 00007FFFF5878020, err=0x0 2026-05-11T10:34:36.222 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6C38FCD6-556D-4FE1-B5DB-239C1999CA9A} removed 2026-05-11T10:34:36.222 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-11T10:34:36.222 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-11T10:34:36.269 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-11T10:34:36.269 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-11T10:34:36.269 [KSL] Leaving CKSLEngine::EnableKsl(0). Signature updated via MicrosoftUpdateServer on 05-11-2026 10:34:36 ************************************************************ 2026-05-11T10:34:36.301 Job Notification: Process exited from job (1224) 2026-05-11T10:34:36.316 Job Notification: Process exited from job (2852) 2026-05-11T10:34:36.441 Job Notification: Process exited from job (3836) 2026-05-11T10:34:36.457 Job Notification: Process exited from job (3788) 2026-05-11T10:34:45.926 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Web\3e6ca9cc35cdcafe66e2fae6cee84a10\System.Web.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1601, FileId: 0x20000000058b67, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:34:46.691 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.28b9ef5a#\a091226628ad41fa4b388529e48dc4e4\System.Web.Extensions.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1602, FileId: 0x2e3000000014af4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:34:55.097 Process scan (postsignatureupdatescan) completed. 2026-05-11T10:34:58.894 Engine:Setting original file name "powershell.exe" for "\\?\c:\windows\syswow64\windowspowershell\v1.0\powershell.exe", hr=0x0 2026-05-11T10:34:59.019 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.AddIn\0faa2920733fca7d1945c7b527f71d95\System.AddIn.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1664, FileId: 0x20000000058ab7, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:35:08.785 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_y2if5xtk.qk0.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #1750, FileId: 0x20000000058b9e, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:35:26.832 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\5b7dfbb6f62799b6979729f5dc677903\mscorlib.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1790, FileId: 0x3000000005920, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:35:32.551 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\System\dc63a5ddffd2545a407d6d040a66ab57\System.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1791, FileId: 0x4000000008b90, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:35:38.316 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\1b12deb4398e371fd0bc0c8466a831f2\System.Core.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1792, FileId: 0x4000000008f23, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:35:45.916 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\455cb4419fbda842c157b364e4016af9\WindowsBase.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1793, FileId: 0x4000000008fb1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:35:58.437 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\fc808b540bb5efb3d6dd3b457ba89a7f\PresentationCore.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1794, FileId: 0x4000000008fcb, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:36:29.275 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\801eb5ad919c83ad71947a98faed276f\System.Drawing.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1796, FileId: 0x4000000014be3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:36:40.728 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\1d0da109afb6d8caaa647057ec043c5d\System.Windows.Forms.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1797, FileId: 0x800000001bbb6, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:38:29.775 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\System.Data\5f6e5ee844b1e9ccc0d0bba51c45de76\System.Data.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1800, FileId: 0x5000000014ba8, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:38:33.900 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\f0cc192d4d4fb728d7c8a2cef70168e5\System.Xml.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1801, FileId: 0x124000000021a93, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:39:24.009 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\System.Web\966b348519c2ec29799788db03b55fdb\System.Web.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1806, FileId: 0x21000000058cb1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:39:24.478 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\System.Comp46f2b404#\cdad907a6f93a51a327f17d1ec5b6bca\System.ComponentModel.DataAnnotations.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1807, FileId: 0x20000000058c17, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:39:25.618 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T10:39:31.462 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\System.AddIn\65a250b1e95174b9c0b0cb75b8629102\System.AddIn.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1809, FileId: 0x21000000058c08, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T10:39:35.946 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-11T10:54:30.619 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T11:09:35.619 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T11:15:32.649 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1962, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T11:15:32.649 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1964, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T11:15:42.665 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1967, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T11:15:42.680 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1969, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T11:15:42.680 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1971, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T11:24:40.615 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T11:39:45.623 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T11:54:50.621 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T12:09:55.623 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T12:15:33.266 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2083, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T12:15:33.281 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2085, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T12:15:43.270 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2089, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T12:15:43.270 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2090, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T12:15:43.285 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2091, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T12:25:00.623 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T12:34:35.575 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 761, Count: 59, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-05-11T12:34:35.575 ProcessImageName: powershell.exe, Pid: 5104, TotalTime: 692, Count: 50, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Automation\v4.0_3.0.0.0__31bf3856ad364e35\System.Management.Automation.dll, EstimatedImpact: 7% 2026-05-11T12:34:35.575 ProcessImageName: powershell.exe, Pid: 4200, TotalTime: 349, Count: 36, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\03a8b067ef40fe417927198b6c3c2589\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 5% 2026-05-11T12:34:35.575 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 244, Count: 13, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\XblGameSaveTask.exe, EstimatedImpact: 0% 2026-05-11T12:34:35.575 ProcessImageName: svchost.exe, Pid: 2052, TotalTime: 77, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\OnDemandConnRouteHelper.dll, EstimatedImpact: 49% 2026-05-11T12:34:35.575 ProcessImageName: ngentask.exe, Pid: 2768, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 25% 2026-05-11T12:34:35.575 ProcessImageName: ngentask.exe, Pid: 1944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 41% 2026-05-11T12:34:35.575 ProcessImageName: updater.exe, Pid: 2576, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-11T12:34:35.575 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c0304c5-e05e-4394-ae6a-12206f868379.tmp, EstimatedImpact: 0% 2026-05-11T12:40:05.613 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T12:55:10.611 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T13:10:15.619 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T13:15:33.728 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2240, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T13:15:33.728 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2242, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T13:15:43.744 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2245, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T13:15:43.744 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2247, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T13:15:43.759 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2249, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T13:25:20.615 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T13:40:25.623 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T13:55:30.617 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T14:10:35.622 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T14:15:32.369 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2342, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T14:15:32.369 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2344, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T14:15:42.373 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2348, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T14:15:42.388 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2351, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T14:25:40.622 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T14:34:35.589 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 1021, Count: 76, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\home.tpl.php, EstimatedImpact: 0% 2026-05-11T14:34:35.589 ProcessImageName: powershell.exe, Pid: 5104, TotalTime: 692, Count: 50, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Automation\v4.0_3.0.0.0__31bf3856ad364e35\System.Management.Automation.dll, EstimatedImpact: 7% 2026-05-11T14:34:35.589 ProcessImageName: powershell.exe, Pid: 4200, TotalTime: 349, Count: 36, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\03a8b067ef40fe417927198b6c3c2589\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 5% 2026-05-11T14:34:35.589 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 290, Count: 14, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\XblGameSaveTask.exe, EstimatedImpact: 0% 2026-05-11T14:34:35.589 ProcessImageName: svchost.exe, Pid: 2052, TotalTime: 77, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\OnDemandConnRouteHelper.dll, EstimatedImpact: 49% 2026-05-11T14:34:35.589 ProcessImageName: ngentask.exe, Pid: 2768, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 25% 2026-05-11T14:34:35.589 ProcessImageName: ngentask.exe, Pid: 1944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 41% 2026-05-11T14:34:35.589 ProcessImageName: updater.exe, Pid: 2576, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-11T14:34:35.589 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e895f936-18e8-46d7-aaa7-3cda4be72dd7.tmp, EstimatedImpact: 0% 2026-05-11T14:34:35.589 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c0304c5-e05e-4394-ae6a-12206f868379.tmp, EstimatedImpact: 0% 2026-05-11T14:34:35.589 ProcessImageName: updater.exe, Pid: 4244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c958f3f0-da27-4dcb-a83c-945e71bca4cd.tmp, EstimatedImpact: 0% 2026-05-11T14:40:45.621 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T14:55:50.621 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T15:10:55.620 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T15:15:34.379 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2467, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T15:15:34.395 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2469, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T15:15:44.393 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2473, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T15:15:44.393 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2475, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T15:15:44.552 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2479, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T15:15:44.572 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2481, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T15:26:00.620 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T15:41:05.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T15:51:24.275 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\#sqla88_14_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #3748, FileId: 0x2ff2000000009b80, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T15:51:24.275 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sqla88_15_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #3749, FileId: 0x3c70000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T15:56:10.619 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T16:11:15.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T16:15:33.134 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4259, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T16:15:33.134 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4261, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T16:15:43.137 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4265, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T16:15:43.137 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4267, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T16:15:43.153 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4269, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T16:15:43.153 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4271, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T16:26:20.608 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T16:34:35.596 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 55165, Count: 6523, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-11T16:34:35.596 ProcessImageName: powershell.exe, Pid: 5104, TotalTime: 692, Count: 50, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Automation\v4.0_3.0.0.0__31bf3856ad364e35\System.Management.Automation.dll, EstimatedImpact: 7% 2026-05-11T16:34:35.596 ProcessImageName: powershell.exe, Pid: 4200, TotalTime: 349, Count: 36, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\03a8b067ef40fe417927198b6c3c2589\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 5% 2026-05-11T16:34:35.596 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 321, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\XblGameSaveTask.exe, EstimatedImpact: 0% 2026-05-11T16:34:35.596 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 135, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\db.opt, EstimatedImpact: 0% 2026-05-11T16:34:35.596 ProcessImageName: svchost.exe, Pid: 2052, TotalTime: 77, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\OnDemandConnRouteHelper.dll, EstimatedImpact: 49% 2026-05-11T16:34:35.596 ProcessImageName: ngentask.exe, Pid: 2768, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 25% 2026-05-11T16:34:35.596 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f95fddc-05fc-4545-b83c-43796e5c881d.tmp, EstimatedImpact: 0% 2026-05-11T16:34:35.596 ProcessImageName: ngentask.exe, Pid: 1944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 41% 2026-05-11T16:34:35.596 ProcessImageName: updater.exe, Pid: 2576, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-11T16:34:35.596 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3cc6ae5-a8b5-4901-a02d-a0ce0bd0e89c.tmp, EstimatedImpact: 0% 2026-05-11T16:34:35.596 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e895f936-18e8-46d7-aaa7-3cda4be72dd7.tmp, EstimatedImpact: 0% 2026-05-11T16:34:35.596 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c0304c5-e05e-4394-ae6a-12206f868379.tmp, EstimatedImpact: 0% 2026-05-11T16:34:35.596 ProcessImageName: updater.exe, Pid: 4244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c958f3f0-da27-4dcb-a83c-945e71bca4cd.tmp, EstimatedImpact: 0% 2026-05-11T16:41:25.619 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T16:56:30.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T17:11:35.618 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T17:15:31.165 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4372, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T17:15:31.181 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4374, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T17:15:41.174 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4378, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T17:15:41.190 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4381, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T17:26:40.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T17:41:45.612 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T17:53:25.232 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sqla88_18_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #4448, FileId: 0x3d10000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T17:53:25.826 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\xampp\tmp\#sqla88_18_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #4452, FileId: 0x3d20000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T17:56:50.616 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T18:11:55.617 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T18:15:32.556 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4488, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T18:15:32.572 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4490, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T18:15:42.570 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4494, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T18:15:42.586 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4498, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 2026-05-11T18:16:28.293 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-11T18:16:28.309 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-11T18:16:28.309 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-11T18:16:28.309 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-11T18:16:28.309 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-11T18:16:28.309 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-11T18:16:28.309 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-11T18:16:28.309 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-11T18:16:28.309 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-11T18:16:28.309 MdCoreSvc is supported in this platform and OS 2026-05-11T18:16:28.817 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-11T18:16:28.817 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-11T18:16:28.817 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-11T18:27:00.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T18:34:35.595 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 55165, Count: 6524, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-11T18:34:35.595 ProcessImageName: powershell.exe, Pid: 5104, TotalTime: 692, Count: 50, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Automation\v4.0_3.0.0.0__31bf3856ad364e35\System.Management.Automation.dll, EstimatedImpact: 7% 2026-05-11T18:34:35.595 ProcessImageName: powershell.exe, Pid: 4200, TotalTime: 349, Count: 36, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\03a8b067ef40fe417927198b6c3c2589\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 5% 2026-05-11T18:34:35.595 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 321, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\XblGameSaveTask.exe, EstimatedImpact: 0% 2026-05-11T18:34:35.595 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 165, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\db.opt, EstimatedImpact: 0% 2026-05-11T18:34:35.595 ProcessImageName: svchost.exe, Pid: 2052, TotalTime: 77, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\OnDemandConnRouteHelper.dll, EstimatedImpact: 49% 2026-05-11T18:34:35.595 ProcessImageName: ngentask.exe, Pid: 2768, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 25% 2026-05-11T18:34:35.595 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f95fddc-05fc-4545-b83c-43796e5c881d.tmp, EstimatedImpact: 0% 2026-05-11T18:34:35.595 ProcessImageName: ngentask.exe, Pid: 1944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 41% 2026-05-11T18:34:35.595 ProcessImageName: updater.exe, Pid: 2576, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-11T18:34:35.595 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c0304c5-e05e-4394-ae6a-12206f868379.tmp, EstimatedImpact: 0% 2026-05-11T18:34:35.595 ProcessImageName: updater.exe, Pid: 4388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\03ad345d-563a-48b8-8899-0fe1772eff78.tmp, EstimatedImpact: 0% 2026-05-11T18:34:35.595 ProcessImageName: updater.exe, Pid: 4244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c958f3f0-da27-4dcb-a83c-945e71bca4cd.tmp, EstimatedImpact: 0% 2026-05-11T18:34:35.595 ProcessImageName: updater.exe, Pid: 1516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\338ec68c-2e12-4033-92c9-8a4ac8c325ba.tmp, EstimatedImpact: 0% 2026-05-11T18:34:35.595 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3cc6ae5-a8b5-4901-a02d-a0ce0bd0e89c.tmp, EstimatedImpact: 0% 2026-05-11T18:34:35.595 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e895f936-18e8-46d7-aaa7-3cda4be72dd7.tmp, EstimatedImpact: 0% 2026-05-11T18:42:05.614 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T18:57:10.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T19:12:15.610 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T19:15:32.548 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4601, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T19:15:32.564 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4603, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T19:15:42.558 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4607, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T19:15:42.558 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4608, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T19:15:42.558 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4610, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T19:27:20.615 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T19:42:25.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T19:57:30.619 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T20:12:35.614 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T20:15:33.368 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4705, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T20:15:33.383 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4707, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T20:15:43.377 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4711, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T20:15:43.377 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4713, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T20:15:43.536 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4717, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T20:15:43.536 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4719, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T20:27:40.613 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T20:34:35.610 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 55165, Count: 6524, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-11T20:34:35.610 ProcessImageName: powershell.exe, Pid: 5104, TotalTime: 692, Count: 50, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Automation\v4.0_3.0.0.0__31bf3856ad364e35\System.Management.Automation.dll, EstimatedImpact: 7% 2026-05-11T20:34:35.610 ProcessImageName: powershell.exe, Pid: 4200, TotalTime: 349, Count: 36, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\03a8b067ef40fe417927198b6c3c2589\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 5% 2026-05-11T20:34:35.610 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 321, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\XblGameSaveTask.exe, EstimatedImpact: 0% 2026-05-11T20:34:35.610 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 165, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\db.opt, EstimatedImpact: 0% 2026-05-11T20:34:35.610 ProcessImageName: svchost.exe, Pid: 2052, TotalTime: 77, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\OnDemandConnRouteHelper.dll, EstimatedImpact: 49% 2026-05-11T20:34:35.610 ProcessImageName: ngentask.exe, Pid: 2768, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 25% 2026-05-11T20:34:35.610 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f95fddc-05fc-4545-b83c-43796e5c881d.tmp, EstimatedImpact: 0% 2026-05-11T20:34:35.610 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\164b24d0-0e28-4ea1-a16f-88d67be78e43.tmp, EstimatedImpact: 0% 2026-05-11T20:34:35.610 ProcessImageName: ngentask.exe, Pid: 1944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 41% 2026-05-11T20:34:35.610 ProcessImageName: updater.exe, Pid: 2576, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-11T20:34:35.610 ProcessImageName: updater.exe, Pid: 4404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9fc290bb-29fc-4f3d-b397-78712e9955bd.tmp, EstimatedImpact: 0% 2026-05-11T20:34:35.610 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3cc6ae5-a8b5-4901-a02d-a0ce0bd0e89c.tmp, EstimatedImpact: 0% 2026-05-11T20:34:35.610 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e895f936-18e8-46d7-aaa7-3cda4be72dd7.tmp, EstimatedImpact: 0% 2026-05-11T20:34:35.610 ProcessImageName: updater.exe, Pid: 4244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c958f3f0-da27-4dcb-a83c-945e71bca4cd.tmp, EstimatedImpact: 0% 2026-05-11T20:34:35.610 ProcessImageName: updater.exe, Pid: 4388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\03ad345d-563a-48b8-8899-0fe1772eff78.tmp, EstimatedImpact: 0% 2026-05-11T20:34:35.610 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c0304c5-e05e-4394-ae6a-12206f868379.tmp, EstimatedImpact: 0% 2026-05-11T20:34:35.610 ProcessImageName: updater.exe, Pid: 1516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\338ec68c-2e12-4033-92c9-8a4ac8c325ba.tmp, EstimatedImpact: 0% 2026-05-11T20:42:45.606 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T20:57:50.613 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T21:12:55.606 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T21:15:33.171 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4828, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T21:15:33.171 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4830, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T21:15:43.185 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4834, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T21:15:43.201 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4836, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T21:28:00.612 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T21:43:05.617 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T21:58:10.616 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T22:13:15.606 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T22:15:32.429 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4930, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T22:15:32.445 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4932, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T22:15:42.438 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4936, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T22:15:42.453 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4938, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T22:15:42.453 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4940, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T22:28:20.610 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T22:34:35.609 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 55165, Count: 6524, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: powershell.exe, Pid: 5104, TotalTime: 692, Count: 50, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Automation\v4.0_3.0.0.0__31bf3856ad364e35\System.Management.Automation.dll, EstimatedImpact: 7% 2026-05-11T22:34:35.609 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 367, Count: 17, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\XblGameSaveTask.exe, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: powershell.exe, Pid: 4200, TotalTime: 349, Count: 36, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\03a8b067ef40fe417927198b6c3c2589\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 5% 2026-05-11T22:34:35.609 ProcessImageName: WmiPrvSE.exe, Pid: 188, TotalTime: 240, Count: 31, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\dbgcore.dll, EstimatedImpact: 36% 2026-05-11T22:34:35.609 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 165, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\db.opt, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: svchost.exe, Pid: 992, TotalTime: 154, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wmidcom.dll, EstimatedImpact: 82% 2026-05-11T22:34:35.609 ProcessImageName: svchost.exe, Pid: 2052, TotalTime: 77, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\OnDemandConnRouteHelper.dll, EstimatedImpact: 49% 2026-05-11T22:34:35.609 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\services.exe, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: ngentask.exe, Pid: 2768, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 25% 2026-05-11T22:34:35.609 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f95fddc-05fc-4545-b83c-43796e5c881d.tmp, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\164b24d0-0e28-4ea1-a16f-88d67be78e43.tmp, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: ngentask.exe, Pid: 1944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 41% 2026-05-11T22:34:35.609 ProcessImageName: updater.exe, Pid: 2576, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: updater.exe, Pid: 4388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\03ad345d-563a-48b8-8899-0fe1772eff78.tmp, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3cc6ae5-a8b5-4901-a02d-a0ce0bd0e89c.tmp, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e895f936-18e8-46d7-aaa7-3cda4be72dd7.tmp, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: updater.exe, Pid: 4380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc8fdfed-f1a2-4ee0-ba1a-fe0d6d0db1ca.tmp, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c0304c5-e05e-4394-ae6a-12206f868379.tmp, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: updater.exe, Pid: 4244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c958f3f0-da27-4dcb-a83c-945e71bca4cd.tmp, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: updater.exe, Pid: 4404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9fc290bb-29fc-4f3d-b397-78712e9955bd.tmp, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: updater.exe, Pid: 1732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5aac6039-cea6-483e-a624-59a06c512af5.tmp, EstimatedImpact: 0% 2026-05-11T22:34:35.609 ProcessImageName: updater.exe, Pid: 1516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\338ec68c-2e12-4033-92c9-8a4ac8c325ba.tmp, EstimatedImpact: 0% 2026-05-11T22:43:25.620 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T22:58:30.610 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T23:13:35.615 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T23:15:33.401 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5712, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T23:15:33.401 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5714, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T23:15:43.415 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5718, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T23:15:43.415 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5719, FileId: 0x4b3a0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T23:15:43.431 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5720, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-11T23:28:40.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T23:43:45.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-11T23:58:50.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T00:05:52.794 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqla88_1d_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #5811, FileId: 0x3dc0000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T00:05:53.419 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqla88_1d_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #5815, FileId: 0x3dd0000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T00:13:55.608 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T00:15:32.867 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5832, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T00:15:32.883 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5834, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T00:15:42.882 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5838, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T00:15:42.898 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5840, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T00:15:42.898 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5843, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T00:29:00.608 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T00:34:35.622 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 55165, Count: 6525, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: powershell.exe, Pid: 5104, TotalTime: 692, Count: 50, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Automation\v4.0_3.0.0.0__31bf3856ad364e35\System.Management.Automation.dll, EstimatedImpact: 7% 2026-05-12T00:34:35.622 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 474, Count: 22, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\XblGameSaveTask.exe, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: powershell.exe, Pid: 4200, TotalTime: 349, Count: 36, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\03a8b067ef40fe417927198b6c3c2589\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 5% 2026-05-12T00:34:35.622 ProcessImageName: WmiPrvSE.exe, Pid: 188, TotalTime: 240, Count: 31, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\dbgcore.dll, EstimatedImpact: 36% 2026-05-12T00:34:35.622 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 165, Count: 26, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\db.opt, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: svchost.exe, Pid: 992, TotalTime: 154, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wmidcom.dll, EstimatedImpact: 82% 2026-05-12T00:34:35.622 ProcessImageName: svchost.exe, Pid: 2052, TotalTime: 77, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\OnDemandConnRouteHelper.dll, EstimatedImpact: 49% 2026-05-12T00:34:35.622 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\services.exe, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: ngentask.exe, Pid: 2768, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 25% 2026-05-12T00:34:35.622 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\164b24d0-0e28-4ea1-a16f-88d67be78e43.tmp, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f95fddc-05fc-4545-b83c-43796e5c881d.tmp, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: ngentask.exe, Pid: 1944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 41% 2026-05-12T00:34:35.622 ProcessImageName: updater.exe, Pid: 2576, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: updater.exe, Pid: 4388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\03ad345d-563a-48b8-8899-0fe1772eff78.tmp, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3cc6ae5-a8b5-4901-a02d-a0ce0bd0e89c.tmp, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e895f936-18e8-46d7-aaa7-3cda4be72dd7.tmp, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: updater.exe, Pid: 4380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc8fdfed-f1a2-4ee0-ba1a-fe0d6d0db1ca.tmp, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3973b42-5f18-40ec-9c6a-199d7b7e71e0.tmp, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c0304c5-e05e-4394-ae6a-12206f868379.tmp, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: updater.exe, Pid: 4244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c958f3f0-da27-4dcb-a83c-945e71bca4cd.tmp, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: updater.exe, Pid: 4056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d9436bb-af11-44db-bfe0-1c08afd7675f.tmp, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: updater.exe, Pid: 4404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9fc290bb-29fc-4f3d-b397-78712e9955bd.tmp, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: updater.exe, Pid: 1732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5aac6039-cea6-483e-a624-59a06c512af5.tmp, EstimatedImpact: 0% 2026-05-12T00:34:35.622 ProcessImageName: updater.exe, Pid: 1516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\338ec68c-2e12-4033-92c9-8a4ac8c325ba.tmp, EstimatedImpact: 0% 2026-05-12T00:44:05.605 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T00:59:10.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T01:14:15.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T01:15:32.750 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5942, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:15:32.750 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5944, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:15:48.702 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5951, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:15:48.702 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5953, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:16:10.636 ReportLowfi(c:\program files (x86)\google\chrome\application\148.0.7778.97\installer\chrmstp.exe, 0x437a0835) from 0x0006b6bd6566d2d9 Internal signature match:subtype=Lowfi, sigseq=0x000005550240CBF2, sigsha=e39a25e9b19899abbd79ec872fd8aeabe27e140d, cached=false, source=0, resourceid=0x3bc9449b 2026-05-12T01:16:11.379 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Windows\SystemTemp\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #6255, FileId: 0xb00000001b7cb, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:16:11.457 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Windows\SystemTemp\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #6259, FileId: 0xb00000001b7cb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:16:12.901 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #6262, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:16:12.901 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #6264, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:16:22.914 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #6268, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:29:20.616 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T01:35:50.567 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sqla88_25_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6415, FileId: 0xe00000001b6da, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:50.848 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\xampp\tmp\#sqla88_24_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6436, FileId: 0x120000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:51.098 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sqla88_23_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6471, FileId: 0x220000000164e1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:51.270 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sqla88_24_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6501, FileId: 0x194f0000000161ee, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:51.504 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sqla88_24_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6532, FileId: 0x19560000000161ee, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:51.770 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sqla88_22_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6563, FileId: 0x195a0000000161ee, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:51.973 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sqla88_27_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6594, FileId: 0x19610000000161ee, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:52.600 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sqla88_23_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6619, FileId: 0x460000000164e1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:53.414 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sqla88_25_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6652, FileId: 0x19700000000161ee, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:53.618 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sqla88_24_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6683, FileId: 0x100000000164e7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:53.946 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sqla88_25_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6734, FileId: 0x197e0000000161ee, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:54.164 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sqla88_24_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6768, FileId: 0x19860000000161ee, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:54.430 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\xampp\tmp\#sqla88_27_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6805, FileId: 0x198e0000000161ee, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:54.664 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sqla88_24_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6835, FileId: 0x19940000000161ee, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:54.836 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\xampp\tmp\#sqla88_25_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6866, FileId: 0x3b0000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:55.149 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\xampp\tmp\#sqla88_22_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6883, FileId: 0x3e0000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:35:55.743 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\xampp\tmp\#sqla88_23_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #6939, FileId: 0x850000000164e1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T01:44:25.616 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T01:59:30.616 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T02:14:35.604 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T02:15:41.880 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #7096, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T02:29:40.605 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T02:34:35.632 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 63357, Count: 7040, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 2740, TotalTime: 7727, Count: 15, MaxTime: 5046, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2740_682536685\148.0.7778.97_chrome_installer_uncompressed.exe, EstimatedImpact: 14% 2026-05-12T02:34:35.632 ProcessImageName: powershell.exe, Pid: 5104, TotalTime: 692, Count: 50, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Automation\v4.0_3.0.0.0__31bf3856ad364e35\System.Management.Automation.dll, EstimatedImpact: 7% 2026-05-12T02:34:35.632 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 474, Count: 22, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\XblGameSaveTask.exe, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 420, Count: 438, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\db.opt, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: powershell.exe, Pid: 4200, TotalTime: 349, Count: 36, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\03a8b067ef40fe417927198b6c3c2589\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 5% 2026-05-12T02:34:35.632 ProcessImageName: WmiPrvSE.exe, Pid: 188, TotalTime: 240, Count: 31, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\dbgcore.dll, EstimatedImpact: 36% 2026-05-12T02:34:35.632 ProcessImageName: svchost.exe, Pid: 992, TotalTime: 154, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wmidcom.dll, EstimatedImpact: 82% 2026-05-12T02:34:35.632 ProcessImageName: setup.exe, Pid: 3104, TotalTime: 137, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 22% 2026-05-12T02:34:35.632 ProcessImageName: svchost.exe, Pid: 2052, TotalTime: 77, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\OnDemandConnRouteHelper.dll, EstimatedImpact: 49% 2026-05-12T02:34:35.632 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\services.exe, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: ngentask.exe, Pid: 2768, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 25% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f95fddc-05fc-4545-b83c-43796e5c881d.tmp, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\164b24d0-0e28-4ea1-a16f-88d67be78e43.tmp, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: ngentask.exe, Pid: 1944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 41% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 2576, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 4388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\03ad345d-563a-48b8-8899-0fe1772eff78.tmp, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 4380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc8fdfed-f1a2-4ee0-ba1a-fe0d6d0db1ca.tmp, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3cc6ae5-a8b5-4901-a02d-a0ce0bd0e89c.tmp, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e895f936-18e8-46d7-aaa7-3cda4be72dd7.tmp, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 4056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d9436bb-af11-44db-bfe0-1c08afd7675f.tmp, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3973b42-5f18-40ec-9c6a-199d7b7e71e0.tmp, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c0304c5-e05e-4394-ae6a-12206f868379.tmp, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 4404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9fc290bb-29fc-4f3d-b397-78712e9955bd.tmp, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 1884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_2740_1450973502\decoded_xz, EstimatedImpact: 1% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 1732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5aac6039-cea6-483e-a624-59a06c512af5.tmp, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 1516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\338ec68c-2e12-4033-92c9-8a4ac8c325ba.tmp, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb0fbcf9-bf2a-447b-81ee-1594a013a264.tmp, EstimatedImpact: 0% 2026-05-12T02:34:35.632 ProcessImageName: updater.exe, Pid: 4244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c958f3f0-da27-4dcb-a83c-945e71bca4cd.tmp, EstimatedImpact: 0% 2026-05-12T02:44:45.605 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T02:56:22.533 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\xampp\tmp\#sqla88_29_14.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #7243, FileId: 0x2c0000000164e0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T02:56:24.416 [RTP] [Mini-filter] Unsuccessful scan status(#300): \Device\HarddiskVolume2\xampp\tmp\#sqla88_29_28.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #7273, FileId: 0x360000000164e0, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T02:56:24.713 [RTP] [Mini-filter] Unsuccessful scan status(#310): \Device\HarddiskVolume2\xampp\tmp\#sqla88_29_3e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #7301, FileId: 0x3f0000000164e0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T02:59:50.604 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T03:14:55.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T03:30:00.604 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T03:45:05.618 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T03:45:25.788 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:D513C2E7-EAA8-4409-8412-BF3996ACD26E, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-12T03:45:25.788 Scheduled scan with Id D513C2E7-EAA8-4409-8412-BF3996ACD26E configured CPU priority: normal (LowCpuPriority: 0) 2026-05-12T03:45:25.788 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-12T03:45:25.788 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-12T03:45:25.788 [SFC] System file cache build is not needed (already completed) 2026-05-12T03:46:44.410 Engine:Triggered AR EMS scan 2026-05-12T03:46:44.410 Engine:EMS scan for process: lsass pid: 600, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.426 Engine:EMS scan for process: svchost pid: 680, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.441 Engine:EMS scan for process: svchost pid: 736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.441 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.488 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.488 Engine:EMS scan for process: svchost pid: 936, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.504 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.504 Engine:EMS scan for process: svchost pid: 992, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.520 Engine:EMS scan for process: svchost pid: 352, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.535 Engine:EMS scan for process: svchost pid: 776, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.535 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.551 Engine:EMS scan for process: svchost pid: 1452, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.551 Engine:EMS scan for process: svchost pid: 2052, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.566 Engine:EMS scan for process: svchost pid: 2200, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.582 Engine:EMS scan for process: svchost pid: 2224, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.582 Engine:EMS scan for process: svchost pid: 2628, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.598 Engine:EMS scan for process: svchost pid: 1736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-12T03:46:44.598 Engine:EMS scan for process: svchost pid: 4828, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 Internal signature match:subtype=Lowfi, sigseq=0x0000157EBAD029E3, sigsha=a80b7cfbca5c0e7f9fba5768d931c4e463118bd7, cached=false, source=0, resourceid=0xefee283a Internal signature match:subtype=Lowfi, sigseq=0x0000157E6A855602, sigsha=0994c4a442027631466fa0fa9a785e5f4c9a4e22, cached=false, source=0, resourceid=0xefee283a Internal signature match:subtype=Lowfi, sigseq=0x0000157E79D31496, sigsha=ea85fbc31c099b374f0738a1e88ece004ab148bb, cached=false, source=0, resourceid=0xefee283a Internal signature match:subtype=Lowfi, sigseq=0x0000157EF1BEF48F, sigsha=88199b23bf19d286f43e8f883776ee295b1669db, cached=false, source=0, resourceid=0xefee283a Internal signature match:subtype=Lowfi, sigseq=0x0000157EBAD029E3, sigsha=a80b7cfbca5c0e7f9fba5768d931c4e463118bd7, cached=false, source=0, resourceid=0xefee283a Internal signature match:subtype=Lowfi, sigseq=0x0000157E6A855602, sigsha=0994c4a442027631466fa0fa9a785e5f4c9a4e22, cached=false, source=0, resourceid=0xefee283a Internal signature match:subtype=Lowfi, sigseq=0x0000157E79D31496, sigsha=ea85fbc31c099b374f0738a1e88ece004ab148bb, cached=false, source=0, resourceid=0xefee283a Internal signature match:subtype=Lowfi, sigseq=0x0000157EF1BEF48F, sigsha=88199b23bf19d286f43e8f883776ee295b1669db, cached=false, source=0, resourceid=0xefee283a 2026-05-12T03:47:43.876 QuickScan:ScanID:D513C2E7-EAA8-4409-8412-BF3996ACD26E: Quick scan finished with error 0 2026-05-12T03:47:43.907 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-12T03:47:43.907 [Cloud] Start of cloud request. Passive mode: 0 2026-05-12T03:47:43.907 [Cloud] Queued cloud request. 2026-05-12T03:47:43.907 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-12T03:47:43.907 [Cloud] Dequeued cloud request. 2026-05-12T03:47:43.907 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-12T03:47:44.216 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\5c2422d65ec8ea1de39275945d791703bba67d35 Dynamic Signature Compilation Timestamp:05-12-2026 03:47:24 Persistence Type:Duration Time remaining:1728000000 2026-05-12T03:47:44.216 [Cloud] End of cloud request. Internal signature match:subtype=Lowfi, sigseq=0x00000070DE3CA1F0, sigsha=da39a3ee5e6b4b0d3255bfef95601890afd80709, cached=false, source=0, resourceid=0xc06ec4f9 2026-05-12T03:47:44.607 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-12T03:47:44.716 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-12T03:47:44.716 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-12T03:47:44.716 [RTP] Duplicating the current plugin configuration object... 2026-05-12T03:47:44.716 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-12T03:47:44.716 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-12T03:47:44.716 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-12T03:47:44.716 [RTP] No config change detected. Not updating plugin configuration. 2026-05-12T03:47:44.716 [RTP] No config changes found. No configuration switch. 2026-05-12T03:47:44.716 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-12T04:00:10.608 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T04:15:15.618 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T04:15:34.016 [RTP] [Mini-filter] Unsuccessful scan status(#320): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #7635, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T04:30:20.604 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T04:34:35.638 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 63357, Count: 7042, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 2740, TotalTime: 7727, Count: 15, MaxTime: 5046, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2740_682536685\148.0.7778.97_chrome_installer_uncompressed.exe, EstimatedImpact: 14% 2026-05-12T04:34:35.638 ProcessImageName: powershell.exe, Pid: 5104, TotalTime: 692, Count: 50, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Automation\v4.0_3.0.0.0__31bf3856ad364e35\System.Management.Automation.dll, EstimatedImpact: 7% 2026-05-12T04:34:35.638 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 597, Count: 26, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\XblGameSaveTask.exe, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 480, Count: 511, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\db.opt, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: powershell.exe, Pid: 4200, TotalTime: 349, Count: 36, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\03a8b067ef40fe417927198b6c3c2589\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 5% 2026-05-12T04:34:35.638 ProcessImageName: DeviceCensus.exe, Pid: 4868, TotalTime: 274, Count: 20, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Speech_OneCore\Common\sapi_onecore.dll, EstimatedImpact: 18% 2026-05-12T04:34:35.638 ProcessImageName: WmiPrvSE.exe, Pid: 188, TotalTime: 240, Count: 31, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\dbgcore.dll, EstimatedImpact: 36% 2026-05-12T04:34:35.638 ProcessImageName: svchost.exe, Pid: 992, TotalTime: 154, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wmidcom.dll, EstimatedImpact: 82% 2026-05-12T04:34:35.638 ProcessImageName: setup.exe, Pid: 3104, TotalTime: 137, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 22% 2026-05-12T04:34:35.638 ProcessImageName: svchost.exe, Pid: 2052, TotalTime: 77, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\OnDemandConnRouteHelper.dll, EstimatedImpact: 49% 2026-05-12T04:34:35.638 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\services.exe, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: ngentask.exe, Pid: 2768, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 25% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f95fddc-05fc-4545-b83c-43796e5c881d.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\164b24d0-0e28-4ea1-a16f-88d67be78e43.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: ngentask.exe, Pid: 1944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 41% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 2576, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 1732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5aac6039-cea6-483e-a624-59a06c512af5.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb0fbcf9-bf2a-447b-81ee-1594a013a264.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3cc6ae5-a8b5-4901-a02d-a0ce0bd0e89c.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e895f936-18e8-46d7-aaa7-3cda4be72dd7.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3973b42-5f18-40ec-9c6a-199d7b7e71e0.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c0304c5-e05e-4394-ae6a-12206f868379.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 4404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9fc290bb-29fc-4f3d-b397-78712e9955bd.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 4388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\03ad345d-563a-48b8-8899-0fe1772eff78.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 4380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc8fdfed-f1a2-4ee0-ba1a-fe0d6d0db1ca.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 4244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c958f3f0-da27-4dcb-a83c-945e71bca4cd.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 4056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d9436bb-af11-44db-bfe0-1c08afd7675f.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 3788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a5385ea-07cc-4bb2-854e-442c7b7f400c.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 1516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\338ec68c-2e12-4033-92c9-8a4ac8c325ba.tmp, EstimatedImpact: 0% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 1884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_2740_1450973502\decoded_xz, EstimatedImpact: 1% 2026-05-12T04:34:35.638 ProcessImageName: updater.exe, Pid: 1792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b8c0cea-e372-456e-b793-4012fa6d8321.tmp, EstimatedImpact: 0% 2026-05-12T04:45:25.618 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T05:00:30.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T05:15:35.617 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T05:15:44.349 [RTP] [Mini-filter] Unsuccessful scan status(#330): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #7766, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T05:30:40.606 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T05:45:45.616 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T06:00:50.603 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T06:15:55.615 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T06:31:00.610 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T06:34:35.638 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 63977, Count: 7092, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 2740, TotalTime: 7727, Count: 15, MaxTime: 5046, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2740_682536685\148.0.7778.97_chrome_installer_uncompressed.exe, EstimatedImpact: 14% 2026-05-12T06:34:35.638 ProcessImageName: powershell.exe, Pid: 5104, TotalTime: 692, Count: 50, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Automation\v4.0_3.0.0.0__31bf3856ad364e35\System.Management.Automation.dll, EstimatedImpact: 7% 2026-05-12T06:34:35.638 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 612, Count: 28, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\XblGameSaveTask.exe, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 510, Count: 515, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\db.opt, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: powershell.exe, Pid: 4200, TotalTime: 349, Count: 36, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\03a8b067ef40fe417927198b6c3c2589\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 5% 2026-05-12T06:34:35.638 ProcessImageName: DeviceCensus.exe, Pid: 4868, TotalTime: 274, Count: 20, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Speech_OneCore\Common\sapi_onecore.dll, EstimatedImpact: 18% 2026-05-12T06:34:35.638 ProcessImageName: WmiPrvSE.exe, Pid: 188, TotalTime: 240, Count: 31, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\dbgcore.dll, EstimatedImpact: 36% 2026-05-12T06:34:35.638 ProcessImageName: svchost.exe, Pid: 992, TotalTime: 154, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wmidcom.dll, EstimatedImpact: 82% 2026-05-12T06:34:35.638 ProcessImageName: setup.exe, Pid: 3104, TotalTime: 137, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 22% 2026-05-12T06:34:35.638 ProcessImageName: svchost.exe, Pid: 2052, TotalTime: 77, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\OnDemandConnRouteHelper.dll, EstimatedImpact: 49% 2026-05-12T06:34:35.638 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\services.exe, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: ngentask.exe, Pid: 2768, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 25% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f95fddc-05fc-4545-b83c-43796e5c881d.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\164b24d0-0e28-4ea1-a16f-88d67be78e43.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: ngentask.exe, Pid: 1944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 41% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bacfc5c8-47e5-447b-bbbb-942981d11379.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 2576, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 1792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b8c0cea-e372-456e-b793-4012fa6d8321.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 1732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5aac6039-cea6-483e-a624-59a06c512af5.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 1516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\338ec68c-2e12-4033-92c9-8a4ac8c325ba.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3cc6ae5-a8b5-4901-a02d-a0ce0bd0e89c.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e895f936-18e8-46d7-aaa7-3cda4be72dd7.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3708398e-48a4-4f51-95cd-9621d87e24ff.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 4404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9fc290bb-29fc-4f3d-b397-78712e9955bd.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3973b42-5f18-40ec-9c6a-199d7b7e71e0.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c0304c5-e05e-4394-ae6a-12206f868379.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 4388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\03ad345d-563a-48b8-8899-0fe1772eff78.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 4380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc8fdfed-f1a2-4ee0-ba1a-fe0d6d0db1ca.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 4244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c958f3f0-da27-4dcb-a83c-945e71bca4cd.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 4056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d9436bb-af11-44db-bfe0-1c08afd7675f.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 3788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a5385ea-07cc-4bb2-854e-442c7b7f400c.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb0fbcf9-bf2a-447b-81ee-1594a013a264.tmp, EstimatedImpact: 0% 2026-05-12T06:34:35.638 ProcessImageName: updater.exe, Pid: 1884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_2740_1450973502\decoded_xz, EstimatedImpact: 1% 2026-05-12T06:46:05.603 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T07:01:10.603 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T07:15:44.838 [RTP] [Mini-filter] Unsuccessful scan status(#340): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #8018, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T07:16:15.603 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T07:31:20.614 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T07:46:25.603 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T08:01:30.613 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T08:16:35.602 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T08:31:40.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T08:34:35.651 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 64008, Count: 7096, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 2740, TotalTime: 7727, Count: 15, MaxTime: 5046, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2740_682536685\148.0.7778.97_chrome_installer_uncompressed.exe, EstimatedImpact: 14% 2026-05-12T08:34:35.651 ProcessImageName: powershell.exe, Pid: 5104, TotalTime: 692, Count: 50, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Automation\v4.0_3.0.0.0__31bf3856ad364e35\System.Management.Automation.dll, EstimatedImpact: 7% 2026-05-12T08:34:35.651 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 612, Count: 28, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\XblGameSaveTask.exe, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 525, Count: 524, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\db.opt, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: powershell.exe, Pid: 4200, TotalTime: 349, Count: 36, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\03a8b067ef40fe417927198b6c3c2589\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 5% 2026-05-12T08:34:35.651 ProcessImageName: DeviceCensus.exe, Pid: 4868, TotalTime: 274, Count: 20, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Speech_OneCore\Common\sapi_onecore.dll, EstimatedImpact: 18% 2026-05-12T08:34:35.651 ProcessImageName: WmiPrvSE.exe, Pid: 188, TotalTime: 240, Count: 31, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\dbgcore.dll, EstimatedImpact: 36% 2026-05-12T08:34:35.651 ProcessImageName: svchost.exe, Pid: 992, TotalTime: 154, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wmidcom.dll, EstimatedImpact: 82% 2026-05-12T08:34:35.651 ProcessImageName: setup.exe, Pid: 3104, TotalTime: 137, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 22% 2026-05-12T08:34:35.651 ProcessImageName: svchost.exe, Pid: 2052, TotalTime: 77, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\OnDemandConnRouteHelper.dll, EstimatedImpact: 49% 2026-05-12T08:34:35.651 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\services.exe, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: ngentask.exe, Pid: 2768, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 25% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bacfc5c8-47e5-447b-bbbb-942981d11379.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4f95fddc-05fc-4545-b83c-43796e5c881d.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: ngentask.exe, Pid: 1944, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 41% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\164b24d0-0e28-4ea1-a16f-88d67be78e43.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 2576, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 2576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9058de63-edf8-4bed-a0b7-22e8cc6fd5d6.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 1884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_2740_1450973502\decoded_xz, EstimatedImpact: 1% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 1792, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b8c0cea-e372-456e-b793-4012fa6d8321.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 1732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5aac6039-cea6-483e-a624-59a06c512af5.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3cc6ae5-a8b5-4901-a02d-a0ce0bd0e89c.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e895f936-18e8-46d7-aaa7-3cda4be72dd7.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 1516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\338ec68c-2e12-4033-92c9-8a4ac8c325ba.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb0fbcf9-bf2a-447b-81ee-1594a013a264.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3708398e-48a4-4f51-95cd-9621d87e24ff.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 688, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c6180c7-f6f3-490c-8912-7e30736f8f15.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3973b42-5f18-40ec-9c6a-199d7b7e71e0.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 4636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c0304c5-e05e-4394-ae6a-12206f868379.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 4388, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\03ad345d-563a-48b8-8899-0fe1772eff78.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 4380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc8fdfed-f1a2-4ee0-ba1a-fe0d6d0db1ca.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 4244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c958f3f0-da27-4dcb-a83c-945e71bca4cd.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 4056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d9436bb-af11-44db-bfe0-1c08afd7675f.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 3788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a5385ea-07cc-4bb2-854e-442c7b7f400c.tmp, EstimatedImpact: 0% 2026-05-12T08:34:35.651 ProcessImageName: updater.exe, Pid: 4404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9fc290bb-29fc-4f3d-b397-78712e9955bd.tmp, EstimatedImpact: 0% 2026-05-12T08:38:44.715 [RTP] [Mini-filter] Unsuccessful scan status(#350): \Device\HarddiskVolume2\xampp\tmp\#sqla88_38_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #8194, FileId: 0x4d2f000000009d1c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T08:46:45.606 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T09:01:50.602 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T09:16:55.611 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T09:32:00.602 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T09:47:05.616 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T10:02:10.602 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T10:15:44.945 [RTP] [Mini-filter] Unsuccessful scan status(#360): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #8395, FileId: 0xc90000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T10:17:15.602 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T10:25:07.930 Job Notification: Process exited from job (2548) 2026-05-12T10:29:20.611 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-12T10:29:20.642 Job Notification: New process added to job (4008) 2026-05-12T10:29:20.642 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-12T10:29:20.642 Job Notification: New process added to job (4236) 2026-05-12T10:29:20.642 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:4008] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4236]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-12T10:29:20.673 Aggressive catchup quick scan threshold: 242348864019 / 25920000000000 2026-05-12T10:29:20.705 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-12T10:29:20.720 Job Notification: New process added to job (4456) 2026-05-12T10:29:20.720 Job Notification: New process added to job (4572) 2026-05-12T10:29:20.736 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:4456] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4572]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-12T10:29:21.205 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-12T10:29:21.220 [RTP] Duplicating the current plugin configuration object... 2026-05-12T10:29:21.220 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-12T10:29:21.220 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-12T10:29:21.220 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-12T10:29:21.220 [RTP] No config change detected. Not updating plugin configuration. 2026-05-12T10:29:21.220 [RTP] No config changes found. No configuration switch. 2026-05-12T10:29:21.220 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-12T10:29:25.570 [RTP] [Mini-filter] OpenWithoutRead notification (4926, 10001, \Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-05-12T10:29:28.016 Job Notification: New process added to job (4380) 2026-05-12T10:29:28.016 Task(GetDeviceTicket -AccessKey 88BB9F24-AAB1-F5EF-8B3A-5CCBF9D00B0F ) launched as network service 2026-05-12T10:29:28.500 Job Notification: Process exited from job (4380) 2026-05-12T10:29:35.949 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-12T10:29:35.949 [Cloud] Start of cloud request. Passive mode: 0 2026-05-12T10:29:35.949 [Cloud] Queued cloud request. 2026-05-12T10:29:35.949 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-12T10:29:35.981 Job Notification: New process added to job (5004) 2026-05-12T10:29:37.485 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-12T10:29:37.485 [Cloud] Start of cloud request. Passive mode: 0 2026-05-12T10:29:38.001 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey B97EB56A-2DC4-C31E-4BB0-74E0088C4BEE) launched 2026-05-12T10:29:38.001 [Cloud] Queued cloud request. 2026-05-12T10:29:38.001 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:5004] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4216]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-12T10:29:38.001 Job Notification: New process added to job (4216) 2026-05-12T10:29:38.001 Job Notification: New process added to job (4752) 2026-05-12T10:29:38.001 Job Notification: Process exited from job (5004) 2026-05-12T10:29:38.001 Job Notification: Process exited from job (4216) 2026-05-12T10:29:38.001 [Cloud] Dequeued cloud request. 2026-05-12T10:29:38.001 [Cloud] Dequeued cloud request. 2026-05-12T10:29:38.001 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-12T10:29:38.016 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-12T10:29:38.219 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-12T10:29:38.219 [Cloud] End of cloud request. 2026-05-12T10:29:38.235 [Cloud] End of cloud request. 2026-05-12T10:29:38.516 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-12T10:30:35.061 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\F2B10475-8B01-49B2-9AC7-EB8B0AF3AA9Fb20.1dce1fa5cdb0284 2026-05-12T10:30:35.139 Verifying engine and signature files (source: 0) ... 2026-05-12T10:30:35.139 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8411B7A-896C-46F9-89AB-67DC7A2D09E0}\mpengine.dll] due to PPL. 2026-05-12T10:30:35.139 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8411B7A-896C-46F9-89AB-67DC7A2D09E0}\mpasbase.vdm] (file in cache) 2026-05-12T10:30:35.139 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8411B7A-896C-46F9-89AB-67DC7A2D09E0}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-12T10:30:35.154 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8411B7A-896C-46F9-89AB-67DC7A2D09E0}\mpasdlta.vdm] 2026-05-12T10:30:35.154 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8411B7A-896C-46F9-89AB-67DC7A2D09E0}\mpavbase.vdm] (file in cache) 2026-05-12T10:30:35.154 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8411B7A-896C-46F9-89AB-67DC7A2D09E0}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-12T10:30:35.170 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8411B7A-896C-46F9-89AB-67DC7A2D09E0}\mpavdlta.vdm] 2026-05-12T10:30:35.295 [Engine] IsHybridMode: 0 2026-05-12T10:30:35.295 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-12T10:30:35.342 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-C8CB48C59A3F5EB246136A9CB8BC2F7DA352D436.bin): 0x00000002 2026-05-12T10:30:35.342 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-C8CB48C59A3F5EB246136A9CB8BC2F7DA352D436.bin) 2026-05-12T10:30:35.342 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-12T10:30:35.342 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-12T10:30:35.342 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-12T10:30:35.342 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-12T10:30:44.148 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-12T10:30:44.148 [AutoExclusion] Applied roles from cache. 2026-05-12T10:30:44.148 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-12T10:30:44.164 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFFF1708020, lRefCount: 5, hr=0 2026-05-12T10:30:44.164 [Engine] New active engine 00007FFFF5878020 replacing engine 00007FFFF1708020. Number of active engines: 2 2026-05-12T10:30:44.164 EngineInit:Global ASOC is enabled 2026-05-12T10:30:44.164 EngineInit:ASOO is enabled for developer volumes 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-12T10:30:44.195 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-12T10:30:44.195 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-12T10:30:44.211 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-12T10:30:44.211 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-12T10:30:44.211 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-12T10:30:44.211 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-12T10:30:44.211 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-12T10:30:44.211 [Plugin] Initializing RTP plugin state... 2026-05-12T10:30:44.211 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-12T10:30:44.211 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎11‎-‎2026 12:34:36 Last Perf:‎05‎-‎11‎-‎2026 12:34:35 First RTP Scan:‎05‎-‎11‎-‎2026 12:34:37 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:461 Misses:58105 BM Queue:0,127,0 Proc:0,85,0 File:0,85,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,0,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:62916 Pending:0 RegSize:281290 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:93455944 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:41887 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:303652 TotalHits:66662 InstanceCacheInserts:1852 InstanceCacheUpdates:0 InstanceCacheDeletes:394 InstanceCacheHits:65 InstanceCacheMisses:129283 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:3ms (5028/1300) Success: 1300, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-12T10:30:44.211 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8411B7A-896C-46F9-89AB-67DC7A2D09E0} 2026-05-12T10:30:44.211 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-12T10:30:44.211 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{810DE4BF-1DCD-441F-91B4-DC947B458E35} removed 2026-05-12T10:30:44.211 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CAA03DBD-042E-497A-AE4D-0FF37B80C2CA}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CAA03DBD-042E-497A-AE4D-0FF37B80C2CA}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-12T10:30:44.211 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-12T10:30:44.211 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-12T10:30:44.211 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-12T10:30:44.211 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-12T10:30:44.211 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-12-2026 10:30:44 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-12-2026 10:30:44 2026-05-12T10:30:44.211 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-12T10:30:44.211 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-12T10:30:44.211 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-12T10:30:44.211 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-12T10:30:44.211 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-12T10:30:44.226 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-12T10:30:44.226 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-12T10:30:44.226 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-12T10:30:44.226 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-12T10:30:44.226 MdCoreSvc is supported in this platform and OS Signature updated on 05-12-2026 10:30:44 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.577.0 AV Signature Version: 1.449.577.0 ************************************************************ 2026-05-12T10:30:44.226 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-12T10:30:44.226 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\F2B10475-8B01-49B2-9AC7-EB8B0AF3AA9Fb20.1dce1fa5cdb0284 2026-05-12T10:30:44.242 Process scan (postsignatureupdatescan) started. Signature updated via MicrosoftUpdateServer on 05-12-2026 10:30:44 ************************************************************ 2026-05-12T10:30:44.289 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-12T10:30:44.289 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-12T10:30:44.289 Job Notification: Process exited from job (4456) 2026-05-12T10:30:44.289 Job Notification: Process exited from job (4008) 2026-05-12T10:30:44.304 Job Notification: Process exited from job (4236) 2026-05-12T10:30:44.304 Job Notification: Process exited from job (4572) 2026-05-12T10:30:44.461 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-12T10:30:44.461 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-12T10:30:44.461 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-12T10:30:44.461 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-12T10:30:44.461 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-12T10:30:44.476 [Engine] Engine 00007FFFF1708020 no longer in use. Number of active engines: 1 2026-05-12T10:30:44.476 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-12T10:30:44.476 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-12T10:30:44.695 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-12T10:30:44.695 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-12T10:30:44.695 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-12T10:30:45.242 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 64144, Count: 7113, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-12T10:30:45.242 ProcessImageName: updater.exe, Pid: 2740, TotalTime: 7727, Count: 15, MaxTime: 5046, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2740_682536685\148.0.7778.97_chrome_installer_uncompressed.exe, EstimatedImpact: 14% 2026-05-12T10:30:45.242 ProcessImageName: powershell.exe, Pid: 5104, TotalTime: 692, Count: 50, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Management.Automation\v4.0_3.0.0.0__31bf3856ad364e35\System.Management.Automation.dll, EstimatedImpact: 7% 2026-05-12T10:30:45.242 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 643, Count: 29, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\XblGameSaveTask.exe, EstimatedImpact: 0% 2026-05-12T10:30:45.242 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 555, Count: 533, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\db.opt, EstimatedImpact: 0% 2026-05-12T10:30:45.242 ProcessImageName: powershell.exe, Pid: 4200, TotalTime: 349, Count: 36, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\03a8b067ef40fe417927198b6c3c2589\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 5% 2026-05-12T10:30:45.242 ProcessImageName: DeviceCensus.exe, Pid: 4868, TotalTime: 274, Count: 20, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Speech_OneCore\Common\sapi_onecore.dll, EstimatedImpact: 18% 2026-05-12T10:30:45.242 ProcessImageName: WmiPrvSE.exe, Pid: 188, TotalTime: 240, Count: 31, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\dbgcore.dll, EstimatedImpact: 36% 2026-05-12T10:30:45.242 ProcessImageName: svchost.exe, Pid: 992, TotalTime: 154, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wmidcom.dll, EstimatedImpact: 82% 2026-05-12T10:30:45.242 ProcessImageName: setup.exe, Pid: 3104, TotalTime: 137, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 22% 2026-05-12T10:30:45.242 ProcessImageName: svchost.exe, Pid: 2052, TotalTime: 77, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\OnDemandConnRouteHelper.dll, EstimatedImpact: 49% 2026-05-12T10:30:45.242 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\services.exe, EstimatedImpact: 0% 2026-05-12T10:30:45.242 ProcessImageName: ngentask.exe, Pid: 2768, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 25% 2026-05-12T10:30:45.304 [Engine] RSIG_UNLOADENGINE, 00007FFFF1708020, err=0x0 2026-05-12T10:30:45.320 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CAA03DBD-042E-497A-AE4D-0FF37B80C2CA} removed 2026-05-12T10:30:49.621 Process scan (postsignatureupdatescan) completed. 2026-05-12T10:32:20.615 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T10:35:44.180 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-12T10:47:25.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T11:02:30.602 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T11:15:34.603 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63330, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T11:15:34.618 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63332, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T11:15:44.612 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63336, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T11:15:44.612 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63338, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T11:15:44.783 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63342, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T11:15:44.783 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63344, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T11:17:35.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T11:32:40.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T11:47:45.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T12:02:50.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T12:15:33.766 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63453, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T12:15:33.782 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63455, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T12:15:43.770 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63459, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T12:15:43.770 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63461, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T12:15:43.785 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63463, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T12:15:43.785 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63465, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T12:17:55.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T12:30:44.176 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 1003, Count: 78, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\js\jquery-1.7.1.min.js->(SCRIPT0000), EstimatedImpact: 0% 2026-05-12T12:30:44.176 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 92, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-12T12:30:44.176 ProcessImageName: updater.exe, Pid: 4368, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c56437c-a05c-47e0-ab2c-d32f62926801.tmp, EstimatedImpact: 0% 2026-05-12T12:30:44.176 ProcessImageName: updater.exe, Pid: 2068, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 24% 2026-05-12T12:30:44.176 ProcessImageName: updater.exe, Pid: 5008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97273a60-7fe6-4a5d-aab8-3a60baae5e10.tmp, EstimatedImpact: 0% 2026-05-12T12:33:00.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T12:48:05.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T13:03:10.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T13:15:34.199 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63598, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T13:15:34.199 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63600, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T13:15:44.210 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63604, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T13:15:44.226 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63607, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T13:18:15.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T13:33:20.616 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T13:48:25.616 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T14:03:30.610 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T14:15:34.431 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63733, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T14:15:34.447 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63735, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T14:15:44.445 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63739, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T14:15:44.461 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63742, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T14:18:35.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T14:30:44.176 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 2624, Count: 209, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ipa4c5a8d2d8fbd879fe34142c0520427d.html, EstimatedImpact: 0% 2026-05-12T14:30:44.176 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 107, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-12T14:30:44.176 ProcessImageName: updater.exe, Pid: 4368, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c56437c-a05c-47e0-ab2c-d32f62926801.tmp, EstimatedImpact: 0% 2026-05-12T14:30:44.176 ProcessImageName: updater.exe, Pid: 2068, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 24% 2026-05-12T14:30:44.176 ProcessImageName: updater.exe, Pid: 5008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97273a60-7fe6-4a5d-aab8-3a60baae5e10.tmp, EstimatedImpact: 0% 2026-05-12T14:30:44.176 ProcessImageName: updater.exe, Pid: 4780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2939fa7-117d-4203-b735-70d60defc20b.tmp, EstimatedImpact: 0% 2026-05-12T14:30:44.176 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a38e538b-2325-483b-9749-52210c2c1b96.tmp, EstimatedImpact: 0% 2026-05-12T14:33:40.604 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T14:48:45.614 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T15:03:50.613 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T15:15:33.516 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63843, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T15:15:33.532 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63845, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T15:15:43.525 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63849, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T15:15:43.540 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63852, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T15:18:55.603 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T15:34:00.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T15:49:05.613 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T16:04:10.612 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T16:15:34.631 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63948, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T16:15:34.647 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63950, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T16:15:44.639 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63954, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T16:15:44.654 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63956, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T16:15:44.810 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63960, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T16:15:44.810 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #63962, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T16:19:15.606 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T16:30:44.191 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 2654, Count: 212, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ipa4c5a8d2d8fbd879fe34142c0520427d.html, EstimatedImpact: 0% 2026-05-12T16:30:44.191 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 107, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-12T16:30:44.191 ProcessImageName: updater.exe, Pid: 4368, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c56437c-a05c-47e0-ab2c-d32f62926801.tmp, EstimatedImpact: 0% 2026-05-12T16:30:44.191 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d7a32e8-2c5b-4f01-a7c5-0c0201cc3f88.tmp, EstimatedImpact: 0% 2026-05-12T16:30:44.191 ProcessImageName: updater.exe, Pid: 2068, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 24% 2026-05-12T16:30:44.191 ProcessImageName: updater.exe, Pid: 5008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97273a60-7fe6-4a5d-aab8-3a60baae5e10.tmp, EstimatedImpact: 0% 2026-05-12T16:30:44.191 ProcessImageName: updater.exe, Pid: 4780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2939fa7-117d-4203-b735-70d60defc20b.tmp, EstimatedImpact: 0% 2026-05-12T16:30:44.191 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a38e538b-2325-483b-9749-52210c2c1b96.tmp, EstimatedImpact: 0% 2026-05-12T16:30:44.191 ProcessImageName: updater.exe, Pid: 1144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\715dd355-3f3c-4bf0-9791-b3aabc8f821d.tmp, EstimatedImpact: 0% 2026-05-12T16:34:20.612 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T16:49:25.600 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T17:04:30.600 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T17:15:34.810 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64055, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T17:15:34.826 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64057, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T17:15:44.819 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64061, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T17:15:44.835 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64063, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T17:15:44.835 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64066, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T17:19:35.600 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T17:34:40.599 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T17:49:45.599 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T18:04:50.599 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T18:15:34.619 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64169, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T18:15:34.619 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64171, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T18:15:44.630 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64175, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T18:15:44.645 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64177, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T18:19:55.599 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T18:30:44.200 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 2669, Count: 215, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ipa4c5a8d2d8fbd879fe34142c0520427d.html, EstimatedImpact: 0% 2026-05-12T18:30:44.200 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 122, Count: 8, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-12T18:30:44.200 ProcessImageName: updater.exe, Pid: 4368, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c56437c-a05c-47e0-ab2c-d32f62926801.tmp, EstimatedImpact: 0% 2026-05-12T18:30:44.200 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d7a32e8-2c5b-4f01-a7c5-0c0201cc3f88.tmp, EstimatedImpact: 0% 2026-05-12T18:30:44.200 ProcessImageName: updater.exe, Pid: 2068, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 24% 2026-05-12T18:30:44.200 ProcessImageName: updater.exe, Pid: 5008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97273a60-7fe6-4a5d-aab8-3a60baae5e10.tmp, EstimatedImpact: 0% 2026-05-12T18:30:44.200 ProcessImageName: updater.exe, Pid: 4780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2939fa7-117d-4203-b735-70d60defc20b.tmp, EstimatedImpact: 0% 2026-05-12T18:30:44.200 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b4c201e-547f-4258-ace1-095ea5d6621d.tmp, EstimatedImpact: 0% 2026-05-12T18:30:44.200 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a38e538b-2325-483b-9749-52210c2c1b96.tmp, EstimatedImpact: 0% 2026-05-12T18:30:44.200 ProcessImageName: updater.exe, Pid: 1144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\715dd355-3f3c-4bf0-9791-b3aabc8f821d.tmp, EstimatedImpact: 0% 2026-05-12T18:30:44.200 ProcessImageName: updater.exe, Pid: 932, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-12T18:35:00.614 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T18:50:05.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T19:05:10.599 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T19:15:33.598 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64314, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T19:15:33.614 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64316, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T19:15:43.619 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64320, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T19:15:43.619 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64322, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T19:20:15.608 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T19:35:20.608 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T19:50:25.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T20:05:30.599 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T20:15:35.252 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64424, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T20:15:35.268 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64426, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T20:15:45.266 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64430, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T20:15:45.282 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64433, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T20:20:35.606 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T20:30:44.205 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 2729, Count: 220, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ipa4c5a8d2d8fbd879fe34142c0520427d.html, EstimatedImpact: 0% 2026-05-12T20:30:44.205 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 122, Count: 8, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-12T20:30:44.205 ProcessImageName: updater.exe, Pid: 4368, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c56437c-a05c-47e0-ab2c-d32f62926801.tmp, EstimatedImpact: 0% 2026-05-12T20:30:44.205 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d7a32e8-2c5b-4f01-a7c5-0c0201cc3f88.tmp, EstimatedImpact: 0% 2026-05-12T20:30:44.205 ProcessImageName: updater.exe, Pid: 2068, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 24% 2026-05-12T20:30:44.205 ProcessImageName: updater.exe, Pid: 4888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40c34e96-5b04-41e6-ad38-40b6d25187a0.tmp, EstimatedImpact: 0% 2026-05-12T20:30:44.205 ProcessImageName: updater.exe, Pid: 4780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2939fa7-117d-4203-b735-70d60defc20b.tmp, EstimatedImpact: 0% 2026-05-12T20:30:44.205 ProcessImageName: updater.exe, Pid: 1144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\715dd355-3f3c-4bf0-9791-b3aabc8f821d.tmp, EstimatedImpact: 0% 2026-05-12T20:30:44.205 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b4c201e-547f-4258-ace1-095ea5d6621d.tmp, EstimatedImpact: 0% 2026-05-12T20:30:44.205 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43945782-fab1-4e40-a86f-618f6321ccbd.tmp, EstimatedImpact: 0% 2026-05-12T20:30:44.205 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a38e538b-2325-483b-9749-52210c2c1b96.tmp, EstimatedImpact: 0% 2026-05-12T20:30:44.205 ProcessImageName: updater.exe, Pid: 5008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97273a60-7fe6-4a5d-aab8-3a60baae5e10.tmp, EstimatedImpact: 0% 2026-05-12T20:30:44.205 ProcessImageName: updater.exe, Pid: 932, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-12T20:35:40.611 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T20:50:45.598 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T21:05:50.598 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T21:15:34.510 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64530, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T21:15:34.525 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64532, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T21:15:44.519 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64536, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T21:15:44.519 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64537, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T21:15:44.534 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64538, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T21:20:55.610 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T21:36:00.599 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T21:51:05.604 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T22:06:10.598 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T22:15:33.862 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64644, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T22:15:33.862 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64646, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T22:15:43.876 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64650, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T22:15:43.876 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64652, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T22:15:44.032 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64656, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T22:15:44.048 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64658, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T22:21:15.604 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T22:30:44.207 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 2729, Count: 220, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ipa4c5a8d2d8fbd879fe34142c0520427d.html, EstimatedImpact: 0% 2026-05-12T22:30:44.207 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 137, Count: 9, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-12T22:30:44.207 ProcessImageName: updater.exe, Pid: 4368, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c56437c-a05c-47e0-ab2c-d32f62926801.tmp, EstimatedImpact: 0% 2026-05-12T22:30:44.207 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d7a32e8-2c5b-4f01-a7c5-0c0201cc3f88.tmp, EstimatedImpact: 0% 2026-05-12T22:30:44.207 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7590c180-dfa3-417a-9049-cbeefff0df21.tmp, EstimatedImpact: 0% 2026-05-12T22:30:44.207 ProcessImageName: updater.exe, Pid: 2068, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 24% 2026-05-12T22:30:44.207 ProcessImageName: updater.exe, Pid: 4888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40c34e96-5b04-41e6-ad38-40b6d25187a0.tmp, EstimatedImpact: 0% 2026-05-12T22:30:44.207 ProcessImageName: updater.exe, Pid: 4780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2939fa7-117d-4203-b735-70d60defc20b.tmp, EstimatedImpact: 0% 2026-05-12T22:30:44.207 ProcessImageName: updater.exe, Pid: 2276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6842e18a-c64a-47b1-b812-839ab2e75636.tmp, EstimatedImpact: 0% 2026-05-12T22:30:44.207 ProcessImageName: updater.exe, Pid: 1144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\715dd355-3f3c-4bf0-9791-b3aabc8f821d.tmp, EstimatedImpact: 0% 2026-05-12T22:30:44.207 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b4c201e-547f-4258-ace1-095ea5d6621d.tmp, EstimatedImpact: 0% 2026-05-12T22:30:44.207 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43945782-fab1-4e40-a86f-618f6321ccbd.tmp, EstimatedImpact: 0% 2026-05-12T22:30:44.207 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a38e538b-2325-483b-9749-52210c2c1b96.tmp, EstimatedImpact: 0% 2026-05-12T22:30:44.207 ProcessImageName: updater.exe, Pid: 5008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97273a60-7fe6-4a5d-aab8-3a60baae5e10.tmp, EstimatedImpact: 0% 2026-05-12T22:30:44.207 ProcessImageName: updater.exe, Pid: 932, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-12T22:36:20.598 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T22:51:25.603 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T23:06:30.608 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T23:15:32.360 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64792, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T23:15:32.360 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64794, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T23:15:42.363 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64798, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T23:15:42.378 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64801, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-12T23:21:35.598 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T23:36:40.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-12T23:51:45.602 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T00:06:50.611 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T00:15:34.968 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64898, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T00:15:34.968 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64900, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T00:15:44.974 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64904, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T00:15:44.974 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64905, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T00:15:44.989 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64906, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T00:21:55.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T00:30:44.222 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 2789, Count: 227, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ipa4c5a8d2d8fbd879fe34142c0520427d.html, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 137, Count: 9, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 4368, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c56437c-a05c-47e0-ab2c-d32f62926801.tmp, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d7a32e8-2c5b-4f01-a7c5-0c0201cc3f88.tmp, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7590c180-dfa3-417a-9049-cbeefff0df21.tmp, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 3872, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a421626b-f658-4d14-be42-a6e8812dc295.tmp, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 1916, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\786971ec-7068-4f0d-bf5a-20cc2d06e43c.tmp, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 2068, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 24% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 5008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97273a60-7fe6-4a5d-aab8-3a60baae5e10.tmp, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 4888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40c34e96-5b04-41e6-ad38-40b6d25187a0.tmp, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 4780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2939fa7-117d-4203-b735-70d60defc20b.tmp, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43945782-fab1-4e40-a86f-618f6321ccbd.tmp, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b4c201e-547f-4258-ace1-095ea5d6621d.tmp, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a38e538b-2325-483b-9749-52210c2c1b96.tmp, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 2276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6842e18a-c64a-47b1-b812-839ab2e75636.tmp, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 1144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\715dd355-3f3c-4bf0-9791-b3aabc8f821d.tmp, EstimatedImpact: 0% 2026-05-13T00:30:44.222 ProcessImageName: updater.exe, Pid: 932, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-13T00:37:00.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T00:46:38.864 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sqla88_86_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66125, FileId: 0x4d4f000000009d1c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T00:46:50.271 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sqla88_87_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66567, FileId: 0x4d53000000009d1c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T00:46:50.646 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\xampp\tmp\#sqla88_87_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66579, FileId: 0x4d54000000009d1c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T00:46:50.646 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sqla88_86_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66580, FileId: 0x1a1a000000013a1f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T00:52:05.605 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T01:07:10.600 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T01:15:33.439 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66679, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T01:15:33.439 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66681, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T01:15:43.449 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66685, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T01:15:43.449 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66686, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T01:15:43.449 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66687, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T01:22:15.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T01:37:20.599 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 2026-05-13T01:39:28.415 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-13T01:39:28.430 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-13T01:39:28.430 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-13T01:39:28.430 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-13T01:39:28.430 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-13T01:39:28.430 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-13T01:39:28.430 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-13T01:39:28.430 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-13T01:39:28.430 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-13T01:39:28.430 MdCoreSvc is supported in this platform and OS 2026-05-13T01:39:28.929 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-13T01:39:28.929 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-13T01:39:28.929 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-13T01:52:25.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T02:07:30.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T02:15:32.751 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66795, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T02:15:32.751 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66797, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T02:15:42.752 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66801, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T02:15:42.768 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66803, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T02:15:42.768 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66805, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T02:22:35.598 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T02:30:08.593 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sqla88_88_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66831, FileId: 0x4d59000000009d1c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T02:30:09.186 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sqla88_88_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66835, FileId: 0x4d5a000000009d1c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T02:30:44.229 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 52540, Count: 6721, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 137, Count: 9, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 60, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_87_2.MAI, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 4368, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c56437c-a05c-47e0-ab2c-d32f62926801.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d7a32e8-2c5b-4f01-a7c5-0c0201cc3f88.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7590c180-dfa3-417a-9049-cbeefff0df21.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 3872, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a421626b-f658-4d14-be42-a6e8812dc295.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 1916, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\786971ec-7068-4f0d-bf5a-20cc2d06e43c.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 2068, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 24% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 4888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40c34e96-5b04-41e6-ad38-40b6d25187a0.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 4780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2939fa7-117d-4203-b735-70d60defc20b.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43945782-fab1-4e40-a86f-618f6321ccbd.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a38e538b-2325-483b-9749-52210c2c1b96.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 4500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1db82dbd-7f44-40fa-95d9-14d5e35d8c3c.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 1144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\715dd355-3f3c-4bf0-9791-b3aabc8f821d.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d182575-3a51-4a32-8a44-16da85e37a52.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b4c201e-547f-4258-ace1-095ea5d6621d.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 5008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97273a60-7fe6-4a5d-aab8-3a60baae5e10.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 2276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6842e18a-c64a-47b1-b812-839ab2e75636.tmp, EstimatedImpact: 0% 2026-05-13T02:30:44.229 ProcessImageName: updater.exe, Pid: 932, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-13T02:37:40.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T02:52:45.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T02:56:30.029 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sqla88_8b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66896, FileId: 0xa1b0000000115b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T02:56:30.564 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqla88_8b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66900, FileId: 0xa1c0000000115b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T02:57:13.139 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqla88_8e_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66904, FileId: 0xa200000000115b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T02:57:13.155 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sqla88_8e_a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66907, FileId: 0xa210000000115b3, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T03:07:50.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T03:15:33.124 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66942, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T03:15:33.124 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66944, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T03:15:43.132 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66948, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T03:15:43.132 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66950, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T03:15:43.295 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66954, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T03:15:43.295 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #66956, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T03:22:55.596 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T03:38:00.596 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T03:45:25.774 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:7B052A6A-834E-4E3A-BCFD-CD3139608FEF, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-13T03:45:25.774 Scheduled scan with Id 7B052A6A-834E-4E3A-BCFD-CD3139608FEF configured CPU priority: normal (LowCpuPriority: 0) 2026-05-13T03:45:25.774 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-13T03:45:25.774 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-13T03:45:25.774 [SFC] System file cache build is not needed (already completed) 2026-05-13T03:45:38.032 Engine:Triggered AR EMS scan 2026-05-13T03:45:38.032 Engine:EMS scan for process: lsass pid: 600, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.048 Engine:EMS scan for process: svchost pid: 680, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.063 Engine:EMS scan for process: svchost pid: 736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.063 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.079 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.094 Engine:EMS scan for process: svchost pid: 936, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.110 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.110 Engine:EMS scan for process: svchost pid: 992, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.126 Engine:EMS scan for process: svchost pid: 352, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.141 Engine:EMS scan for process: svchost pid: 776, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.141 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.157 Engine:EMS scan for process: svchost pid: 1452, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.157 Engine:EMS scan for process: svchost pid: 2052, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.173 Engine:EMS scan for process: svchost pid: 2200, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.188 Engine:EMS scan for process: svchost pid: 2224, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.188 Engine:EMS scan for process: svchost pid: 2628, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.204 Engine:EMS scan for process: svchost pid: 1736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:38.204 Engine:EMS scan for process: svchost pid: 4828, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-13T03:45:51.766 QuickScan:ScanID:7B052A6A-834E-4E3A-BCFD-CD3139608FEF: Quick scan finished with error 0 2026-05-13T03:45:51.766 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-13T03:45:52.277 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-13T03:45:52.277 [RTP] Duplicating the current plugin configuration object... 2026-05-13T03:45:52.277 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-13T03:45:52.277 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-13T03:45:52.277 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-13T03:45:52.277 [RTP] No config change detected. Not updating plugin configuration. 2026-05-13T03:45:52.277 [RTP] No config changes found. No configuration switch. 2026-05-13T03:45:52.277 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-13T03:53:05.596 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T04:08:10.611 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T04:15:33.839 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #67207, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T04:15:33.855 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #67209, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T04:15:43.859 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #67213, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T04:15:43.859 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #67215, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T04:15:43.859 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #67217, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T04:23:15.600 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T04:30:44.236 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 52540, Count: 6723, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 137, Count: 9, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 75, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_87_2.MAI, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 4368, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c56437c-a05c-47e0-ab2c-d32f62926801.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d7a32e8-2c5b-4f01-a7c5-0c0201cc3f88.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7590c180-dfa3-417a-9049-cbeefff0df21.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 3872, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a421626b-f658-4d14-be42-a6e8812dc295.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 1916, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\786971ec-7068-4f0d-bf5a-20cc2d06e43c.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 2068, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 24% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 652, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35900cc3-2632-4505-9eb3-79ae0c804c25.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 5008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97273a60-7fe6-4a5d-aab8-3a60baae5e10.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 4888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40c34e96-5b04-41e6-ad38-40b6d25187a0.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 4780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2939fa7-117d-4203-b735-70d60defc20b.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b4c201e-547f-4258-ace1-095ea5d6621d.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\614c2ea1-dc92-4b0e-b956-707e42581632.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43945782-fab1-4e40-a86f-618f6321ccbd.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 4500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1db82dbd-7f44-40fa-95d9-14d5e35d8c3c.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a38e538b-2325-483b-9749-52210c2c1b96.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 2276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6842e18a-c64a-47b1-b812-839ab2e75636.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 1144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\715dd355-3f3c-4bf0-9791-b3aabc8f821d.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d182575-3a51-4a32-8a44-16da85e37a52.tmp, EstimatedImpact: 0% 2026-05-13T04:30:44.236 ProcessImageName: updater.exe, Pid: 932, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-13T04:38:20.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T04:53:25.596 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T05:08:30.599 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T05:15:33.768 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #67315, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T05:15:33.783 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #67317, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T05:23:35.596 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T05:38:40.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T05:53:45.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T06:08:50.608 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T06:23:55.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T06:30:44.249 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 53147, Count: 6773, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 167, Count: 11, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 105, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_87_2.MAI, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 4368, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c56437c-a05c-47e0-ab2c-d32f62926801.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d7a32e8-2c5b-4f01-a7c5-0c0201cc3f88.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7590c180-dfa3-417a-9049-cbeefff0df21.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 1916, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\786971ec-7068-4f0d-bf5a-20cc2d06e43c.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 3872, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a421626b-f658-4d14-be42-a6e8812dc295.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 2068, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 24% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 652, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35900cc3-2632-4505-9eb3-79ae0c804c25.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 5008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97273a60-7fe6-4a5d-aab8-3a60baae5e10.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 4888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40c34e96-5b04-41e6-ad38-40b6d25187a0.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 4780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2939fa7-117d-4203-b735-70d60defc20b.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7ca7fd58-5d01-4d8b-921a-22a0b4efbaf2.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d182575-3a51-4a32-8a44-16da85e37a52.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\614c2ea1-dc92-4b0e-b956-707e42581632.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 4284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd7e25bb-3cde-49e0-aa33-e284e6848018.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 4500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1db82dbd-7f44-40fa-95d9-14d5e35d8c3c.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a38e538b-2325-483b-9749-52210c2c1b96.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 2276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6842e18a-c64a-47b1-b812-839ab2e75636.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b4c201e-547f-4258-ace1-095ea5d6621d.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 1144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\715dd355-3f3c-4bf0-9791-b3aabc8f821d.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43945782-fab1-4e40-a86f-618f6321ccbd.tmp, EstimatedImpact: 0% 2026-05-13T06:30:44.249 ProcessImageName: updater.exe, Pid: 932, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-13T06:39:00.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T06:54:05.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T07:09:10.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T07:15:34.118 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #67576, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T07:24:15.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T07:39:20.606 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T07:54:25.606 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T08:09:30.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T08:15:44.074 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #67697, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T08:24:35.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T08:30:44.248 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 53267, Count: 6788, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 167, Count: 11, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 105, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_87_2.MAI, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 4368, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c56437c-a05c-47e0-ab2c-d32f62926801.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d7a32e8-2c5b-4f01-a7c5-0c0201cc3f88.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7590c180-dfa3-417a-9049-cbeefff0df21.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 4576, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a6d8a852-5562-44b5-9334-021ab38b37d3.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 3872, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a421626b-f658-4d14-be42-a6e8812dc295.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 1916, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\786971ec-7068-4f0d-bf5a-20cc2d06e43c.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 2068, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 24% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 652, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35900cc3-2632-4505-9eb3-79ae0c804c25.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 4648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b2292f0-b051-4a05-8796-2560642078cd.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 5008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97273a60-7fe6-4a5d-aab8-3a60baae5e10.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 4888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40c34e96-5b04-41e6-ad38-40b6d25187a0.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 4780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2939fa7-117d-4203-b735-70d60defc20b.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7ca7fd58-5d01-4d8b-921a-22a0b4efbaf2.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\614c2ea1-dc92-4b0e-b956-707e42581632.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 2276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6842e18a-c64a-47b1-b812-839ab2e75636.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 4500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1db82dbd-7f44-40fa-95d9-14d5e35d8c3c.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43945782-fab1-4e40-a86f-618f6321ccbd.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 4284, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd7e25bb-3cde-49e0-aa33-e284e6848018.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b4c201e-547f-4258-ace1-095ea5d6621d.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 2648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a38e538b-2325-483b-9749-52210c2c1b96.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 1144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\715dd355-3f3c-4bf0-9791-b3aabc8f821d.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0d182575-3a51-4a32-8a44-16da85e37a52.tmp, EstimatedImpact: 0% 2026-05-13T08:30:44.248 ProcessImageName: updater.exe, Pid: 932, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-13T08:39:40.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T08:54:45.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T09:09:50.604 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T09:24:55.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T09:40:00.608 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T09:55:05.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T10:10:10.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T10:15:44.386 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68119, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T10:25:15.602 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T10:29:20.607 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-13T10:29:20.623 Job Notification: New process added to job (552) 2026-05-13T10:29:20.638 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-13T10:29:20.638 Aggressive catchup quick scan threshold: 242348666389 / 25920000000000 2026-05-13T10:29:20.638 Job Notification: New process added to job (276) 2026-05-13T10:29:20.654 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:552] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:276]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-13T10:29:20.717 Job Notification: New process added to job (4896) 2026-05-13T10:29:20.717 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-13T10:29:20.717 Job Notification: New process added to job (1252) 2026-05-13T10:29:20.748 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:4896] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:1252]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-13T10:29:21.170 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-13T10:29:21.170 [RTP] Duplicating the current plugin configuration object... 2026-05-13T10:29:21.170 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-13T10:29:21.170 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-13T10:29:21.170 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-13T10:29:21.170 [RTP] No config change detected. Not updating plugin configuration. 2026-05-13T10:29:21.170 [RTP] No config changes found. No configuration switch. 2026-05-13T10:29:21.170 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-13T10:29:21.560 Job Notification: New process added to job (1708) 2026-05-13T10:29:21.560 Task(GetDeviceTicket -AccessKey 294869B1-F01A-3DCA-C7D9-AF80830382F5 ) launched as network service 2026-05-13T10:29:22.106 Job Notification: Process exited from job (1708) 2026-05-13T10:29:23.160 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-13T10:29:23.160 [Cloud] Start of cloud request. Passive mode: 0 2026-05-13T10:29:23.160 [Cloud] Queued cloud request. 2026-05-13T10:29:23.160 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-13T10:29:23.160 [Cloud] Dequeued cloud request. 2026-05-13T10:29:23.160 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-13T10:29:23.160 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-13T10:29:23.160 [Cloud] Start of cloud request. Passive mode: 0 2026-05-13T10:29:23.160 [Cloud] Queued cloud request. 2026-05-13T10:29:23.160 [Cloud] Dequeued cloud request. 2026-05-13T10:29:23.160 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-13T10:29:23.504 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-13T10:29:23.504 [Cloud] End of cloud request. 2026-05-13T10:29:23.551 [Cloud] End of cloud request. 2026-05-13T10:29:23.664 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-13T10:29:35.156 Bm signature throttled:0x000015b3c4bf4b37 2026-05-13T10:29:50.516 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\6741E8FE-9F9C-42BF-8FC5-6313C2B784DA1044.1dce2c36cbf6d2d 2026-05-13T10:29:50.578 Verifying engine and signature files (source: 0) ... 2026-05-13T10:29:50.578 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6FB8416C-3F90-40A0-AD41-EA9D529A4401}\mpengine.dll] due to PPL. 2026-05-13T10:29:50.578 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6FB8416C-3F90-40A0-AD41-EA9D529A4401}\mpasbase.vdm] (file in cache) 2026-05-13T10:29:50.578 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6FB8416C-3F90-40A0-AD41-EA9D529A4401}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-13T10:29:50.594 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6FB8416C-3F90-40A0-AD41-EA9D529A4401}\mpasdlta.vdm] 2026-05-13T10:29:50.594 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6FB8416C-3F90-40A0-AD41-EA9D529A4401}\mpavbase.vdm] (file in cache) 2026-05-13T10:29:50.594 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6FB8416C-3F90-40A0-AD41-EA9D529A4401}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-13T10:29:50.610 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6FB8416C-3F90-40A0-AD41-EA9D529A4401}\mpavdlta.vdm] 2026-05-13T10:29:50.735 [Engine] IsHybridMode: 0 2026-05-13T10:29:50.735 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-13T10:29:50.766 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-A8FA0B02B2EBB8BCEE33C45EEDB0772B121DD9C7.bin): 0x00000002 2026-05-13T10:29:50.781 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-A8FA0B02B2EBB8BCEE33C45EEDB0772B121DD9C7.bin) 2026-05-13T10:29:50.781 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-13T10:29:50.781 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-13T10:29:50.781 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-13T10:29:50.781 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-05-13T10:29:51.328 Job Notification: Process exited from job (4752) IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-13T10:29:59.539 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-13T10:29:59.539 [AutoExclusion] Applied roles from cache. 2026-05-13T10:29:59.539 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-13T10:29:59.586 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFFF5878020, lRefCount: 5, hr=0 2026-05-13T10:29:59.586 [Engine] New active engine 00007FFFF2148020 replacing engine 00007FFFF5878020. Number of active engines: 2 2026-05-13T10:29:59.586 EngineInit:Global ASOC is enabled 2026-05-13T10:29:59.586 EngineInit:ASOO is enabled for developer volumes 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-13T10:29:59.602 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-13T10:29:59.602 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\c842025f8141a0f393a003e27d8a20c56085de3d Dynamic Signature Compilation Timestamp:05-11-2026 10:24:36 Persistence Type:Duration Time remaining:1728000000 2026-05-13T10:29:59.602 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-13T10:29:59.617 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-13T10:29:59.617 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-13T10:29:59.617 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-13T10:29:59.617 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-13T10:29:59.617 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-13T10:29:59.617 [Plugin] Initializing RTP plugin state... 2026-05-13T10:29:59.617 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-13T10:29:59.617 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎12‎-‎2026 12:30:44 Last Perf:‎05‎-‎12‎-‎2026 12:30:44 First RTP Scan:‎05‎-‎12‎-‎2026 12:31:15 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:383 Misses:2900 BM Queue:0,48,0 Proc:0,38,0 File:0,48,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:68253 Pending:0 RegSize:281830 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:98366390 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:41857 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:307435 TotalHits:84009 InstanceCacheInserts:2117 InstanceCacheUpdates:0 InstanceCacheDeletes:1788 InstanceCacheHits:91 InstanceCacheMisses:130705 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (226/202) Success: 202, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-13T10:29:59.617 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6FB8416C-3F90-40A0-AD41-EA9D529A4401} 2026-05-13T10:29:59.617 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-13T10:29:59.617 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{50290FB8-819C-4986-ACF6-D83904F790EB} removed 2026-05-13T10:29:59.617 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8411B7A-896C-46F9-89AB-67DC7A2D09E0}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8411B7A-896C-46F9-89AB-67DC7A2D09E0}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-13T10:29:59.617 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-13T10:29:59.617 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-13T10:29:59.617 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-13T10:29:59.617 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-13T10:29:59.617 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-13-2026 10:29:59 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-13-2026 10:29:59 2026-05-13T10:29:59.633 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-13T10:29:59.633 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-13T10:29:59.633 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-13T10:29:59.633 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-13T10:29:59.633 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-13T10:29:59.633 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-13T10:29:59.633 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-13T10:29:59.633 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-13T10:29:59.633 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-13T10:29:59.633 MdCoreSvc is supported in this platform and OS Signature updated on 05-13-2026 10:29:59 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.593.0 AV Signature Version: 1.449.593.0 ************************************************************ 2026-05-13T10:29:59.633 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-13T10:29:59.633 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\6741E8FE-9F9C-42BF-8FC5-6313C2B784DA1044.1dce2c36cbf6d2d 2026-05-13T10:29:59.649 Process scan (postsignatureupdatescan) started. 2026-05-13T10:29:59.680 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-13T10:29:59.680 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 05-13-2026 10:29:59 ************************************************************ 2026-05-13T10:29:59.696 Job Notification: Process exited from job (4896) 2026-05-13T10:29:59.696 Job Notification: Process exited from job (1252) 2026-05-13T10:29:59.711 Job Notification: Process exited from job (552) 2026-05-13T10:29:59.711 Job Notification: Process exited from job (276) 2026-05-13T10:29:59.852 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-13T10:29:59.852 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-13T10:29:59.852 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-13T10:29:59.852 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-13T10:29:59.852 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-13T10:29:59.852 [Engine] Engine 00007FFFF5878020 no longer in use. Number of active engines: 1 2026-05-13T10:29:59.852 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-13T10:29:59.852 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-13T10:30:00.117 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-13T10:30:00.117 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-13T10:30:00.117 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-13T10:30:00.414 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 53267, Count: 6788, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-13T10:30:00.414 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 182, Count: 13, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-13T10:30:00.414 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 105, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_87_2.MAI, EstimatedImpact: 0% 2026-05-13T10:30:00.414 ProcessImageName: updater.exe, Pid: 4368, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c56437c-a05c-47e0-ab2c-d32f62926801.tmp, EstimatedImpact: 0% 2026-05-13T10:30:00.414 ProcessImageName: updater.exe, Pid: 3952, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7590c180-dfa3-417a-9049-cbeefff0df21.tmp, EstimatedImpact: 0% 2026-05-13T10:30:00.414 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1d7a32e8-2c5b-4f01-a7c5-0c0201cc3f88.tmp, EstimatedImpact: 0% 2026-05-13T10:30:00.414 ProcessImageName: updater.exe, Pid: 4576, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a6d8a852-5562-44b5-9334-021ab38b37d3.tmp, EstimatedImpact: 0% 2026-05-13T10:30:00.414 ProcessImageName: updater.exe, Pid: 3872, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a421626b-f658-4d14-be42-a6e8812dc295.tmp, EstimatedImpact: 0% 2026-05-13T10:30:00.414 ProcessImageName: updater.exe, Pid: 1916, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\786971ec-7068-4f0d-bf5a-20cc2d06e43c.tmp, EstimatedImpact: 0% 2026-05-13T10:30:00.414 ProcessImageName: updater.exe, Pid: 2068, TotalTime: 30, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 24% 2026-05-13T10:30:00.414 ProcessImageName: updater.exe, Pid: 652, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35900cc3-2632-4505-9eb3-79ae0c804c25.tmp, EstimatedImpact: 0% 2026-05-13T10:30:00.414 ProcessImageName: updater.exe, Pid: 4648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b2292f0-b051-4a05-8796-2560642078cd.tmp, EstimatedImpact: 0% 2026-05-13T10:30:00.414 ProcessImageName: updater.exe, Pid: 5008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\97273a60-7fe6-4a5d-aab8-3a60baae5e10.tmp, EstimatedImpact: 0% 2026-05-13T10:30:00.414 ProcessImageName: updater.exe, Pid: 4888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40c34e96-5b04-41e6-ad38-40b6d25187a0.tmp, EstimatedImpact: 0% 2026-05-13T10:30:00.414 ProcessImageName: updater.exe, Pid: 4780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2939fa7-117d-4203-b735-70d60defc20b.tmp, EstimatedImpact: 0% 2026-05-13T10:30:00.461 [Engine] RSIG_UNLOADENGINE, 00007FFFF5878020, err=0x0 2026-05-13T10:30:00.477 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8411B7A-896C-46F9-89AB-67DC7A2D09E0} removed 2026-05-13T10:30:04.055 Process scan (postsignatureupdatescan) completed. 2026-05-13T10:34:59.612 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-13T10:40:20.602 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T10:55:25.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T11:10:30.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T11:15:34.133 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68448, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T11:15:34.149 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68450, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T11:15:44.136 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68454, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T11:15:44.152 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68456, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T11:25:35.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T11:40:40.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T11:55:45.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T12:10:50.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T12:15:33.443 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68576, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T12:15:33.443 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68578, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T12:15:43.456 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68582, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T12:15:43.456 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68583, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T12:15:43.456 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68584, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T12:25:55.593 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T12:29:59.586 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 451, Count: 52, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-05-13T12:29:59.586 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-13T12:29:59.586 ProcessImageName: updater.exe, Pid: 1344, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4fcfeb0d-0dfe-4e7a-a2b5-f2f986daaaf4.tmp, EstimatedImpact: 0% 2026-05-13T12:29:59.586 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3b21490-582c-402b-ad67-60234aeb791e.tmp, EstimatedImpact: 0% 2026-05-13T12:41:00.593 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T12:56:05.593 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T13:11:10.599 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T13:15:34.326 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68718, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T13:15:34.342 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68720, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T13:15:44.345 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68724, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T13:15:44.345 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68726, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T13:15:44.486 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68730, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T13:15:44.501 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68732, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T13:26:15.593 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T13:41:20.609 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T13:56:25.593 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T14:11:30.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T14:15:35.679 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68817, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T14:15:35.694 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68819, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T14:15:45.690 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68823, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T14:15:45.705 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #68826, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T14:26:35.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T14:29:59.585 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 496, Count: 58, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-05-13T14:29:59.585 ProcessImageName: updater.exe, Pid: 1368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a896c1-13f6-407a-a67a-3abec75fd2c8.tmp, EstimatedImpact: 0% 2026-05-13T14:29:59.585 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-13T14:29:59.585 ProcessImageName: updater.exe, Pid: 1344, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4fcfeb0d-0dfe-4e7a-a2b5-f2f986daaaf4.tmp, EstimatedImpact: 0% 2026-05-13T14:29:59.585 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3b21490-582c-402b-ad67-60234aeb791e.tmp, EstimatedImpact: 0% 2026-05-13T14:29:59.585 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e7bdc75-5f39-4932-9d60-40ef8b9b274d.tmp, EstimatedImpact: 0% 2026-05-13T14:41:40.593 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T14:56:45.596 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T15:11:50.600 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T15:13:53.808 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\xampp\tmp\#sqla88_ac_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #70118, FileId: 0x5a07000000005dad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T15:15:35.342 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70135, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T15:15:35.358 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70137, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T15:15:45.346 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70141, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T15:15:45.361 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70143, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T15:15:45.361 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70145, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T15:15:45.377 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70147, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T15:26:55.596 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T15:42:00.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T15:57:05.605 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T16:12:10.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T16:15:34.401 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70255, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T16:15:34.416 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70257, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T16:15:44.415 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70261, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T16:15:44.415 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70263, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T16:15:44.430 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70266, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T16:27:15.604 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T16:29:59.600 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 35113, Count: 5182, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-05-13T16:29:59.600 ProcessImageName: updater.exe, Pid: 1368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a896c1-13f6-407a-a67a-3abec75fd2c8.tmp, EstimatedImpact: 0% 2026-05-13T16:29:59.600 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-13T16:29:59.600 ProcessImageName: updater.exe, Pid: 1344, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4fcfeb0d-0dfe-4e7a-a2b5-f2f986daaaf4.tmp, EstimatedImpact: 0% 2026-05-13T16:29:59.600 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3b21490-582c-402b-ad67-60234aeb791e.tmp, EstimatedImpact: 0% 2026-05-13T16:29:59.600 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e7bdc75-5f39-4932-9d60-40ef8b9b274d.tmp, EstimatedImpact: 0% 2026-05-13T16:29:59.600 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef959df0-ff5b-4c69-83b9-051070ced84c.tmp, EstimatedImpact: 0% 2026-05-13T16:29:59.600 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3544ff95-aa62-411e-91f2-5b47cf4da787.tmp, EstimatedImpact: 0% 2026-05-13T16:42:20.592 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T16:57:25.592 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T17:04:33.087 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\xampp\tmp\#sqla88_b5_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #70358, FileId: 0x5a0d000000005dad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T17:04:43.214 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\xampp\tmp\#sqla88_b5_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #70796, FileId: 0x5a0e000000005dad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T17:12:30.604 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T17:15:34.225 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70822, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T17:15:34.241 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70824, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T17:15:44.234 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70828, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T17:15:44.234 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70830, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T17:15:44.249 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #70833, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T17:27:35.592 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T17:42:40.603 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T17:57:45.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T18:12:50.592 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T18:13:22.097 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\xampp\tmp\#sqla88_ba_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #70997, FileId: 0x85000000013a61, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T18:15:34.767 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71011, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T18:15:34.783 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71013, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T18:15:44.781 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71017, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T18:15:44.781 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71019, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T18:15:44.944 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71023, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T18:15:44.944 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71025, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T18:27:55.592 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T18:29:59.611 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 47552, Count: 6530, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-13T18:29:59.611 ProcessImageName: php-cgi.exe, Pid: 2460, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 48% 2026-05-13T18:29:59.611 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-13T18:29:59.611 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68dfe744-8397-4b56-a271-82c5111a66ac.tmp, EstimatedImpact: 0% 2026-05-13T18:29:59.611 ProcessImageName: updater.exe, Pid: 1368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a896c1-13f6-407a-a67a-3abec75fd2c8.tmp, EstimatedImpact: 0% 2026-05-13T18:29:59.611 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 30, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_b5_1.MAI, EstimatedImpact: 0% 2026-05-13T18:29:59.611 ProcessImageName: updater.exe, Pid: 1344, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4fcfeb0d-0dfe-4e7a-a2b5-f2f986daaaf4.tmp, EstimatedImpact: 0% 2026-05-13T18:29:59.611 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3b21490-582c-402b-ad67-60234aeb791e.tmp, EstimatedImpact: 0% 2026-05-13T18:29:59.611 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e7bdc75-5f39-4932-9d60-40ef8b9b274d.tmp, EstimatedImpact: 0% 2026-05-13T18:29:59.611 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef959df0-ff5b-4c69-83b9-051070ced84c.tmp, EstimatedImpact: 0% 2026-05-13T18:29:59.611 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3544ff95-aa62-411e-91f2-5b47cf4da787.tmp, EstimatedImpact: 0% 2026-05-13T18:29:59.611 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87f6df62-9e8c-4030-bcb3-9e7402b6a22d.tmp, EstimatedImpact: 0% 2026-05-13T18:43:00.607 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T18:57:10.820 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\#sqla88_c0_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #71126, FileId: 0x5a16000000005dad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T18:58:05.596 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T19:13:10.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T19:15:32.651 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71154, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T19:15:32.651 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71156, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T19:15:42.671 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71161, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T19:15:42.671 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71163, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T19:15:42.671 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71164, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T19:28:15.606 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T19:43:20.600 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T19:58:25.591 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T20:13:30.591 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T20:15:32.968 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71263, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T20:15:32.984 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71265, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T20:15:42.982 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71270, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T20:15:42.998 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71273, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T20:28:35.604 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T20:29:59.616 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 47552, Count: 6531, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-13T20:29:59.616 ProcessImageName: php-cgi.exe, Pid: 2460, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 48% 2026-05-13T20:29:59.616 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 60, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_b5_1.MAI, EstimatedImpact: 0% 2026-05-13T20:29:59.616 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-13T20:29:59.616 ProcessImageName: updater.exe, Pid: 1368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a896c1-13f6-407a-a67a-3abec75fd2c8.tmp, EstimatedImpact: 0% 2026-05-13T20:29:59.616 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68dfe744-8397-4b56-a271-82c5111a66ac.tmp, EstimatedImpact: 0% 2026-05-13T20:29:59.616 ProcessImageName: updater.exe, Pid: 1344, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4fcfeb0d-0dfe-4e7a-a2b5-f2f986daaaf4.tmp, EstimatedImpact: 0% 2026-05-13T20:29:59.616 ProcessImageName: updater.exe, Pid: 4916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2aaf66dd-3d40-4c9e-ae2e-ac36f67286ea.tmp, EstimatedImpact: 0% 2026-05-13T20:29:59.616 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9535d91a-922e-4e23-9c55-62fa18decf3a.tmp, EstimatedImpact: 0% 2026-05-13T20:29:59.616 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87f6df62-9e8c-4030-bcb3-9e7402b6a22d.tmp, EstimatedImpact: 0% 2026-05-13T20:29:59.616 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e7bdc75-5f39-4932-9d60-40ef8b9b274d.tmp, EstimatedImpact: 0% 2026-05-13T20:29:59.616 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef959df0-ff5b-4c69-83b9-051070ced84c.tmp, EstimatedImpact: 0% 2026-05-13T20:29:59.616 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3544ff95-aa62-411e-91f2-5b47cf4da787.tmp, EstimatedImpact: 0% 2026-05-13T20:29:59.616 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3b21490-582c-402b-ad67-60234aeb791e.tmp, EstimatedImpact: 0% 2026-05-13T20:43:40.591 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T20:58:45.603 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T21:03:03.763 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sqla88_c7_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #71352, FileId: 0x5a1c000000005dad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T21:03:04.309 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\xampp\tmp\#sqla88_c7_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #71356, FileId: 0x5a1d000000005dad, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T21:13:50.603 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T21:15:32.813 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71381, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T21:15:32.813 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71383, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T21:15:42.822 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71388, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T21:15:42.822 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71389, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T21:15:42.837 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71391, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T21:28:55.591 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T21:44:00.602 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T21:51:05.422 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sqla88_cc_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #71465, FileId: 0x383d000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T21:51:05.985 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sqla88_cc_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #71469, FileId: 0x383e000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T21:59:05.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T22:14:10.591 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T22:15:33.880 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71523, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T22:15:33.895 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71525, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T22:15:43.894 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71530, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T22:15:43.909 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71532, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T22:29:15.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T22:29:59.615 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 48259, Count: 6566, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-13T22:29:59.615 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 75, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_b5_1.MAI, EstimatedImpact: 0% 2026-05-13T22:29:59.615 ProcessImageName: php-cgi.exe, Pid: 2460, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 48% 2026-05-13T22:29:59.615 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-13T22:29:59.615 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68dfe744-8397-4b56-a271-82c5111a66ac.tmp, EstimatedImpact: 0% 2026-05-13T22:29:59.615 ProcessImageName: updater.exe, Pid: 1368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a896c1-13f6-407a-a67a-3abec75fd2c8.tmp, EstimatedImpact: 0% 2026-05-13T22:29:59.615 ProcessImageName: updater.exe, Pid: 1468, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cdb21b4-7b68-44f1-aaa1-f0fbe33746a0.tmp, EstimatedImpact: 0% 2026-05-13T22:29:59.615 ProcessImageName: updater.exe, Pid: 1344, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4fcfeb0d-0dfe-4e7a-a2b5-f2f986daaaf4.tmp, EstimatedImpact: 0% 2026-05-13T22:29:59.615 ProcessImageName: updater.exe, Pid: 4916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2aaf66dd-3d40-4c9e-ae2e-ac36f67286ea.tmp, EstimatedImpact: 0% 2026-05-13T22:29:59.615 ProcessImageName: updater.exe, Pid: 304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b31733e2-a258-445c-8bc8-7efaf53e9351.tmp, EstimatedImpact: 0% 2026-05-13T22:29:59.615 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3b21490-582c-402b-ad67-60234aeb791e.tmp, EstimatedImpact: 0% 2026-05-13T22:29:59.615 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9535d91a-922e-4e23-9c55-62fa18decf3a.tmp, EstimatedImpact: 0% 2026-05-13T22:29:59.615 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e7bdc75-5f39-4932-9d60-40ef8b9b274d.tmp, EstimatedImpact: 0% 2026-05-13T22:29:59.615 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef959df0-ff5b-4c69-83b9-051070ced84c.tmp, EstimatedImpact: 0% 2026-05-13T22:29:59.615 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3544ff95-aa62-411e-91f2-5b47cf4da787.tmp, EstimatedImpact: 0% 2026-05-13T22:29:59.615 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87f6df62-9e8c-4030-bcb3-9e7402b6a22d.tmp, EstimatedImpact: 0% 2026-05-13T22:44:20.590 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T22:59:25.590 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T23:14:30.590 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T23:15:36.131 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71676, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T23:15:36.131 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71678, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T23:15:46.145 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71682, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T23:15:46.145 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71684, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T23:15:46.316 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71688, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T23:15:46.316 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71690, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T23:29:35.590 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T23:35:26.899 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sqla88_db_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #71733, FileId: 0x3845000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T23:35:33.680 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sqla88_dc_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #71737, FileId: 0x3849000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T23:35:33.696 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sqla88_dc_a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #71740, FileId: 0x384a000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-13T23:44:40.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-13T23:59:45.604 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T00:14:50.598 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T00:15:35.552 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71802, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T00:15:35.567 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71804, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T00:15:45.565 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71809, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T00:15:45.581 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71812, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T00:29:55.604 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T00:29:59.625 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 48290, Count: 6570, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 120, Count: 33, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_b5_1.MAI, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: php-cgi.exe, Pid: 2460, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 48% 2026-05-14T00:29:59.625 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1adb6fd5-006c-4a2a-ae37-e095538cc589.tmp, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68dfe744-8397-4b56-a271-82c5111a66ac.tmp, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: updater.exe, Pid: 1368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a896c1-13f6-407a-a67a-3abec75fd2c8.tmp, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: updater.exe, Pid: 1468, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cdb21b4-7b68-44f1-aaa1-f0fbe33746a0.tmp, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: updater.exe, Pid: 1344, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4fcfeb0d-0dfe-4e7a-a2b5-f2f986daaaf4.tmp, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: updater.exe, Pid: 4916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2aaf66dd-3d40-4c9e-ae2e-ac36f67286ea.tmp, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3b21490-582c-402b-ad67-60234aeb791e.tmp, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9535d91a-922e-4e23-9c55-62fa18decf3a.tmp, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: updater.exe, Pid: 2268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2f37404-9139-49e1-9cfa-4867db4aabea.tmp, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e7bdc75-5f39-4932-9d60-40ef8b9b274d.tmp, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef959df0-ff5b-4c69-83b9-051070ced84c.tmp, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: updater.exe, Pid: 304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b31733e2-a258-445c-8bc8-7efaf53e9351.tmp, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3544ff95-aa62-411e-91f2-5b47cf4da787.tmp, EstimatedImpact: 0% 2026-05-14T00:29:59.625 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87f6df62-9e8c-4030-bcb3-9e7402b6a22d.tmp, EstimatedImpact: 0% 2026-05-14T00:45:00.598 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T01:00:05.598 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T01:15:10.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T01:15:34.537 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71913, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T01:15:34.552 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71915, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T01:15:44.557 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71920, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T01:15:44.557 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71921, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T01:15:44.557 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71922, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T01:30:15.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T01:45:20.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T02:00:25.591 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T02:15:30.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T02:15:34.357 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72072, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T02:15:34.357 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72074, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T02:15:44.353 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72079, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T02:15:44.353 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72081, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T02:15:44.369 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72083, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T02:15:44.369 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72085, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T02:29:59.624 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 48290, Count: 6570, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 120, Count: 33, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_b5_1.MAI, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: php-cgi.exe, Pid: 2460, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 48% 2026-05-14T02:29:59.624 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1adb6fd5-006c-4a2a-ae37-e095538cc589.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68dfe744-8397-4b56-a271-82c5111a66ac.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 1368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a896c1-13f6-407a-a67a-3abec75fd2c8.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 1468, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cdb21b4-7b68-44f1-aaa1-f0fbe33746a0.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 1344, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4fcfeb0d-0dfe-4e7a-a2b5-f2f986daaaf4.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 4916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2aaf66dd-3d40-4c9e-ae2e-ac36f67286ea.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3544ff95-aa62-411e-91f2-5b47cf4da787.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87f6df62-9e8c-4030-bcb3-9e7402b6a22d.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\704e3c47-e6ce-48d9-a264-d7dd25212bdd.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3b21490-582c-402b-ad67-60234aeb791e.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9535d91a-922e-4e23-9c55-62fa18decf3a.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b31733e2-a258-445c-8bc8-7efaf53e9351.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 2268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2f37404-9139-49e1-9cfa-4867db4aabea.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 1968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\380f1fb2-7573-4068-b3cf-bd725ed32fff.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e7bdc75-5f39-4932-9d60-40ef8b9b274d.tmp, EstimatedImpact: 0% 2026-05-14T02:29:59.624 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef959df0-ff5b-4c69-83b9-051070ced84c.tmp, EstimatedImpact: 0% 2026-05-14T02:30:35.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T02:45:40.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T03:00:45.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T03:15:33.587 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72185, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T03:15:33.603 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72187, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T03:15:43.596 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72192, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T03:15:43.611 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72194, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T03:15:50.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T03:30:55.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T03:45:25.786 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:3EF566F1-1F79-47EB-90D8-F338E902247B, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-14T03:45:25.786 Scheduled scan with Id 3EF566F1-1F79-47EB-90D8-F338E902247B configured CPU priority: normal (LowCpuPriority: 0) 2026-05-14T03:45:25.786 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-14T03:45:25.786 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-14T03:45:25.786 [SFC] System file cache build is not needed (already completed) 2026-05-14T03:45:37.511 Engine:Triggered AR EMS scan 2026-05-14T03:45:37.511 Engine:EMS scan for process: lsass pid: 600, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.527 Engine:EMS scan for process: svchost pid: 680, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.542 Engine:EMS scan for process: svchost pid: 736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.542 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.558 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.574 Engine:EMS scan for process: svchost pid: 936, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.589 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.589 Engine:EMS scan for process: svchost pid: 992, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.605 Engine:EMS scan for process: svchost pid: 352, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.621 Engine:EMS scan for process: svchost pid: 776, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.621 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.636 Engine:EMS scan for process: svchost pid: 1452, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.636 Engine:EMS scan for process: svchost pid: 2052, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.652 Engine:EMS scan for process: svchost pid: 2200, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.667 Engine:EMS scan for process: svchost pid: 2224, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.667 Engine:EMS scan for process: svchost pid: 2628, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.683 Engine:EMS scan for process: svchost pid: 1736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:37.683 Engine:EMS scan for process: svchost pid: 4828, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-14T03:45:51.027 QuickScan:ScanID:3EF566F1-1F79-47EB-90D8-F338E902247B: Quick scan finished with error 0 2026-05-14T03:45:51.027 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-14T03:45:51.529 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-14T03:45:51.529 [RTP] Duplicating the current plugin configuration object... 2026-05-14T03:45:51.529 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-14T03:45:51.529 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-14T03:45:51.529 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-14T03:45:51.529 [RTP] No config change detected. Not updating plugin configuration. 2026-05-14T03:45:51.529 [RTP] No config changes found. No configuration switch. 2026-05-14T03:45:51.529 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-14T03:46:00.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T04:01:05.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T04:15:34.570 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72442, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T04:15:34.585 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72444, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T04:15:44.584 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72449, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T04:15:44.599 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72451, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T04:16:10.593 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T04:29:59.639 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 48290, Count: 6570, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 120, Count: 33, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_b5_1.MAI, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: php-cgi.exe, Pid: 2460, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 48% 2026-05-14T04:29:59.639 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1adb6fd5-006c-4a2a-ae37-e095538cc589.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68dfe744-8397-4b56-a271-82c5111a66ac.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 1368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a896c1-13f6-407a-a67a-3abec75fd2c8.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 1468, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cdb21b4-7b68-44f1-aaa1-f0fbe33746a0.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\845f60e2-e037-4640-8d00-5f2d6105afa6.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 1344, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4fcfeb0d-0dfe-4e7a-a2b5-f2f986daaaf4.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 4924, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a179bb9-9b0e-4cc5-a3c2-0d823430c984.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 4916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2aaf66dd-3d40-4c9e-ae2e-ac36f67286ea.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\704e3c47-e6ce-48d9-a264-d7dd25212bdd.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3b21490-582c-402b-ad67-60234aeb791e.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9535d91a-922e-4e23-9c55-62fa18decf3a.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 2268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2f37404-9139-49e1-9cfa-4867db4aabea.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 1968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\380f1fb2-7573-4068-b3cf-bd725ed32fff.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e7bdc75-5f39-4932-9d60-40ef8b9b274d.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef959df0-ff5b-4c69-83b9-051070ced84c.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b31733e2-a258-445c-8bc8-7efaf53e9351.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3544ff95-aa62-411e-91f2-5b47cf4da787.tmp, EstimatedImpact: 0% 2026-05-14T04:29:59.639 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87f6df62-9e8c-4030-bcb3-9e7402b6a22d.tmp, EstimatedImpact: 0% 2026-05-14T04:31:15.592 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T04:46:20.593 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T05:01:25.588 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T05:16:30.592 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T05:31:35.602 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T05:46:40.588 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T06:01:45.588 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T06:15:44.829 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72697, FileId: 0x561000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T06:16:50.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T06:29:59.641 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 48290, Count: 6570, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 120, Count: 33, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_b5_1.MAI, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 75, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: php-cgi.exe, Pid: 2460, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 48% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1adb6fd5-006c-4a2a-ae37-e095538cc589.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68dfe744-8397-4b56-a271-82c5111a66ac.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 1368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a896c1-13f6-407a-a67a-3abec75fd2c8.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 1468, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cdb21b4-7b68-44f1-aaa1-f0fbe33746a0.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\845f60e2-e037-4640-8d00-5f2d6105afa6.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 1344, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4fcfeb0d-0dfe-4e7a-a2b5-f2f986daaaf4.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 4924, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a179bb9-9b0e-4cc5-a3c2-0d823430c984.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 4916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2aaf66dd-3d40-4c9e-ae2e-ac36f67286ea.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\704e3c47-e6ce-48d9-a264-d7dd25212bdd.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9535d91a-922e-4e23-9c55-62fa18decf3a.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3b21490-582c-402b-ad67-60234aeb791e.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 4440, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49fafb24-eef4-4423-ab21-4a4e2f18df04.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 2268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2f37404-9139-49e1-9cfa-4867db4aabea.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 1968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\380f1fb2-7573-4068-b3cf-bd725ed32fff.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e7bdc75-5f39-4932-9d60-40ef8b9b274d.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef959df0-ff5b-4c69-83b9-051070ced84c.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b31733e2-a258-445c-8bc8-7efaf53e9351.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3544ff95-aa62-411e-91f2-5b47cf4da787.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87f6df62-9e8c-4030-bcb3-9e7402b6a22d.tmp, EstimatedImpact: 0% 2026-05-14T06:29:59.641 ProcessImageName: updater.exe, Pid: 332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb6235c0-16f2-4190-ace8-df25834d4a28.tmp, EstimatedImpact: 0% 2026-05-14T06:31:55.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T06:47:00.588 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T07:02:05.600 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T07:17:10.587 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T07:32:15.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T07:47:20.599 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T08:02:25.587 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T08:15:44.231 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72932, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T08:17:30.593 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T08:29:59.649 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 48988, Count: 6621, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 120, Count: 38, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_b5_1.MAI, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 75, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: php-cgi.exe, Pid: 2460, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 48% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1adb6fd5-006c-4a2a-ae37-e095538cc589.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68dfe744-8397-4b56-a271-82c5111a66ac.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 1368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a896c1-13f6-407a-a67a-3abec75fd2c8.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 1468, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cdb21b4-7b68-44f1-aaa1-f0fbe33746a0.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\845f60e2-e037-4640-8d00-5f2d6105afa6.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 1344, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4fcfeb0d-0dfe-4e7a-a2b5-f2f986daaaf4.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 4440, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49fafb24-eef4-4423-ab21-4a4e2f18df04.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3b21490-582c-402b-ad67-60234aeb791e.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 4924, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a179bb9-9b0e-4cc5-a3c2-0d823430c984.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 4916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2aaf66dd-3d40-4c9e-ae2e-ac36f67286ea.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9535d91a-922e-4e23-9c55-62fa18decf3a.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\704e3c47-e6ce-48d9-a264-d7dd25212bdd.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b31733e2-a258-445c-8bc8-7efaf53e9351.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 3112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6d5ae948-89f8-410f-9134-a1e0742b2469.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 2268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2f37404-9139-49e1-9cfa-4867db4aabea.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 2044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44f01eaf-444e-40bf-886b-62746e6d6f9d.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 1968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\380f1fb2-7573-4068-b3cf-bd725ed32fff.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e7bdc75-5f39-4932-9d60-40ef8b9b274d.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef959df0-ff5b-4c69-83b9-051070ced84c.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3544ff95-aa62-411e-91f2-5b47cf4da787.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87f6df62-9e8c-4030-bcb3-9e7402b6a22d.tmp, EstimatedImpact: 0% 2026-05-14T08:29:59.649 ProcessImageName: updater.exe, Pid: 332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb6235c0-16f2-4190-ace8-df25834d4a28.tmp, EstimatedImpact: 0% 2026-05-14T08:32:35.587 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T08:47:40.587 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T09:02:45.602 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T09:17:50.596 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T09:32:55.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T09:48:00.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T10:03:05.590 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T10:15:34.027 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #73390, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T10:18:10.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T10:29:20.588 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-14T10:29:20.619 Job Notification: New process added to job (3912) 2026-05-14T10:29:20.619 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-14T10:29:20.619 Job Notification: New process added to job (4888) 2026-05-14T10:29:20.619 Aggressive catchup quick scan threshold: 242348429813 / 25920000000000 2026-05-14T10:29:20.635 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3912] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4888]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-14T10:29:20.729 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-14T10:29:20.729 Job Notification: New process added to job (3128) 2026-05-14T10:29:20.744 Job Notification: New process added to job (2888) 2026-05-14T10:29:20.744 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3128] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2888]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-14T10:29:21.135 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-14T10:29:21.151 [RTP] Duplicating the current plugin configuration object... 2026-05-14T10:29:21.151 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-14T10:29:21.151 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-14T10:29:21.166 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-14T10:29:21.166 [RTP] No config change detected. Not updating plugin configuration. 2026-05-14T10:29:21.166 [RTP] No config changes found. No configuration switch. 2026-05-14T10:29:21.166 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-14T10:29:21.494 Job Notification: New process added to job (2260) 2026-05-14T10:29:21.494 Task(GetDeviceTicket -AccessKey CDD406B2-D73C-3267-0077-A44B7699F5A9 ) launched as network service 2026-05-14T10:29:21.904 Job Notification: Process exited from job (2260) 2026-05-14T10:29:22.978 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-14T10:29:22.978 [Cloud] Start of cloud request. Passive mode: 0 2026-05-14T10:29:22.978 [Cloud] Queued cloud request. 2026-05-14T10:29:22.978 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-14T10:29:22.978 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-14T10:29:22.978 [Cloud] Start of cloud request. Passive mode: 0 2026-05-14T10:29:22.978 [Cloud] Queued cloud request. 2026-05-14T10:29:22.994 Job Notification: New process added to job (2132) 2026-05-14T10:29:23.009 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey BBAA614E-4810-C0FF-D25D-25AA679F7457) launched 2026-05-14T10:29:23.009 Job Notification: New process added to job (4672) 2026-05-14T10:29:23.009 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:2132] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4672]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-14T10:29:23.025 Job Notification: New process added to job (3144) 2026-05-14T10:29:23.025 Job Notification: Process exited from job (2132) 2026-05-14T10:29:23.025 Job Notification: Process exited from job (4672) 2026-05-14T10:29:23.041 [Cloud] Dequeued cloud request. 2026-05-14T10:29:23.041 [Cloud] Dequeued cloud request. 2026-05-14T10:29:23.041 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-14T10:29:23.041 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-14T10:29:23.259 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-14T10:29:23.259 [Cloud] End of cloud request. 2026-05-14T10:29:23.275 [Cloud] End of cloud request. 2026-05-14T10:29:23.478 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-14T10:29:39.494 Bm signature throttled:0x000015b3c4bf4b37 2026-05-14T10:29:53.898 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\A2C6AA35-C575-44BB-9AB1-78350B48CE6075c.1dce38c992f4edd 2026-05-14T10:29:53.960 Verifying engine and signature files (source: 0) ... 2026-05-14T10:29:53.960 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{704C583B-3E5C-4186-8445-88690A7DFF0B}\mpengine.dll] due to PPL. 2026-05-14T10:29:53.960 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{704C583B-3E5C-4186-8445-88690A7DFF0B}\mpasbase.vdm] (file in cache) 2026-05-14T10:29:53.960 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{704C583B-3E5C-4186-8445-88690A7DFF0B}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-14T10:29:53.991 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{704C583B-3E5C-4186-8445-88690A7DFF0B}\mpasdlta.vdm] 2026-05-14T10:29:53.991 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{704C583B-3E5C-4186-8445-88690A7DFF0B}\mpavbase.vdm] (file in cache) 2026-05-14T10:29:53.991 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{704C583B-3E5C-4186-8445-88690A7DFF0B}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-14T10:29:54.007 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{704C583B-3E5C-4186-8445-88690A7DFF0B}\mpavdlta.vdm] 2026-05-14T10:29:54.132 [Engine] IsHybridMode: 0 2026-05-14T10:29:54.132 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-14T10:29:54.163 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-8D0206C27B286DD809423AE2FBE10F8A96D70D75.bin): 0x00000002 2026-05-14T10:29:54.163 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-8D0206C27B286DD809423AE2FBE10F8A96D70D75.bin) 2026-05-14T10:29:54.163 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-14T10:29:54.163 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-14T10:29:54.163 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-14T10:29:54.163 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-05-14T10:29:59.663 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 49018, Count: 6624, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 150, Count: 43, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_b5_1.MAI, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 136, Count: 13, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: php-cgi.exe, Pid: 2460, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 48% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68dfe744-8397-4b56-a271-82c5111a66ac.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1adb6fd5-006c-4a2a-ae37-e095538cc589.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 1368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a896c1-13f6-407a-a67a-3abec75fd2c8.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 1468, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cdb21b4-7b68-44f1-aaa1-f0fbe33746a0.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 3112, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b140668-71ea-4f8e-a79e-022d560de77b.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\845f60e2-e037-4640-8d00-5f2d6105afa6.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 1344, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4fcfeb0d-0dfe-4e7a-a2b5-f2f986daaaf4.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3b21490-582c-402b-ad67-60234aeb791e.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69c988b1-0c8f-42d1-ae16-f595aa9345a3.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9535d91a-922e-4e23-9c55-62fa18decf3a.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b31733e2-a258-445c-8bc8-7efaf53e9351.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 2268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2f37404-9139-49e1-9cfa-4867db4aabea.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 2044, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44f01eaf-444e-40bf-886b-62746e6d6f9d.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 1968, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\380f1fb2-7573-4068-b3cf-bd725ed32fff.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 1880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9e7bdc75-5f39-4932-9d60-40ef8b9b274d.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 3112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6d5ae948-89f8-410f-9134-a1e0742b2469.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef959df0-ff5b-4c69-83b9-051070ced84c.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\704e3c47-e6ce-48d9-a264-d7dd25212bdd.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 4924, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a179bb9-9b0e-4cc5-a3c2-0d823430c984.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 4916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2aaf66dd-3d40-4c9e-ae2e-ac36f67286ea.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 4440, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49fafb24-eef4-4423-ab21-4a4e2f18df04.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3544ff95-aa62-411e-91f2-5b47cf4da787.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87f6df62-9e8c-4030-bcb3-9e7402b6a22d.tmp, EstimatedImpact: 0% 2026-05-14T10:29:59.663 ProcessImageName: updater.exe, Pid: 332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb6235c0-16f2-4190-ace8-df25834d4a28.tmp, EstimatedImpact: 0% IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-14T10:30:02.909 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-14T10:30:02.909 [AutoExclusion] Applied roles from cache. 2026-05-14T10:30:02.909 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-14T10:30:02.940 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFFF2148020, lRefCount: 5, hr=0 2026-05-14T10:30:02.940 [Engine] New active engine 00007FFFF5878020 replacing engine 00007FFFF2148020. Number of active engines: 2 2026-05-14T10:30:02.940 EngineInit:Global ASOC is enabled 2026-05-14T10:30:02.940 EngineInit:ASOO is enabled for developer volumes 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-14T10:30:02.956 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-14T10:30:02.956 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\5c2422d65ec8ea1de39275945d791703bba67d35 Dynamic Signature Compilation Timestamp:05-12-2026 03:47:24 Persistence Type:Duration Time remaining:1728000000 2026-05-14T10:30:02.971 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-14T10:30:02.971 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-14T10:30:02.971 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-14T10:30:02.971 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-14T10:30:02.971 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-14T10:30:02.971 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-14T10:30:02.971 [Plugin] Initializing RTP plugin state... 2026-05-14T10:30:02.971 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-14T10:30:02.971 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎13‎-‎2026 12:29:59 Last Perf:‎05‎-‎13‎-‎2026 12:29:59 First RTP Scan:‎05‎-‎13‎-‎2026 12:30:05 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:406 Misses:2857 BM Queue:0,182,0 Proc:0,182,0 File:0,102,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:73526 Pending:0 RegSize:281830 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:103275966 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:41882 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:311002 TotalHits:109813 InstanceCacheInserts:2394 InstanceCacheUpdates:0 InstanceCacheDeletes:2027 InstanceCacheHits:127 InstanceCacheMisses:131757 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (218/202) Success: 202, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-14T10:30:02.971 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{704C583B-3E5C-4186-8445-88690A7DFF0B} 2026-05-14T10:30:02.971 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-14T10:30:02.971 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{34CA79F5-FE8C-48EF-B98D-77AFFDCBB31E} removed 2026-05-14T10:30:02.987 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6FB8416C-3F90-40A0-AD41-EA9D529A4401}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6FB8416C-3F90-40A0-AD41-EA9D529A4401}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-14T10:30:02.987 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-14T10:30:02.987 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-14T10:30:02.987 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-14T10:30:02.987 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-14T10:30:02.987 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-14-2026 10:30:02 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-14-2026 10:30:02 2026-05-14T10:30:02.987 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-14T10:30:02.987 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-14T10:30:02.987 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-14T10:30:02.987 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-14T10:30:02.987 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-14T10:30:02.987 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-14T10:30:02.987 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-14T10:30:02.987 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-14T10:30:02.987 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-14T10:30:02.987 MdCoreSvc is supported in this platform and OS Signature updated on 05-14-2026 10:30:02 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.610.0 AV Signature Version: 1.449.610.0 ************************************************************ 2026-05-14T10:30:02.987 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-14T10:30:02.987 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\A2C6AA35-C575-44BB-9AB1-78350B48CE6075c.1dce38c992f4edd 2026-05-14T10:30:03.018 Process scan (postsignatureupdatescan) started. Signature updated via MicrosoftUpdateServer on 05-14-2026 10:30:03 ************************************************************ 2026-05-14T10:30:03.049 Job Notification: Process exited from job (3128) 2026-05-14T10:30:03.049 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-14T10:30:03.049 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-14T10:30:03.049 Job Notification: Process exited from job (2888) 2026-05-14T10:30:03.049 Job Notification: Process exited from job (3912) 2026-05-14T10:30:03.065 Job Notification: Process exited from job (4888) 2026-05-14T10:30:03.221 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-14T10:30:03.221 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-14T10:30:03.221 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-14T10:30:03.221 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-14T10:30:03.221 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-14T10:30:03.237 [Engine] Engine 00007FFFF2148020 no longer in use. Number of active engines: 1 2026-05-14T10:30:03.237 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-14T10:30:03.237 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-14T10:30:03.471 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-14T10:30:03.471 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-14T10:30:03.471 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-14T10:30:04.127 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 49018, Count: 6624, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-14T10:30:04.127 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 150, Count: 43, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_b5_1.MAI, EstimatedImpact: 0% 2026-05-14T10:30:04.127 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 136, Count: 13, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-14T10:30:04.127 ProcessImageName: php-cgi.exe, Pid: 2460, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 48% 2026-05-14T10:30:04.127 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68dfe744-8397-4b56-a271-82c5111a66ac.tmp, EstimatedImpact: 0% 2026-05-14T10:30:04.127 ProcessImageName: updater.exe, Pid: 4848, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1adb6fd5-006c-4a2a-ae37-e095538cc589.tmp, EstimatedImpact: 0% 2026-05-14T10:30:04.127 ProcessImageName: updater.exe, Pid: 1368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4a896c1-13f6-407a-a67a-3abec75fd2c8.tmp, EstimatedImpact: 0% 2026-05-14T10:30:04.127 ProcessImageName: updater.exe, Pid: 1468, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1cdb21b4-7b68-44f1-aaa1-f0fbe33746a0.tmp, EstimatedImpact: 0% 2026-05-14T10:30:04.127 ProcessImageName: updater.exe, Pid: 3112, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b140668-71ea-4f8e-a79e-022d560de77b.tmp, EstimatedImpact: 0% 2026-05-14T10:30:04.127 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\845f60e2-e037-4640-8d00-5f2d6105afa6.tmp, EstimatedImpact: 0% 2026-05-14T10:30:04.127 ProcessImageName: updater.exe, Pid: 1344, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4fcfeb0d-0dfe-4e7a-a2b5-f2f986daaaf4.tmp, EstimatedImpact: 0% 2026-05-14T10:30:04.127 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3b21490-582c-402b-ad67-60234aeb791e.tmp, EstimatedImpact: 0% 2026-05-14T10:30:04.127 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69c988b1-0c8f-42d1-ae16-f595aa9345a3.tmp, EstimatedImpact: 0% 2026-05-14T10:30:04.174 [Engine] RSIG_UNLOADENGINE, 00007FFFF2148020, err=0x0 2026-05-14T10:30:04.190 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6FB8416C-3F90-40A0-AD41-EA9D529A4401} removed 2026-05-14T10:30:07.268 Process scan (postsignatureupdatescan) completed. 2026-05-14T10:33:15.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T10:35:02.956 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-14T10:48:20.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T11:03:25.588 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T11:03:40.373 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\xampp\tmp\#sqla88_111_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #74809, FileId: 0x760000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T11:03:51.279 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\xampp\tmp\#sqla88_111_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #75259, FileId: 0x7a0000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T11:03:51.279 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\xampp\tmp\#sqla88_112_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #75260, FileId: 0x450000000164e5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T11:15:35.429 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75365, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T11:15:35.429 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75367, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T11:15:45.438 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75372, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T11:15:45.454 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75376, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T11:18:30.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T11:33:35.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T11:48:40.598 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T12:03:45.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T12:15:35.028 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75497, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T12:15:35.028 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75499, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T12:15:45.032 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75504, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T12:15:45.032 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75505, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T12:15:45.032 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75506, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T12:18:50.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T12:30:02.945 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 44943, Count: 6395, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-14T12:30:02.945 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-14T12:30:02.945 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 15, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_111_3.MAI, EstimatedImpact: 0% 2026-05-14T12:30:02.945 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d966f29-a09d-4c6f-b691-3531836c9074.tmp, EstimatedImpact: 0% 2026-05-14T12:30:02.945 ProcessImageName: updater.exe, Pid: 2232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87ac524b-d9a4-41d4-b873-50cfb109b0ce.tmp, EstimatedImpact: 0% 2026-05-14T12:33:55.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T12:49:00.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T13:04:05.585 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T13:15:33.872 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75599, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T13:15:33.887 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75601, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T13:15:43.875 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75606, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T13:15:43.891 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75608, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T13:19:10.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T13:34:15.585 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T13:49:20.591 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T14:04:25.585 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T14:15:33.780 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75735, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T14:15:33.795 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75737, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T14:15:43.794 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75742, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T14:15:43.794 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75744, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T14:15:43.965 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75748, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T14:15:43.965 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75750, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T14:19:30.601 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T14:30:02.944 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 44958, Count: 6396, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-14T14:30:02.944 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-14T14:30:02.944 ProcessImageName: updater.exe, Pid: 1924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce27350-afaf-4fbc-b253-9763b1685292.tmp, EstimatedImpact: 0% 2026-05-14T14:30:02.944 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 15, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_111_3.MAI, EstimatedImpact: 0% 2026-05-14T14:30:02.944 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d966f29-a09d-4c6f-b691-3531836c9074.tmp, EstimatedImpact: 0% 2026-05-14T14:30:02.944 ProcessImageName: updater.exe, Pid: 4904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abaf403e-8622-4ef6-9267-d8064c5677fa.tmp, EstimatedImpact: 0% 2026-05-14T14:30:02.944 ProcessImageName: updater.exe, Pid: 2232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87ac524b-d9a4-41d4-b873-50cfb109b0ce.tmp, EstimatedImpact: 0% 2026-05-14T14:34:35.585 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T14:49:40.585 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T15:04:45.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T15:11:36.536 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\xampp\tmp\#sqla88_11b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #75888, FileId: 0x530000000164e5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T15:11:37.084 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\xampp\tmp\#sqla88_11b_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #75892, FileId: 0x540000000164e5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T15:15:34.632 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75909, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T15:15:34.632 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75911, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T15:15:44.640 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75916, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T15:15:44.656 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75919, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T15:19:50.585 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T15:34:55.585 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T15:50:00.588 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T16:05:05.593 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T16:15:33.344 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76014, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T16:15:33.359 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76016, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T16:15:43.352 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76020, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T16:15:43.368 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76022, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T16:15:43.368 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76023, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T16:20:10.598 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T16:30:02.959 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 45034, Count: 6407, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-14T16:30:02.959 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-14T16:30:02.959 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 45, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_111_3.MAI, EstimatedImpact: 0% 2026-05-14T16:30:02.959 ProcessImageName: updater.exe, Pid: 1924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce27350-afaf-4fbc-b253-9763b1685292.tmp, EstimatedImpact: 0% 2026-05-14T16:30:02.959 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d966f29-a09d-4c6f-b691-3531836c9074.tmp, EstimatedImpact: 0% 2026-05-14T16:30:02.959 ProcessImageName: updater.exe, Pid: 5104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4d332ce0-d943-4d12-8ef7-2c03f01ea062.tmp, EstimatedImpact: 0% 2026-05-14T16:30:02.959 ProcessImageName: updater.exe, Pid: 4904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abaf403e-8622-4ef6-9267-d8064c5677fa.tmp, EstimatedImpact: 0% 2026-05-14T16:30:02.959 ProcessImageName: updater.exe, Pid: 2232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87ac524b-d9a4-41d4-b873-50cfb109b0ce.tmp, EstimatedImpact: 0% 2026-05-14T16:30:02.959 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916c2d83-9480-4fea-8f9d-4f3430f40ca7.tmp, EstimatedImpact: 0% 2026-05-14T16:35:15.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T16:50:20.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T17:05:25.584 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T17:15:34.908 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76122, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T17:15:34.908 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76124, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T17:15:44.912 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76128, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T17:15:44.912 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76130, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T17:15:44.927 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76132, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T17:15:44.927 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76134, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T17:20:30.596 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T17:35:35.584 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T17:50:40.596 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T18:05:45.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T18:15:34.722 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76232, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T18:15:34.738 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76234, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T18:15:44.735 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76238, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T18:15:44.751 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76241, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T18:20:50.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T18:30:02.969 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 45079, Count: 6411, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-14T18:30:02.969 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-14T18:30:02.969 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 45, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_111_3.MAI, EstimatedImpact: 0% 2026-05-14T18:30:02.969 ProcessImageName: updater.exe, Pid: 1924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce27350-afaf-4fbc-b253-9763b1685292.tmp, EstimatedImpact: 0% 2026-05-14T18:30:02.969 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d966f29-a09d-4c6f-b691-3531836c9074.tmp, EstimatedImpact: 0% 2026-05-14T18:30:02.969 ProcessImageName: updater.exe, Pid: 5104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4d332ce0-d943-4d12-8ef7-2c03f01ea062.tmp, EstimatedImpact: 0% 2026-05-14T18:30:02.969 ProcessImageName: updater.exe, Pid: 4904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abaf403e-8622-4ef6-9267-d8064c5677fa.tmp, EstimatedImpact: 0% 2026-05-14T18:30:02.969 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8afddb36-273f-477f-bde1-d85f9687a62c.tmp, EstimatedImpact: 0% 2026-05-14T18:30:02.969 ProcessImageName: updater.exe, Pid: 4452, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c793b864-a13d-40cb-a27e-985753c02306.tmp, EstimatedImpact: 0% 2026-05-14T18:30:02.969 ProcessImageName: updater.exe, Pid: 2232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87ac524b-d9a4-41d4-b873-50cfb109b0ce.tmp, EstimatedImpact: 0% 2026-05-14T18:30:02.969 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916c2d83-9480-4fea-8f9d-4f3430f40ca7.tmp, EstimatedImpact: 0% 2026-05-14T18:35:55.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T18:51:00.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T19:04:14.784 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sqla88_128_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #76328, FileId: 0x5e0000000164e5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T19:06:05.584 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T19:15:33.780 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76352, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T19:15:33.796 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76354, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T19:15:43.789 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76358, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T19:15:43.805 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76360, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T19:15:43.961 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76364, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T19:15:43.961 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76366, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T19:21:10.584 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T19:36:15.598 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T19:51:20.593 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T20:06:25.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T20:15:33.583 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76474, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T20:15:33.599 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76476, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T20:15:43.597 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76480, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T20:15:43.613 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76482, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T20:15:43.613 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76484, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T20:21:30.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T20:30:02.968 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 45079, Count: 6412, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-14T20:30:02.968 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 75, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_111_3.MAI, EstimatedImpact: 0% 2026-05-14T20:30:02.968 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-14T20:30:02.968 ProcessImageName: updater.exe, Pid: 4768, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09ae5a87-f265-44d2-a63b-4965d9d2e6dc.tmp, EstimatedImpact: 0% 2026-05-14T20:30:02.968 ProcessImageName: updater.exe, Pid: 1924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce27350-afaf-4fbc-b253-9763b1685292.tmp, EstimatedImpact: 0% 2026-05-14T20:30:02.968 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d966f29-a09d-4c6f-b691-3531836c9074.tmp, EstimatedImpact: 0% 2026-05-14T20:30:02.968 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8afddb36-273f-477f-bde1-d85f9687a62c.tmp, EstimatedImpact: 0% 2026-05-14T20:30:02.968 ProcessImageName: updater.exe, Pid: 4452, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c793b864-a13d-40cb-a27e-985753c02306.tmp, EstimatedImpact: 0% 2026-05-14T20:30:02.968 ProcessImageName: updater.exe, Pid: 5104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4d332ce0-d943-4d12-8ef7-2c03f01ea062.tmp, EstimatedImpact: 0% 2026-05-14T20:30:02.968 ProcessImageName: updater.exe, Pid: 2232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87ac524b-d9a4-41d4-b873-50cfb109b0ce.tmp, EstimatedImpact: 0% 2026-05-14T20:30:02.968 ProcessImageName: updater.exe, Pid: 4904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abaf403e-8622-4ef6-9267-d8064c5677fa.tmp, EstimatedImpact: 0% 2026-05-14T20:30:02.968 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916c2d83-9480-4fea-8f9d-4f3430f40ca7.tmp, EstimatedImpact: 0% 2026-05-14T20:30:02.968 ProcessImageName: updater.exe, Pid: 1020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1619749e-f571-4e0e-9c34-5529edb9540e.tmp, EstimatedImpact: 0% 2026-05-14T20:36:35.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T20:51:40.596 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T21:06:45.591 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T21:15:32.605 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76582, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T21:15:32.621 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76584, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T21:15:42.619 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76588, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T21:15:42.635 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76590, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T21:21:50.591 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T21:36:55.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T21:48:14.733 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sqla88_131_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #76650, FileId: 0x1dbb000000014d2c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T21:48:15.546 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sqla88_131_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #76658, FileId: 0x1dbd000000014d2c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T21:52:00.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T22:07:05.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T22:15:32.456 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76701, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T22:15:32.471 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76703, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T22:15:42.464 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76707, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T22:15:42.479 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76709, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T22:15:42.479 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76712, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T22:22:10.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T22:30:02.977 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 45125, Count: 6416, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-14T22:30:02.977 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 90, Count: 25, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_111_3.MAI, EstimatedImpact: 0% 2026-05-14T22:30:02.977 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-14T22:30:02.977 ProcessImageName: updater.exe, Pid: 4768, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09ae5a87-f265-44d2-a63b-4965d9d2e6dc.tmp, EstimatedImpact: 0% 2026-05-14T22:30:02.977 ProcessImageName: updater.exe, Pid: 1924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce27350-afaf-4fbc-b253-9763b1685292.tmp, EstimatedImpact: 0% 2026-05-14T22:30:02.977 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d966f29-a09d-4c6f-b691-3531836c9074.tmp, EstimatedImpact: 0% 2026-05-14T22:30:02.977 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8afddb36-273f-477f-bde1-d85f9687a62c.tmp, EstimatedImpact: 0% 2026-05-14T22:30:02.977 ProcessImageName: updater.exe, Pid: 4452, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c793b864-a13d-40cb-a27e-985753c02306.tmp, EstimatedImpact: 0% 2026-05-14T22:30:02.977 ProcessImageName: updater.exe, Pid: 5104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4d332ce0-d943-4d12-8ef7-2c03f01ea062.tmp, EstimatedImpact: 0% 2026-05-14T22:30:02.977 ProcessImageName: updater.exe, Pid: 2232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87ac524b-d9a4-41d4-b873-50cfb109b0ce.tmp, EstimatedImpact: 0% 2026-05-14T22:30:02.977 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916c2d83-9480-4fea-8f9d-4f3430f40ca7.tmp, EstimatedImpact: 0% 2026-05-14T22:30:02.977 ProcessImageName: updater.exe, Pid: 4904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abaf403e-8622-4ef6-9267-d8064c5677fa.tmp, EstimatedImpact: 0% 2026-05-14T22:30:02.977 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b583ec1-b167-4800-9541-920888d6abfb.tmp, EstimatedImpact: 0% 2026-05-14T22:30:02.977 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b9e412c2-1387-486d-a2b8-677c35d88380.tmp, EstimatedImpact: 0% 2026-05-14T22:30:02.977 ProcessImageName: updater.exe, Pid: 1020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1619749e-f571-4e0e-9c34-5529edb9540e.tmp, EstimatedImpact: 0% 2026-05-14T22:37:15.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T22:52:20.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T23:07:25.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T23:15:35.310 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76851, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T23:15:35.326 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76853, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T23:15:45.324 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76857, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T23:15:45.340 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76859, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-14T23:22:30.588 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T23:37:35.588 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-14T23:52:40.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 2026-05-14T23:54:32.187 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-14T23:54:32.202 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-14T23:54:32.202 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-14T23:54:32.202 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-14T23:54:32.202 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-14T23:54:32.202 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-14T23:54:32.202 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-14T23:54:32.202 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-14T23:54:32.202 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-14T23:54:32.202 MdCoreSvc is supported in this platform and OS 2026-05-14T23:54:32.690 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-14T23:54:32.690 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-14T23:54:32.690 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-15T00:07:45.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T00:15:34.869 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76981, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T00:15:34.869 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76984, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T00:15:47.119 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76990, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T00:15:47.244 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76992, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T00:16:07.005 ReportLowfi(c:\program files (x86)\google\chrome\application\148.0.7778.168\installer\chrmstp.exe, 0x437a0835) from 0x0006b6bd6566d2d9 Internal signature match:subtype=Lowfi, sigseq=0x000005550240CBF2, sigsha=e39a25e9b19899abbd79ec872fd8aeabe27e140d, cached=false, source=0, resourceid=0xef6e20ba 2026-05-15T00:16:07.677 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Windows\SystemTemp\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #77293, FileId: 0xb00000001b7cb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T00:16:07.786 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Windows\SystemTemp\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #77297, FileId: 0xb00000001b7cb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T00:16:09.491 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #77300, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T00:16:09.506 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #77302, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T00:16:19.504 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #77306, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T00:16:19.504 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #77308, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T00:16:19.682 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #77312, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T00:16:19.682 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #77314, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T00:22:50.592 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T00:30:02.977 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 45125, Count: 6416, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\10\19\anunt-oficial-inspectoratul-scolar-judetean-mures%E2%80%BC%EF%B8%8F\5f6da6a72ce303646ac6c242d4df4ce8.html, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 7728, Count: 14, MaxTime: 5046, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping4424_1711568064\148.0.7778.168_chrome_installer_uncompressed.exe, EstimatedImpact: 15% 2026-05-15T00:30:02.977 ProcessImageName: 148.0.7778.168_chrome_installer_uncompressed.exe, Pid: 4972, TotalTime: 233, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping4424_1711568064\CR_2B4B9.tmp\setup.exe, EstimatedImpact: 73% 2026-05-15T00:30:02.977 ProcessImageName: setup.exe, Pid: 4460, TotalTime: 169, Count: 10, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 25% 2026-05-15T00:30:02.977 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 90, Count: 25, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_111_3.MAI, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 4768, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09ae5a87-f265-44d2-a63b-4965d9d2e6dc.tmp, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 1924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce27350-afaf-4fbc-b253-9763b1685292.tmp, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d966f29-a09d-4c6f-b691-3531836c9074.tmp, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8afddb36-273f-477f-bde1-d85f9687a62c.tmp, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 4452, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c793b864-a13d-40cb-a27e-985753c02306.tmp, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5b47acc-ac00-4cb2-8ef6-f8c79bcc7dd5.tmp, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 2232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87ac524b-d9a4-41d4-b873-50cfb109b0ce.tmp, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 5104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4d332ce0-d943-4d12-8ef7-2c03f01ea062.tmp, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916c2d83-9480-4fea-8f9d-4f3430f40ca7.tmp, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 4904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abaf403e-8622-4ef6-9267-d8064c5677fa.tmp, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b583ec1-b167-4800-9541-920888d6abfb.tmp, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 1020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1619749e-f571-4e0e-9c34-5529edb9540e.tmp, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b9e412c2-1387-486d-a2b8-677c35d88380.tmp, EstimatedImpact: 0% 2026-05-15T00:30:02.977 ProcessImageName: updater.exe, Pid: 4756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_4424_1920693199\decoded_xz, EstimatedImpact: 2% 2026-05-15T00:37:55.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T00:53:00.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T01:08:05.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T01:15:34.649 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #77413, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:15:34.664 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #77415, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:15:44.668 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #77419, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:15:44.668 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #77421, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:23:10.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T01:38:15.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T01:42:42.223 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sqla88_135_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77512, FileId: 0x3e80000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:50:32.219 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sqla88_136_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77528, FileId: 0x3ec0000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:50:41.041 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sqla88_137_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77583, FileId: 0x3f10000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:50:41.581 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sqla88_137_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77598, FileId: 0x3f30000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:50:41.659 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sqla88_137_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77602, FileId: 0x3f40000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:50:41.691 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sqla88_137_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77605, FileId: 0x3f50000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:50:41.706 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sqla88_137_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77608, FileId: 0x3f60000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:50:41.737 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sqla88_137_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77611, FileId: 0x3f70000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:50:41.847 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sqla88_137_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77617, FileId: 0x3f90000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:50:41.878 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sqla88_137_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77620, FileId: 0x3fa0000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:50:41.941 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sqla88_137_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77626, FileId: 0x3fc0000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:50:42.464 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sqla88_137_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77630, FileId: 0x3fd0000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:50:43.375 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sqla88_137_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77636, FileId: 0x3ff0000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:50:43.406 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\xampp\tmp\#sqla88_137_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77639, FileId: 0x4000000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:50:43.688 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sqla88_137_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77669, FileId: 0x40a0000000162b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T01:53:20.595 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T02:08:25.584 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T02:15:33.586 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #77810, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T02:23:30.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T02:30:02.987 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51948, Count: 6929, MaxTime: 953, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 7728, Count: 14, MaxTime: 5046, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping4424_1711568064\148.0.7778.168_chrome_installer_uncompressed.exe, EstimatedImpact: 15% 2026-05-15T02:30:02.987 ProcessImageName: 148.0.7778.168_chrome_installer_uncompressed.exe, Pid: 4972, TotalTime: 233, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping4424_1711568064\CR_2B4B9.tmp\setup.exe, EstimatedImpact: 73% 2026-05-15T02:30:02.987 ProcessImageName: setup.exe, Pid: 4460, TotalTime: 169, Count: 10, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 25% 2026-05-15T02:30:02.987 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 150, Count: 108, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_111_3.MAI, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 4768, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09ae5a87-f265-44d2-a63b-4965d9d2e6dc.tmp, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 1924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce27350-afaf-4fbc-b253-9763b1685292.tmp, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d966f29-a09d-4c6f-b691-3531836c9074.tmp, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 5104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4d332ce0-d943-4d12-8ef7-2c03f01ea062.tmp, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5b47acc-ac00-4cb2-8ef6-f8c79bcc7dd5.tmp, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 4756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_4424_1920693199\decoded_xz, EstimatedImpact: 2% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b9e412c2-1387-486d-a2b8-677c35d88380.tmp, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 4904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abaf403e-8622-4ef6-9267-d8064c5677fa.tmp, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 4452, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c793b864-a13d-40cb-a27e-985753c02306.tmp, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8afddb36-273f-477f-bde1-d85f9687a62c.tmp, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 3864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b12fb8ac-5e30-4264-a051-7f5cb146b167.tmp, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 2232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87ac524b-d9a4-41d4-b873-50cfb109b0ce.tmp, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916c2d83-9480-4fea-8f9d-4f3430f40ca7.tmp, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b583ec1-b167-4800-9541-920888d6abfb.tmp, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 1020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1619749e-f571-4e0e-9c34-5529edb9540e.tmp, EstimatedImpact: 0% 2026-05-15T02:30:02.987 ProcessImageName: updater.exe, Pid: 820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c92c4f7-fb9a-41ee-8711-68b18da2ab99.tmp, EstimatedImpact: 0% 2026-05-15T02:38:35.581 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T02:53:40.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T03:08:45.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T03:23:50.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T03:26:14.375 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sqla88_140_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #77962, FileId: 0x860000000164e8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T03:38:55.592 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T03:45:25.804 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:AA581F45-4DF4-4D4A-8446-AD94A3A74E4D, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-15T03:45:25.804 Scheduled scan with Id AA581F45-4DF4-4D4A-8446-AD94A3A74E4D configured CPU priority: normal (LowCpuPriority: 0) 2026-05-15T03:45:25.804 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-15T03:45:25.804 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-15T03:45:25.804 [SFC] System file cache build is not needed (already completed) 2026-05-15T03:45:38.300 Engine:Triggered AR EMS scan 2026-05-15T03:45:38.300 Engine:EMS scan for process: lsass pid: 600, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.315 Engine:EMS scan for process: svchost pid: 680, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.315 Engine:EMS scan for process: svchost pid: 736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.331 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.347 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.362 Engine:EMS scan for process: svchost pid: 936, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.362 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.378 Engine:EMS scan for process: svchost pid: 992, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.393 Engine:EMS scan for process: svchost pid: 352, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.409 Engine:EMS scan for process: svchost pid: 776, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.425 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.425 Engine:EMS scan for process: svchost pid: 1452, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.440 Engine:EMS scan for process: svchost pid: 2052, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.440 Engine:EMS scan for process: svchost pid: 2200, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.456 Engine:EMS scan for process: svchost pid: 2224, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.472 Engine:EMS scan for process: svchost pid: 2628, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.472 Engine:EMS scan for process: svchost pid: 1736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:38.472 Engine:EMS scan for process: svchost pid: 4828, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-15T03:45:56.551 QuickScan:ScanID:AA581F45-4DF4-4D4A-8446-AD94A3A74E4D: Quick scan finished with error 0 2026-05-15T03:45:56.567 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-15T03:45:57.078 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-15T03:45:57.078 [RTP] Duplicating the current plugin configuration object... 2026-05-15T03:45:57.078 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-15T03:45:57.078 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-15T03:45:57.078 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-15T03:45:57.078 [RTP] No config change detected. Not updating plugin configuration. 2026-05-15T03:45:57.078 [RTP] No config changes found. No configuration switch. 2026-05-15T03:45:57.078 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-15T03:54:00.592 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T04:09:05.581 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T04:24:10.581 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T04:30:03.001 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 52070, Count: 6940, MaxTime: 953, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 7728, Count: 14, MaxTime: 5046, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping4424_1711568064\148.0.7778.168_chrome_installer_uncompressed.exe, EstimatedImpact: 15% 2026-05-15T04:30:03.001 ProcessImageName: 148.0.7778.168_chrome_installer_uncompressed.exe, Pid: 4972, TotalTime: 233, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping4424_1711568064\CR_2B4B9.tmp\setup.exe, EstimatedImpact: 73% 2026-05-15T04:30:03.001 ProcessImageName: setup.exe, Pid: 4460, TotalTime: 169, Count: 10, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 25% 2026-05-15T04:30:03.001 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 165, Count: 117, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_111_3.MAI, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 1924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce27350-afaf-4fbc-b253-9763b1685292.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 4768, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09ae5a87-f265-44d2-a63b-4965d9d2e6dc.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d966f29-a09d-4c6f-b691-3531836c9074.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 5104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4d332ce0-d943-4d12-8ef7-2c03f01ea062.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8afddb36-273f-477f-bde1-d85f9687a62c.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 4452, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c793b864-a13d-40cb-a27e-985753c02306.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5b47acc-ac00-4cb2-8ef6-f8c79bcc7dd5.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 1020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1619749e-f571-4e0e-9c34-5529edb9540e.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c92c4f7-fb9a-41ee-8711-68b18da2ab99.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b9e412c2-1387-486d-a2b8-677c35d88380.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 4904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abaf403e-8622-4ef6-9267-d8064c5677fa.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 3864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b12fb8ac-5e30-4264-a051-7f5cb146b167.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 2232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87ac524b-d9a4-41d4-b873-50cfb109b0ce.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916c2d83-9480-4fea-8f9d-4f3430f40ca7.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 1860, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91ae33d9-0162-4c74-b018-1bc8ea43f839.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 4756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_4424_1920693199\decoded_xz, EstimatedImpact: 2% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b583ec1-b167-4800-9541-920888d6abfb.tmp, EstimatedImpact: 0% 2026-05-15T04:30:03.001 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cddc686-2849-4b8d-9042-b35af0abb764.tmp, EstimatedImpact: 0% 2026-05-15T04:39:15.596 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T04:54:20.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T04:57:45.154 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sqla88_14b_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #78284, FileId: 0x1dce000000014d2c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T04:57:46.934 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sqla88_14b_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #78326, FileId: 0x1ddc000000014d2c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T05:09:25.596 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T05:15:33.556 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #78404, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T05:24:30.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T05:26:40.861 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sqla88_14e_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #78450, FileId: 0x930000000164e8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T05:26:42.358 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sqla88_14e_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #78483, FileId: 0x9e0000000164e8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T05:26:42.686 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sqla88_14e_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #78519, FileId: 0xaa0000000164e8, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T05:39:35.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T05:54:40.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T06:09:45.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T06:24:50.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T06:30:03.011 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 52070, Count: 6942, MaxTime: 953, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 7728, Count: 14, MaxTime: 5046, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping4424_1711568064\148.0.7778.168_chrome_installer_uncompressed.exe, EstimatedImpact: 15% 2026-05-15T06:30:03.011 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 375, Count: 260, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_111_3.MAI, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: 148.0.7778.168_chrome_installer_uncompressed.exe, Pid: 4972, TotalTime: 233, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping4424_1711568064\CR_2B4B9.tmp\setup.exe, EstimatedImpact: 73% 2026-05-15T06:30:03.011 ProcessImageName: setup.exe, Pid: 4460, TotalTime: 169, Count: 10, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 25% 2026-05-15T06:30:03.011 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 90, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 4768, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09ae5a87-f265-44d2-a63b-4965d9d2e6dc.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 2296, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee861b16-c94c-4728-a969-1ae4019e6d89.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 1924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce27350-afaf-4fbc-b253-9763b1685292.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d966f29-a09d-4c6f-b691-3531836c9074.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 5104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4d332ce0-d943-4d12-8ef7-2c03f01ea062.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b583ec1-b167-4800-9541-920888d6abfb.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8afddb36-273f-477f-bde1-d85f9687a62c.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5b47acc-ac00-4cb2-8ef6-f8c79bcc7dd5.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 4452, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c793b864-a13d-40cb-a27e-985753c02306.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c92c4f7-fb9a-41ee-8711-68b18da2ab99.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 3864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b12fb8ac-5e30-4264-a051-7f5cb146b167.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 4904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abaf403e-8622-4ef6-9267-d8064c5677fa.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cddc686-2849-4b8d-9042-b35af0abb764.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 2864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cbc24cb6-0d42-44c4-b351-685240b6c63b.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 2232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87ac524b-d9a4-41d4-b873-50cfb109b0ce.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b9e412c2-1387-486d-a2b8-677c35d88380.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 4756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_4424_1920693199\decoded_xz, EstimatedImpact: 2% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916c2d83-9480-4fea-8f9d-4f3430f40ca7.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 1860, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91ae33d9-0162-4c74-b018-1bc8ea43f839.tmp, EstimatedImpact: 0% 2026-05-15T06:30:03.011 ProcessImageName: updater.exe, Pid: 1020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1619749e-f571-4e0e-9c34-5529edb9540e.tmp, EstimatedImpact: 0% 2026-05-15T06:39:55.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T06:55:00.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T07:10:05.593 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T07:15:44.298 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #78763, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T07:25:10.592 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T07:40:15.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T07:55:20.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T08:10:25.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T08:25:30.585 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T08:30:03.026 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 52070, Count: 6942, MaxTime: 953, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 7728, Count: 14, MaxTime: 5046, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping4424_1711568064\148.0.7778.168_chrome_installer_uncompressed.exe, EstimatedImpact: 15% 2026-05-15T08:30:03.026 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 375, Count: 260, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_111_3.MAI, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: 148.0.7778.168_chrome_installer_uncompressed.exe, Pid: 4972, TotalTime: 233, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping4424_1711568064\CR_2B4B9.tmp\setup.exe, EstimatedImpact: 73% 2026-05-15T08:30:03.026 ProcessImageName: setup.exe, Pid: 4460, TotalTime: 169, Count: 10, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 25% 2026-05-15T08:30:03.026 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 90, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 4768, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09ae5a87-f265-44d2-a63b-4965d9d2e6dc.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 2296, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee861b16-c94c-4728-a969-1ae4019e6d89.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 1924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce27350-afaf-4fbc-b253-9763b1685292.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d966f29-a09d-4c6f-b691-3531836c9074.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 5104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4d332ce0-d943-4d12-8ef7-2c03f01ea062.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b9e412c2-1387-486d-a2b8-677c35d88380.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 4756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_4424_1920693199\decoded_xz, EstimatedImpact: 2% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 4984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b5b47acc-ac00-4cb2-8ef6-f8c79bcc7dd5.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eff72ce2-2e81-4462-a493-eeede25064d0.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 4452, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c793b864-a13d-40cb-a27e-985753c02306.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 4904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abaf403e-8622-4ef6-9267-d8064c5677fa.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 3864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b12fb8ac-5e30-4264-a051-7f5cb146b167.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 4540, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8afddb36-273f-477f-bde1-d85f9687a62c.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 2864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cbc24cb6-0d42-44c4-b351-685240b6c63b.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 2232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\87ac524b-d9a4-41d4-b873-50cfb109b0ce.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\916c2d83-9480-4fea-8f9d-4f3430f40ca7.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 1860, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\91ae33d9-0162-4c74-b018-1bc8ea43f839.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8cddc686-2849-4b8d-9042-b35af0abb764.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 1620, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb7f2010-5d09-48d8-9ea9-a94999a732f6.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b583ec1-b167-4800-9541-920888d6abfb.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 1020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1619749e-f571-4e0e-9c34-5529edb9540e.tmp, EstimatedImpact: 0% 2026-05-15T08:30:03.026 ProcessImageName: updater.exe, Pid: 820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c92c4f7-fb9a-41ee-8711-68b18da2ab99.tmp, EstimatedImpact: 0% 2026-05-15T08:40:35.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T08:55:40.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T09:10:45.590 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T09:15:46.122 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #79212, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T09:25:50.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T09:40:55.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T09:56:00.594 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T10:11:05.588 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T10:26:10.588 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T10:29:20.590 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-15T10:29:20.622 Job Notification: New process added to job (612) 2026-05-15T10:29:20.622 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-15T10:29:20.622 Aggressive catchup quick scan threshold: 242348274537 / 25920000000000 2026-05-15T10:29:20.622 Job Notification: New process added to job (3896) 2026-05-15T10:29:20.637 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:612] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3896]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-15T10:29:20.715 Job Notification: New process added to job (1776) 2026-05-15T10:29:20.715 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-15T10:29:20.715 Job Notification: New process added to job (728) 2026-05-15T10:29:20.746 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:1776] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:728]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-15T10:29:21.137 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-15T10:29:21.184 [RTP] Duplicating the current plugin configuration object... 2026-05-15T10:29:21.184 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-15T10:29:21.184 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-15T10:29:21.184 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-15T10:29:21.184 [RTP] No config change detected. Not updating plugin configuration. 2026-05-15T10:29:21.184 [RTP] No config changes found. No configuration switch. 2026-05-15T10:29:21.184 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-15T10:29:21.496 Job Notification: New process added to job (1088) 2026-05-15T10:29:21.496 Task(GetDeviceTicket -AccessKey 1B5C8671-FF28-F9E8-C367-476569C0E538 ) launched as network service 2026-05-15T10:29:22.059 Job Notification: Process exited from job (1088) 2026-05-15T10:29:23.126 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-15T10:29:23.126 [Cloud] Start of cloud request. Passive mode: 0 2026-05-15T10:29:23.126 [Cloud] Queued cloud request. 2026-05-15T10:29:23.126 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-15T10:29:23.126 [Cloud] Dequeued cloud request. 2026-05-15T10:29:23.126 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-15T10:29:23.126 [Cloud] Start of cloud request. Passive mode: 0 2026-05-15T10:29:23.126 [Cloud] Queued cloud request. 2026-05-15T10:29:23.126 [Cloud] Dequeued cloud request. 2026-05-15T10:29:23.126 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-15T10:29:23.126 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-15T10:29:23.423 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-15T10:29:23.423 [Cloud] End of cloud request. 2026-05-15T10:29:23.423 [Cloud] End of cloud request. 2026-05-15T10:29:23.626 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-15T10:29:25.064 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\A8504792-DCAE-493A-B581-FB3AD7C3929513b4.1dce455b261f4d5 2026-05-15T10:29:25.111 Verifying engine and signature files (source: 0) ... 2026-05-15T10:29:25.142 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DD7E7F7B-B4A8-45F0-A680-7823B6FFACD3}\mpengine.dll] due to PPL. 2026-05-15T10:29:25.142 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DD7E7F7B-B4A8-45F0-A680-7823B6FFACD3}\mpasbase.vdm] (file in cache) 2026-05-15T10:29:25.142 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DD7E7F7B-B4A8-45F0-A680-7823B6FFACD3}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-15T10:29:25.158 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DD7E7F7B-B4A8-45F0-A680-7823B6FFACD3}\mpasdlta.vdm] 2026-05-15T10:29:25.158 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DD7E7F7B-B4A8-45F0-A680-7823B6FFACD3}\mpavbase.vdm] (file in cache) 2026-05-15T10:29:25.158 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DD7E7F7B-B4A8-45F0-A680-7823B6FFACD3}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-15T10:29:25.173 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DD7E7F7B-B4A8-45F0-A680-7823B6FFACD3}\mpavdlta.vdm] 2026-05-15T10:29:25.298 [Engine] IsHybridMode: 0 2026-05-15T10:29:25.298 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-15T10:29:25.330 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-FC4D0AFF74AF6711F9DB402340C7826D0FA7827D.bin): 0x00000002 2026-05-15T10:29:25.345 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-FC4D0AFF74AF6711F9DB402340C7826D0FA7827D.bin) 2026-05-15T10:29:25.345 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-15T10:29:25.345 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-15T10:29:25.345 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-15T10:29:25.345 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-15T10:29:34.118 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-15T10:29:34.118 [AutoExclusion] Applied roles from cache. 2026-05-15T10:29:34.118 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-15T10:29:34.118 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFFF5878020, lRefCount: 5, hr=0 2026-05-15T10:29:34.118 [Engine] New active engine 00007FFFF2148020 replacing engine 00007FFFF5878020. Number of active engines: 2 2026-05-15T10:29:34.134 EngineInit:Global ASOC is enabled 2026-05-15T10:29:34.134 EngineInit:ASOO is enabled for developer volumes 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-15T10:29:34.150 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-15T10:29:34.150 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-15T10:29:34.165 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-15T10:29:34.165 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-15T10:29:34.165 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-15T10:29:34.165 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-15T10:29:34.165 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-15T10:29:34.165 [Plugin] Initializing RTP plugin state... 2026-05-15T10:29:34.165 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-15T10:29:34.165 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎14‎-‎2026 12:30:03 Last Perf:‎05‎-‎14‎-‎2026 12:30:02 First RTP Scan:‎05‎-‎14‎-‎2026 12:30:23 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:398 Misses:3033 BM Queue:0,80,0 Proc:0,39,0 File:0,80,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:79474 Pending:0 RegSize:281830 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:109148490 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:41584 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:314843 TotalHits:141821 InstanceCacheInserts:2825 InstanceCacheUpdates:0 InstanceCacheDeletes:2268 InstanceCacheHits:179 InstanceCacheMisses:133552 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (242/204) Success: 204, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-15T10:29:34.165 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DD7E7F7B-B4A8-45F0-A680-7823B6FFACD3} 2026-05-15T10:29:34.165 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-15T10:29:34.165 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0595ACD9-B3BC-4655-8FC9-7F7610FA89C9} removed 2026-05-15T10:29:34.165 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{704C583B-3E5C-4186-8445-88690A7DFF0B}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{704C583B-3E5C-4186-8445-88690A7DFF0B}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-15T10:29:34.165 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-15T10:29:34.165 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-15T10:29:34.165 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-15T10:29:34.165 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-15T10:29:34.165 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-15-2026 10:29:34 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-15-2026 10:29:34 2026-05-15T10:29:34.165 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-15T10:29:34.165 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-15T10:29:34.165 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-15T10:29:34.165 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-15T10:29:34.165 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-15T10:29:34.165 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-15T10:29:34.165 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-15T10:29:34.165 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-15T10:29:34.165 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-15T10:29:34.165 MdCoreSvc is supported in this platform and OS Signature updated on 05-15-2026 10:29:34 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.627.0 AV Signature Version: 1.449.627.0 ************************************************************ 2026-05-15T10:29:34.165 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-15T10:29:34.165 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\A8504792-DCAE-493A-B581-FB3AD7C3929513b4.1dce455b261f4d5 2026-05-15T10:29:34.181 Process scan (postsignatureupdatescan) started. 2026-05-15T10:29:34.228 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-15T10:29:34.228 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 05-15-2026 10:29:34 ************************************************************ 2026-05-15T10:29:34.259 Job Notification: Process exited from job (1776) 2026-05-15T10:29:34.259 Job Notification: Process exited from job (612) 2026-05-15T10:29:34.259 Job Notification: Process exited from job (3896) 2026-05-15T10:29:34.259 Job Notification: Process exited from job (728) 2026-05-15T10:29:34.431 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-15T10:29:34.431 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-15T10:29:34.431 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-15T10:29:34.431 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-15T10:29:34.431 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-15T10:29:34.431 [Engine] Engine 00007FFFF5878020 no longer in use. Number of active engines: 1 2026-05-15T10:29:34.431 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-15T10:29:34.431 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-15T10:29:34.665 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-15T10:29:34.665 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-15T10:29:34.665 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-15T10:29:35.150 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 52737, Count: 6992, MaxTime: 953, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-15T10:29:35.150 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 7728, Count: 14, MaxTime: 5046, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping4424_1711568064\148.0.7778.168_chrome_installer_uncompressed.exe, EstimatedImpact: 15% 2026-05-15T10:29:35.150 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 405, Count: 266, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_111_3.MAI, EstimatedImpact: 0% 2026-05-15T10:29:35.150 ProcessImageName: 148.0.7778.168_chrome_installer_uncompressed.exe, Pid: 4972, TotalTime: 233, Count: 3, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping4424_1711568064\CR_2B4B9.tmp\setup.exe, EstimatedImpact: 73% 2026-05-15T10:29:35.150 ProcessImageName: setup.exe, Pid: 4460, TotalTime: 169, Count: 10, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 25% 2026-05-15T10:29:35.150 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 167, Count: 13, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\PenIMC_v0400.dll, EstimatedImpact: 0% 2026-05-15T10:29:35.150 ProcessImageName: updater.exe, Pid: 3056, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\73d9a026-29fd-4e8d-a81f-23b8131e5978.tmp, EstimatedImpact: 0% 2026-05-15T10:29:35.150 ProcessImageName: updater.exe, Pid: 4768, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09ae5a87-f265-44d2-a63b-4965d9d2e6dc.tmp, EstimatedImpact: 0% 2026-05-15T10:29:35.150 ProcessImageName: updater.exe, Pid: 1924, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ce27350-afaf-4fbc-b253-9763b1685292.tmp, EstimatedImpact: 0% 2026-05-15T10:29:35.150 ProcessImageName: updater.exe, Pid: 2296, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee861b16-c94c-4728-a969-1ae4019e6d89.tmp, EstimatedImpact: 0% 2026-05-15T10:29:35.150 ProcessImageName: updater.exe, Pid: 4792, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d966f29-a09d-4c6f-b691-3531836c9074.tmp, EstimatedImpact: 0% 2026-05-15T10:29:35.150 ProcessImageName: updater.exe, Pid: 5104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4d332ce0-d943-4d12-8ef7-2c03f01ea062.tmp, EstimatedImpact: 0% 2026-05-15T10:29:35.150 ProcessImageName: updater.exe, Pid: 1608, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b583ec1-b167-4800-9541-920888d6abfb.tmp, EstimatedImpact: 0% 2026-05-15T10:29:35.197 [Engine] RSIG_UNLOADENGINE, 00007FFFF5878020, err=0x0 2026-05-15T10:29:35.197 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{704C583B-3E5C-4186-8445-88690A7DFF0B} removed 2026-05-15T10:29:36.603 Job Notification: Process exited from job (3144) 2026-05-15T10:29:38.431 Process scan (postsignatureupdatescan) completed. 2026-05-15T10:34:34.139 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-15T10:41:15.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T10:56:20.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T11:11:25.578 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T11:15:34.855 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #79654, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T11:15:34.855 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #79656, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T11:15:44.869 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #79660, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T11:15:44.884 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #79662, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T11:26:30.581 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T11:41:35.581 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T11:48:47.776 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\xampp\tmp\#sqla88_164_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #80935, FileId: 0x1400000001b73e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T11:48:47.776 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #80936, FileId: 0xa1b00000001a239, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T11:48:58.386 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #81383, FileId: 0xa1c00000001a239, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T11:48:58.480 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\xampp\tmp\#sqla88_164_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #81389, FileId: 0xa1d00000001a239, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T11:48:58.495 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\xampp\tmp\#sqla88_164_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #81392, FileId: 0xa1e00000001a239, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T11:56:40.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T12:11:45.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T12:15:34.180 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81453, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T12:15:34.195 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81455, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T12:15:44.195 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81459, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T12:15:44.211 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81461, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T12:15:44.211 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81463, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T12:26:50.590 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T12:29:34.121 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 43423, Count: 6290, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-05-15T12:29:34.121 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-15T12:29:34.121 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 15, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_1.MAD, EstimatedImpact: 0% 2026-05-15T12:29:34.121 ProcessImageName: updater.exe, Pid: 5040, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\550cb74f-ec5b-4eb7-bbda-ed329f9e02cf.tmp, EstimatedImpact: 0% 2026-05-15T12:29:34.121 ProcessImageName: updater.exe, Pid: 2376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db13094d-118c-49c1-87d4-be7b0e494227.tmp, EstimatedImpact: 0% 2026-05-15T12:41:55.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T12:57:00.590 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T13:12:05.578 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T13:15:34.534 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81562, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T13:15:34.550 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81564, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T13:15:44.538 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81568, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T13:15:44.538 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81570, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T13:15:44.553 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81572, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T13:15:44.553 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81574, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T13:27:10.578 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T13:42:15.588 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T13:57:20.578 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T14:12:25.577 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T14:15:34.059 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81711, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T14:15:34.075 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81713, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T14:15:44.073 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81717, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T14:15:44.089 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81719, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T14:15:44.089 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81721, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T14:27:30.577 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T14:29:34.136 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 43453, Count: 6293, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-05-15T14:29:34.136 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-15T14:29:34.136 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 15, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_1.MAD, EstimatedImpact: 0% 2026-05-15T14:29:34.136 ProcessImageName: updater.exe, Pid: 5040, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\550cb74f-ec5b-4eb7-bbda-ed329f9e02cf.tmp, EstimatedImpact: 0% 2026-05-15T14:29:34.136 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99bb4c38-05cc-44c6-b3ab-ffd3ffa82610.tmp, EstimatedImpact: 0% 2026-05-15T14:29:34.136 ProcessImageName: updater.exe, Pid: 2376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db13094d-118c-49c1-87d4-be7b0e494227.tmp, EstimatedImpact: 0% 2026-05-15T14:29:34.136 ProcessImageName: updater.exe, Pid: 1080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fa88152-3573-4622-a2e5-6d3bf91d62f7.tmp, EstimatedImpact: 0% 2026-05-15T14:42:35.593 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T14:57:40.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T15:11:58.830 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\xampp\tmp\#sqla88_174_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #81826, FileId: 0x1d00000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:11:59.426 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\xampp\tmp\#sqla88_174_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #81830, FileId: 0x1e00000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:12:45.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T15:15:33.726 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81861, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:15:33.741 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81863, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:15:43.729 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81867, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:15:43.729 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81869, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:15:43.901 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81873, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:15:43.901 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81875, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:27:50.592 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T15:42:55.591 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T15:43:09.645 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\xampp\tmp\#sqla88_179_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #81929, FileId: 0x2200000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:10.192 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\xampp\tmp\#sqla88_179_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #81933, FileId: 0x2300000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:26.004 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #81987, FileId: 0x2800000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:26.472 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #81999, FileId: 0x2900000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:26.504 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82002, FileId: 0x2a00000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:26.597 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82006, FileId: 0x2b00000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:26.629 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82009, FileId: 0x2c00000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:26.645 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82012, FileId: 0x2d00000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:26.676 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82015, FileId: 0x2e00000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:26.707 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82018, FileId: 0x2f00000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:26.738 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82021, FileId: 0x3000000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:26.770 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82024, FileId: 0x3100000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:26.785 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82027, FileId: 0x3200000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:26.816 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82030, FileId: 0x3300000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:27.384 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82034, FileId: 0x3400000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:27.835 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82037, FileId: 0x3500000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.279 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82040, FileId: 0x3600000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.311 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82043, FileId: 0x3700000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.342 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82046, FileId: 0x3800000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.358 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82049, FileId: 0x3900000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.373 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82052, FileId: 0x3a00000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.389 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82055, FileId: 0x3b00000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.420 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82058, FileId: 0x3c00000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.436 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82061, FileId: 0x3d00000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.483 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82064, FileId: 0x3e00000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.514 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82067, FileId: 0x3f00000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.545 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82070, FileId: 0x4000000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.561 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82073, FileId: 0x4100000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.592 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82076, FileId: 0x4200000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.608 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82079, FileId: 0x4300000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:28.639 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82082, FileId: 0x4400000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:43:29.045 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17a_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82095, FileId: 0x4500000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:49:19.165 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82145, FileId: 0x4900000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:49:19.719 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sqla88_17b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82149, FileId: 0x4a00000001b6cc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T15:58:00.591 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T16:13:05.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T16:15:34.787 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82205, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T16:15:34.797 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82207, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T16:15:44.796 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82211, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T16:15:44.796 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82213, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T16:15:44.811 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82215, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T16:28:10.590 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T16:29:34.141 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 47981, Count: 6681, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-15T16:29:34.141 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 60, Count: 82, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_1.MAD, EstimatedImpact: 0% 2026-05-15T16:29:34.141 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-15T16:29:34.141 ProcessImageName: updater.exe, Pid: 4856, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0036c3cc-420d-4c59-9913-9e770c9e0392.tmp, EstimatedImpact: 0% 2026-05-15T16:29:34.141 ProcessImageName: updater.exe, Pid: 5040, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\550cb74f-ec5b-4eb7-bbda-ed329f9e02cf.tmp, EstimatedImpact: 0% 2026-05-15T16:29:34.141 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0101d75f-84bd-41e9-b1e7-1b623c95e9fe.tmp, EstimatedImpact: 0% 2026-05-15T16:29:34.141 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99bb4c38-05cc-44c6-b3ab-ffd3ffa82610.tmp, EstimatedImpact: 0% 2026-05-15T16:29:34.141 ProcessImageName: updater.exe, Pid: 2376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db13094d-118c-49c1-87d4-be7b0e494227.tmp, EstimatedImpact: 0% 2026-05-15T16:29:34.141 ProcessImageName: updater.exe, Pid: 1080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fa88152-3573-4622-a2e5-6d3bf91d62f7.tmp, EstimatedImpact: 0% 2026-05-15T16:43:15.590 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T16:58:20.577 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T17:13:25.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T17:15:36.016 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82313, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T17:15:36.016 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82315, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T17:15:46.037 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82322, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T17:15:46.037 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82325, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T17:28:30.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T17:43:35.578 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T17:58:40.576 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T18:13:45.576 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T18:15:33.355 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82582, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:15:33.371 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82584, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:15:43.359 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82588, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:15:43.359 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82590, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:15:43.374 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82592, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:15:43.374 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82594, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:28:50.588 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T18:29:34.150 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 50361, Count: 6822, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-15T18:29:34.150 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 60, Count: 82, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_1.MAD, EstimatedImpact: 0% 2026-05-15T18:29:34.150 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-15T18:29:34.150 ProcessImageName: updater.exe, Pid: 4856, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0036c3cc-420d-4c59-9913-9e770c9e0392.tmp, EstimatedImpact: 0% 2026-05-15T18:29:34.150 ProcessImageName: updater.exe, Pid: 5040, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\550cb74f-ec5b-4eb7-bbda-ed329f9e02cf.tmp, EstimatedImpact: 0% 2026-05-15T18:29:34.150 ProcessImageName: updater.exe, Pid: 4740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb7d1-a0ca-458c-b8d8-012fabde5d91.tmp, EstimatedImpact: 0% 2026-05-15T18:29:34.150 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0101d75f-84bd-41e9-b1e7-1b623c95e9fe.tmp, EstimatedImpact: 0% 2026-05-15T18:29:34.150 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99bb4c38-05cc-44c6-b3ab-ffd3ffa82610.tmp, EstimatedImpact: 0% 2026-05-15T18:29:34.150 ProcessImageName: updater.exe, Pid: 2376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db13094d-118c-49c1-87d4-be7b0e494227.tmp, EstimatedImpact: 0% 2026-05-15T18:29:34.150 ProcessImageName: updater.exe, Pid: 1804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45706e7f-1063-48cb-9656-e19d55039bc9.tmp, EstimatedImpact: 0% 2026-05-15T18:29:34.150 ProcessImageName: updater.exe, Pid: 1080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fa88152-3573-4622-a2e5-6d3bf91d62f7.tmp, EstimatedImpact: 0% 2026-05-15T18:37:33.045 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sqla88_292_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82642, FileId: 0x2800000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:37:33.623 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sqla88_292_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82646, FileId: 0x2900000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:43:55.576 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T18:47:43.049 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqla88_295_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82666, FileId: 0x2d00000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:43.596 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqla88_295_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82670, FileId: 0x2e00000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:45.655 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82674, FileId: 0x3300000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:45.702 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82677, FileId: 0x3400000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:45.749 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82680, FileId: 0x3500000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:45.780 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82683, FileId: 0x3600000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:45.796 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82686, FileId: 0x3700000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:45.858 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82692, FileId: 0x3900000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:45.905 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_10.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82695, FileId: 0x3a00000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:45.936 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_12.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82698, FileId: 0x3b00000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:45.983 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_16.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82704, FileId: 0x3d00000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:46.558 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_18.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82707, FileId: 0x3e00000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:47.137 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_1a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82710, FileId: 0x3f00000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:47.706 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_1c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82713, FileId: 0x4000000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:47.736 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_1e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82716, FileId: 0x4100000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:47.783 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_20.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82719, FileId: 0x4200000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:47:47.971 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sqla88_296_34.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #82745, FileId: 0x4a00000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T18:59:00.576 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T19:14:05.587 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T19:15:43.693 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82828, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T19:29:10.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T19:44:15.590 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T19:59:20.590 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T20:14:25.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T20:29:30.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T20:29:34.162 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 54213, Count: 7059, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-15T20:29:34.162 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 165, Count: 160, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_1.MAD, EstimatedImpact: 0% 2026-05-15T20:29:34.162 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-15T20:29:34.162 ProcessImageName: updater.exe, Pid: 4856, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0036c3cc-420d-4c59-9913-9e770c9e0392.tmp, EstimatedImpact: 0% 2026-05-15T20:29:34.162 ProcessImageName: updater.exe, Pid: 816, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcca50b2-869c-4140-a5d5-bec5597ffb8a.tmp, EstimatedImpact: 0% 2026-05-15T20:29:34.162 ProcessImageName: updater.exe, Pid: 5040, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\550cb74f-ec5b-4eb7-bbda-ed329f9e02cf.tmp, EstimatedImpact: 0% 2026-05-15T20:29:34.162 ProcessImageName: updater.exe, Pid: 4740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb7d1-a0ca-458c-b8d8-012fabde5d91.tmp, EstimatedImpact: 0% 2026-05-15T20:29:34.162 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0101d75f-84bd-41e9-b1e7-1b623c95e9fe.tmp, EstimatedImpact: 0% 2026-05-15T20:29:34.162 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77135607-8fa0-450d-9a66-6a5901bc8146.tmp, EstimatedImpact: 0% 2026-05-15T20:29:34.162 ProcessImageName: updater.exe, Pid: 2376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db13094d-118c-49c1-87d4-be7b0e494227.tmp, EstimatedImpact: 0% 2026-05-15T20:29:34.162 ProcessImageName: updater.exe, Pid: 1804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45706e7f-1063-48cb-9656-e19d55039bc9.tmp, EstimatedImpact: 0% 2026-05-15T20:29:34.162 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99bb4c38-05cc-44c6-b3ab-ffd3ffa82610.tmp, EstimatedImpact: 0% 2026-05-15T20:29:34.162 ProcessImageName: updater.exe, Pid: 1080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fa88152-3573-4622-a2e5-6d3bf91d62f7.tmp, EstimatedImpact: 0% 2026-05-15T20:44:35.575 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T20:59:40.589 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T21:14:45.584 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T21:15:32.340 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #83045, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T21:29:50.575 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T21:44:55.575 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T22:00:00.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T22:15:05.587 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T22:29:34.162 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 54213, Count: 7059, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-15T22:29:34.162 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 165, Count: 160, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_1.MAD, EstimatedImpact: 0% 2026-05-15T22:29:34.162 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-15T22:29:34.162 ProcessImageName: updater.exe, Pid: 4856, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0036c3cc-420d-4c59-9913-9e770c9e0392.tmp, EstimatedImpact: 0% 2026-05-15T22:29:34.162 ProcessImageName: updater.exe, Pid: 816, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcca50b2-869c-4140-a5d5-bec5597ffb8a.tmp, EstimatedImpact: 0% 2026-05-15T22:29:34.162 ProcessImageName: updater.exe, Pid: 5040, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\550cb74f-ec5b-4eb7-bbda-ed329f9e02cf.tmp, EstimatedImpact: 0% 2026-05-15T22:29:34.162 ProcessImageName: updater.exe, Pid: 1088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56d94abe-2ee9-4b75-8ace-9ffdef68eb12.tmp, EstimatedImpact: 0% 2026-05-15T22:29:34.162 ProcessImageName: updater.exe, Pid: 1080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fa88152-3573-4622-a2e5-6d3bf91d62f7.tmp, EstimatedImpact: 0% 2026-05-15T22:29:34.162 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99bb4c38-05cc-44c6-b3ab-ffd3ffa82610.tmp, EstimatedImpact: 0% 2026-05-15T22:29:34.162 ProcessImageName: updater.exe, Pid: 4740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb7d1-a0ca-458c-b8d8-012fabde5d91.tmp, EstimatedImpact: 0% 2026-05-15T22:29:34.162 ProcessImageName: updater.exe, Pid: 4664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1a6fa6d-2704-420b-b82b-14cf9a2b70c4.tmp, EstimatedImpact: 0% 2026-05-15T22:29:34.162 ProcessImageName: updater.exe, Pid: 2376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db13094d-118c-49c1-87d4-be7b0e494227.tmp, EstimatedImpact: 0% 2026-05-15T22:29:34.162 ProcessImageName: updater.exe, Pid: 1804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45706e7f-1063-48cb-9656-e19d55039bc9.tmp, EstimatedImpact: 0% 2026-05-15T22:29:34.162 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0101d75f-84bd-41e9-b1e7-1b623c95e9fe.tmp, EstimatedImpact: 0% 2026-05-15T22:29:34.162 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77135607-8fa0-450d-9a66-6a5901bc8146.tmp, EstimatedImpact: 0% 2026-05-15T22:30:10.576 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T22:45:15.587 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T23:00:20.575 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T23:15:25.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T23:15:45.111 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #83314, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-15T23:30:30.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-15T23:45:35.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T00:00:40.574 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T00:15:45.574 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T00:29:34.169 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 54213, Count: 7059, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 165, Count: 160, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_1.MAD, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: updater.exe, Pid: 4856, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0036c3cc-420d-4c59-9913-9e770c9e0392.tmp, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: updater.exe, Pid: 816, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcca50b2-869c-4140-a5d5-bec5597ffb8a.tmp, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: updater.exe, Pid: 5040, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\550cb74f-ec5b-4eb7-bbda-ed329f9e02cf.tmp, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0101d75f-84bd-41e9-b1e7-1b623c95e9fe.tmp, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77135607-8fa0-450d-9a66-6a5901bc8146.tmp, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: updater.exe, Pid: 4740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb7d1-a0ca-458c-b8d8-012fabde5d91.tmp, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: updater.exe, Pid: 4664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1a6fa6d-2704-420b-b82b-14cf9a2b70c4.tmp, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e2001e-2e21-49e3-b13d-090627a25486.tmp, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99bb4c38-05cc-44c6-b3ab-ffd3ffa82610.tmp, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: updater.exe, Pid: 2376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db13094d-118c-49c1-87d4-be7b0e494227.tmp, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d472f2b-31f8-4533-941c-83665220be50.tmp, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: updater.exe, Pid: 1804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45706e7f-1063-48cb-9656-e19d55039bc9.tmp, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: updater.exe, Pid: 1088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56d94abe-2ee9-4b75-8ace-9ffdef68eb12.tmp, EstimatedImpact: 0% 2026-05-16T00:29:34.169 ProcessImageName: updater.exe, Pid: 1080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fa88152-3573-4622-a2e5-6d3bf91d62f7.tmp, EstimatedImpact: 0% 2026-05-16T00:30:50.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T00:45:55.574 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T01:01:00.574 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T01:09:34.360 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sqla88_4f1_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #83531, FileId: 0x6000000001b6db, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T01:16:05.574 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T01:31:10.578 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T01:46:15.577 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T02:01:20.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T02:15:35.287 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #83725, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T02:16:25.577 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T02:29:34.175 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 56270, Count: 7202, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 195, Count: 170, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_1.MAD, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 4856, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0036c3cc-420d-4c59-9913-9e770c9e0392.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 2836, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\534ef40f-beef-47b3-b567-7b88a7e863c5.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 816, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcca50b2-869c-4140-a5d5-bec5597ffb8a.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 5040, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\550cb74f-ec5b-4eb7-bbda-ed329f9e02cf.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77135607-8fa0-450d-9a66-6a5901bc8146.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99bb4c38-05cc-44c6-b3ab-ffd3ffa82610.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e2001e-2e21-49e3-b13d-090627a25486.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 4740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb7d1-a0ca-458c-b8d8-012fabde5d91.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 4664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1a6fa6d-2704-420b-b82b-14cf9a2b70c4.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0101d75f-84bd-41e9-b1e7-1b623c95e9fe.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 2376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db13094d-118c-49c1-87d4-be7b0e494227.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d472f2b-31f8-4533-941c-83665220be50.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 1804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45706e7f-1063-48cb-9656-e19d55039bc9.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 1088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56d94abe-2ee9-4b75-8ace-9ffdef68eb12.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 1080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fa88152-3573-4622-a2e5-6d3bf91d62f7.tmp, EstimatedImpact: 0% 2026-05-16T02:29:34.175 ProcessImageName: updater.exe, Pid: 948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f2855db-0ab3-48c2-8ef0-ed1dec7f64c2.tmp, EstimatedImpact: 0% 2026-05-16T02:31:30.573 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T02:46:35.576 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T03:01:40.576 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T03:16:45.575 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T03:31:50.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T03:45:25.790 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:4F0912B1-2BB8-4B57-AE0F-D35E1544E692, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-16T03:45:25.790 Scheduled scan with Id 4F0912B1-2BB8-4B57-AE0F-D35E1544E692 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-16T03:45:25.790 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-16T03:45:25.790 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-16T03:45:25.790 [SFC] System file cache build is not needed (already completed) 2026-05-16T03:45:36.985 Engine:Triggered AR EMS scan 2026-05-16T03:45:36.985 Engine:EMS scan for process: lsass pid: 600, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.001 Engine:EMS scan for process: svchost pid: 680, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.001 Engine:EMS scan for process: svchost pid: 736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.016 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.032 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.047 Engine:EMS scan for process: svchost pid: 936, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.047 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.063 Engine:EMS scan for process: svchost pid: 992, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.079 Engine:EMS scan for process: svchost pid: 352, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.079 Engine:EMS scan for process: svchost pid: 776, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.094 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.094 Engine:EMS scan for process: svchost pid: 1452, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.110 Engine:EMS scan for process: svchost pid: 2052, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.126 Engine:EMS scan for process: svchost pid: 2200, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.126 Engine:EMS scan for process: svchost pid: 2224, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.141 Engine:EMS scan for process: svchost pid: 2628, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.141 Engine:EMS scan for process: svchost pid: 1736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:37.157 Engine:EMS scan for process: svchost pid: 4828, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-16T03:45:50.376 QuickScan:ScanID:4F0912B1-2BB8-4B57-AE0F-D35E1544E692: Quick scan finished with error 0 2026-05-16T03:45:50.376 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-16T03:45:50.878 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-16T03:45:50.878 [RTP] Duplicating the current plugin configuration object... 2026-05-16T03:45:50.878 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-16T03:45:50.878 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-16T03:45:50.878 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-16T03:45:50.878 [RTP] No config change detected. Not updating plugin configuration. 2026-05-16T03:45:50.878 [RTP] No config changes found. No configuration switch. 2026-05-16T03:45:50.878 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-16T03:46:55.584 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T04:02:00.584 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T04:15:35.082 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #84089, FileId: 0xca0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T04:17:05.574 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T04:29:34.175 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 56270, Count: 7202, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 195, Count: 170, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_1.MAD, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 4856, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0036c3cc-420d-4c59-9913-9e770c9e0392.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 2836, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\534ef40f-beef-47b3-b567-7b88a7e863c5.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 816, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcca50b2-869c-4140-a5d5-bec5597ffb8a.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 5040, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\550cb74f-ec5b-4eb7-bbda-ed329f9e02cf.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a3c8b93-729e-4014-8581-2b9168705346.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77135607-8fa0-450d-9a66-6a5901bc8146.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 4740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb7d1-a0ca-458c-b8d8-012fabde5d91.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 4664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1a6fa6d-2704-420b-b82b-14cf9a2b70c4.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e2001e-2e21-49e3-b13d-090627a25486.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99bb4c38-05cc-44c6-b3ab-ffd3ffa82610.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0101d75f-84bd-41e9-b1e7-1b623c95e9fe.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 2376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db13094d-118c-49c1-87d4-be7b0e494227.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\176fd5d4-49e7-4d50-a4f2-99dce2336df5.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d472f2b-31f8-4533-941c-83665220be50.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 1804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45706e7f-1063-48cb-9656-e19d55039bc9.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 1088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56d94abe-2ee9-4b75-8ace-9ffdef68eb12.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 1080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fa88152-3573-4622-a2e5-6d3bf91d62f7.tmp, EstimatedImpact: 0% 2026-05-16T04:29:34.175 ProcessImageName: updater.exe, Pid: 948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f2855db-0ab3-48c2-8ef0-ed1dec7f64c2.tmp, EstimatedImpact: 0% 2026-05-16T04:32:10.574 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T04:47:15.573 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T05:02:20.573 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T05:17:25.573 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T05:32:30.588 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T05:47:35.572 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T06:02:40.587 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T06:15:44.408 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #84358, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T06:17:45.587 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T06:29:34.190 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 56270, Count: 7203, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 195, Count: 170, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_1.MAD, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 2836, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\534ef40f-beef-47b3-b567-7b88a7e863c5.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 5000, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e6cf0672-c1cd-4e61-bc23-030bf246280d.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 4856, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0036c3cc-420d-4c59-9913-9e770c9e0392.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 816, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcca50b2-869c-4140-a5d5-bec5597ffb8a.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 5040, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\550cb74f-ec5b-4eb7-bbda-ed329f9e02cf.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a3c8b93-729e-4014-8581-2b9168705346.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99bb4c38-05cc-44c6-b3ab-ffd3ffa82610.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e2001e-2e21-49e3-b13d-090627a25486.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 4740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb7d1-a0ca-458c-b8d8-012fabde5d91.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 4664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1a6fa6d-2704-420b-b82b-14cf9a2b70c4.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0101d75f-84bd-41e9-b1e7-1b623c95e9fe.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77135607-8fa0-450d-9a66-6a5901bc8146.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 2376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db13094d-118c-49c1-87d4-be7b0e494227.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 2348, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae01047e-988f-4a30-a9aa-714439ae3a46.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\176fd5d4-49e7-4d50-a4f2-99dce2336df5.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d472f2b-31f8-4533-941c-83665220be50.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 1804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45706e7f-1063-48cb-9656-e19d55039bc9.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 1088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56d94abe-2ee9-4b75-8ace-9ffdef68eb12.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 1080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fa88152-3573-4622-a2e5-6d3bf91d62f7.tmp, EstimatedImpact: 0% 2026-05-16T06:29:34.190 ProcessImageName: updater.exe, Pid: 948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f2855db-0ab3-48c2-8ef0-ed1dec7f64c2.tmp, EstimatedImpact: 0% 2026-05-16T06:32:50.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T06:47:55.586 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T07:03:00.575 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T07:18:05.572 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T07:33:10.572 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T07:48:15.585 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T08:03:20.572 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T08:15:43.878 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #84579, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T08:18:25.572 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T08:29:34.190 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 56270, Count: 7203, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 195, Count: 170, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_1.MAD, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 5000, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e6cf0672-c1cd-4e61-bc23-030bf246280d.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 4856, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0036c3cc-420d-4c59-9913-9e770c9e0392.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 2836, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\534ef40f-beef-47b3-b567-7b88a7e863c5.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 816, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcca50b2-869c-4140-a5d5-bec5597ffb8a.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 5040, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\550cb74f-ec5b-4eb7-bbda-ed329f9e02cf.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a3c8b93-729e-4014-8581-2b9168705346.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 4404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9805dd8c-acd2-40f7-98ff-1dc009537d96.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 4740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb7d1-a0ca-458c-b8d8-012fabde5d91.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 4664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1a6fa6d-2704-420b-b82b-14cf9a2b70c4.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 4624, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15dec396-ac83-47da-9736-9e1cb5fcee72.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e2001e-2e21-49e3-b13d-090627a25486.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\176fd5d4-49e7-4d50-a4f2-99dce2336df5.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0101d75f-84bd-41e9-b1e7-1b623c95e9fe.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77135607-8fa0-450d-9a66-6a5901bc8146.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99bb4c38-05cc-44c6-b3ab-ffd3ffa82610.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 2376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db13094d-118c-49c1-87d4-be7b0e494227.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 2348, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae01047e-988f-4a30-a9aa-714439ae3a46.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d472f2b-31f8-4533-941c-83665220be50.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 1804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45706e7f-1063-48cb-9656-e19d55039bc9.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 1088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56d94abe-2ee9-4b75-8ace-9ffdef68eb12.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 1080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fa88152-3573-4622-a2e5-6d3bf91d62f7.tmp, EstimatedImpact: 0% 2026-05-16T08:29:34.190 ProcessImageName: updater.exe, Pid: 948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f2855db-0ab3-48c2-8ef0-ed1dec7f64c2.tmp, EstimatedImpact: 0% 2026-05-16T08:33:30.584 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T08:48:35.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T09:03:40.572 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T09:18:45.571 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T09:33:50.571 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T09:48:55.571 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T09:57:39.820 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sqla88_509_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #85007, FileId: 0x1cce000000005de0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T10:04:00.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T10:19:05.581 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T10:29:20.582 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-16T10:29:20.597 Job Notification: New process added to job (396) 2026-05-16T10:29:20.613 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-16T10:29:20.613 Aggressive catchup quick scan threshold: 242348247016 / 25920000000000 2026-05-16T10:29:20.613 Job Notification: New process added to job (4732) 2026-05-16T10:29:20.660 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:396] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4732]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-16T10:29:20.706 Job Notification: New process added to job (820) 2026-05-16T10:29:20.722 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-16T10:29:20.722 Job Notification: New process added to job (3912) 2026-05-16T10:29:20.769 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:820] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3912]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-16T10:29:21.144 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-16T10:29:21.175 [RTP] Duplicating the current plugin configuration object... 2026-05-16T10:29:21.175 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-16T10:29:21.175 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-16T10:29:21.175 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-16T10:29:21.175 [RTP] No config change detected. Not updating plugin configuration. 2026-05-16T10:29:21.175 [RTP] No config changes found. No configuration switch. 2026-05-16T10:29:21.175 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-16T10:29:21.456 Job Notification: New process added to job (3820) 2026-05-16T10:29:21.456 Task(GetDeviceTicket -AccessKey 7D75A2F1-CB21-146D-F899-F8A777020560 ) launched as network service 2026-05-16T10:29:21.925 Job Notification: Process exited from job (3820) 2026-05-16T10:29:23.033 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-16T10:29:23.033 [Cloud] Start of cloud request. Passive mode: 0 2026-05-16T10:29:23.033 [Cloud] Queued cloud request. 2026-05-16T10:29:23.033 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-16T10:29:23.033 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-16T10:29:23.033 [Cloud] Start of cloud request. Passive mode: 0 2026-05-16T10:29:23.033 [Cloud] Queued cloud request. 2026-05-16T10:29:23.065 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 1ED6C70D-17F2-F5A8-92EF-B3A8BC871849) launched 2026-05-16T10:29:23.065 Job Notification: New process added to job (3796) 2026-05-16T10:29:23.065 Job Notification: New process added to job (4760) 2026-05-16T10:29:23.080 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3796] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4760]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-16T10:29:23.096 Job Notification: New process added to job (3968) 2026-05-16T10:29:23.111 Job Notification: Process exited from job (3796) 2026-05-16T10:29:23.127 Job Notification: Process exited from job (4760) 2026-05-16T10:29:23.127 [Cloud] Dequeued cloud request. 2026-05-16T10:29:23.127 [Cloud] Dequeued cloud request. 2026-05-16T10:29:23.127 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-16T10:29:23.127 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-16T10:29:23.346 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-16T10:29:23.346 [Cloud] End of cloud request. 2026-05-16T10:29:23.346 [Cloud] End of cloud request. 2026-05-16T10:29:23.533 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-16T10:29:25.059 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\675ABF47-31F0-4B28-BEEC-468268D82A2711ec.1dce51edcd09da5 2026-05-16T10:29:25.122 Verifying engine and signature files (source: 0) ... 2026-05-16T10:29:25.122 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{961B039F-0ECA-419B-AB1E-27D2332BE808}\mpengine.dll] due to PPL. 2026-05-16T10:29:25.122 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{961B039F-0ECA-419B-AB1E-27D2332BE808}\mpasbase.vdm] (file in cache) 2026-05-16T10:29:25.122 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{961B039F-0ECA-419B-AB1E-27D2332BE808}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-16T10:29:25.137 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{961B039F-0ECA-419B-AB1E-27D2332BE808}\mpasdlta.vdm] 2026-05-16T10:29:25.137 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{961B039F-0ECA-419B-AB1E-27D2332BE808}\mpavbase.vdm] (file in cache) 2026-05-16T10:29:25.137 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{961B039F-0ECA-419B-AB1E-27D2332BE808}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-16T10:29:25.153 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{961B039F-0ECA-419B-AB1E-27D2332BE808}\mpavdlta.vdm] 2026-05-16T10:29:25.278 [Engine] IsHybridMode: 0 2026-05-16T10:29:25.278 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-16T10:29:25.309 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-E670DE13B5283185606F6AA70EB07003E1F20C99.bin): 0x00000002 2026-05-16T10:29:25.309 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-E670DE13B5283185606F6AA70EB07003E1F20C99.bin) 2026-05-16T10:29:25.309 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-16T10:29:25.309 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-16T10:29:25.309 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-16T10:29:25.309 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-16T10:29:34.162 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-16T10:29:34.162 [AutoExclusion] Applied roles from cache. 2026-05-16T10:29:34.162 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-16T10:29:34.177 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFFF2148020, lRefCount: 5, hr=0 2026-05-16T10:29:34.177 [Engine] New active engine 00007FFFF5878020 replacing engine 00007FFFF2148020. Number of active engines: 2 2026-05-16T10:29:34.193 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 56891, Count: 7254, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-16T10:29:34.193 EngineInit:Global ASOC is enabled 2026-05-16T10:29:34.193 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 225, Count: 178, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_1.MAD, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 105, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 816, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcca50b2-869c-4140-a5d5-bec5597ffb8a.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 2836, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\534ef40f-beef-47b3-b567-7b88a7e863c5.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 5000, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e6cf0672-c1cd-4e61-bc23-030bf246280d.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 4856, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0036c3cc-420d-4c59-9913-9e770c9e0392.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 5040, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\550cb74f-ec5b-4eb7-bbda-ed329f9e02cf.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 EngineInit:ASOO is enabled for developer volumes 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99bb4c38-05cc-44c6-b3ab-ffd3ffa82610.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 4740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb7d1-a0ca-458c-b8d8-012fabde5d91.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 4664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1a6fa6d-2704-420b-b82b-14cf9a2b70c4.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 4624, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15dec396-ac83-47da-9736-9e1cb5fcee72.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0101d75f-84bd-41e9-b1e7-1b623c95e9fe.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a3c8b93-729e-4014-8581-2b9168705346.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 2376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db13094d-118c-49c1-87d4-be7b0e494227.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 2348, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae01047e-988f-4a30-a9aa-714439ae3a46.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 2304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3da010f9-5309-498d-90c7-7a81af700617.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\176fd5d4-49e7-4d50-a4f2-99dce2336df5.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d472f2b-31f8-4533-941c-83665220be50.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 1804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45706e7f-1063-48cb-9656-e19d55039bc9.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 4404, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9805dd8c-acd2-40f7-98ff-1dc009537d96.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 1384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\46cdfdea-b00e-4943-848b-d6925701cfd3.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 1088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56d94abe-2ee9-4b75-8ace-9ffdef68eb12.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 1080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fa88152-3573-4622-a2e5-6d3bf91d62f7.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f2855db-0ab3-48c2-8ef0-ed1dec7f64c2.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44e2001e-2e21-49e3-b13d-090627a25486.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.193 ProcessImageName: updater.exe, Pid: 4444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77135607-8fa0-450d-9a66-6a5901bc8146.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-16T10:29:34.208 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-16T10:29:34.208 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-16T10:29:34.224 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-16T10:29:34.224 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-16T10:29:34.224 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-16T10:29:34.224 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-16T10:29:34.224 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-16T10:29:34.224 [Plugin] Initializing RTP plugin state... 2026-05-16T10:29:34.224 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-16T10:29:34.224 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎15‎-‎2026 12:29:34 Last Perf:‎05‎-‎15‎-‎2026 12:29:34 First RTP Scan:‎05‎-‎15‎-‎2026 12:29:54 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:455 Misses:3086 BM Queue:0,43,0 Proc:0,39,0 File:0,43,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:85176 Pending:0 RegSize:281830 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:115131722 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:41730 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:320233 TotalHits:180253 InstanceCacheInserts:3210 InstanceCacheUpdates:0 InstanceCacheDeletes:2647 InstanceCacheHits:231 InstanceCacheMisses:135002 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (218/203) Success: 203, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-16T10:29:34.224 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{961B039F-0ECA-419B-AB1E-27D2332BE808} 2026-05-16T10:29:34.224 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-16T10:29:34.224 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DD7E7F7B-B4A8-45F0-A680-7823B6FFACD3}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DD7E7F7B-B4A8-45F0-A680-7823B6FFACD3}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-16T10:29:34.224 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F16C671E-458E-4E70-8C88-FD184EF97198} removed 2026-05-16T10:29:34.224 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-16T10:29:34.224 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-16T10:29:34.224 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-16T10:29:34.224 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-16T10:29:34.224 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-16-2026 10:29:34 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-16-2026 10:29:34 2026-05-16T10:29:34.224 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-16T10:29:34.224 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-16T10:29:34.224 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-16T10:29:34.224 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-16T10:29:34.224 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-16T10:29:34.224 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-16T10:29:34.224 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-16T10:29:34.224 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-16T10:29:34.224 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-16T10:29:34.224 MdCoreSvc is supported in this platform and OS Signature updated on 05-16-2026 10:29:34 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.644.0 AV Signature Version: 1.449.644.0 ************************************************************ 2026-05-16T10:29:34.224 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-16T10:29:34.224 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\675ABF47-31F0-4B28-BEEC-468268D82A2711ec.1dce51edcd09da5 2026-05-16T10:29:34.240 Process scan (postsignatureupdatescan) started. Signature updated via MicrosoftUpdateServer on 05-16-2026 10:29:34 ************************************************************ 2026-05-16T10:29:34.287 Job Notification: Process exited from job (820) 2026-05-16T10:29:34.302 Job Notification: Process exited from job (3912) 2026-05-16T10:29:34.302 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-16T10:29:34.302 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-16T10:29:34.302 Job Notification: Process exited from job (396) 2026-05-16T10:29:34.302 Job Notification: Process exited from job (4732) 2026-05-16T10:29:34.474 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-16T10:29:34.474 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-16T10:29:34.474 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-16T10:29:34.474 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-16T10:29:34.474 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-16T10:29:34.490 [Engine] Engine 00007FFFF2148020 no longer in use. Number of active engines: 1 2026-05-16T10:29:34.490 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-16T10:29:34.490 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-16T10:29:34.615 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 56891, Count: 7254, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-16T10:29:34.615 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 225, Count: 178, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_165_1.MAD, EstimatedImpact: 0% 2026-05-16T10:29:34.615 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 105, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-16T10:29:34.615 ProcessImageName: updater.exe, Pid: 816, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcca50b2-869c-4140-a5d5-bec5597ffb8a.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.615 ProcessImageName: updater.exe, Pid: 2836, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\534ef40f-beef-47b3-b567-7b88a7e863c5.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.615 ProcessImageName: updater.exe, Pid: 5000, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e6cf0672-c1cd-4e61-bc23-030bf246280d.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.615 ProcessImageName: updater.exe, Pid: 4856, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0036c3cc-420d-4c59-9913-9e770c9e0392.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.615 ProcessImageName: updater.exe, Pid: 5040, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\550cb74f-ec5b-4eb7-bbda-ed329f9e02cf.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.615 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99bb4c38-05cc-44c6-b3ab-ffd3ffa82610.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.615 ProcessImageName: updater.exe, Pid: 4740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d14bb7d1-a0ca-458c-b8d8-012fabde5d91.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.615 ProcessImageName: updater.exe, Pid: 4664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1a6fa6d-2704-420b-b82b-14cf9a2b70c4.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.615 ProcessImageName: updater.exe, Pid: 4624, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15dec396-ac83-47da-9736-9e1cb5fcee72.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.615 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0101d75f-84bd-41e9-b1e7-1b623c95e9fe.tmp, EstimatedImpact: 0% 2026-05-16T10:29:34.646 [Engine] RSIG_UNLOADENGINE, 00007FFFF2148020, err=0x0 2026-05-16T10:29:34.662 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DD7E7F7B-B4A8-45F0-A680-7823B6FFACD3} removed 2026-05-16T10:29:34.724 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-16T10:29:34.724 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-16T10:29:34.724 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-16T10:29:38.599 Process scan (postsignatureupdatescan) completed. 2026-05-16T10:34:10.571 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T10:34:34.200 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-16T10:49:15.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T11:04:20.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T11:15:33.966 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85395, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T11:15:33.966 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85397, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T11:15:43.974 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85401, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T11:15:43.974 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85403, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T11:15:44.183 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85407, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T11:15:44.183 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85409, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T11:19:25.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T11:34:30.585 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T11:49:35.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T12:04:40.584 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T12:06:25.319 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\xampp\tmp\#sqla88_531_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #86731, FileId: 0x42d400000000c748, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T12:06:35.612 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\xampp\tmp\#sqla88_531_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #87177, FileId: 0x42d500000000c748, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T12:13:55.741 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\xampp\tmp\#sqla88_532_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #87191, FileId: 0x42d900000000c748, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T12:13:56.241 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\xampp\tmp\#sqla88_532_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #87195, FileId: 0x42da00000000c748, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T12:15:34.062 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87206, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T12:15:34.077 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87208, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T12:15:44.076 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87212, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T12:15:44.091 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87215, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T12:19:45.570 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T12:29:34.180 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 45540, Count: 6421, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-16T12:29:34.180 ProcessImageName: updater.exe, Pid: 900, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-16T12:29:34.180 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-16T12:29:34.180 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23587d74-9175-4309-a234-a7820a30a69f.tmp, EstimatedImpact: 0% 2026-05-16T12:29:34.180 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 0, Count: 8, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_531_1.MAI, EstimatedImpact: 0% 2026-05-16T12:34:50.577 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T12:49:55.570 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T13:05:00.570 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T13:15:35.265 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87309, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T13:15:35.280 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87311, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T13:15:45.284 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87316, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T13:15:45.284 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87315, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T13:15:45.284 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87319, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T13:20:05.570 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T13:35:10.570 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T13:50:15.570 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T14:05:20.576 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T14:15:34.685 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87422, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T14:15:34.701 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87424, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T14:15:44.699 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87428, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T14:15:44.699 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87430, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T14:15:44.714 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87433, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T14:20:25.581 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T14:29:34.180 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 45540, Count: 6421, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-16T14:29:34.180 ProcessImageName: updater.exe, Pid: 900, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-16T14:29:34.180 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-16T14:29:34.180 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04ee8d39-59d3-44b0-bd13-9840d6ede7e3.tmp, EstimatedImpact: 0% 2026-05-16T14:29:34.180 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23587d74-9175-4309-a234-a7820a30a69f.tmp, EstimatedImpact: 0% 2026-05-16T14:29:34.180 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\61294943-1ffc-4ac9-a75f-1a55e72fbec6.tmp, EstimatedImpact: 0% 2026-05-16T14:29:34.180 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 0, Count: 8, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_531_1.MAI, EstimatedImpact: 0% 2026-05-16T14:35:30.570 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T14:50:35.570 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T15:05:40.569 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T15:15:33.434 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87533, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T15:15:33.449 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87535, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T15:15:43.443 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87539, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T15:15:43.458 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87541, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T15:20:45.584 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T15:35:50.574 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T15:50:55.573 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T16:06:00.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T16:15:33.772 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87645, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T16:15:33.788 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87647, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T16:15:43.775 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87651, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T16:15:43.775 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87653, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T16:15:43.791 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87655, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T16:15:43.791 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87657, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T16:21:05.569 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T16:29:34.179 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 46607, Count: 6490, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-16T16:29:34.179 ProcessImageName: updater.exe, Pid: 900, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-16T16:29:34.179 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-16T16:29:34.179 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04ee8d39-59d3-44b0-bd13-9840d6ede7e3.tmp, EstimatedImpact: 0% 2026-05-16T16:29:34.179 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23587d74-9175-4309-a234-a7820a30a69f.tmp, EstimatedImpact: 0% 2026-05-16T16:29:34.179 ProcessImageName: updater.exe, Pid: 3068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e89c65b-bc09-4bbc-82f1-2b085ac4108a.tmp, EstimatedImpact: 0% 2026-05-16T16:29:34.179 ProcessImageName: updater.exe, Pid: 2352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b69c06-034b-48b7-b440-6975323a0dc7.tmp, EstimatedImpact: 0% 2026-05-16T16:29:34.179 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\61294943-1ffc-4ac9-a75f-1a55e72fbec6.tmp, EstimatedImpact: 0% 2026-05-16T16:29:34.179 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 0, Count: 8, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_531_1.MAI, EstimatedImpact: 0% 2026-05-16T16:35:22.002 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\xampp\tmp\#sqla88_54b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #87687, FileId: 0x3a00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T16:35:22.601 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\xampp\tmp\#sqla88_54b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #87691, FileId: 0x3b00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T16:35:29.945 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\xampp\tmp\#sqla88_54c_a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #87698, FileId: 0x4000000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T16:36:10.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T16:51:15.583 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T17:06:20.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T17:15:34.871 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87761, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T17:15:34.871 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87763, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T17:15:44.879 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87767, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T17:15:44.879 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87769, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T17:15:45.035 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87773, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T17:15:45.050 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87775, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T17:21:25.576 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T17:36:30.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T17:51:35.569 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T18:06:40.570 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T18:15:32.707 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87873, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T18:15:32.722 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87875, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T18:15:42.710 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87879, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T18:15:42.726 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87881, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T18:21:45.575 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T18:29:34.189 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 46652, Count: 6496, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-16T18:29:34.189 ProcessImageName: updater.exe, Pid: 900, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-16T18:29:34.189 ProcessImageName: updater.exe, Pid: 4488, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d36767f7-d8b1-495a-b371-62bc55457b0e.tmp, EstimatedImpact: 0% 2026-05-16T18:29:34.189 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 30, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_54b_3.MAI, EstimatedImpact: 0% 2026-05-16T18:29:34.189 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-16T18:29:34.189 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04ee8d39-59d3-44b0-bd13-9840d6ede7e3.tmp, EstimatedImpact: 0% 2026-05-16T18:29:34.189 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23587d74-9175-4309-a234-a7820a30a69f.tmp, EstimatedImpact: 0% 2026-05-16T18:29:34.189 ProcessImageName: updater.exe, Pid: 3068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e89c65b-bc09-4bbc-82f1-2b085ac4108a.tmp, EstimatedImpact: 0% 2026-05-16T18:29:34.189 ProcessImageName: updater.exe, Pid: 2352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b69c06-034b-48b7-b440-6975323a0dc7.tmp, EstimatedImpact: 0% 2026-05-16T18:29:34.189 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\61294943-1ffc-4ac9-a75f-1a55e72fbec6.tmp, EstimatedImpact: 0% 2026-05-16T18:29:34.189 ProcessImageName: updater.exe, Pid: 864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b5cec8-4b13-4f72-b72b-142235eb3630.tmp, EstimatedImpact: 0% 2026-05-16T18:36:50.568 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T18:51:55.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T19:07:00.568 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T19:15:33.024 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87993, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T19:15:33.024 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87995, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T19:15:43.043 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87999, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T19:15:43.043 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88002, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T19:22:05.568 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T19:37:10.568 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T19:52:15.578 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T20:07:20.568 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T20:15:34.788 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88102, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:15:34.788 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88104, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:15:44.802 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88108, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:15:44.817 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88110, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:22:25.572 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T20:29:34.189 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 46652, Count: 6496, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-16T20:29:34.189 ProcessImageName: updater.exe, Pid: 900, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-16T20:29:34.189 ProcessImageName: updater.exe, Pid: 4488, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d36767f7-d8b1-495a-b371-62bc55457b0e.tmp, EstimatedImpact: 0% 2026-05-16T20:29:34.189 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 30, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_54b_3.MAI, EstimatedImpact: 0% 2026-05-16T20:29:34.189 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-16T20:29:34.189 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04ee8d39-59d3-44b0-bd13-9840d6ede7e3.tmp, EstimatedImpact: 0% 2026-05-16T20:29:34.189 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23587d74-9175-4309-a234-a7820a30a69f.tmp, EstimatedImpact: 0% 2026-05-16T20:29:34.189 ProcessImageName: updater.exe, Pid: 2516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9b6f594-897e-4e80-b070-5b5c2f83eef1.tmp, EstimatedImpact: 0% 2026-05-16T20:29:34.189 ProcessImageName: updater.exe, Pid: 2352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b69c06-034b-48b7-b440-6975323a0dc7.tmp, EstimatedImpact: 0% 2026-05-16T20:29:34.189 ProcessImageName: updater.exe, Pid: 4756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8590eb80-678b-48fe-ab5b-8846780178e9.tmp, EstimatedImpact: 0% 2026-05-16T20:29:34.189 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\61294943-1ffc-4ac9-a75f-1a55e72fbec6.tmp, EstimatedImpact: 0% 2026-05-16T20:29:34.189 ProcessImageName: updater.exe, Pid: 864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b5cec8-4b13-4f72-b72b-142235eb3630.tmp, EstimatedImpact: 0% 2026-05-16T20:29:34.189 ProcessImageName: updater.exe, Pid: 3068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e89c65b-bc09-4bbc-82f1-2b085ac4108a.tmp, EstimatedImpact: 0% 2026-05-16T20:37:30.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T20:52:35.568 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T20:53:52.055 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88249, FileId: 0x4b00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:52.180 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88256, FileId: 0x4d00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:52.211 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88259, FileId: 0x4e00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:52.242 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88262, FileId: 0x4f00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:52.289 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88265, FileId: 0x5000000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:52.336 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88268, FileId: 0x5100000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:52.352 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88271, FileId: 0x5200000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:52.367 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88274, FileId: 0x5300000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:52.414 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88277, FileId: 0x5400000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:53.046 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88281, FileId: 0x5500000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:53.622 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88284, FileId: 0x5600000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:54.188 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88287, FileId: 0x5700000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:54.203 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88290, FileId: 0x5800000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:54.235 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88293, FileId: 0x5900000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:54.250 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88296, FileId: 0x5a00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:54.266 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88299, FileId: 0x5b00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:54.281 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88302, FileId: 0x5c00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:54.375 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88311, FileId: 0x5f00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:54.406 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88314, FileId: 0x6000000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:54.422 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88317, FileId: 0x6100000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:54.453 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88320, FileId: 0x6200000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:54.485 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88323, FileId: 0x6300000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:54.500 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88326, FileId: 0x6400000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:54.531 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88329, FileId: 0x6500000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:54.926 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88342, FileId: 0x6600000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:55.301 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sqla88_559_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88351, FileId: 0x6700000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:59.411 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88394, FileId: 0x6e00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:59.442 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88397, FileId: 0x6f00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:59.474 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88400, FileId: 0x7000000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:59.505 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88403, FileId: 0x7100000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:59.520 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88406, FileId: 0x7200000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:59.552 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88409, FileId: 0x7300000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:59.583 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88412, FileId: 0x7400000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:59.614 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_10.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88415, FileId: 0x7500000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:59.630 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_12.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88418, FileId: 0x7600000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:59.661 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_14.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88421, FileId: 0x7700000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:53:59.677 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_16.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88424, FileId: 0x7800000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:54:00.207 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_18.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88427, FileId: 0x7900000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:54:00.720 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_1a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88430, FileId: 0x7a00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:54:01.268 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_1c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88433, FileId: 0x7b00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:54:01.300 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_1e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88436, FileId: 0x7c00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:54:01.331 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_20.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88439, FileId: 0x7d00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:54:01.347 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_22.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88442, FileId: 0x7e00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:54:01.362 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_24.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88445, FileId: 0x7f00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:54:01.378 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_26.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88448, FileId: 0x8000000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T20:54:01.690 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sqla88_55a_3e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #88478, FileId: 0x8a00000001b77c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T21:07:40.582 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T21:22:45.576 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T21:37:50.567 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T21:52:55.576 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T22:08:00.575 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T22:15:45.031 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88651, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-16T22:23:05.580 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T22:29:34.203 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 50374, Count: 6843, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-16T22:29:34.203 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 210, Count: 155, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_54b_3.MAI, EstimatedImpact: 0% 2026-05-16T22:29:34.203 ProcessImageName: updater.exe, Pid: 900, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-16T22:29:34.203 ProcessImageName: updater.exe, Pid: 4488, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d36767f7-d8b1-495a-b371-62bc55457b0e.tmp, EstimatedImpact: 0% 2026-05-16T22:29:34.203 ProcessImageName: updater.exe, Pid: 5116, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4530c4c-f52b-4bee-b55c-7caa371bce07.tmp, EstimatedImpact: 0% 2026-05-16T22:29:34.203 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-16T22:29:34.203 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04ee8d39-59d3-44b0-bd13-9840d6ede7e3.tmp, EstimatedImpact: 0% 2026-05-16T22:29:34.203 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23587d74-9175-4309-a234-a7820a30a69f.tmp, EstimatedImpact: 0% 2026-05-16T22:29:34.203 ProcessImageName: updater.exe, Pid: 3068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e89c65b-bc09-4bbc-82f1-2b085ac4108a.tmp, EstimatedImpact: 0% 2026-05-16T22:29:34.203 ProcessImageName: updater.exe, Pid: 2852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16605649-d833-40e9-9224-642fed5799ea.tmp, EstimatedImpact: 0% 2026-05-16T22:29:34.203 ProcessImageName: updater.exe, Pid: 4756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8590eb80-678b-48fe-ab5b-8846780178e9.tmp, EstimatedImpact: 0% 2026-05-16T22:29:34.203 ProcessImageName: updater.exe, Pid: 2516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9b6f594-897e-4e80-b070-5b5c2f83eef1.tmp, EstimatedImpact: 0% 2026-05-16T22:29:34.203 ProcessImageName: updater.exe, Pid: 2352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b69c06-034b-48b7-b440-6975323a0dc7.tmp, EstimatedImpact: 0% 2026-05-16T22:29:34.203 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\61294943-1ffc-4ac9-a75f-1a55e72fbec6.tmp, EstimatedImpact: 0% 2026-05-16T22:29:34.203 ProcessImageName: updater.exe, Pid: 864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b5cec8-4b13-4f72-b72b-142235eb3630.tmp, EstimatedImpact: 0% 2026-05-16T22:38:10.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T22:53:15.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T23:08:20.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T23:23:25.574 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T23:38:30.573 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-16T23:53:35.578 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T00:08:40.572 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T00:15:34.341 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88912, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T00:23:45.572 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T00:29:34.213 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51336, Count: 6898, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 240, Count: 160, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_54b_3.MAI, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: updater.exe, Pid: 900, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: updater.exe, Pid: 4488, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d36767f7-d8b1-495a-b371-62bc55457b0e.tmp, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: updater.exe, Pid: 5116, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4530c4c-f52b-4bee-b55c-7caa371bce07.tmp, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04ee8d39-59d3-44b0-bd13-9840d6ede7e3.tmp, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23587d74-9175-4309-a234-a7820a30a69f.tmp, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: updater.exe, Pid: 2516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9b6f594-897e-4e80-b070-5b5c2f83eef1.tmp, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d37333db-33e1-4863-af4d-c183fe5a826d.tmp, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: updater.exe, Pid: 4756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8590eb80-678b-48fe-ab5b-8846780178e9.tmp, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: updater.exe, Pid: 3068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e89c65b-bc09-4bbc-82f1-2b085ac4108a.tmp, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: updater.exe, Pid: 2852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16605649-d833-40e9-9224-642fed5799ea.tmp, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: updater.exe, Pid: 2352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b69c06-034b-48b7-b440-6975323a0dc7.tmp, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\61294943-1ffc-4ac9-a75f-1a55e72fbec6.tmp, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5508a54f-b777-42a5-94a4-eaf6635603da.tmp, EstimatedImpact: 0% 2026-05-17T00:29:34.213 ProcessImageName: updater.exe, Pid: 864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b5cec8-4b13-4f72-b72b-142235eb3630.tmp, EstimatedImpact: 0% 2026-05-17T00:38:50.566 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T00:53:55.572 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T01:09:00.571 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T01:24:05.566 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T01:39:10.570 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T01:54:15.570 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T02:09:20.566 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T02:15:33.223 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #89193, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T02:24:25.566 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T02:29:34.227 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51336, Count: 6898, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 240, Count: 160, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_54b_3.MAI, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 900, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 4488, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d36767f7-d8b1-495a-b371-62bc55457b0e.tmp, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 5116, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4530c4c-f52b-4bee-b55c-7caa371bce07.tmp, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04ee8d39-59d3-44b0-bd13-9840d6ede7e3.tmp, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 4324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2eb3a3ae-1a33-40cf-a45c-a25f8b24daaf.tmp, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23587d74-9175-4309-a234-a7820a30a69f.tmp, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 3068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e89c65b-bc09-4bbc-82f1-2b085ac4108a.tmp, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 4756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8590eb80-678b-48fe-ab5b-8846780178e9.tmp, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 2852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16605649-d833-40e9-9224-642fed5799ea.tmp, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 4668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\607b81a9-7802-412c-8158-a239a684da8e.tmp, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 2516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9b6f594-897e-4e80-b070-5b5c2f83eef1.tmp, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 2352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b69c06-034b-48b7-b440-6975323a0dc7.tmp, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\61294943-1ffc-4ac9-a75f-1a55e72fbec6.tmp, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d37333db-33e1-4863-af4d-c183fe5a826d.tmp, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5508a54f-b777-42a5-94a4-eaf6635603da.tmp, EstimatedImpact: 0% 2026-05-17T02:29:34.227 ProcessImageName: updater.exe, Pid: 864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b5cec8-4b13-4f72-b72b-142235eb3630.tmp, EstimatedImpact: 0% 2026-05-17T02:39:30.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T02:54:35.574 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T03:09:40.568 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T03:15:43.904 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #89326, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T03:24:45.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T03:39:50.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T03:45:25.797 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:EA7581EA-17FE-4798-81F4-D611502CA539, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-17T03:45:25.797 Scheduled scan with Id EA7581EA-17FE-4798-81F4-D611502CA539 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-17T03:45:25.797 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-17T03:45:25.797 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-17T03:45:25.797 [SFC] System file cache build is not needed (already completed) 2026-05-17T03:45:37.253 Engine:Triggered AR EMS scan 2026-05-17T03:45:37.253 Engine:EMS scan for process: lsass pid: 600, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.268 Engine:EMS scan for process: svchost pid: 680, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.284 Engine:EMS scan for process: svchost pid: 736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.284 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.300 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.315 Engine:EMS scan for process: svchost pid: 936, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.331 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.331 Engine:EMS scan for process: svchost pid: 992, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.346 Engine:EMS scan for process: svchost pid: 352, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.362 Engine:EMS scan for process: svchost pid: 776, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.362 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.378 Engine:EMS scan for process: svchost pid: 1452, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.378 Engine:EMS scan for process: svchost pid: 2052, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.393 Engine:EMS scan for process: svchost pid: 2200, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.409 Engine:EMS scan for process: svchost pid: 2224, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.409 Engine:EMS scan for process: svchost pid: 2628, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.425 Engine:EMS scan for process: svchost pid: 1736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:37.425 Engine:EMS scan for process: svchost pid: 4828, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-17T03:45:50.638 QuickScan:ScanID:EA7581EA-17FE-4798-81F4-D611502CA539: Quick scan finished with error 0 2026-05-17T03:45:50.638 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-17T03:45:51.147 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-17T03:45:51.147 [RTP] Duplicating the current plugin configuration object... 2026-05-17T03:45:51.147 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-17T03:45:51.147 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-17T03:45:51.147 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-17T03:45:51.147 [RTP] No config change detected. Not updating plugin configuration. 2026-05-17T03:45:51.147 [RTP] No config changes found. No configuration switch. 2026-05-17T03:45:51.147 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-17T03:54:55.567 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T04:10:00.577 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T04:25:05.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T04:29:34.237 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 53210, Count: 7007, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 240, Count: 164, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_54b_3.MAI, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 900, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 4488, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d36767f7-d8b1-495a-b371-62bc55457b0e.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b918aa05-d3db-4119-b566-76e6bdf59fd6.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 5116, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4530c4c-f52b-4bee-b55c-7caa371bce07.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04ee8d39-59d3-44b0-bd13-9840d6ede7e3.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 4756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8590eb80-678b-48fe-ab5b-8846780178e9.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 4324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2eb3a3ae-1a33-40cf-a45c-a25f8b24daaf.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 4668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\607b81a9-7802-412c-8158-a239a684da8e.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23587d74-9175-4309-a234-a7820a30a69f.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 4420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e67d7a63-6a6e-4b61-b896-6f47ccfcce2c.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 3068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e89c65b-bc09-4bbc-82f1-2b085ac4108a.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 2852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16605649-d833-40e9-9224-642fed5799ea.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 2516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9b6f594-897e-4e80-b070-5b5c2f83eef1.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 2352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b69c06-034b-48b7-b440-6975323a0dc7.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\61294943-1ffc-4ac9-a75f-1a55e72fbec6.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d37333db-33e1-4863-af4d-c183fe5a826d.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5508a54f-b777-42a5-94a4-eaf6635603da.tmp, EstimatedImpact: 0% 2026-05-17T04:29:34.237 ProcessImageName: updater.exe, Pid: 864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b5cec8-4b13-4f72-b72b-142235eb3630.tmp, EstimatedImpact: 0% 2026-05-17T04:40:10.571 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T04:55:15.566 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T05:10:20.566 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T05:15:34.666 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #89704, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T05:25:25.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T05:40:30.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T05:55:35.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T06:10:40.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T06:25:45.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T06:29:34.237 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 53210, Count: 7008, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 255, Count: 168, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_54b_3.MAI, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 900, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 4488, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d36767f7-d8b1-495a-b371-62bc55457b0e.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b918aa05-d3db-4119-b566-76e6bdf59fd6.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 5116, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4530c4c-f52b-4bee-b55c-7caa371bce07.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04ee8d39-59d3-44b0-bd13-9840d6ede7e3.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d37333db-33e1-4863-af4d-c183fe5a826d.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 1832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c9bcc41-6c58-4a52-9524-f5e7a79e11b1.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 4324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2eb3a3ae-1a33-40cf-a45c-a25f8b24daaf.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23587d74-9175-4309-a234-a7820a30a69f.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5508a54f-b777-42a5-94a4-eaf6635603da.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b5cec8-4b13-4f72-b72b-142235eb3630.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 3068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e89c65b-bc09-4bbc-82f1-2b085ac4108a.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 4756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8590eb80-678b-48fe-ab5b-8846780178e9.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 2852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16605649-d833-40e9-9224-642fed5799ea.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 4668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\607b81a9-7802-412c-8158-a239a684da8e.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 2516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9b6f594-897e-4e80-b070-5b5c2f83eef1.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 2352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b69c06-034b-48b7-b440-6975323a0dc7.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 2328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8011aa0-5349-46d6-9ade-aec1b2cb918b.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\61294943-1ffc-4ac9-a75f-1a55e72fbec6.tmp, EstimatedImpact: 0% 2026-05-17T06:29:34.237 ProcessImageName: updater.exe, Pid: 4420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e67d7a63-6a6e-4b61-b896-6f47ccfcce2c.tmp, EstimatedImpact: 0% 2026-05-17T06:40:50.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T06:55:55.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T07:11:00.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T07:15:34.818 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #89957, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T07:26:05.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T07:41:10.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T07:56:15.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T08:11:20.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T08:15:44.948 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #90120, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T08:26:25.566 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T08:29:34.236 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 53210, Count: 7008, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 255, Count: 168, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_54b_3.MAI, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 900, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 4488, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d36767f7-d8b1-495a-b371-62bc55457b0e.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b918aa05-d3db-4119-b566-76e6bdf59fd6.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 5116, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4530c4c-f52b-4bee-b55c-7caa371bce07.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 596, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32b9679c-5f4c-4ab8-84b6-d6288646f7b1.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04ee8d39-59d3-44b0-bd13-9840d6ede7e3.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 4648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a254f573-aa27-4029-b889-0c0f3fb5b819.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 4324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2eb3a3ae-1a33-40cf-a45c-a25f8b24daaf.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 3068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e89c65b-bc09-4bbc-82f1-2b085ac4108a.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23587d74-9175-4309-a234-a7820a30a69f.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 4420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e67d7a63-6a6e-4b61-b896-6f47ccfcce2c.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 4756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8590eb80-678b-48fe-ab5b-8846780178e9.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 2852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16605649-d833-40e9-9224-642fed5799ea.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 4668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\607b81a9-7802-412c-8158-a239a684da8e.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 2516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9b6f594-897e-4e80-b070-5b5c2f83eef1.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 2352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b69c06-034b-48b7-b440-6975323a0dc7.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 2328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8011aa0-5349-46d6-9ade-aec1b2cb918b.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\61294943-1ffc-4ac9-a75f-1a55e72fbec6.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d37333db-33e1-4863-af4d-c183fe5a826d.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 1832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c9bcc41-6c58-4a52-9524-f5e7a79e11b1.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5508a54f-b777-42a5-94a4-eaf6635603da.tmp, EstimatedImpact: 0% 2026-05-17T08:29:34.236 ProcessImageName: updater.exe, Pid: 864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b5cec8-4b13-4f72-b72b-142235eb3630.tmp, EstimatedImpact: 0% 2026-05-17T08:41:30.571 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T08:56:35.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T09:11:40.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T09:26:45.575 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T09:41:50.563 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T09:56:55.563 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T10:12:00.567 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T10:27:05.563 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T10:29:20.578 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-17T10:29:20.609 Job Notification: New process added to job (1536) 2026-05-17T10:29:20.609 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-17T10:29:20.609 Aggressive catchup quick scan threshold: 242348166502 / 25920000000000 2026-05-17T10:29:20.609 Job Notification: New process added to job (2992) 2026-05-17T10:29:20.640 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:1536] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2992]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-17T10:29:20.703 Job Notification: New process added to job (1556) 2026-05-17T10:29:20.718 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-17T10:29:20.734 Job Notification: New process added to job (2268) 2026-05-17T10:29:20.750 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:1556] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2268]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-17T10:29:21.109 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-17T10:29:21.109 [RTP] Duplicating the current plugin configuration object... 2026-05-17T10:29:21.109 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-17T10:29:21.109 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-17T10:29:21.109 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-17T10:29:21.109 [RTP] No config change detected. Not updating plugin configuration. 2026-05-17T10:29:21.109 [RTP] No config changes found. No configuration switch. 2026-05-17T10:29:21.109 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-17T10:29:21.468 Job Notification: New process added to job (5032) 2026-05-17T10:29:21.468 Task(GetDeviceTicket -AccessKey DA1CA97F-C1EB-4D60-4D49-49B102114D7D ) launched as network service 2026-05-17T10:29:21.913 Job Notification: Process exited from job (5032) 2026-05-17T10:29:22.979 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-17T10:29:22.979 [Cloud] Start of cloud request. Passive mode: 0 2026-05-17T10:29:22.979 [Cloud] Queued cloud request. 2026-05-17T10:29:22.979 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-17T10:29:22.979 [Cloud] Dequeued cloud request. 2026-05-17T10:29:22.979 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-17T10:29:22.979 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-17T10:29:22.979 [Cloud] Start of cloud request. Passive mode: 0 2026-05-17T10:29:22.979 [Cloud] Queued cloud request. 2026-05-17T10:29:22.979 [Cloud] Dequeued cloud request. 2026-05-17T10:29:22.979 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-17T10:29:23.206 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-17T10:29:23.206 [Cloud] End of cloud request. 2026-05-17T10:29:23.206 [Cloud] End of cloud request. 2026-05-17T10:29:23.498 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-17T10:29:30.124 Bm signature throttled:0x000015b3c4bf4b37 2026-05-17T10:29:34.246 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 53210, Count: 7008, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 255, Count: 168, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_54b_3.MAI, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 106, Count: 9, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 900, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 4488, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d36767f7-d8b1-495a-b371-62bc55457b0e.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b918aa05-d3db-4119-b566-76e6bdf59fd6.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 5116, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4530c4c-f52b-4bee-b55c-7caa371bce07.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 596, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32b9679c-5f4c-4ab8-84b6-d6288646f7b1.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04ee8d39-59d3-44b0-bd13-9840d6ede7e3.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 4420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e67d7a63-6a6e-4b61-b896-6f47ccfcce2c.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 4668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\607b81a9-7802-412c-8158-a239a684da8e.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 4648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a254f573-aa27-4029-b889-0c0f3fb5b819.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23587d74-9175-4309-a234-a7820a30a69f.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 3068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e89c65b-bc09-4bbc-82f1-2b085ac4108a.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 2852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\16605649-d833-40e9-9224-642fed5799ea.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 4324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2eb3a3ae-1a33-40cf-a45c-a25f8b24daaf.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 4756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8590eb80-678b-48fe-ab5b-8846780178e9.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 2572, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c221cc8e-6340-4250-875a-30a30003bc7c.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 2516, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9b6f594-897e-4e80-b070-5b5c2f83eef1.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 2352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b69c06-034b-48b7-b440-6975323a0dc7.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 2328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8011aa0-5349-46d6-9ade-aec1b2cb918b.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 2128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\61294943-1ffc-4ac9-a75f-1a55e72fbec6.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d37333db-33e1-4863-af4d-c183fe5a826d.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 1832, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c9bcc41-6c58-4a52-9524-f5e7a79e11b1.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 1256, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5508a54f-b777-42a5-94a4-eaf6635603da.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 1244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d17828f7-0bdb-415b-9ed2-f56b11279df8.tmp, EstimatedImpact: 0% 2026-05-17T10:29:34.246 ProcessImageName: updater.exe, Pid: 864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\13b5cec8-4b13-4f72-b72b-142235eb3630.tmp, EstimatedImpact: 0% 2026-05-17T10:29:36.653 Job Notification: Process exited from job (3968) 2026-05-17T10:29:46.101 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\6FECB6ED-0718-4A55-B852-8D7C5F6E2B2E10dc.1dce5e813bf935c 2026-05-17T10:29:46.163 Verifying engine and signature files (source: 0) ... 2026-05-17T10:29:46.163 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5CE6A36C-9DD1-4A8A-98EE-966D16160E97}\mpengine.dll] due to PPL. 2026-05-17T10:29:46.163 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5CE6A36C-9DD1-4A8A-98EE-966D16160E97}\mpasbase.vdm] (file in cache) 2026-05-17T10:29:46.163 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5CE6A36C-9DD1-4A8A-98EE-966D16160E97}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-17T10:29:46.179 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5CE6A36C-9DD1-4A8A-98EE-966D16160E97}\mpasdlta.vdm] 2026-05-17T10:29:46.179 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5CE6A36C-9DD1-4A8A-98EE-966D16160E97}\mpavbase.vdm] (file in cache) 2026-05-17T10:29:46.179 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5CE6A36C-9DD1-4A8A-98EE-966D16160E97}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-17T10:29:46.210 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5CE6A36C-9DD1-4A8A-98EE-966D16160E97}\mpavdlta.vdm] 2026-05-17T10:29:46.335 [Engine] IsHybridMode: 0 2026-05-17T10:29:46.335 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-17T10:29:46.366 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-979BDA0733A95DEB5D607B08BE365331CBC63572.bin): 0x00000002 2026-05-17T10:29:46.366 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-979BDA0733A95DEB5D607B08BE365331CBC63572.bin) 2026-05-17T10:29:46.366 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-17T10:29:46.366 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-17T10:29:46.366 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-17T10:29:46.366 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-17T10:29:55.269 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-17T10:29:55.269 [AutoExclusion] Applied roles from cache. 2026-05-17T10:29:55.269 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-17T10:29:55.269 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFFF5878020, lRefCount: 5, hr=0 2026-05-17T10:29:55.269 [Engine] New active engine 00007FFFF2148020 replacing engine 00007FFFF5878020. Number of active engines: 2 2026-05-17T10:29:55.285 EngineInit:Global ASOC is enabled 2026-05-17T10:29:55.285 EngineInit:ASOO is enabled for developer volumes 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-17T10:29:55.300 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-17T10:29:55.300 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-17T10:29:55.316 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-17T10:29:55.316 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-17T10:29:55.316 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-17T10:29:55.316 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-17T10:29:55.316 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-17T10:29:55.316 [Plugin] Initializing RTP plugin state... 2026-05-17T10:29:55.316 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-17T10:29:55.316 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎16‎-‎2026 12:29:34 Last Perf:‎05‎-‎16‎-‎2026 12:29:34 First RTP Scan:‎05‎-‎16‎-‎2026 12:30:08 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:389 Misses:2991 BM Queue:0,117,0 Proc:0,38,0 File:0,97,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:90685 Pending:0 RegSize:281830 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:119969166 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:41734 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:323904 TotalHits:202674 InstanceCacheInserts:3544 InstanceCacheUpdates:0 InstanceCacheDeletes:2980 InstanceCacheHits:267 InstanceCacheMisses:136152 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (216/194) Success: 194, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-17T10:29:55.316 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5CE6A36C-9DD1-4A8A-98EE-966D16160E97} 2026-05-17T10:29:55.316 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-17T10:29:55.316 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5749AF53-1C4A-497F-B518-023D38887DF4} removed 2026-05-17T10:29:55.316 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{961B039F-0ECA-419B-AB1E-27D2332BE808}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{961B039F-0ECA-419B-AB1E-27D2332BE808}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-17T10:29:55.316 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-17T10:29:55.316 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-17T10:29:55.316 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-17T10:29:55.316 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-17T10:29:55.316 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-17-2026 10:29:55 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-17-2026 10:29:55 2026-05-17T10:29:55.316 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-17T10:29:55.316 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-17T10:29:55.316 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-17T10:29:55.316 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-17T10:29:55.316 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-17T10:29:55.316 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-17T10:29:55.316 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-17T10:29:55.316 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-17T10:29:55.316 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-17T10:29:55.316 MdCoreSvc is supported in this platform and OS Signature updated on 05-17-2026 10:29:55 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.661.0 AV Signature Version: 1.449.661.0 ************************************************************ 2026-05-17T10:29:55.316 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-17T10:29:55.316 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\6FECB6ED-0718-4A55-B852-8D7C5F6E2B2E10dc.1dce5e813bf935c 2026-05-17T10:29:55.331 Process scan (postsignatureupdatescan) started. Signature updated via MicrosoftUpdateServer on 05-17-2026 10:29:55 ************************************************************ 2026-05-17T10:29:55.378 Job Notification: Process exited from job (1556) 2026-05-17T10:29:55.378 Job Notification: Process exited from job (2268) 2026-05-17T10:29:55.394 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-17T10:29:55.394 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-17T10:29:55.394 Job Notification: Process exited from job (1536) 2026-05-17T10:29:55.394 Job Notification: Process exited from job (2992) 2026-05-17T10:29:55.566 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-17T10:29:55.566 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-17T10:29:55.566 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-17T10:29:55.566 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-17T10:29:55.566 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-17T10:29:55.566 [Engine] Engine 00007FFFF5878020 no longer in use. Number of active engines: 1 2026-05-17T10:29:55.566 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-17T10:29:55.566 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-17T10:29:55.691 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 53210, Count: 7008, MaxTime: 906, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-17T10:29:55.691 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 255, Count: 168, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_54b_3.MAI, EstimatedImpact: 0% 2026-05-17T10:29:55.691 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 106, Count: 9, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-17T10:29:55.691 ProcessImageName: updater.exe, Pid: 900, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-17T10:29:55.691 ProcessImageName: updater.exe, Pid: 4488, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d36767f7-d8b1-495a-b371-62bc55457b0e.tmp, EstimatedImpact: 0% 2026-05-17T10:29:55.691 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b918aa05-d3db-4119-b566-76e6bdf59fd6.tmp, EstimatedImpact: 0% 2026-05-17T10:29:55.691 ProcessImageName: updater.exe, Pid: 5116, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4530c4c-f52b-4bee-b55c-7caa371bce07.tmp, EstimatedImpact: 0% 2026-05-17T10:29:55.691 ProcessImageName: updater.exe, Pid: 596, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32b9679c-5f4c-4ab8-84b6-d6288646f7b1.tmp, EstimatedImpact: 0% 2026-05-17T10:29:55.691 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04ee8d39-59d3-44b0-bd13-9840d6ede7e3.tmp, EstimatedImpact: 0% 2026-05-17T10:29:55.691 ProcessImageName: updater.exe, Pid: 4668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\607b81a9-7802-412c-8158-a239a684da8e.tmp, EstimatedImpact: 0% 2026-05-17T10:29:55.691 ProcessImageName: updater.exe, Pid: 4648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a254f573-aa27-4029-b889-0c0f3fb5b819.tmp, EstimatedImpact: 0% 2026-05-17T10:29:55.691 ProcessImageName: updater.exe, Pid: 3068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6e89c65b-bc09-4bbc-82f1-2b085ac4108a.tmp, EstimatedImpact: 0% 2026-05-17T10:29:55.691 ProcessImageName: updater.exe, Pid: 4324, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2eb3a3ae-1a33-40cf-a45c-a25f8b24daaf.tmp, EstimatedImpact: 0% 2026-05-17T10:29:55.691 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23587d74-9175-4309-a234-a7820a30a69f.tmp, EstimatedImpact: 0% 2026-05-17T10:29:55.738 [Engine] RSIG_UNLOADENGINE, 00007FFFF5878020, err=0x0 2026-05-17T10:29:55.738 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{961B039F-0ECA-419B-AB1E-27D2332BE808} removed 2026-05-17T10:29:55.816 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-17T10:29:55.816 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-17T10:29:55.816 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-17T10:29:59.566 Process scan (postsignatureupdatescan) completed. 2026-05-17T10:34:55.299 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-17T10:40:55.002 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #91940, FileId: 0x3500000001b81c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T10:40:55.018 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\xampp\tmp\#sqla88_589_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #91944, FileId: 0x3600000001b81c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T10:41:05.862 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\xampp\tmp\#sqla88_589_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #92391, FileId: 0x3700000001b81c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T10:41:05.924 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #92399, FileId: 0x3900000001b81c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T10:41:05.924 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #92396, FileId: 0x3800000001b81c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T10:42:10.579 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T10:57:15.578 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T11:12:20.573 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T11:15:36.206 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92552, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T11:15:36.222 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92554, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T11:15:46.220 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92558, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T11:15:46.235 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92560, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T11:15:46.235 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92562, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T11:27:25.577 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T11:42:30.563 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T11:57:35.563 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T12:12:40.563 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T12:15:35.311 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92662, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T12:15:35.311 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92664, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T12:15:45.315 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92668, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T12:15:45.330 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92670, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T12:15:45.330 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92672, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T12:15:45.330 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92674, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T12:27:45.563 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T12:29:55.279 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 45394, Count: 6338, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-17T12:29:55.279 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-17T12:29:55.279 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1505b653-7e83-4bba-839a-aad6ccfb55ce.tmp, EstimatedImpact: 0% 2026-05-17T12:29:55.279 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 30, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_1.MAD, EstimatedImpact: 0% 2026-05-17T12:29:55.279 ProcessImageName: updater.exe, Pid: 4808, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd4245d8-98f6-40c9-bb32-baf8567aed72.tmp, EstimatedImpact: 0% 2026-05-17T12:42:50.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T12:57:55.575 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T13:13:00.562 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T13:15:34.459 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92796, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T13:15:34.475 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92798, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T13:15:44.473 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92802, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T13:15:44.473 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92804, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T13:15:44.630 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92808, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T13:15:44.630 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92810, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T13:28:05.570 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T13:43:10.569 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T13:58:15.562 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T14:13:20.562 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T14:15:33.895 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92912, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T14:15:33.895 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92914, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T14:15:43.909 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92918, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T14:15:43.924 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92920, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T14:15:43.924 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #92922, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T14:28:25.562 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T14:29:55.284 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 45394, Count: 6338, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-17T14:29:55.284 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-17T14:29:55.284 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3174bb4-17f0-41ea-a192-d36880d42eb6.tmp, EstimatedImpact: 0% 2026-05-17T14:29:55.284 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1505b653-7e83-4bba-839a-aad6ccfb55ce.tmp, EstimatedImpact: 0% 2026-05-17T14:29:55.284 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 30, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_1.MAD, EstimatedImpact: 0% 2026-05-17T14:29:55.284 ProcessImageName: updater.exe, Pid: 4808, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd4245d8-98f6-40c9-bb32-baf8567aed72.tmp, EstimatedImpact: 0% 2026-05-17T14:29:55.284 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0f81d47e-aaa8-4f68-83e4-508aba284f6b.tmp, EstimatedImpact: 0% 2026-05-17T14:43:30.568 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T14:58:35.568 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T15:13:40.562 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T15:15:34.439 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93024, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T15:15:34.454 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93026, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T15:15:44.441 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93030, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T15:15:44.441 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93032, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T15:15:44.456 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93034, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T15:15:44.456 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93036, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T15:28:45.562 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T15:43:50.567 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T15:58:55.566 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T16:14:00.576 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T16:15:35.095 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93123, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T16:15:35.111 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93125, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T16:15:45.104 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93130, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T16:15:45.104 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93129, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T16:15:45.119 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93132, FileId: 0x46560000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T16:29:05.576 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T16:29:55.294 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 45409, Count: 6339, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-17T16:29:55.294 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-17T16:29:55.294 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3174bb4-17f0-41ea-a192-d36880d42eb6.tmp, EstimatedImpact: 0% 2026-05-17T16:29:55.294 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1505b653-7e83-4bba-839a-aad6ccfb55ce.tmp, EstimatedImpact: 0% 2026-05-17T16:29:55.294 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 30, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_1.MAD, EstimatedImpact: 0% 2026-05-17T16:29:55.294 ProcessImageName: updater.exe, Pid: 4808, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd4245d8-98f6-40c9-bb32-baf8567aed72.tmp, EstimatedImpact: 0% 2026-05-17T16:29:55.294 ProcessImageName: updater.exe, Pid: 4840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6730ba44-82d1-4dc2-ad55-39ffd36d8915.tmp, EstimatedImpact: 0% 2026-05-17T16:29:55.294 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0f81d47e-aaa8-4f68-83e4-508aba284f6b.tmp, EstimatedImpact: 0% 2026-05-17T16:29:55.294 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3aff076-e532-4303-91e1-4f7563670763.tmp, EstimatedImpact: 0% 2026-05-17T16:44:10.575 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T16:59:15.575 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T17:14:20.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T17:15:32.806 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93236, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T17:15:32.822 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93238, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T17:15:42.820 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93242, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T17:15:42.836 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93244, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T17:15:42.836 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93246, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T17:29:25.561 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T17:44:30.574 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T17:59:35.574 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T18:14:40.563 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T18:15:34.470 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93344, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T18:15:34.470 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93346, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T18:15:44.484 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93350, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T18:15:44.484 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93352, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T18:15:44.640 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93356, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T18:15:44.656 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93358, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T18:29:45.573 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T18:29:55.298 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 45409, Count: 6339, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-17T18:29:55.298 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-17T18:29:55.298 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3174bb4-17f0-41ea-a192-d36880d42eb6.tmp, EstimatedImpact: 0% 2026-05-17T18:29:55.298 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1505b653-7e83-4bba-839a-aad6ccfb55ce.tmp, EstimatedImpact: 0% 2026-05-17T18:29:55.298 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 30, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_1.MAD, EstimatedImpact: 0% 2026-05-17T18:29:55.298 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2b6ad8d-f373-4922-be5f-53ab154928f9.tmp, EstimatedImpact: 0% 2026-05-17T18:29:55.298 ProcessImageName: updater.exe, Pid: 4808, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd4245d8-98f6-40c9-bb32-baf8567aed72.tmp, EstimatedImpact: 0% 2026-05-17T18:29:55.298 ProcessImageName: updater.exe, Pid: 4840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6730ba44-82d1-4dc2-ad55-39ffd36d8915.tmp, EstimatedImpact: 0% 2026-05-17T18:29:55.298 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0f81d47e-aaa8-4f68-83e4-508aba284f6b.tmp, EstimatedImpact: 0% 2026-05-17T18:29:55.298 ProcessImageName: updater.exe, Pid: 4268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d37c8010-4629-46dd-b49e-6a8b3c6cbf33.tmp, EstimatedImpact: 0% 2026-05-17T18:29:55.298 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3aff076-e532-4303-91e1-4f7563670763.tmp, EstimatedImpact: 0% 2026-05-17T18:44:50.567 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T18:59:55.573 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T19:09:54.090 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5a2_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #93458, FileId: 0x2f00000001b826, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T19:09:54.668 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5a2_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #93462, FileId: 0x3000000001b826, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T19:15:00.572 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T19:15:33.482 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93481, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T19:15:33.497 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93483, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T19:15:43.502 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93487, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T19:15:43.502 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93489, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T19:30:05.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T19:45:10.571 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T20:00:15.566 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T20:15:20.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T20:15:33.709 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93583, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T20:15:33.725 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93585, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T20:15:43.718 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93589, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T20:15:43.718 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93590, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T20:15:43.734 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93592, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T20:29:55.303 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 49093, Count: 6561, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-17T20:29:55.303 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-17T20:29:55.303 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3174bb4-17f0-41ea-a192-d36880d42eb6.tmp, EstimatedImpact: 0% 2026-05-17T20:29:55.303 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1505b653-7e83-4bba-839a-aad6ccfb55ce.tmp, EstimatedImpact: 0% 2026-05-17T20:29:55.303 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 30, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_1.MAD, EstimatedImpact: 0% 2026-05-17T20:29:55.303 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2b6ad8d-f373-4922-be5f-53ab154928f9.tmp, EstimatedImpact: 0% 2026-05-17T20:29:55.303 ProcessImageName: updater.exe, Pid: 4808, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd4245d8-98f6-40c9-bb32-baf8567aed72.tmp, EstimatedImpact: 0% 2026-05-17T20:29:55.303 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3aff076-e532-4303-91e1-4f7563670763.tmp, EstimatedImpact: 0% 2026-05-17T20:29:55.303 ProcessImageName: updater.exe, Pid: 180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b7e3925-98f0-4fb3-9d67-110ec33b826b.tmp, EstimatedImpact: 0% 2026-05-17T20:29:55.303 ProcessImageName: updater.exe, Pid: 4840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6730ba44-82d1-4dc2-ad55-39ffd36d8915.tmp, EstimatedImpact: 0% 2026-05-17T20:29:55.303 ProcessImageName: updater.exe, Pid: 1088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6aad8c2-6fb8-4dd7-80ba-5b6c68c79151.tmp, EstimatedImpact: 0% 2026-05-17T20:29:55.303 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0f81d47e-aaa8-4f68-83e4-508aba284f6b.tmp, EstimatedImpact: 0% 2026-05-17T20:29:55.303 ProcessImageName: updater.exe, Pid: 4268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d37c8010-4629-46dd-b49e-6a8b3c6cbf33.tmp, EstimatedImpact: 0% 2026-05-17T20:30:25.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T20:45:30.571 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T20:49:56.205 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5ab_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #93650, FileId: 0x3600000001b826, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T20:49:56.783 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5ab_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #93654, FileId: 0x3700000001b826, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T21:00:35.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T21:15:35.347 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93692, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T21:15:35.363 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93694, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T21:15:40.569 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T21:15:45.357 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93698, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T21:15:45.372 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93701, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T21:30:45.574 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T21:45:50.569 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T22:00:55.573 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T22:15:34.983 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93820, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T22:15:34.998 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93822, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T22:15:44.997 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93826, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T22:15:45.012 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93828, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T22:15:45.012 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93830, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T22:16:00.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T22:29:55.302 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 49708, Count: 6585, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-17T22:29:55.302 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-17T22:29:55.302 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 45, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_1.MAD, EstimatedImpact: 0% 2026-05-17T22:29:55.302 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3174bb4-17f0-41ea-a192-d36880d42eb6.tmp, EstimatedImpact: 0% 2026-05-17T22:29:55.302 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1505b653-7e83-4bba-839a-aad6ccfb55ce.tmp, EstimatedImpact: 0% 2026-05-17T22:29:55.302 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2b6ad8d-f373-4922-be5f-53ab154928f9.tmp, EstimatedImpact: 0% 2026-05-17T22:29:55.302 ProcessImageName: updater.exe, Pid: 4808, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd4245d8-98f6-40c9-bb32-baf8567aed72.tmp, EstimatedImpact: 0% 2026-05-17T22:29:55.302 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3aff076-e532-4303-91e1-4f7563670763.tmp, EstimatedImpact: 0% 2026-05-17T22:29:55.302 ProcessImageName: updater.exe, Pid: 1088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6aad8c2-6fb8-4dd7-80ba-5b6c68c79151.tmp, EstimatedImpact: 0% 2026-05-17T22:29:55.302 ProcessImageName: updater.exe, Pid: 4268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d37c8010-4629-46dd-b49e-6a8b3c6cbf33.tmp, EstimatedImpact: 0% 2026-05-17T22:29:55.302 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db6196d3-8e6e-4ca6-b699-fb12ec322f55.tmp, EstimatedImpact: 0% 2026-05-17T22:29:55.302 ProcessImageName: updater.exe, Pid: 4840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6730ba44-82d1-4dc2-ad55-39ffd36d8915.tmp, EstimatedImpact: 0% 2026-05-17T22:29:55.302 ProcessImageName: updater.exe, Pid: 180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b7e3925-98f0-4fb3-9d67-110ec33b826b.tmp, EstimatedImpact: 0% 2026-05-17T22:29:55.302 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfc21a4d-54e1-4f44-be7d-e1f25d181d3e.tmp, EstimatedImpact: 0% 2026-05-17T22:29:55.302 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0f81d47e-aaa8-4f68-83e4-508aba284f6b.tmp, EstimatedImpact: 0% 2026-05-17T22:31:05.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T22:46:10.572 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T23:01:15.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T23:15:33.973 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93967, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T23:15:33.973 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93969, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T23:15:43.982 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93973, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T23:15:43.997 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93975, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T23:15:44.138 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93979, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T23:15:44.154 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #93981, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-17T23:16:20.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T23:31:25.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-17T23:46:30.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T00:01:35.566 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T00:15:34.903 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94082, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T00:15:34.903 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94084, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T00:15:44.928 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94088, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T00:15:44.928 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94090, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T00:16:40.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T00:29:55.317 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 49859, Count: 6605, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 45, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_1.MAD, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\679d3a32-99bd-431d-a466-770be4a7b5c7.tmp, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3174bb4-17f0-41ea-a192-d36880d42eb6.tmp, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1505b653-7e83-4bba-839a-aad6ccfb55ce.tmp, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2b6ad8d-f373-4922-be5f-53ab154928f9.tmp, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: updater.exe, Pid: 4808, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd4245d8-98f6-40c9-bb32-baf8567aed72.tmp, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb7307c7-0cfb-463a-a7ae-13a437c064c2.tmp, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: updater.exe, Pid: 4268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d37c8010-4629-46dd-b49e-6a8b3c6cbf33.tmp, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db6196d3-8e6e-4ca6-b699-fb12ec322f55.tmp, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: updater.exe, Pid: 4840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6730ba44-82d1-4dc2-ad55-39ffd36d8915.tmp, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0f81d47e-aaa8-4f68-83e4-508aba284f6b.tmp, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3aff076-e532-4303-91e1-4f7563670763.tmp, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfc21a4d-54e1-4f44-be7d-e1f25d181d3e.tmp, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: updater.exe, Pid: 180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b7e3925-98f0-4fb3-9d67-110ec33b826b.tmp, EstimatedImpact: 0% 2026-05-18T00:29:55.317 ProcessImageName: updater.exe, Pid: 1088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6aad8c2-6fb8-4dd7-80ba-5b6c68c79151.tmp, EstimatedImpact: 0% 2026-05-18T00:31:45.570 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T00:46:50.569 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T01:01:55.569 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T01:15:33.893 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94187, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T01:15:33.909 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94189, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T01:15:43.907 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94193, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T01:15:43.923 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94195, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T01:15:43.923 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94197, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T01:17:00.569 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T01:32:05.558 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T01:47:10.573 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T02:02:15.563 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T02:15:35.600 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94299, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T02:15:35.615 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94301, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T02:15:45.614 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94305, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T02:15:45.629 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94308, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T02:17:20.562 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T02:29:55.327 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 49859, Count: 6605, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 45, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_1.MAD, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3174bb4-17f0-41ea-a192-d36880d42eb6.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\679d3a32-99bd-431d-a466-770be4a7b5c7.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1505b653-7e83-4bba-839a-aad6ccfb55ce.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2b6ad8d-f373-4922-be5f-53ab154928f9.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 4808, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd4245d8-98f6-40c9-bb32-baf8567aed72.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 4268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d37c8010-4629-46dd-b49e-6a8b3c6cbf33.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0f81d47e-aaa8-4f68-83e4-508aba284f6b.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb7307c7-0cfb-463a-a7ae-13a437c064c2.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db6196d3-8e6e-4ca6-b699-fb12ec322f55.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 4840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6730ba44-82d1-4dc2-ad55-39ffd36d8915.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 4816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\122ec757-3790-491d-8162-d194e121f68a.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3aff076-e532-4303-91e1-4f7563670763.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfc21a4d-54e1-4f44-be7d-e1f25d181d3e.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b7e3925-98f0-4fb3-9d67-110ec33b826b.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 1500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\991130fc-7374-49fd-ae13-8b05cee8d415.tmp, EstimatedImpact: 0% 2026-05-18T02:29:55.327 ProcessImageName: updater.exe, Pid: 1088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6aad8c2-6fb8-4dd7-80ba-5b6c68c79151.tmp, EstimatedImpact: 0% 2026-05-18T02:32:25.558 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T02:33:40.005 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5d0_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #94335, FileId: 0x4000000001b826, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T02:33:40.690 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5d0_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #94339, FileId: 0x4100000001b826, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T02:33:40.705 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5d0_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #94342, FileId: 0x4200000001b826, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T02:47:30.558 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T03:02:35.561 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T03:15:33.893 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94476, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T03:15:33.924 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94479, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T03:15:43.901 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94483, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T03:15:43.916 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94485, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T03:15:43.916 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94487, FileId: 0x562000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T03:17:40.558 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T03:32:45.561 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T03:45:25.810 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:3CC628BD-0319-4CBE-A894-6DB010E1A83A, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-18T03:45:25.810 Scheduled scan with Id 3CC628BD-0319-4CBE-A894-6DB010E1A83A configured CPU priority: normal (LowCpuPriority: 0) 2026-05-18T03:45:25.810 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-18T03:45:25.810 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-18T03:45:25.810 [SFC] System file cache build is not needed (already completed) 2026-05-18T03:45:37.263 Engine:Triggered AR EMS scan 2026-05-18T03:45:37.263 Engine:EMS scan for process: lsass pid: 600, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.278 Engine:EMS scan for process: svchost pid: 680, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.278 Engine:EMS scan for process: svchost pid: 736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.294 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.310 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.325 Engine:EMS scan for process: svchost pid: 936, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.341 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.341 Engine:EMS scan for process: svchost pid: 992, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.356 Engine:EMS scan for process: svchost pid: 352, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.372 Engine:EMS scan for process: svchost pid: 776, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.372 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.388 Engine:EMS scan for process: svchost pid: 1452, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.388 Engine:EMS scan for process: svchost pid: 2052, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.403 Engine:EMS scan for process: svchost pid: 2200, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.419 Engine:EMS scan for process: svchost pid: 2224, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.419 Engine:EMS scan for process: svchost pid: 2628, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.435 Engine:EMS scan for process: svchost pid: 1736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:37.450 Engine:EMS scan for process: svchost pid: 4828, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-18T03:45:50.747 QuickScan:ScanID:3CC628BD-0319-4CBE-A894-6DB010E1A83A: Quick scan finished with error 0 2026-05-18T03:45:50.747 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-18T03:45:51.248 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-18T03:45:51.248 [RTP] Duplicating the current plugin configuration object... 2026-05-18T03:45:51.248 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-18T03:45:51.248 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-18T03:45:51.248 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-18T03:45:51.248 [RTP] No config change detected. Not updating plugin configuration. 2026-05-18T03:45:51.248 [RTP] No config changes found. No configuration switch. 2026-05-18T03:45:51.248 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-18T03:47:50.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T04:02:55.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T04:15:33.298 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94742, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T04:15:33.313 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94744, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T04:18:00.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T04:29:55.336 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 49859, Count: 6606, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 75, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_1.MAD, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\679d3a32-99bd-431d-a466-770be4a7b5c7.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3174bb4-17f0-41ea-a192-d36880d42eb6.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 2464, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7df91f36-ca8c-433a-add5-ded77797b0dd.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1505b653-7e83-4bba-839a-aad6ccfb55ce.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2b6ad8d-f373-4922-be5f-53ab154928f9.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 4808, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd4245d8-98f6-40c9-bb32-baf8567aed72.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb7307c7-0cfb-463a-a7ae-13a437c064c2.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 4268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d37c8010-4629-46dd-b49e-6a8b3c6cbf33.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db6196d3-8e6e-4ca6-b699-fb12ec322f55.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0f81d47e-aaa8-4f68-83e4-508aba284f6b.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 4840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6730ba44-82d1-4dc2-ad55-39ffd36d8915.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 4816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\122ec757-3790-491d-8162-d194e121f68a.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3aff076-e532-4303-91e1-4f7563670763.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfc21a4d-54e1-4f44-be7d-e1f25d181d3e.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b7e3925-98f0-4fb3-9d67-110ec33b826b.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 1500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\991130fc-7374-49fd-ae13-8b05cee8d415.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 1088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6aad8c2-6fb8-4dd7-80ba-5b6c68c79151.tmp, EstimatedImpact: 0% 2026-05-18T04:29:55.336 ProcessImageName: updater.exe, Pid: 596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a8ee7e9f-30f2-462b-b59b-a506caa233dd.tmp, EstimatedImpact: 0% 2026-05-18T04:33:05.557 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T04:48:10.557 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T05:03:15.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T05:18:20.573 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T05:33:25.563 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T05:48:30.558 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T06:03:35.567 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T06:15:33.317 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #94995, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T06:18:40.557 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T06:29:55.342 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 49859, Count: 6606, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 75, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_1.MAD, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\679d3a32-99bd-431d-a466-770be4a7b5c7.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3174bb4-17f0-41ea-a192-d36880d42eb6.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 2464, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7df91f36-ca8c-433a-add5-ded77797b0dd.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1505b653-7e83-4bba-839a-aad6ccfb55ce.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2b6ad8d-f373-4922-be5f-53ab154928f9.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 4808, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd4245d8-98f6-40c9-bb32-baf8567aed72.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0f81d47e-aaa8-4f68-83e4-508aba284f6b.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb7307c7-0cfb-463a-a7ae-13a437c064c2.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db6196d3-8e6e-4ca6-b699-fb12ec322f55.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 4268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d37c8010-4629-46dd-b49e-6a8b3c6cbf33.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 4840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6730ba44-82d1-4dc2-ad55-39ffd36d8915.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 4816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\122ec757-3790-491d-8162-d194e121f68a.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 2780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9cca5024-e2f8-4879-b694-9dd8a4849384.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3aff076-e532-4303-91e1-4f7563670763.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfc21a4d-54e1-4f44-be7d-e1f25d181d3e.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b7e3925-98f0-4fb3-9d67-110ec33b826b.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 1500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\991130fc-7374-49fd-ae13-8b05cee8d415.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 1088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6aad8c2-6fb8-4dd7-80ba-5b6c68c79151.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aba8e830-80de-4574-94c7-cb8c39fd0e3c.tmp, EstimatedImpact: 0% 2026-05-18T06:29:55.342 ProcessImageName: updater.exe, Pid: 596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a8ee7e9f-30f2-462b-b59b-a506caa233dd.tmp, EstimatedImpact: 0% 2026-05-18T06:33:45.572 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T06:48:50.561 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T07:03:55.561 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T07:19:00.557 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T07:34:05.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T07:49:10.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T08:04:15.556 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T08:15:34.575 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #95266, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T08:19:20.569 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T08:29:55.341 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 49859, Count: 6618, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 75, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_1.MAD, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 2464, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7df91f36-ca8c-433a-add5-ded77797b0dd.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\679d3a32-99bd-431d-a466-770be4a7b5c7.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3174bb4-17f0-41ea-a192-d36880d42eb6.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1505b653-7e83-4bba-839a-aad6ccfb55ce.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2b6ad8d-f373-4922-be5f-53ab154928f9.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 4808, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd4245d8-98f6-40c9-bb32-baf8567aed72.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb7307c7-0cfb-463a-a7ae-13a437c064c2.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 4776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0f81d47e-aaa8-4f68-83e4-508aba284f6b.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 4944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db6196d3-8e6e-4ca6-b699-fb12ec322f55.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b7e3925-98f0-4fb3-9d67-110ec33b826b.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 4268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d37c8010-4629-46dd-b49e-6a8b3c6cbf33.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 4840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6730ba44-82d1-4dc2-ad55-39ffd36d8915.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 4816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\78b08144-fb7a-4dec-8980-9e8dec4f0ddf.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 4816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\122ec757-3790-491d-8162-d194e121f68a.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 2780, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9cca5024-e2f8-4879-b694-9dd8a4849384.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3aff076-e532-4303-91e1-4f7563670763.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 1776, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfc21a4d-54e1-4f44-be7d-e1f25d181d3e.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 1500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\991130fc-7374-49fd-ae13-8b05cee8d415.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 1112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\261512df-2fa5-4317-9b88-6731f4a99fe6.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 1088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6aad8c2-6fb8-4dd7-80ba-5b6c68c79151.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aba8e830-80de-4574-94c7-cb8c39fd0e3c.tmp, EstimatedImpact: 0% 2026-05-18T08:29:55.341 ProcessImageName: updater.exe, Pid: 596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a8ee7e9f-30f2-462b-b59b-a506caa233dd.tmp, EstimatedImpact: 0% 2026-05-18T08:34:25.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T08:49:30.556 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T09:04:35.563 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T09:19:40.568 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T09:34:45.568 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T09:49:50.557 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T10:04:55.556 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T10:15:34.134 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #95732, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:20:00.556 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T10:29:20.569 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-18T10:29:20.584 Job Notification: New process added to job (2816) 2026-05-18T10:29:20.600 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-18T10:29:20.600 Aggressive catchup quick scan threshold: 242347914656 / 25920000000000 2026-05-18T10:29:20.600 Job Notification: New process added to job (2164) 2026-05-18T10:29:20.616 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:2816] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2164]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-18T10:29:20.709 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-18T10:29:20.709 Job Notification: New process added to job (1032) 2026-05-18T10:29:20.709 Job Notification: New process added to job (1336) 2026-05-18T10:29:20.725 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:1032] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:1336]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-18T10:29:21.100 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-18T10:29:21.116 [RTP] Duplicating the current plugin configuration object... 2026-05-18T10:29:21.116 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-18T10:29:21.116 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-18T10:29:21.116 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-18T10:29:21.116 [RTP] No config change detected. Not updating plugin configuration. 2026-05-18T10:29:21.116 [RTP] No config changes found. No configuration switch. 2026-05-18T10:29:21.116 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-18T10:29:21.444 Job Notification: New process added to job (4232) 2026-05-18T10:29:21.444 Task(GetDeviceTicket -AccessKey DF138049-83CE-7FF9-3DC0-5A32CE4CD2F2 ) launched as network service 2026-05-18T10:29:21.897 Job Notification: Process exited from job (4232) 2026-05-18T10:29:22.981 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-18T10:29:22.981 [Cloud] Start of cloud request. Passive mode: 0 2026-05-18T10:29:22.981 [Cloud] Queued cloud request. 2026-05-18T10:29:22.981 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-18T10:29:22.981 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-18T10:29:22.981 [Cloud] Start of cloud request. Passive mode: 0 2026-05-18T10:29:22.981 [Cloud] Queued cloud request. 2026-05-18T10:29:23.012 Job Notification: New process added to job (4812) 2026-05-18T10:29:23.012 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 42AF2B06-B3B9-3A60-6022-D24F8F3F95D6) launched 2026-05-18T10:29:23.012 Job Notification: New process added to job (492) 2026-05-18T10:29:23.012 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:4812] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:492]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-18T10:29:23.027 Job Notification: New process added to job (172) 2026-05-18T10:29:23.043 Job Notification: Process exited from job (4812) 2026-05-18T10:29:23.059 [Cloud] Dequeued cloud request. 2026-05-18T10:29:23.059 [Cloud] Dequeued cloud request. 2026-05-18T10:29:23.059 Job Notification: Process exited from job (492) 2026-05-18T10:29:23.059 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-18T10:29:23.059 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-18T10:29:23.356 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-18T10:29:23.356 [Cloud] End of cloud request. 2026-05-18T10:29:23.356 [Cloud] End of cloud request. 2026-05-18T10:29:23.496 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-18T10:29:25.181 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\EA2C9518-70B0-4699-B204-3748213E3B4172c.1dce6b131b9cdfb 2026-05-18T10:29:25.244 Verifying engine and signature files (source: 0) ... 2026-05-18T10:29:25.244 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{68BADD62-4FD6-4D5B-B0DC-BEF7DCD41C4B}\mpengine.dll] due to PPL. 2026-05-18T10:29:25.244 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{68BADD62-4FD6-4D5B-B0DC-BEF7DCD41C4B}\mpasbase.vdm] (file in cache) 2026-05-18T10:29:25.244 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{68BADD62-4FD6-4D5B-B0DC-BEF7DCD41C4B}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-18T10:29:25.275 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{68BADD62-4FD6-4D5B-B0DC-BEF7DCD41C4B}\mpasdlta.vdm] 2026-05-18T10:29:25.275 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{68BADD62-4FD6-4D5B-B0DC-BEF7DCD41C4B}\mpavbase.vdm] (file in cache) 2026-05-18T10:29:25.275 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{68BADD62-4FD6-4D5B-B0DC-BEF7DCD41C4B}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-18T10:29:25.306 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{68BADD62-4FD6-4D5B-B0DC-BEF7DCD41C4B}\mpavdlta.vdm] 2026-05-18T10:29:25.416 [Engine] IsHybridMode: 0 2026-05-18T10:29:25.416 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-18T10:29:25.447 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-4E5FBE152D3757BF10C86914C1A3BE2BBC9C347A.bin): 0x00000002 2026-05-18T10:29:25.463 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-4E5FBE152D3757BF10C86914C1A3BE2BBC9C347A.bin) 2026-05-18T10:29:25.463 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-18T10:29:25.463 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-18T10:29:25.463 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-18T10:29:25.463 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-18T10:29:34.101 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-18T10:29:34.101 [AutoExclusion] Applied roles from cache. 2026-05-18T10:29:34.101 [AutoExclusion] Started roles monitoring. 2026-05-18T10:29:34.101 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFFF2148020, lRefCount: 5, hr=0 2026-05-18T10:29:34.101 [Engine] New active engine 00007FFFF5878020 replacing engine 00007FFFF2148020. Number of active engines: 2 2026-05-18T10:29:34.101 EngineInit:Global ASOC is enabled 2026-05-18T10:29:34.101 EngineInit:ASOO is enabled for developer volumes 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-18T10:29:34.132 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-18T10:29:34.132 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-18T10:29:34.132 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-18T10:29:34.132 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-18T10:29:34.132 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-18T10:29:34.132 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-18T10:29:34.148 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-18T10:29:34.148 [Plugin] Initializing RTP plugin state... 2026-05-18T10:29:34.148 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-18T10:29:34.148 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎17‎-‎2026 12:29:55 Last Perf:‎05‎-‎17‎-‎2026 12:29:55 First RTP Scan:‎05‎-‎17‎-‎2026 12:29:56 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:404 Misses:2792 BM Queue:0,55,0 Proc:0,41,0 File:0,52,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:95864 Pending:0 RegSize:281830 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:124288454 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:41738 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:328466 TotalHits:216545 InstanceCacheInserts:3761 InstanceCacheUpdates:0 InstanceCacheDeletes:3278 InstanceCacheHits:287 InstanceCacheMisses:137140 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (211/198) Success: 198, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-18T10:29:34.148 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{68BADD62-4FD6-4D5B-B0DC-BEF7DCD41C4B} 2026-05-18T10:29:34.148 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-18T10:29:34.148 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{314FB836-CB82-483E-951D-41AE5751CAE6} removed 2026-05-18T10:29:34.148 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5CE6A36C-9DD1-4A8A-98EE-966D16160E97}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5CE6A36C-9DD1-4A8A-98EE-966D16160E97}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-18T10:29:34.148 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-18T10:29:34.148 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-18T10:29:34.148 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-18T10:29:34.148 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-18T10:29:34.148 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-18-2026 10:29:34 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-18-2026 10:29:34 2026-05-18T10:29:34.148 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-18T10:29:34.148 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-18T10:29:34.148 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-18T10:29:34.148 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-18T10:29:34.148 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-18T10:29:34.148 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-18T10:29:34.148 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-18T10:29:34.148 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-18T10:29:34.148 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-18T10:29:34.148 MdCoreSvc is supported in this platform and OS Signature updated on 05-18-2026 10:29:34 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.676.0 AV Signature Version: 1.449.676.0 ************************************************************ 2026-05-18T10:29:34.148 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-18T10:29:34.148 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\EA2C9518-70B0-4699-B204-3748213E3B4172c.1dce6b131b9cdfb 2026-05-18T10:29:34.163 Process scan (postsignatureupdatescan) started. 2026-05-18T10:29:34.195 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-18T10:29:34.210 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-18T10:29:34.382 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-18T10:29:34.382 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-18T10:29:34.382 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-18T10:29:34.382 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-18T10:29:34.382 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-18T10:29:34.382 [Engine] Engine 00007FFFF2148020 no longer in use. Number of active engines: 1 2026-05-18T10:29:34.382 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-18T10:29:34.382 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). Signature updated via MicrosoftUpdateServer on 05-18-2026 10:29:34 ************************************************************ 2026-05-18T10:29:34.523 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 49979, Count: 6633, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-18T10:29:34.523 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 136, Count: 11, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\PenIMC_v0400.dll, EstimatedImpact: 0% 2026-05-18T10:29:34.523 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 75, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_588_1.MAD, EstimatedImpact: 0% 2026-05-18T10:29:34.523 ProcessImageName: updater.exe, Pid: 2464, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7df91f36-ca8c-433a-add5-ded77797b0dd.tmp, EstimatedImpact: 0% 2026-05-18T10:29:34.523 ProcessImageName: updater.exe, Pid: 4520, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\679d3a32-99bd-431d-a466-770be4a7b5c7.tmp, EstimatedImpact: 0% 2026-05-18T10:29:34.523 ProcessImageName: updater.exe, Pid: 4820, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c3174bb4-17f0-41ea-a192-d36880d42eb6.tmp, EstimatedImpact: 0% 2026-05-18T10:29:34.523 ProcessImageName: updater.exe, Pid: 712, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c86fccc0-e4d4-4b0e-b202-f8c0db64626b.tmp, EstimatedImpact: 0% 2026-05-18T10:29:34.523 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1505b653-7e83-4bba-839a-aad6ccfb55ce.tmp, EstimatedImpact: 0% 2026-05-18T10:29:34.523 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2b6ad8d-f373-4922-be5f-53ab154928f9.tmp, EstimatedImpact: 0% 2026-05-18T10:29:34.523 ProcessImageName: updater.exe, Pid: 4808, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cd4245d8-98f6-40c9-bb32-baf8567aed72.tmp, EstimatedImpact: 0% 2026-05-18T10:29:34.523 ProcessImageName: updater.exe, Pid: 4816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\78b08144-fb7a-4dec-8980-9e8dec4f0ddf.tmp, EstimatedImpact: 0% 2026-05-18T10:29:34.523 ProcessImageName: updater.exe, Pid: 4816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\122ec757-3790-491d-8162-d194e121f68a.tmp, EstimatedImpact: 0% 2026-05-18T10:29:34.523 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bb7307c7-0cfb-463a-a7ae-13a437c064c2.tmp, EstimatedImpact: 0% 2026-05-18T10:29:34.570 [Engine] RSIG_UNLOADENGINE, 00007FFFF2148020, err=0x0 2026-05-18T10:29:34.585 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5CE6A36C-9DD1-4A8A-98EE-966D16160E97} removed 2026-05-18T10:29:34.585 Job Notification: Process exited from job (1032) 2026-05-18T10:29:34.585 Job Notification: Process exited from job (1336) 2026-05-18T10:29:34.601 Job Notification: Process exited from job (2816) 2026-05-18T10:29:34.601 Job Notification: Process exited from job (2164) 2026-05-18T10:29:34.632 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-18T10:29:34.632 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-18T10:29:34.632 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-18T10:29:38.351 Process scan (postsignatureupdatescan) completed. 2026-05-18T10:34:34.117 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-18T10:35:05.566 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T10:47:39.941 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97120, FileId: 0x2300000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:52.070 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97628, FileId: 0x2500000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:52.101 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97631, FileId: 0x2600000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:52.148 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97635, FileId: 0x2700000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:52.179 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97638, FileId: 0x2800000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:52.210 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97641, FileId: 0x2900000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:52.226 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97644, FileId: 0x2a00000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:52.288 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97647, FileId: 0x2b00000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:52.351 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97650, FileId: 0x2c00000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:52.366 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97653, FileId: 0x2d00000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:52.429 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97659, FileId: 0x2f00000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:53.064 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97663, FileId: 0x3000000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:53.596 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97666, FileId: 0x3100000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:54.140 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97669, FileId: 0x3200000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:54.172 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97672, FileId: 0x3300000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:54.234 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97675, FileId: 0x3400000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:54.250 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97678, FileId: 0x3500000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:54.281 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97681, FileId: 0x3600000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:54.296 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97684, FileId: 0x3700000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:54.343 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97687, FileId: 0x3800000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:54.375 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97690, FileId: 0x3900000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:54.437 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97693, FileId: 0x3a00000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:54.500 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97696, FileId: 0x3b00000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:54.562 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97702, FileId: 0x3d00000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:54.593 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97705, FileId: 0x3e00000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:54.609 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97708, FileId: 0x3f00000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:54.640 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97711, FileId: 0x4000000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:55.046 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97724, FileId: 0x4100000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:47:55.421 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97733, FileId: 0x4200000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T10:50:10.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T11:00:15.762 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5fa_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97802, FileId: 0x4800000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T11:00:16.309 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5fa_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97807, FileId: 0x4900000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T11:05:15.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T11:06:42.855 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5fd_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97843, FileId: 0x4d00000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T11:06:43.401 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\xampp\tmp\#sqla88_5fd_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #97847, FileId: 0x4e00000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T11:15:34.036 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97897, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T11:15:34.052 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97899, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T11:15:44.040 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97904, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T11:15:44.040 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97905, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T11:15:44.056 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97906, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T11:20:20.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T11:35:25.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T11:50:30.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T12:05:35.569 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T12:15:33.342 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98063, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T12:15:33.357 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98065, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T12:15:43.350 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98070, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T12:15:43.366 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98073, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T12:20:40.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T12:29:34.100 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51013, Count: 6916, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 1% 2026-05-18T12:29:34.100 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 75, Count: 76, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_11.MAD, EstimatedImpact: 0% 2026-05-18T12:29:34.100 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-18T12:29:34.100 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4e16f749-c16e-401e-ae67-730c19165908.tmp, EstimatedImpact: 0% 2026-05-18T12:29:34.100 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b83762ca-82e6-48b1-98a7-b2b6fdf74d5d.tmp, EstimatedImpact: 0% 2026-05-18T12:35:45.558 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T12:50:50.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T13:05:55.557 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T13:15:15.615 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sqla88_604_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #98166, FileId: 0x5400000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T13:15:16.208 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sqla88_604_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #98170, FileId: 0x5500000001b8ce, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T13:15:34.272 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98177, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T13:15:34.288 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98179, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T13:15:44.281 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98184, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T13:15:44.296 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98187, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T13:21:00.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T13:36:05.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T13:51:10.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T14:06:15.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T14:15:33.787 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98298, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T14:15:33.802 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98300, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T14:15:43.795 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98305, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T14:15:43.795 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98307, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T14:15:43.952 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98311, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T14:15:43.967 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98313, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T14:21:20.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T14:29:34.110 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51043, Count: 6920, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-18T14:29:34.110 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 90, Count: 80, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_11.MAD, EstimatedImpact: 0% 2026-05-18T14:29:34.110 ProcessImageName: updater.exe, Pid: 4460, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eabfdf6d-cc50-4739-89ee-e918399e85a1.tmp, EstimatedImpact: 0% 2026-05-18T14:29:34.110 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-18T14:29:34.110 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4e16f749-c16e-401e-ae67-730c19165908.tmp, EstimatedImpact: 0% 2026-05-18T14:29:34.110 ProcessImageName: updater.exe, Pid: 3788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e74782fe-7250-489b-bdb2-cbab49f2ef05.tmp, EstimatedImpact: 0% 2026-05-18T14:29:34.110 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b83762ca-82e6-48b1-98a7-b2b6fdf74d5d.tmp, EstimatedImpact: 0% 2026-05-18T14:36:25.561 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T14:51:30.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T15:06:35.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T15:15:34.166 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98411, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T15:15:34.166 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98413, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T15:15:44.170 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98418, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T15:15:44.186 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98420, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T15:21:40.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T15:36:45.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T15:51:50.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T16:06:55.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T16:15:33.854 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98516, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T16:15:33.870 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98518, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T16:15:43.868 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98523, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T16:15:43.884 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98526, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T16:22:00.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T16:29:34.114 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51073, Count: 6923, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-18T16:29:34.114 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 90, Count: 80, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_11.MAD, EstimatedImpact: 0% 2026-05-18T16:29:34.114 ProcessImageName: updater.exe, Pid: 4460, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eabfdf6d-cc50-4739-89ee-e918399e85a1.tmp, EstimatedImpact: 0% 2026-05-18T16:29:34.114 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-18T16:29:34.114 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4e16f749-c16e-401e-ae67-730c19165908.tmp, EstimatedImpact: 0% 2026-05-18T16:29:34.114 ProcessImageName: updater.exe, Pid: 3816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90c8e522-7e76-437c-8161-b68672bed5d7.tmp, EstimatedImpact: 0% 2026-05-18T16:29:34.114 ProcessImageName: updater.exe, Pid: 3788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e74782fe-7250-489b-bdb2-cbab49f2ef05.tmp, EstimatedImpact: 0% 2026-05-18T16:29:34.114 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b83762ca-82e6-48b1-98a7-b2b6fdf74d5d.tmp, EstimatedImpact: 0% 2026-05-18T16:29:34.114 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac575d00-f479-4bc6-9e5f-f8949efa50da.tmp, EstimatedImpact: 0% 2026-05-18T16:37:05.563 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T16:52:10.568 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T17:07:15.557 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T17:15:34.522 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98626, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T17:15:34.522 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98628, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T17:15:44.536 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98633, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T17:15:44.552 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98636, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T17:22:20.557 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T17:37:25.567 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T17:52:30.567 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T18:07:35.567 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T18:15:34.567 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98749, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T18:15:34.582 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98751, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T18:15:44.587 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98756, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T18:15:44.587 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98757, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T18:15:44.587 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98759, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T18:22:40.553 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T18:29:34.114 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51179, Count: 6936, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-18T18:29:34.114 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 90, Count: 80, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_11.MAD, EstimatedImpact: 0% 2026-05-18T18:29:34.114 ProcessImageName: updater.exe, Pid: 4460, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eabfdf6d-cc50-4739-89ee-e918399e85a1.tmp, EstimatedImpact: 0% 2026-05-18T18:29:34.114 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-18T18:29:34.114 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4e16f749-c16e-401e-ae67-730c19165908.tmp, EstimatedImpact: 0% 2026-05-18T18:29:34.114 ProcessImageName: updater.exe, Pid: 4448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8599af8-2282-4c76-a433-263db78102dc.tmp, EstimatedImpact: 0% 2026-05-18T18:29:34.114 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\298ea0ef-1b30-421c-8287-2d686527f427.tmp, EstimatedImpact: 0% 2026-05-18T18:29:34.114 ProcessImageName: updater.exe, Pid: 3816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90c8e522-7e76-437c-8161-b68672bed5d7.tmp, EstimatedImpact: 0% 2026-05-18T18:29:34.114 ProcessImageName: updater.exe, Pid: 3788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e74782fe-7250-489b-bdb2-cbab49f2ef05.tmp, EstimatedImpact: 0% 2026-05-18T18:29:34.114 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b83762ca-82e6-48b1-98a7-b2b6fdf74d5d.tmp, EstimatedImpact: 0% 2026-05-18T18:29:34.114 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac575d00-f479-4bc6-9e5f-f8949efa50da.tmp, EstimatedImpact: 0% 2026-05-18T18:37:45.553 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T18:52:50.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T19:07:55.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T19:15:33.986 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98876, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T19:15:33.986 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98878, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T19:15:43.995 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98883, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T19:15:43.995 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98885, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T19:15:44.167 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98889, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T19:15:44.167 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98891, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T19:23:00.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T19:38:05.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T19:53:10.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T20:08:15.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T20:15:35.127 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98999, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T20:15:35.142 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99001, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T20:15:45.130 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99006, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T20:15:45.130 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99008, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T20:15:45.146 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99010, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T20:15:45.146 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99012, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T20:23:20.552 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-18T20:29:12.817 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-18T20:29:12.832 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-18T20:29:12.832 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-18T20:29:12.832 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-18T20:29:12.832 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-18T20:29:12.832 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-18T20:29:12.832 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-18T20:29:12.832 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-18T20:29:12.832 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-18T20:29:12.832 MdCoreSvc is supported in this platform and OS 2026-05-18T20:29:13.341 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-18T20:29:13.341 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-18T20:29:13.341 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-18T20:29:34.113 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51194, Count: 6939, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-18T20:29:34.113 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 90, Count: 80, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_11.MAD, EstimatedImpact: 0% 2026-05-18T20:29:34.113 ProcessImageName: updater.exe, Pid: 4460, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eabfdf6d-cc50-4739-89ee-e918399e85a1.tmp, EstimatedImpact: 0% 2026-05-18T20:29:34.113 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-18T20:29:34.113 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\398c81a3-d920-4b1c-b460-203490286f0d.tmp, EstimatedImpact: 0% 2026-05-18T20:29:34.113 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4e16f749-c16e-401e-ae67-730c19165908.tmp, EstimatedImpact: 0% 2026-05-18T20:29:34.113 ProcessImageName: updater.exe, Pid: 4448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8599af8-2282-4c76-a433-263db78102dc.tmp, EstimatedImpact: 0% 2026-05-18T20:29:34.113 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c750b98f-b841-46d7-b8b5-30604bc1df73.tmp, EstimatedImpact: 0% 2026-05-18T20:29:34.113 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\298ea0ef-1b30-421c-8287-2d686527f427.tmp, EstimatedImpact: 0% 2026-05-18T20:29:34.113 ProcessImageName: updater.exe, Pid: 3816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90c8e522-7e76-437c-8161-b68672bed5d7.tmp, EstimatedImpact: 0% 2026-05-18T20:29:34.113 ProcessImageName: updater.exe, Pid: 3788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e74782fe-7250-489b-bdb2-cbab49f2ef05.tmp, EstimatedImpact: 0% 2026-05-18T20:29:34.113 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b83762ca-82e6-48b1-98a7-b2b6fdf74d5d.tmp, EstimatedImpact: 0% 2026-05-18T20:29:34.113 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac575d00-f479-4bc6-9e5f-f8949efa50da.tmp, EstimatedImpact: 0% 2026-05-18T20:38:25.553 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T20:53:30.552 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T21:08:35.552 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T21:15:34.468 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99095, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T21:15:34.468 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99097, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T21:15:44.482 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99102, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T21:15:44.482 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99103, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T21:15:44.498 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99105, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T21:15:44.498 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99106, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T21:23:40.556 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T21:38:45.552 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T21:53:50.561 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T22:08:55.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T22:15:33.317 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99204, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T22:15:33.332 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99206, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T22:15:43.320 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99211, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T22:15:43.320 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99213, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T22:15:43.336 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99215, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T22:15:43.336 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99217, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T22:24:00.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 2026-05-18T22:29:15.396 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-18T22:29:15.411 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-18T22:29:15.411 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-18T22:29:15.411 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-18T22:29:15.411 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-18T22:29:15.411 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-18T22:29:15.411 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-18T22:29:15.411 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-18T22:29:15.411 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-18T22:29:15.411 MdCoreSvc is supported in this platform and OS 2026-05-18T22:29:15.904 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-18T22:29:15.904 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-18T22:29:15.904 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-18T22:29:34.118 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51224, Count: 6943, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-18T22:29:34.118 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 90, Count: 80, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_11.MAD, EstimatedImpact: 0% 2026-05-18T22:29:34.118 ProcessImageName: updater.exe, Pid: 4460, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eabfdf6d-cc50-4739-89ee-e918399e85a1.tmp, EstimatedImpact: 0% 2026-05-18T22:29:34.118 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-18T22:29:34.118 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\398c81a3-d920-4b1c-b460-203490286f0d.tmp, EstimatedImpact: 0% 2026-05-18T22:29:34.118 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4e16f749-c16e-401e-ae67-730c19165908.tmp, EstimatedImpact: 0% 2026-05-18T22:29:34.118 ProcessImageName: updater.exe, Pid: 3816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90c8e522-7e76-437c-8161-b68672bed5d7.tmp, EstimatedImpact: 0% 2026-05-18T22:29:34.118 ProcessImageName: updater.exe, Pid: 4448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8599af8-2282-4c76-a433-263db78102dc.tmp, EstimatedImpact: 0% 2026-05-18T22:29:34.118 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c750b98f-b841-46d7-b8b5-30604bc1df73.tmp, EstimatedImpact: 0% 2026-05-18T22:29:34.118 ProcessImageName: updater.exe, Pid: 3788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e74782fe-7250-489b-bdb2-cbab49f2ef05.tmp, EstimatedImpact: 0% 2026-05-18T22:29:34.118 ProcessImageName: updater.exe, Pid: 3024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36c70495-ca6b-412c-adf0-bc03378bea74.tmp, EstimatedImpact: 0% 2026-05-18T22:29:34.118 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\298ea0ef-1b30-421c-8287-2d686527f427.tmp, EstimatedImpact: 0% 2026-05-18T22:29:34.118 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b83762ca-82e6-48b1-98a7-b2b6fdf74d5d.tmp, EstimatedImpact: 0% 2026-05-18T22:29:34.118 ProcessImageName: updater.exe, Pid: 1292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e6126b6-fec0-4eb6-906f-1316d686fa0b.tmp, EstimatedImpact: 0% 2026-05-18T22:29:34.118 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac575d00-f479-4bc6-9e5f-f8949efa50da.tmp, EstimatedImpact: 0% 2026-05-18T22:39:05.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T22:54:10.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T23:09:15.565 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T23:15:33.524 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99354, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T23:15:33.540 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99356, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T23:15:43.538 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99361, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T23:15:43.553 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99364, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-18T23:24:20.551 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T23:39:25.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-18T23:54:30.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T00:09:35.558 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T00:15:33.227 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99464, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T00:24:40.558 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T00:29:34.127 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51254, Count: 6947, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 90, Count: 80, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_11.MAD, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: updater.exe, Pid: 4684, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab46139-c3b1-41e3-9fc5-4fcd0fe7808f.tmp, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: updater.exe, Pid: 4460, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eabfdf6d-cc50-4739-89ee-e918399e85a1.tmp, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\398c81a3-d920-4b1c-b460-203490286f0d.tmp, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4e16f749-c16e-401e-ae67-730c19165908.tmp, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac575d00-f479-4bc6-9e5f-f8949efa50da.tmp, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: updater.exe, Pid: 3816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90c8e522-7e76-437c-8161-b68672bed5d7.tmp, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: updater.exe, Pid: 3788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e74782fe-7250-489b-bdb2-cbab49f2ef05.tmp, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\298ea0ef-1b30-421c-8287-2d686527f427.tmp, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: updater.exe, Pid: 5084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0aa668c7-295c-49f6-bd86-3573a9b7ed93.tmp, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: updater.exe, Pid: 3024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36c70495-ca6b-412c-adf0-bc03378bea74.tmp, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: updater.exe, Pid: 4448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8599af8-2282-4c76-a433-263db78102dc.tmp, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c750b98f-b841-46d7-b8b5-30604bc1df73.tmp, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b83762ca-82e6-48b1-98a7-b2b6fdf74d5d.tmp, EstimatedImpact: 0% 2026-05-19T00:29:34.127 ProcessImageName: updater.exe, Pid: 1292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e6126b6-fec0-4eb6-906f-1316d686fa0b.tmp, EstimatedImpact: 0% 2026-05-19T00:39:45.563 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T00:54:50.557 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T01:09:55.551 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T01:15:34.189 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99595, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T01:25:00.556 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T01:40:05.556 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T01:55:10.551 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T02:10:15.550 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T02:25:20.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T02:29:34.127 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51254, Count: 6950, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 135, Count: 88, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_11.MAD, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 4684, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab46139-c3b1-41e3-9fc5-4fcd0fe7808f.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 4460, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eabfdf6d-cc50-4739-89ee-e918399e85a1.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\398c81a3-d920-4b1c-b460-203490286f0d.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4e16f749-c16e-401e-ae67-730c19165908.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac575d00-f479-4bc6-9e5f-f8949efa50da.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\298ea0ef-1b30-421c-8287-2d686527f427.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 3816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90c8e522-7e76-437c-8161-b68672bed5d7.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 4772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b78eeb3-16da-4a1e-96cd-e07d8302b6f4.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 3788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e74782fe-7250-489b-bdb2-cbab49f2ef05.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 5084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0aa668c7-295c-49f6-bd86-3573a9b7ed93.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 3024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36c70495-ca6b-412c-adf0-bc03378bea74.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 4448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8599af8-2282-4c76-a433-263db78102dc.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b83762ca-82e6-48b1-98a7-b2b6fdf74d5d.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c750b98f-b841-46d7-b8b5-30604bc1df73.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 1292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e6126b6-fec0-4eb6-906f-1316d686fa0b.tmp, EstimatedImpact: 0% 2026-05-19T02:29:34.127 ProcessImageName: updater.exe, Pid: 496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfe0049c-9efb-4628-a38a-050838215090.tmp, EstimatedImpact: 0% 2026-05-19T02:40:25.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T02:55:30.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T03:10:35.550 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T03:15:33.832 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99911, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T03:25:40.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T03:40:45.553 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T03:45:25.824 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:8F4C8102-BF6E-43D1-9FBC-B6A1C2B0A0BA, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-19T03:45:25.824 Scheduled scan with Id 8F4C8102-BF6E-43D1-9FBC-B6A1C2B0A0BA configured CPU priority: normal (LowCpuPriority: 0) 2026-05-19T03:45:25.824 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-19T03:45:25.824 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-19T03:45:25.824 [SFC] System file cache build is not needed (already completed) 2026-05-19T03:45:37.272 Engine:Triggered AR EMS scan 2026-05-19T03:45:37.288 Engine:EMS scan for process: lsass pid: 600, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.288 Engine:EMS scan for process: svchost pid: 680, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.304 Engine:EMS scan for process: svchost pid: 736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.304 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.319 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.335 Engine:EMS scan for process: svchost pid: 936, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.350 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.350 Engine:EMS scan for process: svchost pid: 992, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.366 Engine:EMS scan for process: svchost pid: 352, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.382 Engine:EMS scan for process: svchost pid: 776, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.382 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.397 Engine:EMS scan for process: svchost pid: 1452, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.397 Engine:EMS scan for process: svchost pid: 2052, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.413 Engine:EMS scan for process: svchost pid: 2200, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.429 Engine:EMS scan for process: svchost pid: 2224, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.429 Engine:EMS scan for process: svchost pid: 2628, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.444 Engine:EMS scan for process: svchost pid: 1736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:37.444 Engine:EMS scan for process: svchost pid: 4828, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-19T03:45:50.429 QuickScan:ScanID:8F4C8102-BF6E-43D1-9FBC-B6A1C2B0A0BA: Quick scan finished with error 0 2026-05-19T03:45:50.429 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-19T03:45:50.935 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-19T03:45:50.935 [RTP] Duplicating the current plugin configuration object... 2026-05-19T03:45:50.935 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-19T03:45:50.935 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-19T03:45:50.935 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-19T03:45:50.935 [RTP] No config change detected. Not updating plugin configuration. 2026-05-19T03:45:50.935 [RTP] No config changes found. No configuration switch. 2026-05-19T03:45:50.935 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-19T03:55:50.550 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T04:10:55.550 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T04:26:00.550 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T04:29:34.127 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51254, Count: 6951, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 150, Count: 93, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_11.MAD, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 4684, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab46139-c3b1-41e3-9fc5-4fcd0fe7808f.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 4460, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eabfdf6d-cc50-4739-89ee-e918399e85a1.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\398c81a3-d920-4b1c-b460-203490286f0d.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4e16f749-c16e-401e-ae67-730c19165908.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 5084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0aa668c7-295c-49f6-bd86-3573a9b7ed93.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 3816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90c8e522-7e76-437c-8161-b68672bed5d7.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 4232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7739b091-7edd-497c-a933-ff3fc8353b06.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 4772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b78eeb3-16da-4a1e-96cd-e07d8302b6f4.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\298ea0ef-1b30-421c-8287-2d686527f427.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfe0049c-9efb-4628-a38a-050838215090.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 3788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e74782fe-7250-489b-bdb2-cbab49f2ef05.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 4448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8599af8-2282-4c76-a433-263db78102dc.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 4364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b678077b-d925-4b66-afcf-09d1be50601f.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c750b98f-b841-46d7-b8b5-30604bc1df73.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 3024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36c70495-ca6b-412c-adf0-bc03378bea74.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b83762ca-82e6-48b1-98a7-b2b6fdf74d5d.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 1292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e6126b6-fec0-4eb6-906f-1316d686fa0b.tmp, EstimatedImpact: 0% 2026-05-19T04:29:34.127 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac575d00-f479-4bc6-9e5f-f8949efa50da.tmp, EstimatedImpact: 0% 2026-05-19T04:41:05.552 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T04:56:10.552 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T05:11:15.551 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T05:15:35.283 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #100295, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T05:26:20.556 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T05:41:25.551 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T05:56:30.549 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T06:11:35.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T06:15:43.957 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #100450, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T06:26:40.549 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T06:29:34.142 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51254, Count: 6952, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 165, Count: 97, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_11.MAD, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 4684, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab46139-c3b1-41e3-9fc5-4fcd0fe7808f.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 4460, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eabfdf6d-cc50-4739-89ee-e918399e85a1.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3da94dc9-402a-4afc-8b29-af72aedb4af4.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\398c81a3-d920-4b1c-b460-203490286f0d.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4e16f749-c16e-401e-ae67-730c19165908.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 5084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0aa668c7-295c-49f6-bd86-3573a9b7ed93.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 4448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8599af8-2282-4c76-a433-263db78102dc.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 3816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90c8e522-7e76-437c-8161-b68672bed5d7.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 4364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b678077b-d925-4b66-afcf-09d1be50601f.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 4772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b78eeb3-16da-4a1e-96cd-e07d8302b6f4.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\298ea0ef-1b30-421c-8287-2d686527f427.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c750b98f-b841-46d7-b8b5-30604bc1df73.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 3788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e74782fe-7250-489b-bdb2-cbab49f2ef05.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 4232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7739b091-7edd-497c-a933-ff3fc8353b06.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 3024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36c70495-ca6b-412c-adf0-bc03378bea74.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b83762ca-82e6-48b1-98a7-b2b6fdf74d5d.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 1376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e916dd4-dff1-49da-91f7-e019b71a78bb.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfe0049c-9efb-4628-a38a-050838215090.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 1292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e6126b6-fec0-4eb6-906f-1316d686fa0b.tmp, EstimatedImpact: 0% 2026-05-19T06:29:34.142 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac575d00-f479-4bc6-9e5f-f8949efa50da.tmp, EstimatedImpact: 0% 2026-05-19T06:41:45.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T06:56:50.549 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T07:11:55.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T07:27:00.564 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T07:42:05.549 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T07:57:10.549 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T08:12:15.549 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T08:27:20.562 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T08:29:34.156 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51269, Count: 6954, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 165, Count: 97, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_11.MAD, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 137, Count: 11, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 4460, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eabfdf6d-cc50-4739-89ee-e918399e85a1.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 4684, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab46139-c3b1-41e3-9fc5-4fcd0fe7808f.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3da94dc9-402a-4afc-8b29-af72aedb4af4.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\398c81a3-d920-4b1c-b460-203490286f0d.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4e16f749-c16e-401e-ae67-730c19165908.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 5084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0aa668c7-295c-49f6-bd86-3573a9b7ed93.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 4232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7739b091-7edd-497c-a933-ff3fc8353b06.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 1292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e6126b6-fec0-4eb6-906f-1316d686fa0b.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac575d00-f479-4bc6-9e5f-f8949efa50da.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 4772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b78eeb3-16da-4a1e-96cd-e07d8302b6f4.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\298ea0ef-1b30-421c-8287-2d686527f427.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c750b98f-b841-46d7-b8b5-30604bc1df73.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 3816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90c8e522-7e76-437c-8161-b68672bed5d7.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 3788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e74782fe-7250-489b-bdb2-cbab49f2ef05.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 3024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36c70495-ca6b-412c-adf0-bc03378bea74.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 4448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8599af8-2282-4c76-a433-263db78102dc.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 2992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f07336e5-3578-4ab4-a36c-839db3111856.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 4364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b678077b-d925-4b66-afcf-09d1be50601f.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b83762ca-82e6-48b1-98a7-b2b6fdf74d5d.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 1376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e916dd4-dff1-49da-91f7-e019b71a78bb.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 4300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321b12ad-fae5-4640-b324-ec576c4a427c.tmp, EstimatedImpact: 0% 2026-05-19T08:29:34.156 ProcessImageName: updater.exe, Pid: 496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfe0049c-9efb-4628-a38a-050838215090.tmp, EstimatedImpact: 0% 2026-05-19T08:42:25.548 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T08:57:30.556 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T09:12:35.561 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T09:15:33.043 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #100999, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T09:27:40.548 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T09:42:45.561 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T09:57:50.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T10:12:55.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T10:15:44.848 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #101148, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T10:28:00.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T10:29:20.548 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-19T10:29:20.563 Job Notification: New process added to job (2748) 2026-05-19T10:29:20.581 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-19T10:29:20.581 Aggressive catchup quick scan threshold: 242347576106 / 25920000000000 2026-05-19T10:29:20.581 Job Notification: New process added to job (4212) 2026-05-19T10:29:20.581 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:2748] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4212]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-19T10:29:20.691 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-19T10:29:20.691 Job Notification: New process added to job (2648) 2026-05-19T10:29:20.691 Job Notification: New process added to job (4112) 2026-05-19T10:29:20.722 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:2648] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4112]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-19T10:29:21.081 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-19T10:29:21.081 [RTP] Duplicating the current plugin configuration object... 2026-05-19T10:29:21.081 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-19T10:29:21.081 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-19T10:29:21.081 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-19T10:29:21.081 [RTP] No config change detected. Not updating plugin configuration. 2026-05-19T10:29:21.081 [RTP] No config changes found. No configuration switch. 2026-05-19T10:29:21.081 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-19T10:29:21.456 Job Notification: New process added to job (944) 2026-05-19T10:29:21.472 Task(GetDeviceTicket -AccessKey 33B52D3A-30FA-5094-82EF-AF0D489A79B1 ) launched as network service 2026-05-19T10:29:21.909 Job Notification: Process exited from job (944) 2026-05-19T10:29:22.982 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-19T10:29:22.982 [Cloud] Start of cloud request. Passive mode: 0 2026-05-19T10:29:22.982 [Cloud] Queued cloud request. 2026-05-19T10:29:22.982 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-19T10:29:22.982 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-19T10:29:22.982 [Cloud] Dequeued cloud request. 2026-05-19T10:29:22.982 [Cloud] Start of cloud request. Passive mode: 0 2026-05-19T10:29:22.982 [Cloud] Queued cloud request. 2026-05-19T10:29:22.982 [Cloud] Dequeued cloud request. 2026-05-19T10:29:22.982 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-19T10:29:22.982 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-19T10:29:23.201 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-19T10:29:23.201 [Cloud] End of cloud request. 2026-05-19T10:29:23.201 [Cloud] End of cloud request. 2026-05-19T10:29:23.486 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-19T10:29:34.155 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51269, Count: 6954, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 165, Count: 97, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_11.MAD, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 137, Count: 12, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fd676a2-a61e-4f60-9442-f8a4cbc7f0c8.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 4460, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eabfdf6d-cc50-4739-89ee-e918399e85a1.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 4684, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab46139-c3b1-41e3-9fc5-4fcd0fe7808f.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3da94dc9-402a-4afc-8b29-af72aedb4af4.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\398c81a3-d920-4b1c-b460-203490286f0d.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4e16f749-c16e-401e-ae67-730c19165908.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 5084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0aa668c7-295c-49f6-bd86-3573a9b7ed93.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac575d00-f479-4bc6-9e5f-f8949efa50da.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 4232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7739b091-7edd-497c-a933-ff3fc8353b06.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfe0049c-9efb-4628-a38a-050838215090.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\65787639-f93b-49e5-9d10-020bc3fe804f.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 4772, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1b78eeb3-16da-4a1e-96cd-e07d8302b6f4.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\298ea0ef-1b30-421c-8287-2d686527f427.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c750b98f-b841-46d7-b8b5-30604bc1df73.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 3816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\90c8e522-7e76-437c-8161-b68672bed5d7.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 3788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e74782fe-7250-489b-bdb2-cbab49f2ef05.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 3024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\36c70495-ca6b-412c-adf0-bc03378bea74.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 2992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f07336e5-3578-4ab4-a36c-839db3111856.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 4448, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b8599af8-2282-4c76-a433-263db78102dc.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b83762ca-82e6-48b1-98a7-b2b6fdf74d5d.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 4364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b678077b-d925-4b66-afcf-09d1be50601f.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 1376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e916dd4-dff1-49da-91f7-e019b71a78bb.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 1292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e6126b6-fec0-4eb6-906f-1316d686fa0b.tmp, EstimatedImpact: 0% 2026-05-19T10:29:34.155 ProcessImageName: updater.exe, Pid: 4300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321b12ad-fae5-4640-b324-ec576c4a427c.tmp, EstimatedImpact: 0% 2026-05-19T10:29:36.216 Job Notification: Process exited from job (172) 2026-05-19T10:29:50.110 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\41353E88-0942-4BBB-86B4-D2CA92EDB7D1aa4.1dce77a6afc2fd1 2026-05-19T10:29:50.172 Verifying engine and signature files (source: 0) ... 2026-05-19T10:29:50.172 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5}\mpengine.dll] due to PPL. 2026-05-19T10:29:50.172 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5}\mpasbase.vdm] (file in cache) 2026-05-19T10:29:50.172 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-19T10:29:50.204 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5}\mpasdlta.vdm] 2026-05-19T10:29:50.204 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5}\mpavbase.vdm] (file in cache) 2026-05-19T10:29:50.204 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-19T10:29:50.219 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5}\mpavdlta.vdm] 2026-05-19T10:29:50.360 [Engine] IsHybridMode: 0 2026-05-19T10:29:50.360 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-19T10:29:50.391 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-B5CE037560240D25425DE3A87BF5BACF01C9D5EB.bin): 0x00000002 2026-05-19T10:29:50.407 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-B5CE037560240D25425DE3A87BF5BACF01C9D5EB.bin) 2026-05-19T10:29:50.407 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-19T10:29:50.407 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-19T10:29:50.407 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-19T10:29:50.407 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-19T10:29:58.958 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-19T10:29:58.958 [AutoExclusion] Applied roles from cache. 2026-05-19T10:29:58.958 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-19T10:29:59.004 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFFF5878020, lRefCount: 5, hr=0 2026-05-19T10:29:59.004 [Engine] New active engine 00007FFFF2148020 replacing engine 00007FFFF5878020. Number of active engines: 2 2026-05-19T10:29:59.004 EngineInit:Global ASOC is enabled 2026-05-19T10:29:59.004 EngineInit:ASOO is enabled for developer volumes 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-19T10:29:59.020 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-19T10:29:59.020 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-19T10:29:59.036 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-19T10:29:59.036 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-19T10:29:59.036 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-19T10:29:59.036 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-19T10:29:59.036 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-19T10:29:59.036 [Plugin] Initializing RTP plugin state... 2026-05-19T10:29:59.036 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-19T10:29:59.036 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎18‎-‎2026 12:29:34 Last Perf:‎05‎-‎18‎-‎2026 12:29:34 First RTP Scan:‎05‎-‎18‎-‎2026 12:29:34 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:386 Misses:2963 BM Queue:0,77,0 Proc:0,38,0 File:0,68,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:101282 Pending:0 RegSize:281830 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:128931868 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:41741 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:332074 TotalHits:236396 InstanceCacheInserts:4062 InstanceCacheUpdates:0 InstanceCacheDeletes:3475 InstanceCacheHits:318 InstanceCacheMisses:138198 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (206/197) Success: 197, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-19T10:29:59.036 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5} 2026-05-19T10:29:59.036 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-19T10:29:59.036 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5DD98073-6841-4A4A-B5ED-F1D189CB9A47} removed 2026-05-19T10:29:59.036 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{68BADD62-4FD6-4D5B-B0DC-BEF7DCD41C4B}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{68BADD62-4FD6-4D5B-B0DC-BEF7DCD41C4B}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-19T10:29:59.036 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-19T10:29:59.036 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-19T10:29:59.036 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-19T10:29:59.036 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-19T10:29:59.036 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-19-2026 10:29:59 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-19-2026 10:29:59 2026-05-19T10:29:59.036 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-19T10:29:59.036 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-19T10:29:59.036 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-19T10:29:59.036 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-19T10:29:59.036 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-19T10:29:59.036 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-19T10:29:59.036 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-19T10:29:59.036 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-19T10:29:59.036 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-19T10:29:59.036 MdCoreSvc is supported in this platform and OS Signature updated on 05-19-2026 10:29:59 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.692.0 AV Signature Version: 1.449.692.0 ************************************************************ 2026-05-19T10:29:59.051 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-19T10:29:59.051 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\41353E88-0942-4BBB-86B4-D2CA92EDB7D1aa4.1dce77a6afc2fd1 2026-05-19T10:29:59.067 Process scan (postsignatureupdatescan) started. 2026-05-19T10:29:59.114 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-19T10:29:59.114 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-19T10:29:59.286 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-19T10:29:59.286 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-19T10:29:59.286 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-19T10:29:59.286 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-19T10:29:59.286 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-19T10:29:59.286 [Engine] Engine 00007FFFF5878020 no longer in use. Number of active engines: 1 Signature updated via MicrosoftUpdateServer on 05-19-2026 10:29:59 ************************************************************ 2026-05-19T10:29:59.317 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-19T10:29:59.317 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-19T10:29:59.333 Job Notification: Process exited from job (2748) 2026-05-19T10:29:59.333 Job Notification: Process exited from job (2648) 2026-05-19T10:29:59.333 Job Notification: Process exited from job (4212) 2026-05-19T10:29:59.426 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 51269, Count: 6954, MaxTime: 890, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-19T10:29:59.426 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 165, Count: 97, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_5f9_11.MAD, EstimatedImpact: 0% 2026-05-19T10:29:59.426 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 137, Count: 12, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-05-19T10:29:59.426 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fd676a2-a61e-4f60-9442-f8a4cbc7f0c8.tmp, EstimatedImpact: 0% 2026-05-19T10:29:59.426 ProcessImageName: updater.exe, Pid: 4460, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eabfdf6d-cc50-4739-89ee-e918399e85a1.tmp, EstimatedImpact: 0% 2026-05-19T10:29:59.426 ProcessImageName: updater.exe, Pid: 4684, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ab46139-c3b1-41e3-9fc5-4fcd0fe7808f.tmp, EstimatedImpact: 0% 2026-05-19T10:29:59.426 ProcessImageName: updater.exe, Pid: 5016, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3da94dc9-402a-4afc-8b29-af72aedb4af4.tmp, EstimatedImpact: 0% 2026-05-19T10:29:59.426 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\398c81a3-d920-4b1c-b460-203490286f0d.tmp, EstimatedImpact: 0% 2026-05-19T10:29:59.426 ProcessImageName: updater.exe, Pid: 2756, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4e16f749-c16e-401e-ae67-730c19165908.tmp, EstimatedImpact: 0% 2026-05-19T10:29:59.426 ProcessImageName: updater.exe, Pid: 5084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0aa668c7-295c-49f6-bd86-3573a9b7ed93.tmp, EstimatedImpact: 0% 2026-05-19T10:29:59.426 ProcessImageName: updater.exe, Pid: 4300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\321b12ad-fae5-4640-b324-ec576c4a427c.tmp, EstimatedImpact: 0% 2026-05-19T10:29:59.426 ProcessImageName: updater.exe, Pid: 1184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ac575d00-f479-4bc6-9e5f-f8949efa50da.tmp, EstimatedImpact: 0% 2026-05-19T10:29:59.426 ProcessImageName: updater.exe, Pid: 4232, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7739b091-7edd-497c-a933-ff3fc8353b06.tmp, EstimatedImpact: 0% 2026-05-19T10:29:59.426 ProcessImageName: updater.exe, Pid: 496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfe0049c-9efb-4628-a38a-050838215090.tmp, EstimatedImpact: 0% 2026-05-19T10:29:59.458 [Engine] RSIG_UNLOADENGINE, 00007FFFF5878020, err=0x0 2026-05-19T10:29:59.473 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{68BADD62-4FD6-4D5B-B0DC-BEF7DCD41C4B} removed 2026-05-19T10:29:59.473 Job Notification: Process exited from job (4112) 2026-05-19T10:29:59.520 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-19T10:29:59.520 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-19T10:29:59.520 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-19T10:30:03.176 Process scan (postsignatureupdatescan) completed. 2026-05-19T10:34:59.031 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-19T10:43:05.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T10:58:10.548 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T11:13:15.558 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T11:15:32.723 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #101441, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T11:15:32.738 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #101443, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T11:15:42.737 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #101447, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T11:15:42.752 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #101449, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T11:28:20.547 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T11:43:25.547 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T11:58:30.547 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T12:13:35.551 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T12:15:34.067 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #101555, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T12:15:34.067 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #101557, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T12:15:44.071 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #101561, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T12:15:44.071 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #101563, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T12:15:44.086 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #101565, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T12:15:44.086 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #101567, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T12:28:40.547 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T12:29:59.016 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 528, Count: 55, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-05-19T12:29:59.016 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-19T12:29:59.016 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\292e026a-ab66-4e25-bad6-3f59faa49d9e.tmp, EstimatedImpact: 0% 2026-05-19T12:29:59.016 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6733a76d-c859-440b-808d-46ec3a38f9f0.tmp, EstimatedImpact: 0% 2026-05-19T12:33:45.443 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\xampp\tmp\#sqla88_64d_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #102788, FileId: 0x3900000001b8f0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T12:33:55.927 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\xampp\tmp\#sqla88_64d_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #103235, FileId: 0x3a00000001b8f0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T12:43:45.561 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T12:58:50.547 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T13:13:55.550 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T13:15:33.901 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103452, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T13:15:33.917 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103454, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T13:15:43.915 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103458, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T13:15:43.915 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103459, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T13:15:43.931 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103460, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T13:29:00.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T13:44:05.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T13:59:10.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T14:14:15.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T14:15:35.054 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103594, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T14:15:35.063 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103596, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T14:15:45.049 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103600, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T14:15:45.049 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103602, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T14:15:45.065 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103604, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T14:15:45.065 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103606, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T14:29:20.547 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T14:29:59.019 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 44979, Count: 6464, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-19T14:29:59.019 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-19T14:29:59.019 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\292e026a-ab66-4e25-bad6-3f59faa49d9e.tmp, EstimatedImpact: 0% 2026-05-19T14:29:59.019 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1df11520-76e8-4348-b871-31e79243aeee.tmp, EstimatedImpact: 0% 2026-05-19T14:29:59.019 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6733a76d-c859-440b-808d-46ec3a38f9f0.tmp, EstimatedImpact: 0% 2026-05-19T14:29:59.019 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\461e69cc-3ec1-422a-8acf-d4e3a3fb323b.tmp, EstimatedImpact: 0% 2026-05-19T14:29:59.019 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 0, Count: 4, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_64d_1.MAI, EstimatedImpact: 0% 2026-05-19T14:44:25.546 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T14:59:30.558 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T15:14:35.547 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T15:15:35.437 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103721, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T15:15:35.437 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103723, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T15:15:45.445 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103727, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T15:15:45.445 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103729, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T15:15:45.617 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103733, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T15:15:45.617 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103735, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T15:29:40.546 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T15:31:53.854 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\xampp\tmp\#sqla88_ace_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #103767, FileId: 0x4600000001b8cf, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T15:31:54.661 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\xampp\tmp\#sqla88_ace_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #103773, FileId: 0x4700000001b8cf, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T15:44:45.552 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T15:59:50.552 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T16:14:55.556 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T16:15:32.970 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103846, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T16:15:32.986 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103848, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T16:15:42.978 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103852, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T16:15:42.978 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103853, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T16:15:42.993 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103854, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T16:29:59.025 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 45040, Count: 6468, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-19T16:29:59.025 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07854375-6c30-4911-a42f-5cfe514bbe0c.tmp, EstimatedImpact: 0% 2026-05-19T16:29:59.025 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-19T16:29:59.025 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\292e026a-ab66-4e25-bad6-3f59faa49d9e.tmp, EstimatedImpact: 0% 2026-05-19T16:29:59.025 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1df11520-76e8-4348-b871-31e79243aeee.tmp, EstimatedImpact: 0% 2026-05-19T16:29:59.025 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6733a76d-c859-440b-808d-46ec3a38f9f0.tmp, EstimatedImpact: 0% 2026-05-19T16:29:59.025 ProcessImageName: updater.exe, Pid: 4560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09286893-b69e-403a-834a-45fc01c02173.tmp, EstimatedImpact: 0% 2026-05-19T16:29:59.025 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\461e69cc-3ec1-422a-8acf-d4e3a3fb323b.tmp, EstimatedImpact: 0% 2026-05-19T16:29:59.025 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 0, Count: 8, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_64d_1.MAI, EstimatedImpact: 0% 2026-05-19T16:30:00.550 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T16:45:05.546 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T17:00:10.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T17:15:15.546 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T17:15:34.791 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103950, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T17:15:34.807 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103952, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T17:15:44.795 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103956, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T17:15:44.795 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103958, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T17:15:44.810 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103960, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T17:15:44.810 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103962, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T17:30:20.550 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T17:45:25.560 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T18:00:30.549 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T18:15:32.676 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104064, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T18:15:32.691 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104066, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T18:15:35.554 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T18:15:42.690 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104070, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T18:15:42.705 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104072, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T18:29:59.035 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 45070, Count: 6471, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-19T18:29:59.035 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07854375-6c30-4911-a42f-5cfe514bbe0c.tmp, EstimatedImpact: 0% 2026-05-19T18:29:59.035 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-19T18:29:59.035 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\292e026a-ab66-4e25-bad6-3f59faa49d9e.tmp, EstimatedImpact: 0% 2026-05-19T18:29:59.035 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1df11520-76e8-4348-b871-31e79243aeee.tmp, EstimatedImpact: 0% 2026-05-19T18:29:59.035 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6733a76d-c859-440b-808d-46ec3a38f9f0.tmp, EstimatedImpact: 0% 2026-05-19T18:29:59.035 ProcessImageName: updater.exe, Pid: 4656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7a08b51-7e0e-45a3-8544-5420582b55e8.tmp, EstimatedImpact: 0% 2026-05-19T18:29:59.035 ProcessImageName: updater.exe, Pid: 4560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09286893-b69e-403a-834a-45fc01c02173.tmp, EstimatedImpact: 0% 2026-05-19T18:29:59.035 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\461e69cc-3ec1-422a-8acf-d4e3a3fb323b.tmp, EstimatedImpact: 0% 2026-05-19T18:29:59.035 ProcessImageName: updater.exe, Pid: 304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a987af41-4d38-4b9a-95c0-f7376896e748.tmp, EstimatedImpact: 0% 2026-05-19T18:29:59.035 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 0, Count: 8, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_64d_1.MAI, EstimatedImpact: 0% 2026-05-19T18:30:40.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T18:45:45.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T19:00:50.545 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T19:15:34.135 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104207, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T19:15:34.151 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104209, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T19:15:44.142 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104213, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T19:15:44.157 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104216, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T19:15:55.545 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T19:31:00.557 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T19:46:05.556 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T20:01:10.557 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T20:12:30.385 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sqla88_add_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #104305, FileId: 0x4e00000001b8cf, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T20:12:31.006 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sqla88_add_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #104309, FileId: 0x4f00000001b8cf, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T20:15:33.874 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104325, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T20:15:33.874 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104327, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T20:15:43.884 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104331, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T20:15:43.884 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104333, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T20:15:44.103 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104337, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T20:15:44.103 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104339, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T20:16:15.546 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T20:29:59.039 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 48586, Count: 6688, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-19T20:29:59.039 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a46543da-1901-4fc7-a588-b39506779c14.tmp, EstimatedImpact: 0% 2026-05-19T20:29:59.039 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07854375-6c30-4911-a42f-5cfe514bbe0c.tmp, EstimatedImpact: 0% 2026-05-19T20:29:59.039 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-19T20:29:59.039 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\292e026a-ab66-4e25-bad6-3f59faa49d9e.tmp, EstimatedImpact: 0% 2026-05-19T20:29:59.039 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1df11520-76e8-4348-b871-31e79243aeee.tmp, EstimatedImpact: 0% 2026-05-19T20:29:59.039 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6733a76d-c859-440b-808d-46ec3a38f9f0.tmp, EstimatedImpact: 0% 2026-05-19T20:29:59.039 ProcessImageName: updater.exe, Pid: 4656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7a08b51-7e0e-45a3-8544-5420582b55e8.tmp, EstimatedImpact: 0% 2026-05-19T20:29:59.039 ProcessImageName: updater.exe, Pid: 4560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09286893-b69e-403a-834a-45fc01c02173.tmp, EstimatedImpact: 0% 2026-05-19T20:29:59.039 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\461e69cc-3ec1-422a-8acf-d4e3a3fb323b.tmp, EstimatedImpact: 0% 2026-05-19T20:29:59.039 ProcessImageName: updater.exe, Pid: 1244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b9ec0556-9c3e-480f-9c98-2b7e04ea4c85.tmp, EstimatedImpact: 0% 2026-05-19T20:29:59.039 ProcessImageName: updater.exe, Pid: 304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a987af41-4d38-4b9a-95c0-f7376896e748.tmp, EstimatedImpact: 0% 2026-05-19T20:29:59.039 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 0, Count: 12, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_64d_1.MAI, EstimatedImpact: 0% 2026-05-19T20:31:20.551 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T20:46:25.556 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T21:01:30.545 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T21:15:34.895 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104438, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T21:15:34.910 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104440, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T21:15:44.903 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104444, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T21:15:44.903 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104445, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T21:15:44.903 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104447, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T21:16:35.544 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T21:22:14.286 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sqla88_aec_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #104466, FileId: 0x5500000001b8cf, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T21:22:14.896 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sqla88_aec_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #104470, FileId: 0x5600000001b8cf, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T21:31:40.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvEnableOneDSTelemetry hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpFc_Disruption_ModularPolicyPublish new=1 old0 2026-05-19T21:39:13.566 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-19T21:39:13.566 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-19T21:39:13.566 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-19T21:39:13.566 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-19T21:39:13.566 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-19T21:39:13.566 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-19T21:39:13.566 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-19T21:39:13.566 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-19T21:39:13.566 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-19T21:39:13.566 MdCoreSvc is supported in this platform and OS 2026-05-19T21:39:14.068 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-19T21:39:14.068 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-19T21:39:14.068 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-19T21:46:45.544 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T22:01:50.559 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T22:15:33.277 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104552, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T22:15:33.293 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104554, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T22:15:43.291 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104558, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T22:15:43.308 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104560, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T22:15:43.308 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104561, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T22:16:55.544 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T22:29:59.044 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 48601, Count: 6694, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-19T22:29:59.044 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a46543da-1901-4fc7-a588-b39506779c14.tmp, EstimatedImpact: 0% 2026-05-19T22:29:59.044 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 30, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_aec_1.MAI, EstimatedImpact: 0% 2026-05-19T22:29:59.044 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07854375-6c30-4911-a42f-5cfe514bbe0c.tmp, EstimatedImpact: 0% 2026-05-19T22:29:59.044 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-19T22:29:59.044 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\292e026a-ab66-4e25-bad6-3f59faa49d9e.tmp, EstimatedImpact: 0% 2026-05-19T22:29:59.044 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1df11520-76e8-4348-b871-31e79243aeee.tmp, EstimatedImpact: 0% 2026-05-19T22:29:59.044 ProcessImageName: updater.exe, Pid: 4416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1696266-00ad-4fc6-92f1-866caa238128.tmp, EstimatedImpact: 0% 2026-05-19T22:29:59.044 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6733a76d-c859-440b-808d-46ec3a38f9f0.tmp, EstimatedImpact: 0% 2026-05-19T22:29:59.044 ProcessImageName: updater.exe, Pid: 4656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7a08b51-7e0e-45a3-8544-5420582b55e8.tmp, EstimatedImpact: 0% 2026-05-19T22:29:59.044 ProcessImageName: updater.exe, Pid: 4560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09286893-b69e-403a-834a-45fc01c02173.tmp, EstimatedImpact: 0% 2026-05-19T22:29:59.044 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\461e69cc-3ec1-422a-8acf-d4e3a3fb323b.tmp, EstimatedImpact: 0% 2026-05-19T22:29:59.044 ProcessImageName: updater.exe, Pid: 1244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b9ec0556-9c3e-480f-9c98-2b7e04ea4c85.tmp, EstimatedImpact: 0% 2026-05-19T22:29:59.044 ProcessImageName: updater.exe, Pid: 304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a987af41-4d38-4b9a-95c0-f7376896e748.tmp, EstimatedImpact: 0% 2026-05-19T22:29:59.044 ProcessImageName: updater.exe, Pid: 4612, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-19T22:32:00.553 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T22:47:05.544 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T23:02:10.544 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T23:15:34.732 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104701, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T23:15:34.747 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104703, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T23:15:44.735 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104707, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T23:15:44.735 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104709, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T23:15:44.751 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104711, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T23:15:44.754 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104713, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T23:17:15.544 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T23:32:20.544 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T23:47:25.552 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-19T23:53:40.836 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sqla88_af3_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #104789, FileId: 0x5b00000001b8cf, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T23:53:41.429 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sqla88_af3_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #104793, FileId: 0x5c00000001b8cf, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T23:53:47.712 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sqla88_af4_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #104797, FileId: 0x6000000001b8cf, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-19T23:53:47.728 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sqla88_af4_a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #104800, FileId: 0x6100000001b8cf, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T00:02:30.546 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T00:15:34.451 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104832, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T00:15:34.451 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104834, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T00:15:44.465 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104838, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T00:15:44.480 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104841, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T00:17:35.543 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T00:29:59.047 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 48601, Count: 6697, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a46543da-1901-4fc7-a588-b39506779c14.tmp, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 60, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_aec_1.MAI, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07854375-6c30-4911-a42f-5cfe514bbe0c.tmp, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\292e026a-ab66-4e25-bad6-3f59faa49d9e.tmp, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: updater.exe, Pid: 4536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\220555e1-fcdf-426d-9781-1337782a247c.tmp, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: updater.exe, Pid: 4416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1696266-00ad-4fc6-92f1-866caa238128.tmp, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1df11520-76e8-4348-b871-31e79243aeee.tmp, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6733a76d-c859-440b-808d-46ec3a38f9f0.tmp, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: updater.exe, Pid: 4656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7a08b51-7e0e-45a3-8544-5420582b55e8.tmp, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: updater.exe, Pid: 4316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\221a5a54-b806-46ba-9c60-b6067fda49b5.tmp, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: updater.exe, Pid: 4560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09286893-b69e-403a-834a-45fc01c02173.tmp, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\461e69cc-3ec1-422a-8acf-d4e3a3fb323b.tmp, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: updater.exe, Pid: 1244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b9ec0556-9c3e-480f-9c98-2b7e04ea4c85.tmp, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: updater.exe, Pid: 304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a987af41-4d38-4b9a-95c0-f7376896e748.tmp, EstimatedImpact: 0% 2026-05-20T00:29:59.047 ProcessImageName: updater.exe, Pid: 4612, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T00:32:40.550 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T00:47:45.555 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T01:02:50.550 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T01:15:34.458 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104997, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T01:15:34.474 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105000, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T01:15:44.472 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105004, FileId: 0xcb0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T01:15:44.488 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105007, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T01:17:55.549 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T01:33:00.549 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T01:48:05.543 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T02:03:10.543 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T02:15:33.588 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105111, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T02:15:33.588 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105114, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T02:15:46.324 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105120, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T02:15:46.324 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105122, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T02:16:06.285 ReportLowfi(c:\program files (x86)\google\chrome\application\148.0.7778.178\installer\chrmstp.exe, 0x437a0835) from 0x0006b6bd6566d2d9 Internal signature match:subtype=Lowfi, sigseq=0x000005550240CBF2, sigsha=e39a25e9b19899abbd79ec872fd8aeabe27e140d, cached=false, source=0, resourceid=0xd2dfcc66 2026-05-20T02:16:08.396 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Windows\SystemTemp\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105423, FileId: 0xb00000001b7cb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T02:16:08.537 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Windows\SystemTemp\chrome_installer.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105425, FileId: 0xb00000001b7cb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T02:16:10.070 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105428, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T02:16:10.086 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105430, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T02:16:20.084 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105434, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T02:16:20.084 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105436, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T02:16:20.256 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105440, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T02:16:20.256 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105442, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T02:18:15.548 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T02:29:59.058 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 48721, Count: 6712, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 2592, TotalTime: 7666, Count: 15, MaxTime: 5015, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2592_1768781363\148.0.7778.178_chrome_installer_uncompressed.exe, EstimatedImpact: 15% 2026-05-20T02:29:59.058 ProcessImageName: 148.0.7778.178_chrome_installer_uncompressed.exe, Pid: 4588, TotalTime: 186, Count: 3, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2592_1768781363\CR_16D59.tmp\setup.exe, EstimatedImpact: 99% 2026-05-20T02:29:59.058 ProcessImageName: setup.exe, Pid: 4152, TotalTime: 184, Count: 10, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 7% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a46543da-1901-4fc7-a588-b39506779c14.tmp, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 60, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_aec_1.MAI, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07854375-6c30-4911-a42f-5cfe514bbe0c.tmp, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\292e026a-ab66-4e25-bad6-3f59faa49d9e.tmp, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 4536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\220555e1-fcdf-426d-9781-1337782a247c.tmp, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1df11520-76e8-4348-b871-31e79243aeee.tmp, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 5008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_2592_646413013\decoded_xz, EstimatedImpact: 3% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6733a76d-c859-440b-808d-46ec3a38f9f0.tmp, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 4316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\221a5a54-b806-46ba-9c60-b6067fda49b5.tmp, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 4416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1696266-00ad-4fc6-92f1-866caa238128.tmp, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 4656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7a08b51-7e0e-45a3-8544-5420582b55e8.tmp, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 4560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09286893-b69e-403a-834a-45fc01c02173.tmp, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 2276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98c7549a-66c9-41c6-a70b-e83b5fdb1539.tmp, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\461e69cc-3ec1-422a-8acf-d4e3a3fb323b.tmp, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 1244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b9ec0556-9c3e-480f-9c98-2b7e04ea4c85.tmp, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a987af41-4d38-4b9a-95c0-f7376896e748.tmp, EstimatedImpact: 0% 2026-05-20T02:29:59.058 ProcessImageName: updater.exe, Pid: 4612, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T02:33:20.543 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T02:48:25.543 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T03:03:30.552 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T03:18:35.542 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T03:33:40.542 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T03:45:25.824 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:B15EB0A9-2BF1-4E76-B41B-63DEC9A0A0FA, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-20T03:45:25.824 Scheduled scan with Id B15EB0A9-2BF1-4E76-B41B-63DEC9A0A0FA configured CPU priority: normal (LowCpuPriority: 0) 2026-05-20T03:45:25.824 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-20T03:45:25.824 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-20T03:45:25.824 [SFC] System file cache build is not needed (already completed) 2026-05-20T03:45:38.453 Engine:Triggered AR EMS scan 2026-05-20T03:45:38.453 Engine:EMS scan for process: lsass pid: 600, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.469 Engine:EMS scan for process: svchost pid: 680, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.469 Engine:EMS scan for process: svchost pid: 736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.484 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.500 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.515 Engine:EMS scan for process: svchost pid: 936, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.515 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.531 Engine:EMS scan for process: svchost pid: 992, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.547 Engine:EMS scan for process: svchost pid: 352, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.564 Engine:EMS scan for process: svchost pid: 776, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.564 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.579 Engine:EMS scan for process: svchost pid: 1452, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.579 Engine:EMS scan for process: svchost pid: 2052, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.598 Engine:EMS scan for process: svchost pid: 2200, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.598 Engine:EMS scan for process: svchost pid: 2224, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.613 Engine:EMS scan for process: svchost pid: 2628, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.613 Engine:EMS scan for process: svchost pid: 1736, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:38.629 Engine:EMS scan for process: svchost pid: 4828, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-20T03:45:56.842 QuickScan:ScanID:B15EB0A9-2BF1-4E76-B41B-63DEC9A0A0FA: Quick scan finished with error 0 2026-05-20T03:45:56.842 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-20T03:45:57.354 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-20T03:45:57.354 [RTP] Duplicating the current plugin configuration object... 2026-05-20T03:45:57.354 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-20T03:45:57.354 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-20T03:45:57.354 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-20T03:45:57.354 [RTP] No config change detected. Not updating plugin configuration. 2026-05-20T03:45:57.354 [RTP] No config changes found. No configuration switch. 2026-05-20T03:45:57.354 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-20T03:48:45.556 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T04:03:50.542 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T04:18:55.545 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T04:29:59.068 ProcessImageName: httpd.exe, Pid: 2140, TotalTime: 48782, Count: 6715, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 2592, TotalTime: 7666, Count: 15, MaxTime: 5015, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2592_1768781363\148.0.7778.178_chrome_installer_uncompressed.exe, EstimatedImpact: 15% 2026-05-20T04:29:59.068 ProcessImageName: php-cgi.exe, Pid: 4844, TotalTime: 201, Count: 6, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libeay32.dll, EstimatedImpact: 100% 2026-05-20T04:29:59.068 ProcessImageName: 148.0.7778.178_chrome_installer_uncompressed.exe, Pid: 4588, TotalTime: 186, Count: 3, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2592_1768781363\CR_16D59.tmp\setup.exe, EstimatedImpact: 99% 2026-05-20T04:29:59.068 ProcessImageName: setup.exe, Pid: 4152, TotalTime: 184, Count: 10, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 7% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a46543da-1901-4fc7-a588-b39506779c14.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: mysqld.exe, Pid: 2212, TotalTime: 60, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla88_aec_1.MAI, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: svchost.exe, Pid: 868, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 3840, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07854375-6c30-4911-a42f-5cfe514bbe0c.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\292e026a-ab66-4e25-bad6-3f59faa49d9e.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 4756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bbd2ebff-77b7-41e1-a80a-8805bc2ab05b.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1df11520-76e8-4348-b871-31e79243aeee.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 5008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_2592_646413013\decoded_xz, EstimatedImpact: 3% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 4896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6733a76d-c859-440b-808d-46ec3a38f9f0.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 4416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e1696266-00ad-4fc6-92f1-866caa238128.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 4536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\220555e1-fcdf-426d-9781-1337782a247c.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 4656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7a08b51-7e0e-45a3-8544-5420582b55e8.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 4316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\221a5a54-b806-46ba-9c60-b6067fda49b5.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 4560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09286893-b69e-403a-834a-45fc01c02173.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 2740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a848a44-fd3b-4662-b1ff-305901c710be.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 2276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\98c7549a-66c9-41c6-a70b-e83b5fdb1539.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 1920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\461e69cc-3ec1-422a-8acf-d4e3a3fb323b.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 1244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b9ec0556-9c3e-480f-9c98-2b7e04ea4c85.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 304, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a987af41-4d38-4b9a-95c0-f7376896e748.tmp, EstimatedImpact: 0% 2026-05-20T04:29:59.068 ProcessImageName: updater.exe, Pid: 4612, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T04:34:00.544 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T04:49:05.542 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T05:04:10.544 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T05:15:34.646 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #106013, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T05:19:15.542 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T05:34:20.548 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) BEGIN BM telemetry GUID:{54EF2098-B87C-6991-1848-17FEDFEF7BB1} SignatureID:56846945010345 SigSha:728d9c318636932fda3e9ee7b5dcd285b5680818 ThreatLevel:0 ProcessID:888 ProcessCreationTime:134229683402183348 SessionID:0 CreationTime:05-20-2026 05:43:06 ImagePath:C:\Windows\System32\svchost.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-20T05:43:07.344 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T05:43:07.344 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T05:43:07.344 [Cloud] Queued cloud request. 2026-05-20T05:43:07.344 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T05:43:07.344 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-05-20T05:43:07.344 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T05:43:07.344 [Cloud] Queued cloud request. 2026-05-20T05:43:07.375 Job Notification: New process added to job (4944) 2026-05-20T05:43:07.375 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey EA978BD8-BA72-C3C3-2109-14A0C8BD5548) launched 2026-05-20T05:43:07.375 Job Notification: New process added to job (1968) 2026-05-20T05:43:07.375 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:4944] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:1968]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-20T05:43:07.391 Job Notification: New process added to job (796) 2026-05-20T05:43:07.406 Job Notification: Process exited from job (4944) 2026-05-20T05:43:07.406 Job Notification: Process exited from job (1968) 2026-05-20T05:43:07.422 [Cloud] Dequeued cloud request. 2026-05-20T05:43:07.422 [Cloud] Dequeued cloud request. 2026-05-20T05:43:07.422 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T05:43:07.422 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T05:43:07.735 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-20T05:43:07.735 [Cloud] End of cloud request. 2026-05-20T05:43:07.735 [Cloud] End of cloud request. 2026-05-20T05:43:08.244 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T05:44:45.467 ReportLowfi(ctfmon.exe, 0x437a0835) from 0x0006b6bd6566d2d9 BEGIN BM telemetry GUID:{9A7F4260-EAB4-C744-55DF-24DFE34C812E} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:3108 ProcessCreationTime:134237294854864333 SessionID:2 CreationTime:05-20-2026 05:44:45 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\userinit.exe:3964:1, Operations:None END BM telemetry 2026-05-20T05:44:45.733 Bm signature throttled:0x00003fb37eb842dc 2026-05-20T05:44:46.592 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T05:44:46.592 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T05:44:46.592 [Cloud] Queued cloud request. 2026-05-20T05:44:46.592 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T05:44:46.592 [Cloud] Dequeued cloud request. 2026-05-20T05:44:46.592 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T05:44:46.624 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-05-20T05:44:46.624 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T05:44:46.624 [Cloud] Queued cloud request. 2026-05-20T05:44:46.624 [Cloud] Dequeued cloud request. 2026-05-20T05:44:46.639 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T05:44:46.874 [Cloud] End of cloud request. 2026-05-20T05:44:46.999 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-20T05:44:46.999 [Cloud] End of cloud request. 2026-05-20T05:44:47.389 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T05:45:25.120 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\ProgramData\USOShared\Logs\User\UpdateUx.001.etl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #108035, FileId: 0x787f0000000088b4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x2000, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0xd0b70dbd Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0xd0b70dbd 2026-05-20T05:46:36.022 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T05:46:36.022 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T05:46:36.022 [Cloud] Queued cloud request. 2026-05-20T05:46:36.022 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T05:46:36.022 [Cloud] Dequeued cloud request. 2026-05-20T05:46:36.022 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T05:46:36.533 [Cloud] End of cloud request. 2026-05-20T05:46:36.533 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv\backup_ro\android.php. status=0x40070000, statusex=0x200200, threatid=0x80000000, sigseq=0x20292818f356 Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0x64abda3e Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0x64abda3e 2026-05-20T05:46:36.548 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T05:46:36.548 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T05:46:36.548 [Cloud] Queued cloud request. 2026-05-20T05:46:36.548 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T05:46:36.548 [Cloud] Dequeued cloud request. 2026-05-20T05:46:36.548 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T05:46:36.785 [Cloud] End of cloud request. 2026-05-20T05:46:36.785 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv\backup_ro\android.php. status=0x40030000, statusex=0x200200, threatid=0x80000000, sigseq=0x20292818f356 2026-05-20T05:46:37.035 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T05:46:56.035 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\explorer.exe) sent successfully. 2026-05-20T05:47:27.629 Bm signature throttled:0x0002e9b3585e61cf 2026-05-20T05:48:30.162 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sqla88_b0c_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #120877, FileId: 0x140000000d8595, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T05:48:30.756 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sqla88_b0c_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #120957, FileId: 0x150000000d871f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T05:49:25.547 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T05:56:08.738 Bm signature throttled:0x000033b3b5f6c2a9 2026-05-20T05:56:18.754 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T05:56:18.754 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T05:56:18.754 [Cloud] Queued cloud request. 2026-05-20T05:56:18.754 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T05:56:18.754 [Cloud] Dequeued cloud request. 2026-05-20T05:56:18.754 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T05:56:18.988 [Cloud] End of cloud request. 2026-05-20T05:56:19.504 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T05:58:18.763 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-05-20T05:58:20.357 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-05-20T05:58:20.513 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-05-20T05:58:25.158 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-05-20T05:58:36.075 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-05-20T05:58:42.279 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-05-20T05:58:51.832 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-05-20T05:58:59.773 [RTP] [Mini-filter] Copy hint telemetry notification (\Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-05-20T06:00:53.723 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpDefenderCoreService.exe][Pid:3080] from process [\Device\HarddiskVolume2\Windows\System32\MRT.exe][Pid:3684]. OriginalDesiredAccess: [0x1418] ResultingAccess: [0x1410] 2026-05-20T06:00:53.839 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\NisSrv.exe][Pid:4080] from process [\Device\HarddiskVolume2\Windows\System32\MRT.exe][Pid:3684]. OriginalDesiredAccess: [0x1418] ResultingAccess: [0x1410] -------------------------------------------------------------------------------- Windows Defender (77BDAF73-B396-481F-9042-AD358843EC24) Service Log Started On 05-20-2026 07:19:02 ************************************************************ OS install time: 05/14/2019 05:52:54.0 UTC Current time: 05/20/2026 07:19:02.585805300 UTC (12656 ms since boot) 2026-05-20T07:19:02.591 MpEnsureProcessMitigationPolicy(0x7) returns 0 2026-05-20T07:19:02.700 ProductId: 2, ProductFeature: 0, LaunchedProtected: 3, IsWcos: 0, IsContainerOs: 0, DirtyShutdownDetected: 0, PassiveRemediation: 0, IsHybridModePolicyEnabled: 0, IsVerifiedAndReputableTrustModeEnabled: 0 2026-05-20T07:19:02.716 [WPP] Starting WPP trace with buffersize 4MB, maxfilesize: 16MB, filename: MpWppTracing-20260520-071902-00000003-fffffffeffffffff.bin ... 2026-05-20T07:19:02.716 [WPP] Trace session started - MpWppTracing-20260520-071902-00000003-fffffffeffffffff.bin 2026-05-20T07:19:02.716 [RbM] Rollback manager succesfully initialized. 2026-05-20T07:19:02.716 [RbM] Rollback manager EnableRollbackManager called. 2026-05-20T07:19:02.716 [RbM] Rollback manager EnableRollbackManager completed. 2026-05-20T07:19:02.716 [PlatUpd] Service launched successfully from: C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0 2026-05-20T07:19:02.731 [PlatUpd] Failed to read Misc config regarding new coreservice lifecycle management, using legacy core service lifecycle management anyway. hr = 0x80070002 2026-05-20T07:19:02.731 Failed to retrieve config value from engine or configurations for config key (MdTimerInitalDelay) hr = 0x80004004 2026-05-20T07:19:02.731 Failed to retrieve config value from engine or configurations for config key (MdTimerMonitorInterval) hr = 0x80004004 2026-05-20T07:19:02.731 Failed to retrieve config value from engine or configurations for config key (MdDisableResController) hr = 0x80004004 2026-05-20T07:19:02.731 Failed to retrieve config value from engine or configurations for config key (MdEnableDailySensorChecks) hr = 0x80004004 2026-05-20T07:19:02.731 Failed to retrieve config value from engine or configurations for config key (MdAlertMonitorWindow) hr = 0x80004004 2026-05-20T07:19:02.731 Failed to retrieve config value from engine or configurations for config key (MdAlertMinInterval) hr = 0x80004004 2026-05-20T07:19:02.731 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x80004004 2026-05-20T07:19:02.731 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x80004004 2026-05-20T07:19:02.731 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x80004004 2026-05-20T07:19:02.731 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorEnableLeakDetector) hr = 0x80004004 2026-05-20T07:19:02.731 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x80004004 2026-05-20T07:19:02.731 MdCoreSvc is supported in this platform and OS 2026-05-20T07:19:02.731 MdCoreSvc is supported in this platform and OS 2026-05-20T07:19:02.731 [PlatUpd] MDCoreSvc is supported by the version of the platform we are switching to. Making sure the service is registered with SCM 2026-05-20T07:19:02.731 [PlatUpd] Starting MdCoreSvc service 2026-05-20T07:19:02.747 [PlatUpd] Validating and fixing WMI MOF schema - Running command: "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpCmdRun.exe" -RegisterWmiSchema -Root "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0" 2026-05-20T07:19:05.341 [PlatUpd] MpAddMpUxRegistration succeeded 2026-05-20T07:19:05.341 [PlatUpd] MpManagementUpdateHandler: starting update for install path %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0. 2026-05-20T07:19:05.341 [PlatUpd] MpManagementUpdateHandler: calling MpUpdateManagement() 2026-05-20T07:19:05.341 [PlatUpd] MpUpdateManagement: Management platform update started for components (3) 2026-05-20T07:19:05.341 [PlatUpd] Defender MDM CSP platform update not supported on Server SKUs 2026-05-20T07:19:05.341 [PlatUpd] WMI/PS provider platform update started 2026-05-20T07:19:05.341 [PlatUpd] WMI/PS provider platform update not required 2026-05-20T07:19:05.341 [PlatUpd] MpUpdateManagement: Management platform update completed 2026-05-20T07:19:05.341 MdCoreSvc is supported in this platform and OS 2026-05-20T07:19:05.341 [PlatUpd] MDCoreSvc is supported by the version of the platform we are switching to. Making sure the service is registered with SCM 2026-05-20T07:19:05.341 [PlatUpd] Starting MdCoreSvc service 2026-05-20T07:19:05.481 [PlatUpd] Firewall rules updated for %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MsMpEng.exe 2026-05-20T07:19:05.481 [PlatUpd] MpCheckAndUpdateBinaryLocationTo(%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0): 10 items checked, 1 required update. hrMui: 0x1 hrEtw: 0 2026-05-20T07:19:05.497 [TS] Troublshooting mode is not available! 2026-05-20T07:19:05.497 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0, Scenario: Consumer, Source: Unknown, ConfigChange: Remove 2026-05-20T07:19:05.497 CheckProductDisabled(fWaitWSC: 1, fRemoveConfigs: 0) ... 2026-05-20T07:19:05.497 [Service] Enabling IOAV/IEV/ShellExt/EtwLogger registrations ... 2026-05-20T07:19:05.497 [Service] Enabling AutoLoggers ... 2026-05-20T07:19:05.497 [Service] Enabling AMSI registration ... 2026-05-20T07:19:05.497 [Service] Leaving EnableIOAVWorker(1, 0) with hr = 0 2026-05-20T07:19:05.497 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-20T07:19:05.513 Cache C:\ProgramData\Microsoft\Windows Defender\Scans\History\CacheManager\302F501F-0000-0000-0000-501F00000000-1.bin loaded.**********Cache stats************ No. Of buckets -> 39062 Each Bucket has max capacity of -> 1 entries number of Entries is 20948 Number of invalid entries is 0 Number of inserts issued is 727898 Number of replaces issued is 0 Number of insert failures is 5 Number of inserts with duplicate entries is 14777 Number of lookups is 70697867 Number of lookup misses is 2769207 Number of fast lookup misses is 46936066 Number of false fast lookups is 2769207 Number of invalidations is 466112 Number of maintenance invalidations is 122550 Current File Size is 958464 Journal ID = 1d50a16ac8ba444 Trusted image state = 4 USN = 12f847 Setup boot count = 2 2026-05-20T07:19:05.513 Verifying license file... 2026-05-20T07:19:05.513 Verified [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\msmplics.dll] (file in cache) 2026-05-20T07:19:05.528 SharedSignatureRoot not configured. Disabling remote image load for msmpeng.exe. Once disabled, it can no longer be enabled without a service restart. hr=0 2026-05-20T07:19:05.528 Loaded module#0 MpComServer. 2026-05-20T07:19:05.528 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-20T07:19:05.528 Loaded module#1 StartupPolicies. 2026-05-20T07:19:05.544 MpRefreshDefenderCoreConfigs: failed because engine is not ready, we cannot let the process continue because we might start core service while its configuration is not ready. 2026-05-20T07:19:05.544 [Plugin] Verifying C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\mprtp.dll ... 2026-05-20T07:19:05.544 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\mprtp.dll] due to PPL. 2026-05-20T07:19:05.560 COM server initialized successfully. 2026-05-20T07:19:05.575 [RTP] [RTP] FilterCommunicator object 0x00000115CB3355D0 initialized (\MicrosoftMalwareProtectionAsyncPortWD, , ), threads: 0 normal, 0 very low, 0 alt, thread pool threads: 4 normal, 0 very low, 0 alt 2026-05-20T07:19:05.575 [RTP] Setting DisableAsyncScanOnClose to 0 (hr=0). 2026-05-20T07:19:05.575 [RTP] Setting DisableAsyncScanOnOpen to 0 in wdfilter (hr=0). 2026-05-20T07:19:05.575 [RTP] Setting FilterExperimentMode to 0 (hr=0). 2026-05-20T07:19:05.575 [RTP] Setting DisableDriverUnload to 1 (hr=0). 2026-05-20T07:19:05.575 [RTP] Setting RegLinkHardeningMode to 0 (hr=0). 2026-05-20T07:19:05.575 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-20T07:19:05.575 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-20T07:19:05.575 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-20T07:19:05.575 [RTP] Setting PreventPagingFileAbuse to 1 (hr=0). 2026-05-20T07:19:05.575 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-20T07:19:05.575 [RTP] [RTP] LastAccessTimeSuppression for network files is enabled by configuration. 2026-05-20T07:19:05.575 [RTP] [RTP] FilterCommunicator object 0x00000115CB3357E0 initialized (\MicrosoftMalwareProtectionPortWD, \MicrosoftMalwareProtectionVeryLowIoPortWD, \MicrosoftMalwareProtectionRemoteIoPortWD), threads: 6 normal, 2 very low, 0 alt, thread pool threads: 0 normal, 0 very low, 6 alt 2026-05-20T07:19:05.575 [RTP] SyncDssAvailableThreads cap limit initialized by MiscConfig to: 14 2026-05-20T07:19:05.575 [RTP] [RtpCopyAccelerator] Windows19H1 0, WindowsCobalt 0, IsServerSKU 1, IsPassiveOrSideBySidePassiveMode 0, IsDevMode 0, fIsWindowsInhouseBuild 0, BuildLabEx 14393.9140.amd64fre.rs1_release.260506-0518 2026-05-20T07:19:05.575 [RTP] [RTP] StartCommunication 0x00000115CB3355D0 (\MicrosoftMalwareProtectionAsyncPortWD, ), threads: 0 normal, 0 very low, 0 alt, thread pool threads: 4 normal, 0 very low, 0 alt 2026-05-20T07:19:05.575 [init][RTP] RTPPlugin initialization completed 2026-05-20T07:19:05.575 OS boot count = 2 2026-05-20T07:19:05.575 OS Install = 0 2026-05-20T07:19:05.591 [init] MpAddMpUxRegistrationForToast failed (Ignored). hr = 0x8000401a 2026-05-20T07:19:05.591 [KSL] Entering CKSLEngine::Initialize. 2026-05-20T07:19:05.591 [KSL] Leaving CKSLEngine::Initialize(0). 2026-05-20T07:19:05.591 [KSL] Entering CKSLEngine::EnableKSL. State: [1] 2026-05-20T07:19:05.591 [KSL] MpInstallKslD: hr=0x1 2026-05-20T07:19:05.591 [KSL] MpRegisterKslD: hr=0 2026-05-20T07:19:05.591 [KSL] MpStartKslD: hr=0 2026-05-20T07:19:05.591 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-20T07:19:05.591 Loading engine... 2026-05-20T07:19:05.606 Verifying engine and signature files (source: 1) ... 2026-05-20T07:19:05.606 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5}\mpengine.dll] due to PPL. 2026-05-20T07:19:05.606 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5}\mpasbase.vdm] (file in cache) 2026-05-20T07:19:05.606 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5}\mpasdlta.vdm] (file in cache) 2026-05-20T07:19:05.606 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5}\mpavbase.vdm] (file in cache) 2026-05-20T07:19:05.606 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5}\mpavdlta.vdm] (file in cache) 2026-05-20T07:19:05.700 [Engine] IsHybridMode: 0 2026-05-20T07:19:05.700 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-20T07:19:05.763 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-4EEC1DA637EF694A280FC4B50FAD0A9048A64923.bin): 0x00000002 2026-05-20T07:19:05.763 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-4EEC1DA637EF694A280FC4B50FAD0A9048A64923.bin) 2026-05-20T07:19:05.763 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-20T07:19:05.763 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-20T07:19:05.763 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-20T07:19:05.763 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-20T07:19:52.531 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-20T07:19:52.531 [AutoExclusion] Applied roles from cache. 2026-05-20T07:19:52.531 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvEnableOneDSTelemetry hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpFc_Disruption_ModularPolicyPublish new=1 old0 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-20T07:19:52.547 [Engine] New active engine 00007FFB24268020 (no old engine). Number of active engines: 1 2026-05-20T07:19:52.578 EngineInit:Global ASOC is enabled 2026-05-20T07:19:52.578 EngineInit:ASOO is enabled for developer volumes 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:19:52.672 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:19:52.703 [SigStatUpd] CSignatureStatus: back to good 2026-05-20T07:19:52.703 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-20T07:19:52.703 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-20T07:19:52.734 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-20T07:19:52.734 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-20T07:19:52.734 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-20T07:19:52.734 Opening Sense registry key to get process path failed with hr=0x80070002. Fallback to programfiles. 2026-05-20T07:19:52.734 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-20T07:19:52.734 [Plugin] Initializing RTP plugin state... 2026-05-20T07:19:52.734 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-20T07:19:52.734 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5} 2026-05-20T07:19:52.734 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-20T07:19:52.734 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-20T07:19:52.734 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-20T07:19:52.734 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-20T07:19:52.734 MdCoreSvc is supported in this platform and OS 2026-05-20T07:19:52.734 [RTP] ****************************RTP Perf Log*************************** RTP Start:N/A Last Perf:(null) First RTP Scan:N/A Plugin States: AV:2 AS:2 RTP:2 OA:2 BM:2 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:0 System File Cache: Hits:0 Misses:0 BM Queue:0,0,0 Proc:0,0,0 File:0,0,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:2,2,0 SetEngine:1,1,0 SetState:1,1,0 SetUser:0,0,0 Config:0,0,0 ProcExcl:0,0,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:0 Pending:0 RegSize:2882 AsyncQNotif:1 AsyncQMissed:0 AsyncQTotalSent:0 AsyncQCurrent:2078 BMFlags:8 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:3428 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:17711 TotalHits:0 InstanceCacheInserts:27 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:4626 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:-1ms (0/0) Success: 0, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-20T07:19:52.734 Engine:Failure in process enumeration: Image:, Error:GetImageNameConfigurationEx, 0x80078020, PID: 0 2026-05-20T07:19:52.734 Engine:Failure in process enumeration: Image:, Error:GetImageNameConfigurationEx, 0x80078020, PID: 4 2026-05-20T07:19:52.734 Engine loaded! 2026-05-20T07:19:52.734 [DLP] Create FeatureControlState instance 2026-05-20T07:19:52.750 RegisterSModeChangeListener: hr = 0x1 2026-05-20T07:19:52.750 RegisterHybridModeChangeListener: hr = 0x1 2026-05-20T07:19:52.750 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-20T07:19:52.750 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-20T07:19:52.750 [AutoPurge] Auto purger task is scheduled to run in 600000(ms) from now with period 86400000(ms) 2026-05-20T07:19:52.750 [SigReleaseHb] Initialized with Stage 0 2026-05-20T07:19:52.750 [EmergencySigManager] Emergency sig checks are currently disabled. Timer interval: 15 minutes. 2026-05-20T07:19:52.750 [SCC][CID=62828_2204] Initializing ... 2026-05-20T07:19:52.750 [SCC][CID=62828_2204] SCC Initialize! The feature is OFF on this machine (E5 = 0), hr: 0x80004001 2026-05-20T07:19:52.766 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-20T07:19:52.766 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-20T07:19:52.766 [NRI] Stopping NIS service ... 2026-05-20T07:19:52.766 [RTP] [RTP] Killbits updated: 0x200000000000000 -> 0x4000000 2026-05-20T07:19:52.766 [RTP] [RTP] LastAccessTimeSuppression is enabled (default behavior). Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26030.3008 AS Signature Version: 1.449.692.0 AV Signature Version: 1.449.692.0 ************************************************************ 2026-05-20T07:19:52.766 Resource usage Monitoring is enabled 2026-05-20T07:19:52.766 Ci Endpoint Security Policy Installation: Unsupported, hr = 0x00000001 2026-05-20T07:19:52.813 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-20T07:19:52.813 Job Notification: New process added to job (1948) 2026-05-20T07:19:52.813 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-20T07:19:52.813 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-20T07:19:52.813 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-20T07:19:52.813 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-20T07:19:52.813 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-20T07:19:52.813 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-20T07:19:52.813 [RTP] Generating the base plugin configuration ... 2026-05-20T07:19:52.813 [RTP] Path exclusion changed, new size in bytes: 2 2026-05-20T07:19:52.813 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-20T07:19:52.813 [RTP] Calling GenerateEngineConfigStruct (0x3e) ... 2026-05-20T07:19:52.828 [RTP] [RTP] RTPPlugin state has changed as follow: ASStatus:0->1, AVStatus:0->1, RTPStatus:0->1 2026-05-20T07:19:52.828 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-20T07:19:52.828 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-20T07:19:52.828 Job Notification: New process added to job (1100) 2026-05-20T07:19:52.828 [RTP] [RTP] StartCommunication 0x00000115CB3357E0 (\MicrosoftMalwareProtectionPortWD, \MicrosoftMalwareProtectionVeryLowIoPortWD), threads: 6 normal, 2 very low, 0 alt, thread pool threads: 0 normal, 0 very low, 6 alt 2026-05-20T07:19:52.828 [RTP] [RTP] RTP worker threads ready [6 threads] 2026-05-20T07:19:52.828 Job Notification: New process added to job (2752) 2026-05-20T07:19:52.844 [RTP] [Mini-filter] First scan on a volume: \Device\HarddiskVolume2\Windows\System32\drivers\wd\WdNisDrv.sys 2026-05-20T07:19:53.016 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:1100] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2752]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-20T07:19:53.156 Job Notification: Process exited from job (1100) 2026-05-20T07:19:53.156 [PlatUpd] WMI MOF schema validation completed successfully 2026-05-20T07:19:53.156 Job Notification: Process exited from job (2752) 2026-05-20T07:19:53.188 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T07:19:53.203 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-20T07:19:53.203 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-20T07:19:53.203 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-20T07:19:54.766 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-20T07:19:55.766 [RTP] Duplicating the current plugin configuration object... 2026-05-20T07:19:55.766 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-20T07:19:55.766 [RTP] Updating plugin configuration due to recent config changes (0x600) ... 2026-05-20T07:19:55.766 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-05-20T07:19:55.766 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x600, Changed: 0x218 2026-05-20T07:20:07.047 Process scan (poststartupscan) started. 2026-05-20T07:20:07.047 Process scan (poststartupscan) completed. 2026-05-20T07:20:07.516 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-05-20T07:20:07.516 [RTP] [RtpConfig] Config change detected, type: 1024 2026-05-20T07:20:10.094 [RTP] Duplicating the current plugin configuration object... 2026-05-20T07:20:10.094 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-20T07:20:10.094 [RTP] Updating plugin configuration due to recent config changes (0x400) ... 2026-05-20T07:20:10.094 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-05-20T07:20:10.094 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x400, Changed: 0x218 2026-05-20T07:21:02.925 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #290, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:21:02.941 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #292, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:24:52.599 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-20T07:24:52.751 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T07:29:03.310 [AutoPurge] Cleanup Routine tasks have started. 2026-05-20T07:29:03.310 [AutoPurge] Verification Routine tasks have started.ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-20T07:29:03.325 [AutoPurge] Routine task for Cache Maintenance has started. 2026-05-20T07:29:03.325 [AutoPurge] Routine task for Cache Maintenance ... 2026-05-20T07:29:03.325 [AutoPurge] Routine task for MpSFCBuild ... 2026-05-20T07:29:03.325 [AutoPurge] MpCmIsBuildCompleted() - S_OK 2026-05-20T07:29:03.325 [AutoPurge] MpSignalMaintenanceMode ... 2026-05-20T07:29:03.747 Detection State: Finished(0) Failed(0) CriticalFailed(0) Additional Actions(0) 2026-05-20T07:29:03.747 [AutoPurge] Purged 0 expired detection item(s) from a total of 0. 2026-05-20T07:29:03.747 [AutoPurge] 0 expired file(s) deleted under C:\ProgramData\Microsoft\Windows Defender\Scans\History\Store (total: 1, expiration in 86400 seconds) Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:65538 Start time:05-20-2026 07:29:03 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-20-2026 07:29:03 2026-05-20T07:29:03.763 [PlatUpd] Purging orphaned platform update directories under C:\ProgramData\Microsoft\Windows Defender\Platform ... 2026-05-20T07:29:03.763 [PlatUpd] Not purging current location C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0 ... 2026-05-20T07:29:03.763 [PlatUpd] Not purging backup location C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0 ... 2026-05-20T07:29:03.763 [PlatUpd] Deleting orphaned platform update directory C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0 ... 2026-05-20T07:29:03.763 [PlatUpd] Purging orphaned platform update directories under C:\Program Files\Windows Defender\Platform ... 2026-05-20T07:29:03.763 [AutoPurge] Cleanup Routine tasks have ended. 2026-05-20T07:29:03.935 EnsureProtectedFolderAcls(), hr = 0x0 2026-05-20T07:29:03.935 [AutoPurge] MpReinforceServiceAcls: 0 2026-05-20T07:29:03.950 [AutoPurge] Readded platform files to MOAC after ACL enforcement. hr=0 2026-05-20T07:29:03.966 [AutoPurge] Removing expired default signature package ... 2026-05-20T07:29:04.388 Engine:Setting original file name "msasn1.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.msasn1.dll.01dce12f6f347f72.0146", hr=0x0 2026-05-20T07:29:04.435 Engine:Setting original file name "iphlpsvc.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.iphlpsvc.dll.01dce12f67dd1a5e.0006", hr=0x0 2026-05-20T07:29:04.482 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-05-20T07:29:04.482 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-20T07:29:04.482 [RTP] [RtpConfig] Config change detected, type: 2 2026-05-20T07:29:04.482 [RTP] [RtpConfig] Config change detected, type: 2 2026-05-20T07:29:04.482 [RTP] [RtpConfig] Config change detected, type: 4 2026-05-20T07:29:04.482 [RTP] [RtpConfig] Config change detected, type: 8 2026-05-20T07:29:04.482 [RTP] [RtpConfig] Config change detected, type: 16 2026-05-20T07:29:04.482 [RTP] [RtpConfig] Config change detected, type: 1024 2026-05-20T07:29:04.482 [RTP] [RtpConfig] Config change detected, type: 2048 2026-05-20T07:29:04.482 [RTP] Setting DisableAsyncScanOnClose to 0 (hr=0). 2026-05-20T07:29:04.482 [RTP] Setting DisableAsyncScanOnOpen to 0 in wdfilter (hr=0). 2026-05-20T07:29:04.482 [RTP] Setting FilterExperimentMode to 0 (hr=0). 2026-05-20T07:29:04.482 [RTP] Setting DisableDriverUnload to 1 (hr=0). 2026-05-20T07:29:04.482 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-20T07:29:04.482 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-20T07:29:04.482 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-20T07:29:04.482 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-20T07:29:04.482 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-20T07:29:04.482 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-20T07:29:04.482 [RTP] [RTP] LastAccessTimeSuppression for network files is enabled by configuration. 2026-05-20T07:29:04.482 [RTP] [RtpConfig] Config change detected, type: 64 2026-05-20T07:29:04.482 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T07:29:04.482 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T07:29:04.497 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T07:29:04.497 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T07:29:04.497 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T07:29:05.247 [AutoPurge] Verification Routine tasks have ended. 2026-05-20T07:29:06.044 Engine:Setting original file name "ks.sys" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.ks.sys.01dce12f67f796e3.001b", hr=0x0 2026-05-20T07:29:06.091 Engine:Setting original file name "IKEEXT.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.ikeext.dll.01dce12f67dd1a5e.0005", hr=0x0 2026-05-20T07:29:06.700 Engine:Setting original file name "wpncore.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wpncore.dll.01dce12f6ceac6da.0104", hr=0x0 2026-05-20T07:29:07.091 [RTP] Duplicating the current plugin configuration object... 2026-05-20T07:29:07.091 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-20T07:29:07.091 [RTP] Updating plugin configuration due to recent config changes (0x43e) ... 2026-05-20T07:29:07.091 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-20T07:29:07.091 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-05-20T07:29:07.091 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x43e, Changed: 0x218 2026-05-20T07:29:07.357 Engine:Setting original file name "spwizres.dll" for "c:\windows\winsxs\x86_microsoft-windows-s..on-wizard-framework_31bf3856ad364e35_10.0.14393.4169_none_cff66023f3ab495c\spwizimg.dll", hr=0x0 2026-05-20T07:29:07.685 Engine:Setting original file name "RRASUPG.DLL" for "c:\windows\system32\setup\rasmigplugin.dll", hr=0x0 2026-05-20T07:29:08.341 Engine:Setting original file name "Windows.Security.Credentials.UI.CredentialPicker.exe" for "c:\windows\system32\windows.security.credentials.ui.credentialpicker.dll", hr=0x0 2026-05-20T07:29:09.341 Engine:Setting original file name "extractr.exe" for "c:\windows\system32\wimserv.exe", hr=0x0 2026-05-20T07:29:11.638 Engine:Setting original file name "rundll32.exe" for "c:\windows\syswow64\rundll32.exe", hr=0x0 2026-05-20T07:29:12.825 Engine:Setting original file name "AppVEntSubsystems.dll" for "c:\windows\winsxs\amd64_microsoft-windows-appmanagement-appvwow_31bf3856ad364e35_10.0.14393.7870_none_28b206494d2d33f0\appventsubsystems64.dll", hr=0x0 2026-05-20T07:29:13.466 Engine:Setting original file name "user32" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.user32.dll.01dce12f6faee329.0156", hr=0x0 2026-05-20T07:29:15.044 Engine:Setting original file name "MSCORLIB.DLL" for "c:\windows\microsoft.net\framework\v4.0.30319\mscorlib.tlb", hr=0x0 2026-05-20T07:29:16.200 Engine:Setting original file name "ssdpsrv.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.ssdpsrv.dll.01dce828d56de58d.0022", hr=0x0 2026-05-20T07:29:16.482 Engine:Setting original file name "DWMInit.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.dwminit.dll.01dce12f6ad5b83c.0054", hr=0x0 2026-05-20T07:29:17.232 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rd8f0uq.dll", hr=0x0 2026-05-20T07:29:17.372 Engine:Setting original file name "gdi32" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.gdi32.dll.01dce12f6e91f248.013c", hr=0x0 2026-05-20T07:29:17.638 Engine:Setting original file name "mf.dll" for "c:\windows\winsxs\wow64_microsoft-windows-mediafoundation_31bf3856ad364e35_10.0.14393.6897_none_1c2d72c59be7c439\mfpmp.exe", hr=0x0 2026-05-20T07:29:18.075 Engine:Setting original file name "MSCOREE.DLL" for "c:\windows\microsoft.net\framework\v4.0.30319\mscoree.tlb", hr=0x0 2026-05-20T07:29:18.200 Engine:Setting original file name "WinSetupUI.exe" for "c:\windows\system32\winsetupui.dll", hr=0x0 2026-05-20T07:29:18.435 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\a0b0943439246bf666abb818faee6888\System.Core.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1078, FileId: 0x2ddd000000008ebc, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:29:18.497 Engine:Setting original file name "mf.dll" for "c:\windows\winsxs\amd64_microsoft-windows-mediafoundation_31bf3856ad364e35_10.0.14393.6897_none_11d8c8736787023e\mfpmp.exe", hr=0x0 2026-05-20T07:29:18.622 Engine:Setting original file name "COMBASE.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.combase.dll.01dce828d5f1ed91.0038", hr=0x0 2026-05-20T07:29:18.685 Engine:Setting original file name "dfsc.sys" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.dfsc.sys.01dce12f67f53486.0018", hr=0x0 2026-05-20T07:29:20.638 Engine:Setting original file name "nlaapi.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.nlaapi.dll.01dce12f6bdbaad8.0095", hr=0x0 2026-05-20T07:29:22.997 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\amd64_netfx4-scripting_engine_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_414026caf1235658\microsoft.jscript.tlb", hr=0x0 2026-05-20T07:29:23.982 Engine:Setting original file name "Microsoft® Windows® Operating System" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.pcasvc.dll.01dce12f6bec6a74.009a", hr=0x0 2026-05-20T07:29:26.185 Engine:Setting original file name "TSpkg.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.tspkg.dll.01dce12f6c5b580e.00c6", hr=0x0 2026-05-20T07:29:26.841 Engine:Setting original file name "rpcss.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.rpcss.dll.01dce12f6c16de05.00a5", hr=0x0 2026-05-20T07:29:28.700 Engine:Setting original file name "srvsvc.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.srvsvc.dll.01dce12f6c3e4d47.00b7", hr=0x0 2026-05-20T07:29:28.716 Engine:Setting original file name "dnsapi" for "c:\windows\winsxs\wow64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.14393.7693_none_156ff427b23b125d\dnsapi.dll", hr=0x0 2026-05-20T07:29:29.216 Engine:Setting original file name "xpprof32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\xpprof64.dll", hr=0x0 2026-05-20T07:29:30.341 Engine:Setting original file name "prntvpt.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.prntvpt.dll.01dce12f6bf901c8.009f", hr=0x0 2026-05-20T07:29:30.357 Engine:Setting original file name "audioadg.exe" for "c:\windows\system32\audiodg.exe", hr=0x0 2026-05-20T07:29:30.685 Engine:Setting original file name "AppVEntSubsystemContoller.dll" for "c:\windows\winsxs\amd64_microsoft-windows-a..nagement-appvclient_31bf3856ad364e35_10.0.14393.4169_none_42348d8c22b67d2a\appventsubsystemcontroller.dll", hr=0x0 2026-05-20T07:29:31.075 Engine:Setting original file name "gdi32" for "c:\windows\winsxs\wow64_microsoft-windows-gdi32full_31bf3856ad364e35_10.0.14393.9060_none_d60ddaa5b62a297b\gdi32full.dll", hr=0x0 2026-05-20T07:29:31.372 Engine:Setting original file name "lpk.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.lpk.dll.01dce12f6f1ede17.0145", hr=0x0 2026-05-20T07:29:33.685 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\c92e8216b48993ebcb6b4b38ba92f0e1\WindowsBase.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1090, FileId: 0x1742000000037bbb, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:29:34.216 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\syswow64\mp43decd.dll", hr=0x0 2026-05-20T07:29:35.700 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rhp5zg2.dll", hr=0x0 2026-05-20T07:29:37.060 Engine:Setting original file name "ISOLMIG.DLL" for "c:\windows\system32\migisol.dll", hr=0x0 2026-05-20T07:29:38.435 Engine:Setting original file name "OLEAUT32.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.oleaut32.dll.01dce12f6f604a68.014e", hr=0x0 2026-05-20T07:29:38.622 Engine:Setting original file name "authz.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.authz.dll.01dce12f6a8e33eb.002e", hr=0x0 2026-05-20T07:29:39.622 Engine:Setting original file name "advapi32.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.advapi32.dll.01dce12f6e40e278.0131", hr=0x0 2026-05-20T07:29:40.122 Engine:Setting original file name "WindowsCodecs" for "c:\windows\winsxs\wow64_microsoft-windows-windowscodec_31bf3856ad364e35_10.0.14393.9060_none_16a41eb030055032\windowscodecs.dll", hr=0x0 2026-05-20T07:29:41.013 Engine:Setting original file name "Microsoft(r) DirectX for Windows(r) - Out Of Band" for "c:\program files (x86)\google\chrome\application\148.0.7778.178\dxil.dll", hr=0x0 2026-05-20T07:29:41.279 Engine:Setting original file name "Winlangdb.dll.mui" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.winlangdb.dll.mui.01dce12f6d69fde7.012d", hr=0x0 2026-05-20T07:29:41.341 Engine:Setting original file name "SHCORE.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.shcore.dll.01dce12f6f8f2c40.0152", hr=0x0 2026-05-20T07:29:41.466 Engine:Setting original file name "gdi32" for "c:\windows\winsxs\wow64_microsoft-windows-gdi32full_31bf3856ad364e35_10.0.14393.6167_none_d602658fb633015e\gdi32full.dll", hr=0x0 2026-05-20T07:29:43.435 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnhupnp.dll", hr=0x0 2026-05-20T07:29:45.107 Engine:Setting original file name "MicrosoftRawCodec" for "c:\windows\winsxs\wow64_microsoft-windows-windowscodecraw_31bf3856ad364e35_10.0.14393.5501_none_14dba92e46d1ced2\windowscodecsraw.dll", hr=0x0 2026-05-20T07:29:45.247 Engine:Setting original file name "WerMgr" for "c:\windows\syswow64\wermgr.exe", hr=0x0 2026-05-20T07:29:46.075 Engine:Setting original file name "winlogon.exe" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.winlogon.exe.01dce12f6cd54fc9.00f6", hr=0x0 2026-05-20T07:29:47.763 Engine:Setting original file name "winsta.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.winsta.dll.01dce12f6cd7b315.00f9", hr=0x0 2026-05-20T07:29:48.185 Engine:Setting original file name "k5sprt32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\k5sprt64.dll", hr=0x0 2026-05-20T07:29:50.544 Engine:Setting original file name "wpncore.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wpncore.dll.01dce828d580f867.0034", hr=0x0 2026-05-20T07:29:51.622 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnhupnp.dll", hr=0x0 2026-05-20T07:29:51.654 Engine:Setting original file name "BFE.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.bfe.dll.01dce828d3209d2e.0000", hr=0x0 2026-05-20T07:29:51.732 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\fa38f37b6ef547e3a30015bc00fa6b30\PresentationCore.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1136, FileId: 0x5100000004a209, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:29:52.763 Timer callback: Initializating/verifying scheduled tasks ... 2026-05-20T07:29:52.763 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-20T07:29:52.857 Job Notification: New process added to job (5032) 2026-05-20T07:29:52.950 Task(Scan -ScheduleJob -RestrictPrivileges -ScanType 2 -ScanTrigger 52) is scheduled to run in 67976188(ms) from now at 04:22 (02:22 UTC) with period 86400000(ms). Daily task start time is randomized to reduce spikes. 2026-05-20T07:29:52.966 Job Notification: New process added to job (5040) 2026-05-20T07:29:52.966 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-20T07:29:52.982 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:5032] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5040]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-20T07:29:53.060 Job Notification: New process added to job (5080) 2026-05-20T07:29:53.060 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-20T07:29:53.060 Job Notification: New process added to job (5088) 2026-05-20T07:29:53.247 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:5080] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5088]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-20T07:29:53.279 Engine:Setting original file name "Placeholder.dll" for "c:\windows\winsxs\x86_netfx4-penimc_v0400_b03f5f7f11d50a3a_4.0.15552.18226_none_96e18f6875a45554\penimc_v0400.dll", hr=0x0 2026-05-20T07:29:54.216 Engine:Setting original file name "ssdpapi.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.ssdpapi.dll.01dce828d56de58d.0021", hr=0x0 2026-05-20T07:29:54.794 Engine:Setting original file name "System.Windows.Forms.dll" for "c:\windows\winsxs\amd64_netfx4-sys_windows_forms_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_66f5a950fbd66177\system.windows.forms.tlb", hr=0x0 2026-05-20T07:29:54.857 Engine:Setting original file name "FntCache.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.fntcache.dll.01dce12f6ae91a6b.0059", hr=0x0 2026-05-20T07:29:55.919 Engine:Setting original file name "RRASUPG.DLL" for "c:\windows\winsxs\amd64_microsoft-windows-rasserver_31bf3856ad364e35_10.0.14393.6611_none_2130f8c6c2889c6a\rasmigplugin.dll", hr=0x0 2026-05-20T07:29:59.310 Engine:Setting original file name "WinCsFlags.dll" for "c:\windows\winsxs\amd64_microsoft-windows-f..eatureconfiguration_31bf3856ad364e35_10.0.14393.9060_none_cdb38ad31b356869\wincsflags.exe", hr=0x0 2026-05-20T07:29:59.513 Engine:Setting original file name "rsaenh.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.rsaenh.dll.01dce12f6c16de05.00a6", hr=0x0 2026-05-20T07:29:59.669 Engine:Setting original file name "SessEnv.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.sessenv.dll.01dce12f6c281c1e.00af", hr=0x0 2026-05-20T07:30:01.794 Engine:Setting original file name "MPSSVC.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.mpssvc.dll.01dce12f6ba3e687.007f", hr=0x0 2026-05-20T07:30:01.841 Engine:Setting original file name "Vulkan Runtime" for "c:\program files (x86)\google\chrome\application\148.0.7778.178\vulkan-1.dll", hr=0x0 2026-05-20T07:30:02.982 Engine:Setting original file name "TBS.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.tbs.dll.01dce12f6c4f6c5f.00c0", hr=0x0 2026-05-20T07:30:04.325 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnsvr.exe", hr=0x0 2026-05-20T07:30:05.638 Engine:Setting original file name "GdiPlus.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.gdiplus.dll.01dce828d5514965.0012", hr=0x0 2026-05-20T07:30:09.888 Engine:Setting original file name "COMBASE.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.combase.dll.01dce12f6e5d7ed5.0134", hr=0x0 2026-05-20T07:30:10.279 Engine:Setting original file name "xolehlp.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.xolehlp.dll.01dce12f6d003ab2.010d", hr=0x0 2026-05-20T07:30:10.841 Engine:Setting original file name "icsvcext.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.icsvcext.dll.01dce12f6b018430.0065", hr=0x0 2026-05-20T07:30:11.107 Engine:Setting original file name "PSAPI" for "c:\windows\system32\psapi.dll", hr=0x0 2026-05-20T07:30:13.075 Engine:Setting original file name "mavinject64.exe" for "c:\windows\winsxs\amd64_microsoft-windows-appmanagement-appvwow_31bf3856ad364e35_10.0.14393.7870_none_28b206494d2d33f0\mavinject.exe", hr=0x0 2026-05-20T07:30:14.747 Engine:Setting original file name "dpnet.dll" for "c:\windows\winsxs\x86_microsoft-windows-d..directplay4-payload_31bf3856ad364e35_1.0.14393.0_none_125d9db136df768d\dplayx.dll", hr=0x0 2026-05-20T07:30:16.294 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rrpyj42.dll", hr=0x0 2026-05-20T07:30:16.763 Engine:Setting original file name "vss_ps.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.vss_ps.dll.01dce12f6c762a51.00d6", hr=0x0 2026-05-20T07:30:18.388 Engine:Setting original file name "CMMIGR.DLL" for "c:\windows\syswow64\setup\pbkmigr.dll", hr=0x0 2026-05-20T07:30:20.169 Engine:Setting original file name "uDWM.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.udwm.dll.01dce12f6c627ee1.00c9", hr=0x0 2026-05-20T07:30:30.888 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rdpjm0d.dll", hr=0x0 2026-05-20T07:30:34.982 Engine:Setting original file name "mfcore.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.mfcore.dll.01dce12f6b8e170b.007b", hr=0x0 2026-05-20T07:30:42.950 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\F3F3EF83-281B-4DCA-8E60-6E4F827CB97Ec44.1dce82a75b5ad4d 2026-05-20T07:30:43.779 Verifying engine and signature files (source: 0) ... 2026-05-20T07:30:43.779 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpengine.dll] due to PPL. 2026-05-20T07:30:43.779 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpasbase.vdm]. File not in cache (0x1) 2026-05-20T07:30:44.669 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpasbase.vdm] 2026-05-20T07:30:44.669 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-20T07:30:44.669 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpasdlta.vdm] 2026-05-20T07:30:44.669 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpavbase.vdm]. File not in cache (0x1) 2026-05-20T07:30:45.138 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpavbase.vdm] 2026-05-20T07:30:45.138 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-20T07:30:45.154 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpavdlta.vdm] 2026-05-20T07:30:45.294 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\system32\mp43decd.dll", hr=0x0 2026-05-20T07:30:45.732 Engine:Setting original file name "msdtctm.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.msdtctm.dll.01dce12f6bab88d7.0084", hr=0x0 2026-05-20T07:30:46.982 [Engine] IsHybridMode: 0 2026-05-20T07:30:46.982 [KSL]KSL(1.1.25111.3024) Is available via CAMP. KslDevice : KslD 2026-05-20T07:30:46.982 Current mpengine.dll version(1.1.26040.8) is newer than mpengine_etw.dll version(1.1.26030.3008). Updating C:\ProgramData\Microsoft\Windows Defender\Definition Updates\StableEngineEtwLocation\mpengine_etw.dll ... 2026-05-20T07:30:47.325 Engine:Setting original file name " " for "c:\program files\microsoft vs code\unins000.exe", hr=0x0 2026-05-20T07:30:47.435 Engine:Setting original file name "ucrtbase.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.ucrtbase.dll.01dce12f6fa9b220.0155", hr=0x0 2026-05-20T07:30:50.450 Engine:Setting original file name "COMCTL32.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.comctl32.dll.01dce828d547c150.000f", hr=0x0 2026-05-20T07:30:51.029 Engine:Setting original file name "CloudStorageWizard.dll" for "c:\windows\system32\cloudstoragewizard.exe", hr=0x0 2026-05-20T07:30:51.997 Engine:Setting original file name "Kernelbase.dll.mui" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.kernelbase.dll.mui.01dce12f6d4f5afd.0125", hr=0x0 2026-05-20T07:30:52.747 Engine:Setting original file name "wkssvc.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wkssvc.dll.01dce12f6cd7b315.00fc", hr=0x0 2026-05-20T07:30:53.732 Engine:Setting original file name "pdh.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.pdh.dll.01dce12f6becf072.009b", hr=0x0 2026-05-20T07:30:54.232 Engine:Setting original file name "security.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.sspicli.dll.01dce12f68085319.0028", hr=0x0 2026-05-20T07:30:54.654 Engine:Setting original file name "Notepad++" for "c:\users\administrator.extern\appdata\local\temp\npp.8.9.3.installer.x64.exe", hr=0x0 2026-05-20T07:30:55.779 Engine:Setting original file name "ISOLMIG.DLL" for "c:\windows\syswow64\migisol.dll", hr=0x0 2026-05-20T07:30:55.872 Engine:Setting original file name "Win32u.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.win32u.dll.01dce828d60c6790.0046", hr=0x0 2026-05-20T07:30:57.310 Engine:Setting original file name "ws2_32.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.ws2_32.dll.01dce12f6ffb7327.015b", hr=0x0 2026-05-20T07:30:57.404 Engine:Setting original file name "sscore.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.sscore.dll.01dce12f6c40b077.00b8", hr=0x0 2026-05-20T07:30:59.091 Engine:Setting original file name "ncsi.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.ncsi.dll.01dce12f6bcd4417.008e", hr=0x0 2026-05-20T07:30:59.497 Engine:Setting original file name "mf.dll" for "c:\windows\syswow64\mfpmp.exe", hr=0x0 2026-05-20T07:31:00.575 Engine:Setting original file name "Placeholder.dll" for "c:\windows\winsxs\x86_netfx4-penimc_v0400_b03f5f7f11d50a3a_4.0.15552.18271_none_96e1140275a4e3b6\penimc_v0400.dll", hr=0x0 2026-05-20T07:31:00.700 Engine:Setting original file name "hiberrsm.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_10.0.14393.7070_none_d0f57393c72c6f8d\winresume.exe", hr=0x0 2026-05-20T07:31:03.013 Engine:Setting original file name "CRYPT32.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.crypt32.dll.01dce12f6e64a5e3.0137", hr=0x0 2026-05-20T07:31:03.950 C:\ProgramData\Microsoft\Windows Defender\Definition Updates\StableEngineEtwLocation\mpengine_etw.dll updated. 2026-05-20T07:31:04.247 Engine:Setting original file name "devinfoset.DLL" for "c:\windows\system32\devobj.dll", hr=0x0 2026-05-20T07:31:05.935 Engine:Setting original file name "odbc32.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.odbc32.dll.01dce828d6029d80.0041", hr=0x0 2026-05-20T07:31:07.466 Engine:Setting original file name "mfcore.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.mfcore.dll.01dce828d55ad27d.0019", hr=0x0 2026-05-20T07:31:07.638 Engine:Setting original file name "System.Drawing.dll" for "c:\windows\winsxs\x86_netfx4-system_drawing_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_6c370d8116a1eb32\system.drawing.tlb", hr=0x0 2026-05-20T07:31:09.138 Engine:Setting original file name "actxprxy.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.actxprxy.dll.01dce12f6a6f3513.0029", hr=0x0 2026-05-20T07:31:09.247 Engine:Setting original file name "RRASUPG.DLL" for "c:\windows\winsxs\wow64_microsoft-windows-rasserver_31bf3856ad364e35_10.0.14393.6611_none_2b85a318f6e95e65\rasmigplugin.dll", hr=0x0 2026-05-20T07:31:10.060 Engine:Setting original file name "scesrv.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.scesrv.dll.01dce12f6c1e0445.00a9", hr=0x0 2026-05-20T07:31:11.325 Engine:Setting original file name "lpk.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.lpk.dll.01dce12f6b81d7c0.0077", hr=0x0 2026-05-20T07:31:13.372 Engine:Setting original file name "Wldap32.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wldap32.dll.01dce12f6ff40527.015a", hr=0x0 2026-05-20T07:31:13.466 Job Notification: New process added to job (4536) 2026-05-20T07:31:13.513 Job Notification: New process added to job (4516) 2026-05-20T07:31:13.607 Job Notification: Process exited from job (4536) 2026-05-20T07:31:13.607 Job Notification: New process added to job (4504) 2026-05-20T07:31:13.607 Job Notification: Process exited from job (4516) 2026-05-20T07:31:13.732 Job Notification: New process added to job (4544) 2026-05-20T07:31:13.997 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-05-20T07:31:13.997 [RTP] [RtpConfig] Config change detected, type: 1024 2026-05-20T07:31:14.044 Job Notification: Process exited from job (4504) 2026-05-20T07:31:14.060 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-2043425466F97E23972CC42C4DA6AB90B5E8359E.bin): 0x00000002 2026-05-20T07:31:14.075 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-2043425466F97E23972CC42C4DA6AB90B5E8359E.bin) 2026-05-20T07:31:14.075 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-20T07:31:14.075 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-20T07:31:14.075 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-20T07:31:14.075 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-05-20T07:31:14.107 Job Notification: Process exited from job (4544) BEGIN BM telemetry GUID:{752238F2-2DFC-D6E8-AB0C-B9BE93743ABF} SignatureID:56846945010345 SigSha:728d9c318636932fda3e9ee7b5dcd285b5680818 ThreatLevel:0 ProcessID:844 ProcessCreationTime:134237351386107916 SessionID:0 CreationTime:05-20-2026 07:31:14 ImagePath:C:\Windows\System32\svchost.exe Taint Info:Friendly: Y; Reason: ; Modules: C:\Windows\System32\credssp.dll:25,C:\Windows\System32\mskeyprotect.dll:25,C:\Windows\System32\TSpkg.dll:25,; Parents: Operations:None END BM telemetry 2026-05-20T07:31:14.622 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-05-20T07:31:14.638 [RTP] [RtpConfig] Config change detected, type: 1024 2026-05-20T07:31:15.013 Engine:Setting original file name "mp4sdmod.dll" for "c:\windows\winsxs\amd64_microsoft-windows-mp4sdecd_31bf3856ad364e35_10.0.14393.5125_none_84a6dae3c7bbe410\mp4sdecd.dll", hr=0x0 2026-05-20T07:31:15.122 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T07:31:15.122 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T07:31:15.122 [Cloud] Queued cloud request. 2026-05-20T07:31:15.122 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T07:31:15.169 Job Notification: New process added to job (3972) 2026-05-20T07:31:15.169 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-05-20T07:31:15.169 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T07:31:15.169 [Cloud] Queued cloud request. 2026-05-20T07:31:15.169 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 87F08322-6D5E-D75F-D075-217F3EF78C07) launched 2026-05-20T07:31:15.185 Job Notification: New process added to job (2740) 2026-05-20T07:31:15.200 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:3972] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2740]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-20T07:31:15.325 Job Notification: New process added to job (4696) 2026-05-20T07:31:15.325 Job Notification: Process exited from job (3972) 2026-05-20T07:31:15.325 Job Notification: Process exited from job (2740) 2026-05-20T07:31:15.404 [Cloud] Dequeued cloud request. 2026-05-20T07:31:15.404 [Cloud] Dequeued cloud request. 2026-05-20T07:31:15.419 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T07:31:15.419 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T07:31:15.841 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-20T07:31:15.841 [Cloud] End of cloud request. 2026-05-20T07:31:16.029 [Cloud] End of cloud request. 2026-05-20T07:31:16.091 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rkcbalz.dll", hr=0x0 2026-05-20T07:31:16.435 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T07:31:16.622 [RTP] Duplicating the current plugin configuration object... 2026-05-20T07:31:16.622 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-20T07:31:16.622 [RTP] Updating plugin configuration due to recent config changes (0x400) ... 2026-05-20T07:31:16.622 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-05-20T07:31:16.622 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x400, Changed: 0x218 2026-05-20T07:31:16.997 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnet.dll", hr=0x0 2026-05-20T07:31:17.060 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnlobby.dll", hr=0x0 2026-05-20T07:31:18.154 Engine:Setting original file name "krb5_32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\krb5_64.dll", hr=0x0 2026-05-20T07:31:18.654 Engine:Setting original file name "IKEEXT.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.ikeext.dll.01dce828d3209d2e.0003", hr=0x0 2026-05-20T07:31:20.435 Engine:Setting original file name "catsrvut.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.catsrvut.dll.01dce12f6a9ee24a.0035", hr=0x0 2026-05-20T07:31:20.872 Engine:Setting original file name "mavinject64.exe" for "c:\windows\winsxs\amd64_microsoft-windows-appmanagement-appvwow_31bf3856ad364e35_10.0.14393.5192_none_28ff84f54cf2dbfb\mavinject.exe", hr=0x0 2026-05-20T07:31:21.997 Engine:Setting original file name "SHELL32.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.shell32.dll.01dce828d60546a9.0044", hr=0x0 2026-05-20T07:31:23.372 Engine:Setting original file name "IPSECSVC.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.ipsecsvc.dll.01dce12f6b0fde89.006a", hr=0x0 2026-05-20T07:31:25.138 Engine:Setting original file name "kerberos.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.kerberos.dll.01dce12f6b738997.006c", hr=0x0 2026-05-20T07:31:25.325 Engine:Setting original file name "System.EnterpriseServices.dll" for "c:\windows\winsxs\x86_netfx4-system_enterpriseservices_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_78cda70ae5417545\system.enterpriseservices.tlb", hr=0x0 2026-05-20T07:31:26.544 Engine:Setting original file name "netlogon.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.netlogon.dll.01dce828d55f970b.001a", hr=0x0 2026-05-20T07:31:27.075 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpmodemx.dll", hr=0x0 2026-05-20T07:31:28.075 Engine:Setting original file name "Install.exe" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rziiii6.exe", hr=0x0 2026-05-20T07:31:28.700 Engine:Setting original file name "setup" for "c:\program files (x86)\google\chrome\application\148.0.7778.178\installer\setup.exe", hr=0x0 Internal signature match:subtype=Lowfi, sigseq=0x0000157E523F04B2, sigsha=29d9e5f580f99c0d66b8f3a66523df38a0edd65d, cached=false, source=2, resourceid=0x2cdc15b9 Internal signature match:subtype=Lowfi, sigseq=0x0000157E523F04B2, sigsha=29d9e5f580f99c0d66b8f3a66523df38a0edd65d, cached=false, source=2, resourceid=0x107f7a3b 2026-05-20T07:31:28.888 Engine:Setting original file name "Windows.Security.Credentials.UI.CredentialPicker.exe" for "c:\windows\winsxs\wow64_microsoft-windows-s..y-credential-picker_31bf3856ad364e35_10.0.14393.5127_none_309af659ca99df7a\windows.security.credentials.ui.credentialpicker.dll", hr=0x0 2026-05-20T07:31:30.075 Engine:Setting original file name "comerr32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\comerr64.dll", hr=0x0 2026-05-20T07:31:30.091 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnhpast.dll", hr=0x0 2026-05-20T07:31:30.388 Engine:Setting original file name "cdpsvc.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.cdpsvc.dll.01dce12f6aa14494.0038", hr=0x0 2026-05-20T07:31:30.450 Engine:Setting original file name "apisetschema" for "c:\windows\winsxs\amd64_microsoft-windows-apisetschema-server_31bf3856ad364e35_10.0.14393.9060_none_6188ccd0cdf05a83\apisetschema.dll", hr=0x0 2026-05-20T07:31:30.810 Engine:Setting original file name "bcrypt.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.bcrypt.dll.01dce12f6e4ccea1.0132", hr=0x0 2026-05-20T07:31:31.935 Engine:Setting original file name "rasadhlp.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.rasadhlp.dll.01dce12f6805f09a.0027", hr=0x0 2026-05-20T07:31:32.950 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnet.dll", hr=0x0 2026-05-20T07:31:35.732 Engine:Setting original file name "PSAPI" for "c:\windows\syswow64\psapi.dll", hr=0x0 2026-05-20T07:31:37.154 ReportLowfi(ctfmon.exe, 0x437a0835) from 0x0006b6bd6566d2d9 BEGIN BM telemetry GUID:{E7C3F3B3-594C-4383-5884-1017F11AEF9B} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5188 ProcessCreationTime:134237358972923491 SessionID:2 CreationTime:05-20-2026 07:31:37 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\userinit.exe:5148:1, Operations:None END BM telemetry 2026-05-20T07:31:37.497 Bm signature throttled:0x00003fb37eb842dc 2026-05-20T07:31:37.919 Engine:Setting original file name "updater.exe" for "c:\program files (x86)\google\update\googleupdate.exe", hr=0x0 2026-05-20T07:31:38.029 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T07:31:38.029 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T07:31:38.029 [Cloud] Queued cloud request. 2026-05-20T07:31:38.029 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T07:31:38.044 [Cloud] Dequeued cloud request. 2026-05-20T07:31:38.044 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T07:31:38.091 Engine:Setting original file name "COMCTL32.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.comctl32.dll.01dce12f6aad3052.003d", hr=0x0 2026-05-20T07:31:38.138 Engine:Setting original file name "kernel32" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.kernel32.dll.01dce828d5f91c2e.003f", hr=0x0 2026-05-20T07:31:38.279 [Cloud] End of cloud request. 2026-05-20T07:31:38.888 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T07:31:39.700 Engine:Setting original file name "System.Drawing.dll" for "c:\windows\winsxs\amd64_netfx4-system_drawing_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_2489d6aa0225c22c\system.drawing.tlb", hr=0x0 2026-05-20T07:31:40.091 Engine:Setting original file name "dpnathlp.dll" for "c:\windows\winsxs\amd64_microsoft-windows-d..directplay8-payload_31bf3856ad364e35_1.0.14393.0_none_118eea2c2af9abdf\dpnet.dll", hr=0x0 2026-05-20T07:31:41.122 Engine:Setting original file name "CloudStorageWizard.dll" for "c:\windows\winsxs\x86_microsoft-windows-cloudstoragewizard_31bf3856ad364e35_10.0.14393.4169_none_0e1140222fc9b7ce\cloudstoragewizard.exe", hr=0x0 2026-05-20T07:31:41.200 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\x86_netfx4-scripting_engine_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_88ed5da2059f7f5e\microsoft.jscript.tlb", hr=0x0 2026-05-20T07:31:42.247 Engine:Setting original file name "mscorlib.dll" for "c:\windows\assembly\nativeimages_v4.0.30319_64\mscorlib\62f204ac0ba259da374905c1b6c11fb0\mscorlib.ni.dll", hr=0x0 2026-05-20T07:31:43.310 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2241, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:31:43.341 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2243, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:31:44.044 Engine:Setting original file name "WIMGAPI.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wimgapi.dll.01dce12f6c801f96.00dd", hr=0x0 2026-05-20T07:31:44.310 Engine:Setting original file name "MrmCore.dll" for "c:\windows\syswow64\mrmcorer.dll", hr=0x0 2026-05-20T07:31:44.841 Engine:Setting original file name "setup" for "c:\programdata\package cache\{c649ede4-f16a-4486-a117-dcc2f2a35165}\vc_redist.x64.exe", hr=0x0 2026-05-20T07:31:44.982 Engine:Setting original file name "CMMIGR.DLL" for "c:\windows\system32\setup\pbkmigr.dll", hr=0x0 2026-05-20T07:31:46.654 Engine:Setting original file name "winsqlite3" for "c:\windows\winsxs\wow64_microsoft-windows-winsqlite3_31bf3856ad364e35_10.0.14393.6897_none_962b58f4b89684db\winsqlite3.dll", hr=0x0 2026-05-20T07:31:46.919 Engine:Setting original file name "MSCTF.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.msctf.dll.01dce12f6f36e240.0147", hr=0x0 2026-05-20T07:31:47.810 Engine:Setting original file name "UXInit.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.uxinit.dll.01dce12f6c716553.00cf", hr=0x0 2026-05-20T07:31:49.404 Engine:Setting original file name "nsi.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.nsi.dll.01dce12f6805f09a.0025", hr=0x0 2026-05-20T07:31:50.169 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rprsqob.dll", hr=0x0 2026-05-20T07:31:50.888 Engine:Setting original file name "dwmghost.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.dwmghost.dll.01dce12f6ad35641.0053", hr=0x0 2026-05-20T07:31:51.747 Engine:Setting original file name "rsaenh.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.rsaenh.dll.01dce828d602dccb.0043", hr=0x0 2026-05-20T07:31:52.185 Engine:Setting original file name "winsqlite3" for "c:\windows\winsxs\wow64_microsoft-windows-winsqlite3_31bf3856ad364e35_10.0.14393.8781_none_9635b512b88eb01b\winsqlite3.dll", hr=0x0 2026-05-20T07:31:52.247 Engine:Setting original file name "StorSvc.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.storsvc.dll.01dce12f6c4574d9.00bd", hr=0x0 2026-05-20T07:31:53.310 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2273, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:31:53.341 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2275, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:31:53.529 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2278, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:31:53.544 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2280, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:31:55.216 Engine:Setting original file name "gssapi32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\gssapi64.dll", hr=0x0 2026-05-20T07:31:56.779 Engine:Setting original file name "wer.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wer.dll.01dce12f6c78f27b.00d9", hr=0x0 2026-05-20T07:31:57.450 Engine:Setting original file name "SDClient.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.sdclient.dll.01dce12f6c20a118.00ac", hr=0x0 2026-05-20T07:31:57.997 Engine:Setting original file name "nlsbres.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-i..ocale-nls.resources_31bf3856ad364e35_10.0.14393.1066_en-us_5d26a00a4d281ead\winnlsres.dll.mui", hr=0x0 2026-05-20T07:31:58.029 Engine:Setting original file name "hiberrsm.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_10.0.14393.9060_none_d0f47715c72d5084\winresume.exe", hr=0x0 2026-05-20T07:32:00.013 Engine:Setting original file name "nlsbres.dll.mui" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.winnlsres.dll.mui.01dce12f6d6cbc80.012e", hr=0x0 2026-05-20T07:32:02.763 Engine:Setting original file name "ntdll.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.ntdll.dll.01dce828d32a5654.000b", hr=0x0 2026-05-20T07:32:03.029 Engine:Setting original file name "imm32" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.imm32.dll.01dce828d5f91c2e.003d", hr=0x0 2026-05-20T07:32:03.482 Engine:Setting original file name "localspl.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.localspl.dll.01dce12f6b7ab0da.0072", hr=0x0 2026-05-20T07:32:03.560 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\system32\mpg4decd.dll", hr=0x0 2026-05-20T07:32:08.529 Engine:Setting original file name "MSCOREE.DLL" for "c:\windows\winsxs\amd64_netfx4-mscoree_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_a40ab9cb7925b9cc\mscoree.tlb", hr=0x0 2026-05-20T07:32:09.013 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\Prs30C9.tmp. Process: \Device\HarddiskVolume2\Windows\System32\rdpclip.exe, Status: 0xc0000001, State: 0, ScanRequest #2632, FileId: 0x6800000007f17e, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:32:09.013 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$r44dcag.dll", hr=0x0 2026-05-20T07:32:09.747 Engine:Setting original file name "WINTRUST.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wintrust.dll.01dce12f6cd7b315.00fa", hr=0x0 2026-05-20T07:32:10.810 Engine:Setting original file name "dwmcore.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.dwmcore.dll.01dce12f6ad35641.0052", hr=0x0 2026-05-20T07:32:10.919 Engine:Setting original file name "Notepad++" for "c:\program files\notepad++\uninstall.exe", hr=0x0 2026-05-20T07:32:12.200 Engine:Setting original file name "MSV1_0.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.msv1_0.dll.01dce12f6bbef5d9.0086", hr=0x0 2026-05-20T07:32:12.372 Engine:Setting original file name "WerMgr" for "c:\windows\winsxs\wow64_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.14393.7070_none_a09a15c994ca8d29\wermgr.exe", hr=0x0 2026-05-20T07:32:12.435 Engine:Setting original file name "bisrv.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.bisrv.dll.01dce12f6a97bbcf.0032", hr=0x0 2026-05-20T07:32:13.185 Engine:Setting original file name "Microsoft® Windows® Operating System" for "c:\windows\winsxs\amd64_microsoft-windows-a..perience-ait-static_31bf3856ad364e35_10.0.14393.9060_none_a6b253ec08cb6e9b\aitstatic.exe", hr=0x0 2026-05-20T07:32:15.357 Engine:Setting original file name "msdxm.ocx" for "c:\windows\winsxs\wow64_microsoft-windows-mediaplayer-core_31bf3856ad364e35_10.0.14393.8519_none_8b504a58de2ee250\dxmasf.dll", hr=0x0 2026-05-20T07:32:16.029 Engine:Setting original file name "osloader.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_10.0.14393.7070_none_d0f57393c72c6f8d\winload.exe", hr=0x0 2026-05-20T07:32:17.591 Engine:Setting original file name "rasadhlp.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.rasadhlp.dll.01dce12f67eb6aba.0010", hr=0x0 2026-05-20T07:32:21.700 Engine:Setting original file name "ntdll.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.ntdll.dll.01dce12f6805f09a.0026", hr=0x0 2026-05-20T07:32:22.654 Engine:Setting original file name "kernel32" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.kernel32.dll.01dce12f6f1554c4.0142", hr=0x0 2026-05-20T07:32:23.075 Engine:Setting original file name "MrmCore.dll" for "c:\windows\winsxs\wow64_microsoft-windows-c..t-resources-mrmcore_31bf3856ad364e35_10.0.14393.4169_none_6b956afef0d52dd1\mrmcorer.dll", hr=0x0 2026-05-20T07:32:23.435 Engine:Setting original file name "mavinject32.exe" for "c:\windows\winsxs\wow64_microsoft-windows-appmanagement-appvwow_31bf3856ad364e35_10.0.14393.7870_none_3306b09b818df5eb\mavinject.exe", hr=0x0 2026-05-20T07:32:23.497 Engine:Setting original file name "AppVEntSubsystems.dll" for "c:\windows\winsxs\amd64_microsoft-windows-appmanagement-appvwow_31bf3856ad364e35_10.0.14393.5192_none_28ff84f54cf2dbfb\appventsubsystems64.dll", hr=0x0 2026-05-20T07:32:23.622 Engine:Setting original file name "wow64cpu.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wow64cpu.dll.01dce12f6ce862b7.0101", hr=0x0 2026-05-20T07:32:24.935 Engine:Setting original file name "GdiPlus.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.gdiplus.dll.01dce828d5f6b1e4.003c", hr=0x0 2026-05-20T07:32:25.638 Engine:Setting original file name "System.EnterpriseServices.dll" for "c:\windows\winsxs\amd64_netfx4-system_enterpriseservices_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_31207033d0c54c3f\system.enterpriseservices.tlb", hr=0x0 2026-05-20T07:32:26.888 Engine:Setting original file name "lsm.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.lsm.dll.01dce12f6b81d7c0.0078", hr=0x0 2026-05-20T07:32:27.950 Engine:Setting original file name "Microsoft® Windows® Operating System" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.pcasvc.dll.01dce828d5645bd4.001b", hr=0x0 2026-05-20T07:32:28.013 Engine:Setting original file name "icsvc.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.icsvc.dll.01dce12f6b018430.0064", hr=0x0 2026-05-20T07:32:28.122 Engine:Setting original file name "DismProvPS.DLL" for "c:\windows\winsxs\temp\inflight\e568ec038efcd90101000000a40ad40d\amd64_microsoft-windows-d..ing-management-core_31bf3856ad364e35_10.0.14393.4169_none_a0f63c76854e9c47\dismcoreps.dll", hr=0x0 2026-05-20T07:32:28.888 Engine:Setting original file name "WindowsCodecs" for "c:\windows\winsxs\wow64_microsoft-windows-windowscodec_31bf3856ad364e35_10.0.14393.5127_none_1694a68c3011c592\windowscodecs.dll", hr=0x0 2026-05-20T07:32:28.982 Engine:Setting original file name "mf.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.mf.dll.01dce12f6b8e170b.007a", hr=0x0 2026-05-20T07:32:29.372 Engine:Setting original file name "CMMIGR.DLL" for "c:\windows\winsxs\amd64_microsoft-windows-rasapi_31bf3856ad364e35_10.0.14393.4169_none_e2f995dbaa14b38f\pbkmigr.dll", hr=0x0 2026-05-20T07:32:29.857 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnaddr.dll", hr=0x0 2026-05-20T07:32:29.904 Engine:Setting original file name "hmkd.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.hmkd.dll.01dce12f6afa3ea5.0063", hr=0x0 2026-05-20T07:32:29.982 Engine:Setting original file name "aepic.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.aepic.dll.01dce12f6a719797.002b", hr=0x0 2026-05-20T07:32:31.138 Engine:Setting original file name "audioadg.exe" for "c:\windows\winsxs\amd64_microsoft-windows-audio-audiocore_31bf3856ad364e35_10.0.14393.5127_none_ec5e08e63f32a576\audiodg.exe", hr=0x0 2026-05-20T07:32:31.185 Engine:Setting original file name "comdlg32.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.comdlg32.dll.01dce12f6aad3052.003e", hr=0x0 2026-05-20T07:32:31.279 Engine:Setting original file name "vaultsvc.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.vaultsvc.dll.01dce12f6c716553.00d2", hr=0x0 2026-05-20T07:32:32.294 Engine:Setting original file name "Microsoft® Windows® Operating System" for "c:\windows\winsxs\amd64_microsoft-windows-a..perience-ait-static_31bf3856ad364e35_10.0.14393.7070_none_a6b3506a08ca8da4\aitstatic.exe", hr=0x0 2026-05-20T07:32:32.732 Engine:Setting original file name "usermgr.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.usermgr.dll.01dce12f6c6f0254.00cc", hr=0x0 2026-05-20T07:32:32.857 Engine:Setting original file name "nlasvc.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.nlasvc.dll.01dce12f6bdbaad8.0096", hr=0x0 2026-05-20T07:32:32.950 Engine:Setting original file name "setup" for "c:\program files (x86)\google\chrome\application\148.0.7778.178\installer\chrmstp.exe", hr=0x0 2026-05-20T07:32:33.013 Engine:Setting original file name "SHLWAPI.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.shlwapi.dll.01dce12f6f918eab.0154", hr=0x0 2026-05-20T07:32:33.029 Engine:Setting original file name "pku2u.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.pku2u.dll.01dce12f6bf1b57a.009c", hr=0x0 2026-05-20T07:32:33.529 Engine:Setting original file name "rsaenh.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.rsaenh.dll.01dce12f6f80a65b.0150", hr=0x0 2026-05-20T07:32:33.700 Engine:Setting original file name "msdtcprx.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.msdtcprx.dll.01dce12f6bab88d7.0083", hr=0x0 2026-05-20T07:32:34.060 Engine:Setting original file name "AppVEntSubsystemContoller.dll" for "c:\windows\system32\appventsubsystemcontroller.dll", hr=0x0 2026-05-20T07:32:34.107 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dplayx.dll", hr=0x0 2026-05-20T07:32:36.622 Engine:Setting original file name "lsass.exe" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.lsass.exe.01dce12f67e4437c.000a", hr=0x0 2026-05-20T07:32:36.654 Engine:Setting original file name "wdigest.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wdigest.dll.01dce12f6c78f27b.00d7", hr=0x0 2026-05-20T07:32:37.622 Engine:Setting original file name "rundll32.exe" for "c:\windows\system32\rundll32.exe", hr=0x0 2026-05-20T07:32:39.232 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnsvr.exe", hr=0x0 2026-05-20T07:32:40.138 Engine:Setting original file name "Windows.Security.Credentials.UI.CredentialPicker.exe" for "c:\windows\winsxs\amd64_microsoft-windows-s..y-credential-picker_31bf3856ad364e35_10.0.14393.5127_none_26464c0796391d7f\windows.security.credentials.ui.credentialpicker.dll", hr=0x0 2026-05-20T07:32:40.622 Engine:Setting original file name "nsisvc.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.nsisvc.dll.01dce12f67e6a448.000d", hr=0x0 2026-05-20T07:32:40.810 Engine:Setting original file name "mfplat.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.mfplat.dll.01dce12f6b97c540.007e", hr=0x0 2026-05-20T07:32:40.966 Engine:Setting original file name "keyiso.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.keyiso.dll.01dce12f6b738997.006f", hr=0x0 2026-05-20T07:32:41.029 Engine:Setting original file name "wevtapi.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wevtapi.dll.01dce12f6c7b560d.00da", hr=0x0 2026-05-20T07:32:41.060 Engine:Setting original file name "WindowsCodecs" for "c:\windows\winsxs\amd64_microsoft-windows-windowscodec_31bf3856ad364e35_10.0.14393.5127_none_0c3ffc39fbb10397\windowscodecs.dll", hr=0x0 2026-05-20T07:32:41.107 Engine:Setting original file name "mp4sdmod.dll" for "c:\windows\winsxs\wow64_microsoft-windows-mp4sdecd_31bf3856ad364e35_10.0.14393.5125_none_8efb8535fc1ca60b\mp4sdecd.dll", hr=0x0 2026-05-20T07:32:41.185 Engine:Setting original file name "spwizres.dll" for "c:\windows\system32\spwizimg.dll", hr=0x0 2026-05-20T07:32:41.247 Engine:Setting original file name "extractr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-wimgapi_31bf3856ad364e35_10.0.14393.3503_none_fe8cfe396f934b96\wimserv.exe", hr=0x0 2026-05-20T07:32:41.982 Engine:Setting original file name "win32kfull.sys" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.win32kfull.sys.01dce12f6c851c0c.00e0", hr=0x0 2026-05-20T07:32:42.357 Engine:Setting original file name " " for "c:\program files (x86)\google\chrome\application\148.0.7778.178\dxcompiler.dll", hr=0x0 2026-05-20T07:32:42.482 Engine:Setting original file name "kernel32" for "c:\windows\winsxs\amd64_microsoft-windows-kernel32.resources_31bf3856ad364e35_10.0.14393.6343_en-us_b2c5c5ff7fe56066\kernel32.dll.mui", hr=0x0 2026-05-20T07:32:43.372 Engine:Setting original file name "WLRMNDR.EXE" for "c:\windows\system32\wlrmdr.exe", hr=0x0 2026-05-20T07:32:43.450 Engine:Setting original file name "Wldap32.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wldap32.dll.01dce12f6cda1466.00fd", hr=0x0 2026-05-20T07:32:43.622 Engine:Setting original file name "mp4sdmod.dll" for "c:\windows\system32\mp4sdecd.dll", hr=0x0 2026-05-20T07:32:43.950 Engine:Setting original file name "dnsapi" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.dnsapi.dll.01dce12f6e709260.013a", hr=0x0 2026-05-20T07:32:44.247 Engine:Setting original file name "cdprt.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.cdprt.dll.01dce12f6aa14494.0037", hr=0x0 2026-05-20T07:32:44.419 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$ri9nkvj.dll", hr=0x0 2026-05-20T07:32:45.638 Engine:Setting original file name "ntkrnlmp.exe" for "c:\windows\system32\ntoskrnl.exe", hr=0x0 2026-05-20T07:32:45.966 Engine:Setting original file name "dnsapi" for "c:\windows\system32\dnsapi.dll", hr=0x0 2026-05-20T07:32:46.013 Engine:Setting original file name "vaultcli.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.vaultcli.dll.01dce12f6c716553.00d1", hr=0x0 2026-05-20T07:32:46.263 Engine:Setting original file name "DismProvPS.DLL" for "c:\windows\system32\dism\dismcoreps.dll", hr=0x0 2026-05-20T07:32:47.341 Engine:Setting original file name "wcp.dll" for "c:\windows\system32\ssshim.dll", hr=0x0 2026-05-20T07:32:47.388 Engine:Setting original file name "winprint.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.winprint.dll.01dce12f6dd598ce.012f", hr=0x0 2026-05-20T07:32:47.450 Engine:Setting original file name "termsrv.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.termsrv.dll.01dce12f6c51cef1.00c1", hr=0x0 2026-05-20T07:32:47.575 Engine:Setting original file name "COMCTL32.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.comctl32.dll.01dce828d5f1ed91.0039", hr=0x0 2026-05-20T07:32:48.810 Engine:Setting original file name "ntkrnlmp.exe" for "c:\windows\winsxs\amd64_microsoft-windows-os-kernel_31bf3856ad364e35_10.0.14393.9060_none_e1fe1e840ea982a4\ntoskrnl.exe", hr=0x0 2026-05-20T07:32:49.200 Engine:Setting original file name "nlsbres.dll.mui" for "c:\windows\system32\en-us\winnlsres.dll.mui", hr=0x0 2026-05-20T07:32:49.607 Engine:Setting original file name "sspisrv.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.sspisrv.dll.01dce12f67edcac8.0014", hr=0x0 2026-05-20T07:32:50.091 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\syswow64\mpg4decd.dll", hr=0x0 2026-05-20T07:32:50.122 Engine:Setting original file name "mfcsubs.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.mfcsubs.dll.01dce12f6b8e170b.007c", hr=0x0 2026-05-20T07:32:50.404 Engine:Setting original file name "rsaenh.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.rsaenh.dll.01dce828d5645bd4.001d", hr=0x0 2026-05-20T07:32:50.763 Engine:Setting original file name "wow64lg2.dll" for "c:\windows\winsxs\amd64_microsoft-windows-wow64-windows_31bf3856ad364e35_10.0.14393.3383_none_6d94f527e14e54ff\wow64win.dll", hr=0x0 2026-05-20T07:32:50.966 Engine:Setting original file name "spoolsv.exe" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.spoolsv.exe.01dce12f6c3988ea.00b4", hr=0x0 2026-05-20T07:32:50.966 Engine:Setting original file name "wldp.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wldp.dll.01dce12f6cda1466.00fe", hr=0x0 2026-05-20T07:32:51.310 Engine:Setting original file name "mscorlib.dll" for "c:\windows\winsxs\x86_netfx4-mscorlib_ni_b03f5f7f11d50a3a_4.0.15552.18230_none_8b0799dcf7b88c09\mscorlib.ni.dll", hr=0x0 2026-05-20T07:32:51.685 Engine:Setting original file name "BCP47Lang.dll" for "c:\windows\winsxs\wow64_microsoft-windows-bcp47languages_31bf3856ad364e35_10.0.14393.2457_none_1a5fc83a65dd036f\bcp47langs.dll", hr=0x0 2026-05-20T07:32:51.872 Engine:Setting original file name "powershell.exe" for "c:\windows\syswow64\windowspowershell\v1.0\powershell.exe", hr=0x0 2026-05-20T07:32:51.935 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnhpast.dll", hr=0x0 2026-05-20T07:32:52.591 Engine:Setting original file name "MicrosoftRawCodec" for "c:\windows\system32\windowscodecsraw.dll", hr=0x0 2026-05-20T07:32:52.997 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\amd64_netfx4-system_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_1c2deb8b76e95843\system.tlb", hr=0x0 2026-05-20T07:32:53.341 Engine:Setting original file name "mf.dll" for "c:\windows\system32\mfpmp.exe", hr=0x0 2026-05-20T07:32:53.622 Engine:Setting original file name "RRASUPG.DLL" for "c:\windows\syswow64\setup\rasmigplugin.dll", hr=0x0 2026-05-20T07:32:53.997 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rigs9x9.dll", hr=0x0 2026-05-20T07:32:54.060 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnathlp.dll", hr=0x0 2026-05-20T07:32:54.419 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnathlp.dll", hr=0x0 2026-05-20T07:32:55.575 Engine:Setting original file name "rpcrt4.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.rpcrt4.dll.01dce12f6f80a65b.014f", hr=0x0 2026-05-20T07:32:55.841 Engine:Setting original file name "lsasrv.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.lsasrv.dll.01dce12f67e1e56f.0009", hr=0x0 2026-05-20T07:32:58.075 Engine:Setting original file name "ncrypt.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.ncrypt.dll.01dce12f6bcae502.008c", hr=0x0 2026-05-20T07:32:58.169 Engine:Setting original file name "Windows.Security.Credentials.UI.CredentialPicker.exe" for "c:\windows\winsxs\wow64_microsoft-windows-s..y-credential-picker_31bf3856ad364e35_10.0.14393.9060_none_30aa6e7dca8d6a1a\windows.security.credentials.ui.credentialpicker.dll", hr=0x0 2026-05-20T07:32:58.279 Engine:Setting original file name "AppVEntSubsystems.dll" for "c:\windows\winsxs\wow64_microsoft-windows-appmanagement-appvwow_31bf3856ad364e35_10.0.14393.5192_none_33542f4781539df6\appventsubsystems32.dll", hr=0x0 2026-05-20T07:32:58.404 Engine:Setting original file name "EmbeddedAppLauncherConfig.exe" for "c:\windows\system32\embeddedapplauncherconfig.dll", hr=0x0 2026-05-20T07:32:59.107 Engine:Setting original file name "nlaapi.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.nlaapi.dll.01dce12f6f5413bf.014b", hr=0x0 2026-05-20T07:33:00.107 Engine:Setting original file name "wow64.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wow64.dll.01dce12f6ce60094.0100", hr=0x0 2026-05-20T07:33:01.857 Engine:Setting original file name "OLE32.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.ole32.dll.01dce12f6f5db877.014d", hr=0x0 2026-05-20T07:33:03.779 Engine:Setting original file name "AppVEntSubsystems.dll" for "c:\windows\winsxs\wow64_microsoft-windows-appmanagement-appvwow_31bf3856ad364e35_10.0.14393.7870_none_3306b09b818df5eb\appventsubsystems32.dll", hr=0x0 2026-05-20T07:33:06.075 Engine:Setting original file name "mscorlib.dll" for "c:\windows\assembly\nativeimages_v4.0.30319_32\mscorlib\5b7dfbb6f62799b6979729f5dc677903\mscorlib.ni.dll", hr=0x0 2026-05-20T07:33:06.122 Engine:Setting original file name "DismProvPS.DLL" for "c:\windows\winsxs\amd64_microsoft-windows-d..ing-management-core_31bf3856ad364e35_10.0.14393.0_none_58a891804171bf9b\dismcoreps.dll", hr=0x0 2026-05-20T07:33:06.529 Engine:Setting original file name "WINTRUST.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wintrust.dll.01dce12f6ff1a2ca.0159", hr=0x0 2026-05-20T07:33:06.544 Engine:Setting original file name "CMMIGR.DLL" for "c:\windows\winsxs\wow64_microsoft-windows-rasapi_31bf3856ad364e35_10.0.14393.4169_none_ed4e402dde75758a\pbkmigr.dll", hr=0x0 2026-05-20T07:33:06.544 Engine:Setting original file name "System.Windows.Forms.dll" for "c:\windows\winsxs\x86_netfx4-sys_windows_forms_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_aea2e02810528a7d\system.windows.forms.tlb", hr=0x0 2026-05-20T07:33:06.779 Engine:Setting original file name "iphlpapi.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.iphlpapi.dll.01dce12f6ea0406d.0141", hr=0x0 2026-05-20T07:33:06.919 Engine:Setting original file name "schedsvc.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.schedsvc.dll.01dce12f6c1e0445.00ab", hr=0x0 2026-05-20T07:33:07.700 Engine:Setting original file name "wcp.dll" for "c:\windows\winsxs\x86_microsoft-windows-packagemanager_31bf3856ad364e35_10.0.14393.2457_none_0659f8bf958f6270\ssshim.dll", hr=0x0 2026-05-20T07:33:08.763 Engine:Setting original file name "msvcrt.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.msvcrt.dll.01dce12f6f42f048.0149", hr=0x0 2026-05-20T07:33:11.419 Engine:Setting original file name "winsqlite3" for "c:\windows\winsxs\amd64_microsoft-windows-winsqlite3_31bf3856ad364e35_10.0.14393.6897_none_8bd6aea28435c2e0\winsqlite3.dll", hr=0x0 2026-05-20T07:33:12.169 Engine:Setting original file name "dxmasf.dll" for "c:\windows\winsxs\amd64_microsoft-windows-mediaplayer-core_31bf3856ad364e35_10.0.14393.8519_none_80fba006a9ce2055\msdxm.ocx", hr=0x0 2026-05-20T07:33:12.950 Engine:Setting original file name "IMAGEHLP.DLL" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.imagehlp.dll.01dce12f6b03e67a.0067", hr=0x0 2026-05-20T07:33:13.216 Engine:Setting original file name "comdlg32.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.comdlg32.dll.01dce12f6e5d7ed5.0136", hr=0x0 2026-05-20T07:33:13.560 Engine:Setting original file name "mscorlib.dll" for "c:\windows\winsxs\amd64_netfx4-mscorlib_ni_b03f5f7f11d50a3a_4.0.15552.18230_none_435a6305e33c6303\mscorlib.ni.dll", hr=0x0 2026-05-20T07:33:14.888 Engine:Setting original file name "rpcrt4.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.rpcrt4.dll.01dce828d602dccb.0042", hr=0x0 2026-05-20T07:33:14.904 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\x86_netfx4-system_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_63db22628b658149\system.tlb", hr=0x0 2026-05-20T07:33:14.997 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dplaysvr.exe", hr=0x0 2026-05-20T07:33:15.029 Engine:Setting original file name "RDPUDD.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.rdpudd.dll.01dce12f6c0af18d.00a2", hr=0x0 2026-05-20T07:33:15.747 Engine:Setting original file name "cdp.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.cdp.dll.01dce12f6aa14494.0036", hr=0x0 2026-05-20T07:33:16.060 Engine:Setting original file name "GdiPlus.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.gdiplus.dll.01dce12f6af31972.005f", hr=0x0 2026-05-20T07:33:16.107 Engine:Setting original file name "WsmSvc.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.wsmsvc.dll.01dce12f6cf44ec3.0108", hr=0x0 2026-05-20T07:33:16.279 Engine:Setting original file name "win32kbase.sys" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.win32kbase.sys.01dce12f6c851c0c.00df", hr=0x0 2026-05-20T07:33:16.638 Engine:Setting original file name "powershell.exe" for "c:\windows\winsxs\amd64_microsoft-windows-powershell-exe_31bf3856ad364e35_10.0.14393.206_none_a31a3bc69ffbbdcf\powershell.exe", hr=0x0 2026-05-20T07:33:17.372 Engine:Setting original file name "ism32k.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.ism32k.dll.01dce12f6b14a2f0.006b", hr=0x0 2026-05-20T07:33:17.404 Engine:Setting original file name "netlogon.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.netlogon.dll.01dce12f6bcfa733.0091", hr=0x0 2026-05-20T07:33:18.388 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnlobby.dll", hr=0x0 2026-05-20T07:33:20.904 Engine:Setting original file name "mpengine.dll" for "c:\programdata\microsoft\windows defender\definition updates\stableengineetwlocation\mpengine_etw.dll", hr=0x0 2026-05-20T07:33:21.450 Engine:Setting original file name "mp4sdmod.dll" for "c:\windows\winsxs\wow64_microsoft-windows-mp4sdecd_31bf3856ad364e35_10.0.14393.8519_none_8eceefcdfc3e5a71\mp4sdecd.dll", hr=0x0 2026-05-20T07:33:21.810 Engine:Setting original file name "osloader.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_10.0.14393.9060_none_d0f47715c72d5084\winload.exe", hr=0x0 2026-05-20T07:33:22.997 Engine:Setting original file name "mavinject32.exe" for "c:\windows\winsxs\wow64_microsoft-windows-appmanagement-appvwow_31bf3856ad364e35_10.0.14393.5192_none_33542f4781539df6\mavinject.exe", hr=0x0 2026-05-20T07:33:23.404 Engine:Setting original file name "ntkrnlmp.exe" for "c:\windows\winsxs\amd64_microsoft-windows-os-kernel_31bf3856ad364e35_10.0.14393.7070_none_e1ff1b020ea8a1ad\ntoskrnl.exe", hr=0x0 2026-05-20T07:33:23.669 Engine:Setting original file name "apisetschema" for "c:\windows\winsxs\amd64_microsoft-windows-apisetschema-server_31bf3856ad364e35_10.0.14393.7070_none_6189c94ecdef798c\apisetschema.dll", hr=0x0 2026-05-20T07:33:23.841 Engine:Setting original file name "win32spl.dll" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.win32spl.dll.01dce12f6c851c0c.00e1", hr=0x0 2026-05-20T07:33:24.169 Engine:Setting original file name "user32" for "c:\windows\winsxs\temp\pendingdeletes\$$deleteme.user32.dll.01dce828d60a0449.0045", hr=0x0 2026-05-20T07:33:24.388 OriginalFileName Maintenance::20975 files in Moac, 1 skipped (cached), 302 filename set 2026-05-20T07:33:24.388 [AutoPurge] Routine task for Cache Maintenance has ended. IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-20T07:34:30.458 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-20T07:34:30.458 [AutoExclusion] Applied roles from cache. 2026-05-20T07:34:30.458 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvEnableOneDSTelemetry hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-20T07:34:30.473 Engine upgrade detected 0x1000165ae0bc0. Saving old engine files to last known good engine files ... 2026-05-20T07:34:30.489 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB24268020, lRefCount: 5, hr=0 2026-05-20T07:34:30.489 [Engine] New active engine 00007FFB1C2E5810 replacing engine 00007FFB24268020. Number of active engines: 2 2026-05-20T07:34:30.520 EngineInit:Global ASOC is enabled 2026-05-20T07:34:30.520 EngineInit:ASOO is enabled for developer volumes 2026-05-20T07:34:30.567 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-20T07:34:30.567 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:34:30.567 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:34:30.583 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-20T07:34:30.598 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-20T07:34:30.598 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-20T07:34:30.598 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-20T07:34:30.598 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-20T07:34:30.614 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-20T07:34:30.614 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-20T07:34:30.614 [Plugin] Initializing RTP plugin state... 2026-05-20T07:34:30.614 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-20T07:34:30.614 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56} 2026-05-20T07:34:30.614 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-20T07:34:30.614 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{8775A6BF-4639-4F4B-B28A-A4B82A0B3455} removed 2026-05-20T07:34:30.614 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-20T07:34:30.614 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-20T07:34:30.614 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-20T07:34:30.614 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-20T07:34:30.614 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-20-2026 07:34:30 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-20-2026 07:34:30 2026-05-20T07:34:30.630 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-20T07:34:30.630 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-20T07:34:30.630 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T07:34:30.630 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎20‎-‎2026 09:19:52 Last Perf:‎05‎-‎20‎-‎2026 09:19:52 First RTP Scan:‎05‎-‎20‎-‎2026 09:19:52 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:663 Misses:2209 BM Queue:0,118,0 Proc:0,62,0 File:0,116,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:2,3,0 SetEngine:1,1,0 SetState:1,1,0 SetUser:0,1,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:3077 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:11890300 AsyncQCurrent:0 BMFlags:40095 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:25265 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:88653 TotalHits:10151 InstanceCacheInserts:465 InstanceCacheUpdates:0 InstanceCacheDeletes:108 InstanceCacheHits:70 InstanceCacheMisses:39279 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:7ms (3310/438) Success: 438, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-20T07:34:30.630 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-20T07:34:30.630 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-20T07:34:30.630 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-20T07:34:30.630 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-20T07:34:30.630 MdCoreSvc is supported in this platform and OS 2026-05-20T07:34:30.630 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). Signature updated on 05-20-2026 07:34:30 Product Version: 4.18.26030.3011 Service Version: 4.18.26030.3011 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.6.0 AV Signature Version: 1.451.6.0 ************************************************************ 2026-05-20T07:34:30.630 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-20T07:34:30.630 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\F3F3EF83-281B-4DCA-8E60-6E4F827CB97Ec44.1dce82a75b5ad4d 2026-05-20T07:34:30.630 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-20T07:34:30.630 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-20T07:34:30.692 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-20T07:34:30.708 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-20T07:34:30.708 Process scan (postsignatureupdatescan) started. 2026-05-20T07:34:31.005 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-20T07:34:31.005 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-20T07:34:31.005 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-20T07:34:31.005 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-20T07:34:31.005 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-20T07:34:31.005 [Engine] Engine 00007FFB24268020 no longer in use. Number of active engines: 1 2026-05-20T07:34:31.020 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-20T07:34:31.020 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-20T07:34:31.114 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 3424, Count: 104, MaxTime: 343, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\tzsync.exe, EstimatedImpact: 0% 2026-05-20T07:34:31.114 ProcessImageName: httpd.exe, Pid: 2228, TotalTime: 1384, Count: 141, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-05-20T07:34:31.114 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 1279, Count: 94, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\ExplorerFrame.dll, EstimatedImpact: 1% 2026-05-20T07:34:31.114 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 995, Count: 12, MaxTime: 640, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 0% 2026-05-20T07:34:31.114 ProcessImageName: svchost.exe, Pid: 3196, TotalTime: 803, Count: 26, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\cdprt.dll, EstimatedImpact: 0% 2026-05-20T07:34:31.114 ProcessImageName: WmiPrvSE.exe, Pid: 3148, TotalTime: 625, Count: 36, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\http.sys, EstimatedImpact: 2% 2026-05-20T07:34:31.114 ProcessImageName: svchost.exe, Pid: 692, TotalTime: 476, Count: 14, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\TSTheme.exe, EstimatedImpact: 0% 2026-05-20T07:34:31.114 ProcessImageName: MpSigStub.exe, Pid: 3140, TotalTime: 452, Count: 3, MaxTime: 312, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\F3F3EF83-281B-4DCA-8E60-6E4F827CB97Ec44.1dce82a75b5ad4d\mpengine.dll, EstimatedImpact: 37% 2026-05-20T07:34:31.114 ProcessImageName: dwm.exe, Pid: 4996, TotalTime: 414, Count: 18, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\d2d1.dll, EstimatedImpact: 55% 2026-05-20T07:34:31.114 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 319, Count: 34, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\DriverStore\FileRepository\prnms003.inf_amd64_14563d1f4da2c292\Amd64\PrintConfig.dll, EstimatedImpact: 0% 2026-05-20T07:34:31.114 ProcessImageName: svchost.exe, Pid: 844, TotalTime: 308, Count: 11, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\mfplat.dll, EstimatedImpact: 1% 2026-05-20T07:34:31.114 ProcessImageName: sihost.exe, Pid: 4616, TotalTime: 275, Count: 17, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\actxprxy.dll, EstimatedImpact: 21% 2026-05-20T07:34:31.114 ProcessImageName: wuauclt.exe, Pid: 4436, TotalTime: 264, Count: 3, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\Windows\SoftwareDistribution\Download\Install\AM_Base_Patch1.exe, EstimatedImpact: 8% 2026-05-20T07:34:31.114 ProcessImageName: svchost.exe, Pid: 748, TotalTime: 262, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\SysWOW64\InstallAgent.exe, EstimatedImpact: 0% 2026-05-20T07:34:31.114 ProcessImageName: taskhostw.exe, Pid: 4712, TotalTime: 184, Count: 7, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\esent.dll, EstimatedImpact: 45% 2026-05-20T07:34:31.161 [Engine] RSIG_UNLOADENGINE, 00007FFB24268020, err=0x0 2026-05-20T07:34:31.176 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69B4B61E-FBE8-48B7-AFAB-B981D2E85FC5} removed 2026-05-20T07:34:31.380 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-20T07:34:31.380 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-20T07:34:31.380 [KSL] Leaving CKSLEngine::EnableKsl(0). Signature updated via MicrosoftUpdateServer on 05-20-2026 07:34:31 ************************************************************ 2026-05-20T07:34:32.239 Job Notification: Process exited from job (5080) 2026-05-20T07:34:32.239 Job Notification: Process exited from job (5088) 2026-05-20T07:34:33.020 Job Notification: Process exited from job (5032) 2026-05-20T07:34:33.020 Job Notification: Process exited from job (5040) BEGIN BM telemetry GUID:{D8248FEF-B10A-226D-0F69-BFA18014F1C0} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5208 ProcessCreationTime:134237358974803704 SessionID:2 CreationTime:05-20-2026 07:34:38 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: C:\Windows\System32\werconcpl.dll:25,; Parents: Operations:None END BM telemetry 2026-05-20T07:34:39.223 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T07:34:39.223 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T07:34:39.223 [Cloud] Queued cloud request. 2026-05-20T07:34:39.223 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T07:34:39.223 [Cloud] Dequeued cloud request. 2026-05-20T07:34:39.223 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T07:34:39.755 [Cloud] End of cloud request. 2026-05-20T07:34:40.286 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T07:34:49.114 Process scan (postsignatureupdatescan) completed. 2026-05-20T07:35:43.989 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Web\5d3b39858bea8f17a501b4c07ca984f9\System.Web.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #3270, FileId: 0x1a000000055e02, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:35:44.661 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Web.28b9ef5a#\b8b863a190848eaa9724aecc0d9abf00\System.Web.Extensions.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #3271, FileId: 0x34000000055e19, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:36:05.880 Engine:Setting original file name "powershell.exe" for "\\?\c:\windows\syswow64\windowspowershell\v1.0\powershell.exe", hr=0x0 2026-05-20T07:36:11.598 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\12ac546c4745260bf7082a6ce267ba9b\System.Core.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #3308, FileId: 0x57f70000000156f7, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:36:21.239 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\7051c3fdb59fc69c3e0e37d95ef74425\WindowsBase.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #3330, FileId: 0x6250000000161d3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:36:32.864 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\56825103a95930679930a057db66e937\PresentationCore.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #3359, FileId: 0x1500000001b60d, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:36:57.833 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\PowerShell\ModuleAnalysisCache. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #3394, FileId: 0x20000000081081, Reason: OnClose, IoStatusBlockForNewFile: 0x3, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:38:58.156 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\System.Data\a70f81d6c609cb85613e53d79c4139ba\System.Data.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #3632, FileId: 0x1ce000000027945, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:39:30.515 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-20T07:39:38.718 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\System.Web\693789a6171ea30d0d14c551ae288496\System.Web.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #3637, FileId: 0x1800000005525c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:39:39.218 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\System.Web.28b9ef5a#\afa2053eeb91a68ad5f237da47522dda\System.Web.Extensions.ni.dll. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #3638, FileId: 0x22000000058b19, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T07:39:57.765 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T07:55:02.755 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T07:59:02.161 Engine:Setting original file name "rundll32.exe" for "c:\windows\system32\rundll32.exe", hr=0x0 2026-05-20T08:10:07.752 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T08:15:33.384 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4075, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:15:33.400 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4077, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:15:43.400 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4080, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:15:43.416 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4082, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:15:43.416 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #4084, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:25:12.756 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T08:29:04.244 Bm signature throttled:0x00003fb37eb842dc 2026-05-20T08:31:04.806 [RTP] [Mini-filter] OpenWithoutRead notification (457, 14536, \Device\HarddiskVolume2\Windows\System32\wbem\WmiPrvSE.exe) sent successfully. 2026-05-20T08:35:22.505 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\__PSScriptPolicyTest_mjlyhujq.jym.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #15385, FileId: 0x15000000054178, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:40:17.757 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T08:44:24.513 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #15787, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:44:24.545 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #15789, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:44:29.308 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #15793, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:44:29.323 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #15796, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:44:29.323 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #15797, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:44:39.334 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #15800, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:44:39.362 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #15802, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:44:39.366 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #15804, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 Internal signature match:subtype=Lowfi, sigseq=0x000093E7725B22B1, sigsha=f77a118c6903c205eb0c66ad45a7976a8487e00f, cached=false, source=0, resourceid=0x2e3ad129 2026-05-20T08:44:47.651 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:44:47.651 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:44:47.651 [Cloud] Queued cloud request. 2026-05-20T08:44:47.651 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:44:47.651 [Cloud] Dequeued cloud request. 2026-05-20T08:44:47.651 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:44:48.264 [Cloud] End of cloud request. 2026-05-20T08:44:48.774 [NRI] Successfully updated NIS service with platform settings for enforcement level Log Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x98519782 2026-05-20T08:45:09.420 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:09.421 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:09.421 [Cloud] Queued cloud request. 2026-05-20T08:45:09.421 [Cloud] Dequeued cloud request. 2026-05-20T08:45:09.421 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:09.421 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\8c653dd7d939cfd0ccbe4e9f2465c3b76c935ba7 Dynamic Signature Compilation Timestamp:05-20-2026 08:44:44 Persistence Type:Duration Time remaining:288000000 2026-05-20T08:45:10.246 [Cloud] End of cloud request. 2026-05-20T08:45:10.247 Dynamic signature received 2026-05-20T08:45:10.255 RTSD:RTSD recieved, rescanning impacted resources Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x50606dc2 2026-05-20T08:45:10.940 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:45:11.313 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:11.313 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:11.313 [Cloud] Queued cloud request. 2026-05-20T08:45:11.313 [Cloud] Dequeued cloud request. 2026-05-20T08:45:11.315 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:11.372 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:45:11.978 [Cloud] End of cloud request. 2026-05-20T08:45:12.759 [NRI] Successfully updated NIS service with platform settings for enforcement level Log Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x7a2cc56c 2026-05-20T08:45:21.644 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:21.644 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:21.644 [Cloud] Queued cloud request. 2026-05-20T08:45:21.644 [Cloud] Dequeued cloud request. 2026-05-20T08:45:21.644 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:21.644 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:45:22.034 [Cloud] End of cloud request. Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x490819f0 2026-05-20T08:45:22.338 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:22.338 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:22.338 [Cloud] Queued cloud request. 2026-05-20T08:45:22.338 [Cloud] Dequeued cloud request. 2026-05-20T08:45:22.339 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:22.339 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:45:22.550 [NRI] Successfully updated NIS service with platform settings for enforcement level Log Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\860962578d50a7312d0a399c174a5d334c78d3e5 Dynamic Signature Compilation Timestamp:05-20-2026 08:44:57 Persistence Type:Duration Time remaining:288000000 2026-05-20T08:45:22.723 [Cloud] End of cloud request. 2026-05-20T08:45:22.724 RTSD:RTSD recieved, rescanning impacted resources Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x7cbee02e 2026-05-20T08:45:22.736 Dynamic signature received 2026-05-20T08:45:22.746 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:22.746 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:22.746 [Cloud] Queued cloud request. 2026-05-20T08:45:22.746 [Cloud] Dequeued cloud request. 2026-05-20T08:45:22.746 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:22.747 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:45:23.052 [Cloud] End of cloud request. 2026-05-20T08:45:23.242 [NRI] Successfully updated NIS service with platform settings for enforcement level Log Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x707dd142 2026-05-20T08:45:23.523 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:23.523 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:23.524 [Cloud] Queued cloud request. 2026-05-20T08:45:23.524 [Cloud] Dequeued cloud request. 2026-05-20T08:45:23.524 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:23.524 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\c0cad72d1e267eb4375e71edd3d047ae93348ee7 Dynamic Signature Compilation Timestamp:05-20-2026 08:44:59 Persistence Type:Duration Time remaining:288000000 2026-05-20T08:45:23.994 [Cloud] End of cloud request. 2026-05-20T08:45:23.994 Dynamic signature received 2026-05-20T08:45:23.994 RTSD:RTSD recieved, rescanning impacted resources Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x3bfd2255 2026-05-20T08:45:24.010 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:24.010 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:24.010 [Cloud] Queued cloud request. 2026-05-20T08:45:24.010 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:24.010 [Cloud] Dequeued cloud request. 2026-05-20T08:45:24.010 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:45:24.382 [Cloud] End of cloud request. 2026-05-20T08:45:24.499 [NRI] Successfully updated NIS service with platform settings for enforcement level Log Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x7b763207 2026-05-20T08:45:24.866 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:24.866 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:24.867 [Cloud] Queued cloud request. 2026-05-20T08:45:24.867 [Cloud] Dequeued cloud request. 2026-05-20T08:45:24.867 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:24.901 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\4ce2a490ca4596be369e308f09b5ae6869842672 Dynamic Signature Compilation Timestamp:05-20-2026 08:45:00 Persistence Type:Duration Time remaining:288000000 2026-05-20T08:45:25.209 [Cloud] End of cloud request. 2026-05-20T08:45:25.209 Dynamic signature received 2026-05-20T08:45:25.210 RTSD:RTSD recieved, rescanning impacted resources Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x613b3f57 2026-05-20T08:45:25.280 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:25.280 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:25.280 [Cloud] Queued cloud request. 2026-05-20T08:45:25.280 [Cloud] Dequeued cloud request. 2026-05-20T08:45:25.280 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:25.280 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\d6f72d01512edc9e92ff37a01a6e5f821dfc07a4 Dynamic Signature Compilation Timestamp:05-20-2026 08:45:00 Persistence Type:Duration Time remaining:288000000 2026-05-20T08:45:25.664 Dynamic signature received 2026-05-20T08:45:25.665 [Cloud] End of cloud request. 2026-05-20T08:45:25.665 RTSD:RTSD recieved, rescanning impacted resources Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0xad924939 2026-05-20T08:45:25.686 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:25.686 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:25.686 [Cloud] Queued cloud request. 2026-05-20T08:45:25.686 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:25.686 [Cloud] Dequeued cloud request. 2026-05-20T08:45:25.686 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:45:25.717 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:45:25.984 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\75d38433449f96f46c4df18d909bc5d61c8f623f Dynamic Signature Compilation Timestamp:05-20-2026 08:45:01 Persistence Type:Duration Time remaining:288000000 2026-05-20T08:45:25.985 [Cloud] End of cloud request. 2026-05-20T08:45:25.985 RTSD:RTSD recieved, rescanning impacted resources Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x7090c1cb 2026-05-20T08:45:26.005 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:26.005 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:26.005 [Cloud] Queued cloud request. 2026-05-20T08:45:26.005 [Cloud] Dequeued cloud request. 2026-05-20T08:45:26.005 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:26.005 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:45:26.495 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:45:26.839 [Cloud] End of cloud request. Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0xdd0c26ae 2026-05-20T08:45:27.250 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:27.250 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:27.250 [Cloud] Queued cloud request. 2026-05-20T08:45:27.250 [Cloud] Dequeued cloud request. 2026-05-20T08:45:27.250 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:27.250 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:45:27.357 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:45:27.583 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\c675cca629230e561bb6a7a87dee00b83debae81 Dynamic Signature Compilation Timestamp:05-20-2026 08:45:02 Persistence Type:Duration Time remaining:288000000 2026-05-20T08:45:27.584 [Cloud] End of cloud request. 2026-05-20T08:45:27.584 RTSD:RTSD recieved, rescanning impacted resources Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x57c6c047 2026-05-20T08:45:27.608 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:27.608 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:27.608 [Cloud] Queued cloud request. 2026-05-20T08:45:27.608 [Cloud] Dequeued cloud request. 2026-05-20T08:45:27.608 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:27.608 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:45:27.913 [Cloud] End of cloud request. 2026-05-20T08:45:28.110 [NRI] Successfully updated NIS service with platform settings for enforcement level Log Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x2799880d 2026-05-20T08:45:28.415 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:28.415 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:28.415 [Cloud] Queued cloud request. 2026-05-20T08:45:28.415 [Cloud] Dequeued cloud request. 2026-05-20T08:45:28.415 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:28.415 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:45:28.791 [Cloud] End of cloud request. Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0xefb216df 2026-05-20T08:45:29.301 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:29.301 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:29.301 [Cloud] Queued cloud request. 2026-05-20T08:45:29.301 [Cloud] Dequeued cloud request. 2026-05-20T08:45:29.301 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:29.302 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:45:29.336 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:45:29.663 [Cloud] End of cloud request. Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x7df3a624 2026-05-20T08:45:30.150 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:30.150 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:30.150 [Cloud] Queued cloud request. 2026-05-20T08:45:30.150 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:30.150 [Cloud] Dequeued cloud request. 2026-05-20T08:45:30.150 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:45:30.166 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:45:30.712 [Cloud] End of cloud request. Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0xb074c177 2026-05-20T08:45:31.197 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:45:31.197 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:31.197 [Cloud] Queued cloud request. 2026-05-20T08:45:31.197 [Cloud] Dequeued cloud request. 2026-05-20T08:45:31.197 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:45:31.197 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:45:31.306 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:45:31.494 [Cloud] End of cloud request. 2026-05-20T08:45:32.041 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:45:32.201 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xbb86417d7ffffffe 2026-05-20T08:45:32.202 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x9cd471107ffffffe 2026-05-20T08:45:32.203 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x379f19877ffffffe 2026-05-20T08:45:32.203 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x8e6a69c17ffffffe 2026-05-20T08:45:32.204 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x530107297ffffffe 2026-05-20T08:45:32.204 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xb28708ce7ffffffe 2026-05-20T08:45:32.205 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xdadaf5617ffffffe 2026-05-20T08:45:32.205 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x4fa62d337ffffffe 2026-05-20T08:45:32.206 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xfdfe3d8e7ffffffe 2026-05-20T08:45:32.207 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x96cdff447ffffffe 2026-05-20T08:45:32.207 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x6f1b109a7ffffffe 2026-05-20T08:45:32.210 UnknownTelemetryScan triggered, type: 1 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 2 resources, RtpIoavOnly: TRUE Internal signature match:subtype=Lowfi, sigseq=0x000093E7725B22B1, sigsha=f77a118c6903c205eb0c66ad45a7976a8487e00f, cached=false, source=0, resourceid=0x2e3ad129 2026-05-20T08:45:32.844 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x2811001d7ffffffe 2026-05-20T08:45:32.849 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x2811001d7ffffffe 2026-05-20T08:45:32.850 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 2 resources, RtpIoavOnly: FALSE 2026-05-20T08:45:34.398 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-05-20T08:45:34.398 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:45:34.399 [Cloud] Queued cloud request. 2026-05-20T08:45:34.399 [Cloud] Dequeued cloud request. 2026-05-20T08:45:34.604 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:45:35.782 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-20T08:45:35.909 [Cloud] End of cloud request. 2026-05-20T08:45:36.626 [NRI] Successfully updated NIS service with platform settings for enforcement level Log Internal signature match:subtype=Lowfi, sigseq=0x000093E7725B22B1, sigsha=f77a118c6903c205eb0c66ad45a7976a8487e00f, cached=false, source=0, resourceid=0x2e3ad129 Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x50606dc2 Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x7a2cc56c Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x7cbee02e Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x3bfd2255 Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x7090c1cb Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x57c6c047 Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x2799880d Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0xefb216df Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0x7df3a624 Internal signature match:subtype=Lowfi, sigseq=0x00006BE773752882, sigsha=38d57743b929d9877468c55bebb58ebaffb7deea, cached=false, source=0, resourceid=0xb074c177 2026-05-20T08:46:32.529 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x9b82171b7ffffffe 2026-05-20T08:46:32.529 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xd16e25157ffffffe 2026-05-20T08:46:32.529 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xebe1e5d17ffffffe 2026-05-20T08:46:32.529 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x521495977ffffffe 2026-05-20T08:46:32.529 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x7a7f18387ffffffe 2026-05-20T08:46:32.529 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x24c173637ffffffe 2026-05-20T08:46:32.529 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x9760a1647ffffffe 2026-05-20T08:46:32.529 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x5ed701217ffffffe 2026-05-20T08:46:32.529 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x4c51256a7ffffffe 2026-05-20T08:46:32.529 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xfa557aac7ffffffe 2026-05-20T08:46:32.529 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x2811001d7ffffffe 2026-05-20T08:46:32.529 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x9b82171b7ffffffe 2026-05-20T08:46:32.545 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xd16e25157ffffffe 2026-05-20T08:46:32.545 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xebe1e5d17ffffffe 2026-05-20T08:46:32.545 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x521495977ffffffe 2026-05-20T08:46:32.545 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x7a7f18387ffffffe 2026-05-20T08:46:32.545 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x24c173637ffffffe 2026-05-20T08:46:32.545 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x9760a1647ffffffe 2026-05-20T08:46:32.545 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x5ed701217ffffffe 2026-05-20T08:46:32.545 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x4c51256a7ffffffe 2026-05-20T08:46:32.545 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xfa557aac7ffffffe 2026-05-20T08:46:32.545 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x2811001d7ffffffe 2026-05-20T08:46:36.061 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-05-20T08:46:36.061 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:46:36.061 [Cloud] Queued cloud request. 2026-05-20T08:46:36.061 [Cloud] Dequeued cloud request. 2026-05-20T08:46:36.061 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:46:36.325 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-20T08:46:36.325 [Cloud] End of cloud request. 2026-05-20T08:46:36.835 [NRI] Successfully updated NIS service with platform settings for enforcement level Log Internal signature match:subtype=Lowfi, sigseq=0x000093E7460D9B1C, sigsha=7109779aa06d65059abc52081b403e47b815790e, cached=false, source=0, resourceid=0xa6a5d337 Internal signature match:subtype=Lowfi, sigseq=0x000082E7F0901A0A, sigsha=7902eb5d39888eb083c7611e8a99d25d9c960c3b, cached=false, source=0, resourceid=0xa6a5d337 Internal signature match:subtype=Lowfi, sigseq=0x000082E7D016800E, sigsha=66f0ba88504439deb1a5ee4ef0979978d2d6e2e2, cached=false, source=0, resourceid=0xa6a5d337 2026-05-20T08:46:47.522 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:46:47.522 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:46:47.522 [Cloud] Queued cloud request. 2026-05-20T08:46:47.522 [Cloud] Dequeued cloud request. 2026-05-20T08:46:47.522 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:46:47.584 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 Internal signature match:subtype=Lowfi, sigseq=0x000093E7460D9B1C, sigsha=7109779aa06d65059abc52081b403e47b815790e, cached=false, source=0, resourceid=0x15504e80 Internal signature match:subtype=Lowfi, sigseq=0x000082E7F0901A0A, sigsha=7902eb5d39888eb083c7611e8a99d25d9c960c3b, cached=false, source=0, resourceid=0x15504e80 Internal signature match:subtype=Lowfi, sigseq=0x000082E7D016800E, sigsha=66f0ba88504439deb1a5ee4ef0979978d2d6e2e2, cached=false, source=0, resourceid=0x15504e80 2026-05-20T08:46:55.592 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:46:55.592 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:46:55.593 [Cloud] Queued cloud request. 2026-05-20T08:46:55.593 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:46:55.593 [Cloud] Dequeued cloud request. 2026-05-20T08:46:55.593 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:46:56.099 [Cloud] End of cloud request. 2026-05-20T08:46:56.101 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe05eaa757ffffffe 2026-05-20T08:46:56.108 UnknownTelemetryScan triggered, type: 1 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 2 resources, RtpIoavOnly: TRUE Internal signature match:subtype=Lowfi, sigseq=0x000093E7460D9B1C, sigsha=7109779aa06d65059abc52081b403e47b815790e, cached=false, source=0, resourceid=0x15504e80 Internal signature match:subtype=Lowfi, sigseq=0x000082E7F0901A0A, sigsha=7902eb5d39888eb083c7611e8a99d25d9c960c3b, cached=false, source=0, resourceid=0x15504e80 Internal signature match:subtype=Lowfi, sigseq=0x000082E7D016800E, sigsha=66f0ba88504439deb1a5ee4ef0979978d2d6e2e2, cached=false, source=0, resourceid=0x15504e80 2026-05-20T08:46:56.607 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:46:57.528 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:46:57.528 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:46:57.528 [Cloud] Queued cloud request. 2026-05-20T08:46:57.528 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:46:57.528 [Cloud] Dequeued cloud request. 2026-05-20T08:46:57.529 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:46:57.570 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xf39aeab97ffffffe 2026-05-20T08:46:57.572 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xf39aeab97ffffffe 2026-05-20T08:46:58.119 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x166176d57ffffffe 2026-05-20T08:46:58.119 [Cloud] End of cloud request. 2026-05-20T08:46:58.700 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:46:58.929 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-05-20T08:46:58.929 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:46:58.929 [Cloud] Queued cloud request. 2026-05-20T08:46:58.929 [Cloud] Dequeued cloud request. 2026-05-20T08:46:58.938 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:46:58.994 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-20T08:46:58.994 [Cloud] End of cloud request. 2026-05-20T08:46:59.496 [NRI] Successfully updated NIS service with platform settings for enforcement level Log Internal signature match:subtype=Lowfi, sigseq=0x0000108766DC1975, sigsha=aecef3f845b0f2d07826ff984849c077aad0fd76, cached=false, source=2, resourceid=0x23e82ff5 Internal signature match:subtype=Lowfi, sigseq=0x0000157E7E10585E, sigsha=11649d496c66a5dd5424f700ae2b27af15ebc616, cached=false, source=2, resourceid=0x23e82ff5 Internal signature match:subtype=Lowfi, sigseq=0x0000157ED88E2C48, sigsha=b9fa6f2b2ffe7081fd04a4ff215faac89dc7482c, cached=false, source=2, resourceid=0x23e82ff5 2026-05-20T08:47:02.550 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 2 resources, RtpIoavOnly: TRUE Internal signature match:subtype=Lowfi, sigseq=0x000093E7460D9B1C, sigsha=7109779aa06d65059abc52081b403e47b815790e, cached=false, source=0, resourceid=0xa6a5d337 Internal signature match:subtype=Lowfi, sigseq=0x000082E7F0901A0A, sigsha=7902eb5d39888eb083c7611e8a99d25d9c960c3b, cached=false, source=0, resourceid=0xa6a5d337 Internal signature match:subtype=Lowfi, sigseq=0x000082E7D016800E, sigsha=66f0ba88504439deb1a5ee4ef0979978d2d6e2e2, cached=false, source=0, resourceid=0xa6a5d337 2026-05-20T08:47:03.409 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:47:03.409 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:47:03.409 [Cloud] Queued cloud request. 2026-05-20T08:47:03.409 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:47:03.425 [Cloud] Dequeued cloud request. 2026-05-20T08:47:03.425 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:47:03.722 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\FileZilla_3.62.1_win64_sponsored2-setup.exe. status=0x40070000, statusex=0x200300, threatid=0x80000000, sigseq=0x108766dc1975 2026-05-20T08:47:03.722 [Cloud] End of cloud request. Internal signature match:subtype=Lowfi, sigseq=0x0000157E075BDAF7, sigsha=88890d9310678dd16fbdb3eaa1b94e63c008c09c, cached=false, source=2, resourceid=0xfade677a Internal signature match:subtype=Lowfi, sigseq=0x0000157E7E10585E, sigsha=11649d496c66a5dd5424f700ae2b27af15ebc616, cached=false, source=2, resourceid=0xfade677a Internal signature match:subtype=Lowfi, sigseq=0x0000157ED88E2C48, sigsha=b9fa6f2b2ffe7081fd04a4ff215faac89dc7482c, cached=false, source=2, resourceid=0xfade677a 2026-05-20T08:47:04.268 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:47:04.659 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x166176d57ffffffe 2026-05-20T08:47:04.659 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0x166176d57ffffffe 2026-05-20T08:47:05.237 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:47:05.237 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:47:05.237 [Cloud] Queued cloud request. 2026-05-20T08:47:05.237 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:47:05.237 [Cloud] Dequeued cloud request. 2026-05-20T08:47:05.253 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:47:05.597 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\FileZilla_3.52.2_win64_sponsored-setup.exe. status=0x40070000, statusex=0x200300, threatid=0x1002bf63, sigseq=0x157e075bdaf7 2026-05-20T08:47:05.612 [Cloud] End of cloud request. 2026-05-20T08:47:06.175 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:47:06.378 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-05-20T08:47:06.378 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:47:06.378 [Cloud] Queued cloud request. 2026-05-20T08:47:06.378 [Cloud] Dequeued cloud request. 2026-05-20T08:47:06.393 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:47:06.440 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-20T08:47:06.440 [Cloud] End of cloud request. 2026-05-20T08:47:06.951 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:47:07.906 [Cloud] End of cloud request. 2026-05-20T08:47:08.422 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:47:17.106 Lua SetAttribute:Filter caching disabled for \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\simple-acme.v2.3.6.2257.win-x64.pluggable\wacs.exe (runtime MpDisableCaching from 0x000806bd7ce86a3d) 2026-05-20T08:47:17.106 MpLog-Throttle:The above 1 log lines will be snoozed for 3600000 ms 2026-05-20T08:47:20.387 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\simple-acme.v2.3.6.2257.win-x64.pluggable\wacs.exe. Process: \Device\HarddiskVolume2\Windows\explorer.exe, Status: 0xc0000001, State: 0, ScanRequest #15897, FileId: 0x12000000055da9, Reason: OnOpen, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x12019f, FileAttributes:0x20, ScanAttributes:0x8000, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 Internal signature match:subtype=Lowfi, sigseq=0x0000409645D74FFF, sigsha=ecde1fef3aebf5e56995e66b4d12a6dc394fc3cc, cached=false, source=5, resourceid=0x568bc2b2 Internal signature match:subtype=Lowfi, sigseq=0x0000409645D74FFF, sigsha=ecde1fef3aebf5e56995e66b4d12a6dc394fc3cc, cached=false, source=5, resourceid=0x65f78d29 2026-05-20T08:47:25.559 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A1D627669EFC8CD4F21BCF387D97F9B5_534B1FAEDA1ABBDAA7EF8A6FE45DF256. Process: \Device\HarddiskVolume2\Windows\explorer.exe, Status: 0xc0000001, State: 0, ScanRequest #15993, FileId: 0x11000000056109, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x2024, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 Internal signature match:subtype=Lowfi, sigseq=0x00002BE7DC1A7383, sigsha=cd6504faa498f3d2f2387a60b9a28b466665456b, cached=false, source=2, resourceid=0x94e6b9f7 2026-05-20T08:47:29.801 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:47:29.801 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:47:29.801 [Cloud] Queued cloud request. 2026-05-20T08:47:29.801 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:47:29.801 [Cloud] Dequeued cloud request. 2026-05-20T08:47:29.801 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:47:30.275 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\a79401363600781ce7cd29054248275f599084ce Dynamic Signature Compilation Timestamp:05-20-2026 08:47:05 Persistence Type:Duration Time remaining:288000000 2026-05-20T08:47:30.275 [Cloud] End of cloud request. 2026-05-20T08:47:30.275 RTSD:RTSD recieved, rescanning impacted resources 2026-05-20T08:47:30.790 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:55:22.751 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x000093E7460D9B1C, sigsha=7109779aa06d65059abc52081b403e47b815790e, cached=false, source=0, resourceid=0x34c133aa Internal signature match:subtype=Lowfi, sigseq=0x000082E7F0901A0A, sigsha=7902eb5d39888eb083c7611e8a99d25d9c960c3b, cached=false, source=0, resourceid=0x34c133aa Internal signature match:subtype=Lowfi, sigseq=0x000082E7D016800E, sigsha=66f0ba88504439deb1a5ee4ef0979978d2d6e2e2, cached=false, source=0, resourceid=0x34c133aa 2026-05-20T08:55:34.594 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:55:34.594 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:55:34.594 [Cloud] Queued cloud request. 2026-05-20T08:55:34.594 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:55:34.594 [Cloud] Dequeued cloud request. 2026-05-20T08:55:34.594 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:55:34.891 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\7d5ba7b4cbdabb1a65b56496908dce2c5fc13f81 Dynamic Signature Compilation Timestamp:05-20-2026 08:55:09 Persistence Type:Duration Time remaining:50065408 2026-05-20T08:55:34.891 [Cloud] End of cloud request. 2026-05-20T08:55:34.891 RTSD:RTSD recieved, rescanning impacted resources 2026-05-20T08:55:35.406 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:55:47.821 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16126, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:55:47.843 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16129, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:55:51.163 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16132, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:55:51.178 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16135, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:55:51.178 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16137, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:55:51.178 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16139, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 Internal signature match:subtype=Lowfi, sigseq=0x000093E7460D9B1C, sigsha=7109779aa06d65059abc52081b403e47b815790e, cached=false, source=0, resourceid=0x04387039 Internal signature match:subtype=Lowfi, sigseq=0x000082E7F0901A0A, sigsha=7902eb5d39888eb083c7611e8a99d25d9c960c3b, cached=false, source=0, resourceid=0x04387039 Internal signature match:subtype=Lowfi, sigseq=0x000082E7D016800E, sigsha=66f0ba88504439deb1a5ee4ef0979978d2d6e2e2, cached=false, source=0, resourceid=0x04387039 2026-05-20T08:56:01.183 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16144, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:56:01.186 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16146, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:56:01.191 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16148, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T08:56:01.212 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T08:56:01.212 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T08:56:01.212 [Cloud] Queued cloud request. 2026-05-20T08:56:01.212 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T08:56:01.212 [Cloud] Dequeued cloud request. 2026-05-20T08:56:01.212 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T08:56:01.342 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\22f1bc862368c5b16337adde081110a8f795f7cb Dynamic Signature Compilation Timestamp:05-20-2026 08:55:36 Persistence Type:Duration Time remaining:50065408 2026-05-20T08:56:01.343 RTSD:RTSD recieved, rescanning impacted resources 2026-05-20T08:56:01.343 [Cloud] End of cloud request. 2026-05-20T08:56:01.854 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T08:58:18.316 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260520.txt. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16289, FileId: 0x2700000009673a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x2020, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T09:10:27.752 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T09:13:44.156 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Google\Chrome\User Data\first_party_sets.db. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16825, FileId: 0x160000000232f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T09:13:49.343 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #16848, FileId: 0x80000000090b3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T09:14:49.333 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #16855, FileId: 0x90000000090b3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T09:14:59.330 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #16859, FileId: 0xa0000000090b3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T09:15:31.086 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16871, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T09:15:31.101 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16873, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T09:15:41.110 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16877, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T09:15:41.110 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #16880, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T09:25:32.754 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T09:28:19.680 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #16930, FileId: 0x7156000000009c49, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T09:28:59.685 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #16931, FileId: 0x7157000000009c49, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T09:34:30.499 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 19761, Count: 348, MaxTime: 2796, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\simple-acme.v2.3.6.2257.win-x64.pluggable\wacs.exe, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: powershell.exe, Pid: 4624, TotalTime: 4520, Count: 121, MaxTime: 750, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: httpd.exe, Pid: 2228, TotalTime: 2889, Count: 284, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\radio\lib\jquery.min.js, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 2184, Count: 83, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\win32kbase.sys, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: powershell.exe, Pid: 4524, TotalTime: 1795, Count: 181, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\7955504fd80b0f29a9781a7929e22c94\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 3% 2026-05-20T09:34:30.499 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 1427, Count: 60, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\TokenBroker.dll, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: notepad++.exe, Pid: 5156, TotalTime: 627, Count: 29, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Notepad++\updater\GUP.exe, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: powershell.exe, Pid: 3944, TotalTime: 492, Count: 39, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 1% 2026-05-20T09:34:30.499 ProcessImageName: SQLyogCommunity.exe, Pid: 3124, TotalTime: 325, Count: 10, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: mmc.exe, Pid: 4860, TotalTime: 307, Count: 18, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\AuthFWSnapin.dll, EstimatedImpact: 10% 2026-05-20T09:34:30.499 ProcessImageName: wacs.exe, Pid: 4412, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\public_suffix_list.dat, EstimatedImpact: 1% 2026-05-20T09:34:30.499 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.8957_none_c58d268797be8583\comctl32.dll, EstimatedImpact: 57% 2026-05-20T09:34:30.499 ProcessImageName: httpd.exe, Pid: 5908, TotalTime: 165, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SysWOW64\mswsock.dll, EstimatedImpact: 24% 2026-05-20T09:34:30.499 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 154, Count: 8, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\mspaint.exe, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: WmiPrvSE.exe, Pid: 4120, TotalTime: 139, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 100% 2026-05-20T09:34:30.499 ProcessImageName: notepad++.exe, Pid: 3964, TotalTime: 108, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\Notepad++\backup\new 1@2026-05-20_105501.tmp, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 91, Count: 12, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\XAMPP_FORBIDDEN.html.var, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: httpd.exe, Pid: 1348, TotalTime: 91, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\ext\php_fileinfo.dll, EstimatedImpact: 41% 2026-05-20T09:34:30.499 ProcessImageName: wacs.exe, Pid: 2852, TotalTime: 77, Count: 3, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\simple-acme\acme-v02.api.letsencrypt.org\Log\log-20260520.txt, EstimatedImpact: 1% 2026-05-20T09:34:30.499 ProcessImageName: taskhostw.exe, Pid: 1828, TotalTime: 76, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE\IDR_XML_DEFAULT_TRANSFORM[1], EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: mmc.exe, Pid: 5492, TotalTime: 61, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\TaskScheduler\28e60c397ff69b71301897f15f530d61\TaskScheduler.ni.dll, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 60, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\landing\db.opt, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: ngentask.exe, Pid: 2712, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 28% 2026-05-20T09:34:30.499 ProcessImageName: wacs.exe, Pid: 5868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings_default.json, EstimatedImpact: 2% 2026-05-20T09:34:30.499 ProcessImageName: updater.exe, Pid: 4060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: ngentask.exe, Pid: 2192, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 8% 2026-05-20T09:34:30.499 ProcessImageName: , Pid: 4, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\Segment0.cmf, EstimatedImpact: 2% 2026-05-20T09:34:30.499 ProcessImageName: taskhostw.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\profext.dll, EstimatedImpact: 13% 2026-05-20T09:34:30.499 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45f38139-ec8a-4d13-a146-6f3a26433ada.tmp, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: updater.exe, Pid: 5268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7179065-c98b-4b96-8cd8-36bc25ef060c.tmp, EstimatedImpact: 0% 2026-05-20T09:34:30.499 ProcessImageName: updater.exe, Pid: 5992, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T09:40:37.750 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) BEGIN BM telemetry GUID:{E4B8ECCF-08AE-7699-1DE7-D66D5783400B} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5208 ProcessCreationTime:134237358974803704 SessionID:2 CreationTime:05-20-2026 09:45:01 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-20T09:45:02.062 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T09:45:02.062 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T09:45:02.062 [Cloud] Queued cloud request. 2026-05-20T09:45:02.062 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T09:45:02.062 [Cloud] Dequeued cloud request. 2026-05-20T09:45:02.062 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T09:45:02.330 [Cloud] End of cloud request. 2026-05-20T09:45:02.844 [NRI] Successfully updated NIS service with platform settings for enforcement level Log Internal signature match:subtype=Lowfi, sigseq=0x0000B1E79AAAACC6, sigsha=36046c13f19c561aedb654f634ba085d6a607ced, cached=false, source=2, resourceid=0x571c95b5 Internal signature match:subtype=Lowfi, sigseq=0x000084E7E01AFFB6, sigsha=7a815adb9b9e14267419c8f39edc71f49b2651f9, cached=false, source=2, resourceid=0x571c95b5 Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0x571c95b5 2026-05-20T09:54:00.969 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T09:54:00.969 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T09:54:00.969 [Cloud] Queued cloud request. 2026-05-20T09:54:00.969 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T09:54:00.969 [Cloud] Dequeued cloud request. 2026-05-20T09:54:00.969 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 BEGIN BM telemetry GUID:{C6DD5317-0230-2F34-94B7-0E6E28252ABB} SignatureID:55745256291477 SigSha:7106c73e392948e275190c3cff85a5401a98a8bc ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-20-2026 09:54:00 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-20T09:54:01.660 [Cloud] End of cloud request. 2026-05-20T09:54:01.660 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv2\images\galerie\771006u2p.php. status=0x40070000, statusex=0x200200, threatid=0x80000000, sigseq=0xb1e79aaaacc6 2026-05-20T09:54:02.026 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T09:54:02.026 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T09:54:02.026 [Cloud] Queued cloud request. 2026-05-20T09:54:02.026 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T09:54:02.026 [Cloud] Dequeued cloud request. 2026-05-20T09:54:02.026 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T09:54:02.026 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-05-20T09:54:02.026 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T09:54:02.026 [Cloud] Queued cloud request. 2026-05-20T09:54:02.026 [Cloud] Dequeued cloud request. 2026-05-20T09:54:02.026 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T09:54:02.167 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T09:54:02.298 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-20T09:54:02.298 [Cloud] End of cloud request. 2026-05-20T09:54:02.305 [Cloud] End of cloud request. 2026-05-20T09:54:02.803 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T09:55:42.750 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T09:56:40.481 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #17559, FileId: 0x2bc000000053386, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T09:57:30.504 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #17654, FileId: 0x2bd000000053386, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T10:10:47.752 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T10:13:00.854 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #18863, FileId: 0x1e000000055245, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T10:13:09.978 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #18884, FileId: 0x1f000000055245, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T10:13:13.650 Bm signature throttled:0x00003fb37eb842dc 2026-05-20T10:15:32.221 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #18938, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T10:15:32.237 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #18940, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T10:15:42.224 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #18947, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T10:15:42.224 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #18949, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T10:15:42.240 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #18951, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T10:15:42.240 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #18953, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T10:25:52.763 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T10:40:57.756 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T10:56:02.762 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T11:11:07.750 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) BEGIN BM telemetry GUID:{78D99477-543C-0159-463C-9E6761F0BADD} SignatureID:56846945010345 SigSha:728d9c318636932fda3e9ee7b5dcd285b5680818 ThreatLevel:0 ProcessID:844 ProcessCreationTime:134237351386107916 SessionID:0 CreationTime:05-20-2026 11:12:49 ImagePath:C:\Windows\System32\svchost.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-20T11:12:50.361 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T11:12:50.361 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T11:12:50.361 [Cloud] Queued cloud request. 2026-05-20T11:12:50.361 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T11:12:50.361 [Cloud] Dequeued cloud request. 2026-05-20T11:12:50.361 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T11:12:50.658 [Cloud] End of cloud request. 2026-05-20T11:12:50.658 Bm signature throttled:0x00003fb37eb842dc 2026-05-20T11:12:51.158 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T11:12:55.808 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\Prs52B4.tmp. Process: \Device\HarddiskVolume2\Windows\System32\rdpclip.exe, Status: 0xc0000001, State: 0, ScanRequest #20472, FileId: 0x1a000000055d91, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T11:12:56.167 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #20497, FileId: 0x1b000000055d91, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T11:13:06.072 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #20610, FileId: 0x2100000009673b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T11:15:34.671 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #20855, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T11:15:34.687 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #20857, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T11:15:44.686 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #20860, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T11:15:44.701 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #20862, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T11:26:12.751 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T11:34:30.499 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 19837, Count: 352, MaxTime: 2796, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\simple-acme.v2.3.6.2257.win-x64.pluggable\wacs.exe, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 19219, Count: 2352, MaxTime: 1312, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-win32-5.6.36-0-VC11-installer.exe, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 6309, Count: 267, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\Backup\front_remove3321#\static\js\2.7859deac.chunk.js, EstimatedImpact: 31% 2026-05-20T11:34:30.499 ProcessImageName: powershell.exe, Pid: 4624, TotalTime: 4520, Count: 121, MaxTime: 750, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: httpd.exe, Pid: 2228, TotalTime: 2889, Count: 284, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\radio\lib\jquery.min.js, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 2184, Count: 83, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\win32kbase.sys, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: powershell.exe, Pid: 4524, TotalTime: 1795, Count: 181, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\7955504fd80b0f29a9781a7929e22c94\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 3% 2026-05-20T11:34:30.499 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 1688, Count: 66, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\TokenBroker.dll, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: notepad++.exe, Pid: 5156, TotalTime: 627, Count: 29, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Notepad++\updater\GUP.exe, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: powershell.exe, Pid: 3944, TotalTime: 492, Count: 39, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 1% 2026-05-20T11:34:30.499 ProcessImageName: SQLyogCommunity.exe, Pid: 3124, TotalTime: 325, Count: 27, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: mmc.exe, Pid: 4860, TotalTime: 307, Count: 18, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\AuthFWSnapin.dll, EstimatedImpact: 10% 2026-05-20T11:34:30.499 ProcessImageName: svchost.exe, Pid: 748, TotalTime: 246, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WmiPrvSE.exe, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.8957_none_c58d268797be8583\comctl32.dll, EstimatedImpact: 57% 2026-05-20T11:34:30.499 ProcessImageName: wacs.exe, Pid: 4412, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\public_suffix_list.dat, EstimatedImpact: 1% 2026-05-20T11:34:30.499 ProcessImageName: httpd.exe, Pid: 5908, TotalTime: 165, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SysWOW64\mswsock.dll, EstimatedImpact: 24% 2026-05-20T11:34:30.499 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 154, Count: 8, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\mspaint.exe, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: WmiPrvSE.exe, Pid: 4120, TotalTime: 139, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 100% 2026-05-20T11:34:30.499 ProcessImageName: notepad++.exe, Pid: 3964, TotalTime: 108, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\Notepad++\backup\new 1@2026-05-20_105501.tmp, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: httpd.exe, Pid: 1348, TotalTime: 91, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\ext\php_fileinfo.dll, EstimatedImpact: 41% 2026-05-20T11:34:30.499 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 90, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\landing\db.opt, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: wacs.exe, Pid: 2852, TotalTime: 77, Count: 3, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\simple-acme\acme-v02.api.letsencrypt.org\Log\log-20260520.txt, EstimatedImpact: 1% 2026-05-20T11:34:30.499 ProcessImageName: taskhostw.exe, Pid: 1828, TotalTime: 76, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE\IDR_XML_DEFAULT_TRANSFORM[1], EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: mmc.exe, Pid: 5492, TotalTime: 61, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\TaskScheduler\28e60c397ff69b71301897f15f530d61\TaskScheduler.ni.dll, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: InstallAgentUserBroker.exe, Pid: 4596, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Windows.Web.Http.dll, EstimatedImpact: 35% 2026-05-20T11:34:30.499 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\ntprint.dll, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: ngentask.exe, Pid: 2712, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 28% 2026-05-20T11:34:30.499 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\3DE1511F-D145-46B1-8D6C-0B0696C7A314\69b8a4a.gpd, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: wacs.exe, Pid: 5868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings_default.json, EstimatedImpact: 2% 2026-05-20T11:34:30.499 ProcessImageName: updater.exe, Pid: 4060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: ngentask.exe, Pid: 2192, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 8% 2026-05-20T11:34:30.499 ProcessImageName: , Pid: 4, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\Segment0.cmf, EstimatedImpact: 2% 2026-05-20T11:34:30.499 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45f38139-ec8a-4d13-a146-6f3a26433ada.tmp, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: updater.exe, Pid: 4344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\00904133-d5b3-4bec-9cfb-433edb52775d.tmp, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: taskhostw.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\profext.dll, EstimatedImpact: 13% 2026-05-20T11:34:30.499 ProcessImageName: updater.exe, Pid: 5268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7179065-c98b-4b96-8cd8-36bc25ef060c.tmp, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: updater.exe, Pid: 5992, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T11:34:30.499 ProcessImageName: updater.exe, Pid: 4280, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T11:41:17.749 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T11:56:22.754 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T12:11:27.756 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T12:12:05.434 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sqla80_87e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #22396, FileId: 0x1c000000096886, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T12:12:05.434 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sqla80_87d_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #22395, FileId: 0x1a000000036792, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T12:12:19.684 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sqla80_87e_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #22858, FileId: 0x1b000000036792, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T12:15:31.853 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22881, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T12:15:31.868 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22883, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T12:15:41.861 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22887, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T12:15:41.861 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22889, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T12:15:42.020 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22893, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T12:15:42.036 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22895, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T12:22:22.786 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sqla80_885_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #22934, FileId: 0x1c0000000960e7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T12:26:32.765 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T12:41:37.760 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) BEGIN BM telemetry GUID:{7003C611-99D6-81A3-D0C3-EB9452F000B0} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5208 ProcessCreationTime:134237358974803704 SessionID:2 CreationTime:05-20-2026 12:45:16 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-20T12:45:16.055 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #25103, FileId: 0x9000000013a0b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T12:45:16.055 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #25102, FileId: 0x2ff7000000009b80, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T12:45:17.038 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T12:45:17.038 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T12:45:17.038 [Cloud] Queued cloud request. 2026-05-20T12:45:17.038 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T12:45:17.038 [Cloud] Dequeued cloud request. 2026-05-20T12:45:17.038 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T12:45:17.335 [Cloud] End of cloud request. 2026-05-20T12:45:17.829 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T12:56:42.754 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T13:11:47.753 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T13:15:32.703 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #26960, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T13:15:32.718 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #26962, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T13:15:42.712 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #26967, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T13:15:42.728 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #26970, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T13:26:52.753 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T13:34:30.499 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 84830, Count: 9469, MaxTime: 1312, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-win32-5.6.36-0-VC11-installer.exe, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 19852, Count: 353, MaxTime: 2796, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\simple-acme.v2.3.6.2257.win-x64.pluggable\wacs.exe, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 6309, Count: 267, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\Backup\front_remove3321#\static\js\2.7859deac.chunk.js, EstimatedImpact: 31% 2026-05-20T13:34:30.499 ProcessImageName: powershell.exe, Pid: 4624, TotalTime: 4520, Count: 121, MaxTime: 750, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: httpd.exe, Pid: 2228, TotalTime: 2889, Count: 284, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\radio\lib\jquery.min.js, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 2184, Count: 83, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\win32kbase.sys, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: powershell.exe, Pid: 4524, TotalTime: 1795, Count: 181, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\7955504fd80b0f29a9781a7929e22c94\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 3% 2026-05-20T13:34:30.499 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 1749, Count: 68, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\TokenBroker.dll, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: notepad++.exe, Pid: 5156, TotalTime: 627, Count: 29, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Notepad++\updater\GUP.exe, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: powershell.exe, Pid: 3944, TotalTime: 492, Count: 39, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 1% 2026-05-20T13:34:30.499 ProcessImageName: SQLyogCommunity.exe, Pid: 3124, TotalTime: 325, Count: 27, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: mmc.exe, Pid: 4860, TotalTime: 307, Count: 18, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\AuthFWSnapin.dll, EstimatedImpact: 10% 2026-05-20T13:34:30.499 ProcessImageName: svchost.exe, Pid: 748, TotalTime: 246, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WmiPrvSE.exe, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.8957_none_c58d268797be8583\comctl32.dll, EstimatedImpact: 57% 2026-05-20T13:34:30.499 ProcessImageName: wacs.exe, Pid: 4412, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\public_suffix_list.dat, EstimatedImpact: 1% 2026-05-20T13:34:30.499 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 195, Count: 31, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\landing\db.opt, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: httpd.exe, Pid: 5908, TotalTime: 165, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SysWOW64\mswsock.dll, EstimatedImpact: 24% 2026-05-20T13:34:30.499 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 154, Count: 8, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\mspaint.exe, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: WmiPrvSE.exe, Pid: 4120, TotalTime: 139, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 100% 2026-05-20T13:34:30.499 ProcessImageName: notepad++.exe, Pid: 3964, TotalTime: 108, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\Notepad++\backup\new 1@2026-05-20_105501.tmp, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: httpd.exe, Pid: 1348, TotalTime: 91, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\ext\php_fileinfo.dll, EstimatedImpact: 41% 2026-05-20T13:34:30.499 ProcessImageName: wacs.exe, Pid: 2852, TotalTime: 77, Count: 3, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\simple-acme\acme-v02.api.letsencrypt.org\Log\log-20260520.txt, EstimatedImpact: 1% 2026-05-20T13:34:30.499 ProcessImageName: taskhostw.exe, Pid: 1828, TotalTime: 76, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE\IDR_XML_DEFAULT_TRANSFORM[1], EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: mmc.exe, Pid: 5492, TotalTime: 61, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\TaskScheduler\28e60c397ff69b71301897f15f530d61\TaskScheduler.ni.dll, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: InstallAgentUserBroker.exe, Pid: 4596, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Windows.Web.Http.dll, EstimatedImpact: 35% 2026-05-20T13:34:30.499 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\ntprint.dll, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: ngentask.exe, Pid: 2712, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 28% 2026-05-20T13:34:30.499 ProcessImageName: updater.exe, Pid: 4568, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a58e0c0-33d2-4176-a79b-7abaa365eafe.tmp, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\3DE1511F-D145-46B1-8D6C-0B0696C7A314\69b8a4a.gpd, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: wacs.exe, Pid: 5868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings_default.json, EstimatedImpact: 2% 2026-05-20T13:34:30.499 ProcessImageName: updater.exe, Pid: 4060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: ngentask.exe, Pid: 2192, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 8% 2026-05-20T13:34:30.499 ProcessImageName: , Pid: 4, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\Segment0.cmf, EstimatedImpact: 2% 2026-05-20T13:34:30.499 ProcessImageName: updater.exe, Pid: 1720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\031291be-b112-4e8b-abc0-8b13f1fe50e9.tmp, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: updater.exe, Pid: 5268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7179065-c98b-4b96-8cd8-36bc25ef060c.tmp, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: updater.exe, Pid: 4344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\00904133-d5b3-4bec-9cfb-433edb52775d.tmp, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: taskhostw.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\profext.dll, EstimatedImpact: 13% 2026-05-20T13:34:30.499 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45f38139-ec8a-4d13-a146-6f3a26433ada.tmp, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: SQLyogCommunity.exe, Pid: 3804, TotalTime: 0, Count: 21, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: updater.exe, Pid: 5992, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T13:34:30.499 ProcessImageName: updater.exe, Pid: 4280, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T13:41:57.753 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T13:57:02.755 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T14:12:07.752 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T14:15:33.109 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #28409, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T14:15:33.109 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #28411, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T14:15:43.098 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #28429, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T14:15:43.114 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #28432, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T14:27:12.762 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T14:42:17.751 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T14:57:22.762 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T15:12:27.748 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000108090FCF4C4, sigsha=064f0536ffb97bb72d6c274c080aa4e2ffdf1b46, cached=false, source=2, resourceid=0xce2165b0 2026-05-20T15:15:31.545 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #29752, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T15:15:31.560 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #29754, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T15:15:41.559 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #29758, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T15:15:41.575 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #29761, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T15:15:41.575 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #29762, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T15:27:32.756 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T15:34:30.503 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 107689, Count: 11539, MaxTime: 1312, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-win32-5.6.36-0-VC11-installer.exe, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 19852, Count: 353, MaxTime: 2796, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\simple-acme.v2.3.6.2257.win-x64.pluggable\wacs.exe, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 6309, Count: 267, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\Backup\front_remove3321#\static\js\2.7859deac.chunk.js, EstimatedImpact: 31% 2026-05-20T15:34:30.503 ProcessImageName: powershell.exe, Pid: 4624, TotalTime: 4520, Count: 121, MaxTime: 750, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: httpd.exe, Pid: 2228, TotalTime: 2889, Count: 284, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\radio\lib\jquery.min.js, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 2184, Count: 83, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\win32kbase.sys, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: powershell.exe, Pid: 4524, TotalTime: 1795, Count: 181, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\7955504fd80b0f29a9781a7929e22c94\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 3% 2026-05-20T15:34:30.503 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 1780, Count: 69, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\TokenBroker.dll, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: notepad++.exe, Pid: 5156, TotalTime: 627, Count: 29, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Notepad++\updater\GUP.exe, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: powershell.exe, Pid: 3944, TotalTime: 492, Count: 39, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 1% 2026-05-20T15:34:30.503 ProcessImageName: SQLyogCommunity.exe, Pid: 3124, TotalTime: 325, Count: 27, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: mmc.exe, Pid: 4860, TotalTime: 307, Count: 18, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\AuthFWSnapin.dll, EstimatedImpact: 10% 2026-05-20T15:34:30.503 ProcessImageName: svchost.exe, Pid: 748, TotalTime: 246, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WmiPrvSE.exe, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: wacs.exe, Pid: 4412, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\public_suffix_list.dat, EstimatedImpact: 1% 2026-05-20T15:34:30.503 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.8957_none_c58d268797be8583\comctl32.dll, EstimatedImpact: 57% 2026-05-20T15:34:30.503 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 240, Count: 37, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\landing\db.opt, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: httpd.exe, Pid: 5908, TotalTime: 165, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SysWOW64\mswsock.dll, EstimatedImpact: 24% 2026-05-20T15:34:30.503 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 154, Count: 8, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\mspaint.exe, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: WmiPrvSE.exe, Pid: 4120, TotalTime: 139, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 100% 2026-05-20T15:34:30.503 ProcessImageName: notepad++.exe, Pid: 3964, TotalTime: 108, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\Notepad++\backup\new 1@2026-05-20_105501.tmp, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: httpd.exe, Pid: 1348, TotalTime: 91, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\ext\php_fileinfo.dll, EstimatedImpact: 41% 2026-05-20T15:34:30.503 ProcessImageName: wacs.exe, Pid: 2852, TotalTime: 77, Count: 3, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\simple-acme\acme-v02.api.letsencrypt.org\Log\log-20260520.txt, EstimatedImpact: 1% 2026-05-20T15:34:30.503 ProcessImageName: taskhostw.exe, Pid: 1828, TotalTime: 76, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE\IDR_XML_DEFAULT_TRANSFORM[1], EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: mmc.exe, Pid: 5492, TotalTime: 61, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\TaskScheduler\28e60c397ff69b71301897f15f530d61\TaskScheduler.ni.dll, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: InstallAgentUserBroker.exe, Pid: 4596, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Windows.Web.Http.dll, EstimatedImpact: 35% 2026-05-20T15:34:30.503 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\ntprint.dll, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: ngentask.exe, Pid: 2712, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 28% 2026-05-20T15:34:30.503 ProcessImageName: updater.exe, Pid: 4568, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a58e0c0-33d2-4176-a79b-7abaa365eafe.tmp, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\3DE1511F-D145-46B1-8D6C-0B0696C7A314\69b8a4a.gpd, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: updater.exe, Pid: 4060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: wacs.exe, Pid: 5868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings_default.json, EstimatedImpact: 2% 2026-05-20T15:34:30.503 ProcessImageName: ngentask.exe, Pid: 2192, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 8% 2026-05-20T15:34:30.503 ProcessImageName: , Pid: 4, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\Segment0.cmf, EstimatedImpact: 2% 2026-05-20T15:34:30.503 ProcessImageName: taskhostw.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\profext.dll, EstimatedImpact: 13% 2026-05-20T15:34:30.503 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09f9e494-5bf7-49a2-9d6a-81e8e4514f9e.tmp, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: updater.exe, Pid: 4344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\00904133-d5b3-4bec-9cfb-433edb52775d.tmp, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: updater.exe, Pid: 1720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\031291be-b112-4e8b-abc0-8b13f1fe50e9.tmp, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: updater.exe, Pid: 5268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7179065-c98b-4b96-8cd8-36bc25ef060c.tmp, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: updater.exe, Pid: 5372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2a5245a1-82cb-4747-bfc8-5165e43acac7.tmp, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45f38139-ec8a-4d13-a146-6f3a26433ada.tmp, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: SQLyogCommunity.exe, Pid: 3804, TotalTime: 0, Count: 21, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: updater.exe, Pid: 5992, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T15:34:30.503 ProcessImageName: updater.exe, Pid: 4280, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T15:42:37.761 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000157E63AB3170, sigsha=e38cd0eab571423665adf9aa5888e28cacf8b14e, cached=false, source=2, resourceid=0xb616e079 2026-05-20T15:57:42.750 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T16:12:47.748 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T16:15:32.265 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31866, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T16:15:32.280 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31868, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T16:15:42.275 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31883, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T16:15:42.275 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31885, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T16:15:42.275 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31888, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T16:27:52.754 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T16:42:57.748 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T16:58:02.754 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000157E7D1F4EFF, sigsha=a18aa2b8c11271ac6057c63b2f2463a76cd3d6f0, cached=false, source=2, resourceid=0xb6651242 2026-05-20T17:13:07.748 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T17:15:32.106 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #34798, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T17:15:32.121 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #34800, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T17:15:42.119 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #34820, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T17:15:42.119 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #34822, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T17:15:42.276 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #34826, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T17:15:42.276 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #34828, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T17:28:12.762 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000157E7D1F4EFF, sigsha=a18aa2b8c11271ac6057c63b2f2463a76cd3d6f0, cached=false, source=2, resourceid=0xa841ebce 2026-05-20T17:34:30.517 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 145861, Count: 15277, MaxTime: 1312, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-win32-5.6.36-0-VC11-installer.exe, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 19852, Count: 353, MaxTime: 2796, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\simple-acme.v2.3.6.2257.win-x64.pluggable\wacs.exe, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 6309, Count: 267, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\Backup\front_remove3321#\static\js\2.7859deac.chunk.js, EstimatedImpact: 31% 2026-05-20T17:34:30.517 ProcessImageName: powershell.exe, Pid: 4624, TotalTime: 4520, Count: 121, MaxTime: 750, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: httpd.exe, Pid: 2228, TotalTime: 2889, Count: 284, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\radio\lib\jquery.min.js, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 2184, Count: 83, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\win32kbase.sys, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: powershell.exe, Pid: 4524, TotalTime: 1795, Count: 181, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\7955504fd80b0f29a9781a7929e22c94\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 3% 2026-05-20T17:34:30.517 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 1780, Count: 69, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\TokenBroker.dll, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: notepad++.exe, Pid: 5156, TotalTime: 627, Count: 29, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Notepad++\updater\GUP.exe, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: powershell.exe, Pid: 3944, TotalTime: 492, Count: 39, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 1% 2026-05-20T17:34:30.517 ProcessImageName: SQLyogCommunity.exe, Pid: 3124, TotalTime: 325, Count: 27, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: mmc.exe, Pid: 4860, TotalTime: 307, Count: 18, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\AuthFWSnapin.dll, EstimatedImpact: 10% 2026-05-20T17:34:30.517 ProcessImageName: svchost.exe, Pid: 748, TotalTime: 246, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WmiPrvSE.exe, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: wacs.exe, Pid: 4412, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\public_suffix_list.dat, EstimatedImpact: 1% 2026-05-20T17:34:30.517 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.8957_none_c58d268797be8583\comctl32.dll, EstimatedImpact: 57% 2026-05-20T17:34:30.517 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 240, Count: 37, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\landing\db.opt, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: httpd.exe, Pid: 5908, TotalTime: 165, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SysWOW64\mswsock.dll, EstimatedImpact: 24% 2026-05-20T17:34:30.517 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 154, Count: 8, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\mspaint.exe, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: WmiPrvSE.exe, Pid: 4120, TotalTime: 139, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 100% 2026-05-20T17:34:30.517 ProcessImageName: notepad++.exe, Pid: 3964, TotalTime: 108, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\Notepad++\backup\new 1@2026-05-20_105501.tmp, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: httpd.exe, Pid: 1348, TotalTime: 91, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\ext\php_fileinfo.dll, EstimatedImpact: 41% 2026-05-20T17:34:30.517 ProcessImageName: wacs.exe, Pid: 2852, TotalTime: 77, Count: 3, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\simple-acme\acme-v02.api.letsencrypt.org\Log\log-20260520.txt, EstimatedImpact: 1% 2026-05-20T17:34:30.517 ProcessImageName: taskhostw.exe, Pid: 1828, TotalTime: 76, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE\IDR_XML_DEFAULT_TRANSFORM[1], EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: mmc.exe, Pid: 5492, TotalTime: 61, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\TaskScheduler\28e60c397ff69b71301897f15f530d61\TaskScheduler.ni.dll, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: InstallAgentUserBroker.exe, Pid: 4596, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Windows.Web.Http.dll, EstimatedImpact: 35% 2026-05-20T17:34:30.517 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 61, Count: 2, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\ntprint.dll, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: ngentask.exe, Pid: 2712, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 28% 2026-05-20T17:34:30.517 ProcessImageName: updater.exe, Pid: 4568, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a58e0c0-33d2-4176-a79b-7abaa365eafe.tmp, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\3DE1511F-D145-46B1-8D6C-0B0696C7A314\69b8a4a.gpd, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: wacs.exe, Pid: 5868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings_default.json, EstimatedImpact: 2% 2026-05-20T17:34:30.517 ProcessImageName: updater.exe, Pid: 4060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: ngentask.exe, Pid: 2192, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 8% 2026-05-20T17:34:30.517 ProcessImageName: , Pid: 4, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\Segment0.cmf, EstimatedImpact: 2% 2026-05-20T17:34:30.517 ProcessImageName: updater.exe, Pid: 5268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7179065-c98b-4b96-8cd8-36bc25ef060c.tmp, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: updater.exe, Pid: 1720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\031291be-b112-4e8b-abc0-8b13f1fe50e9.tmp, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45f38139-ec8a-4d13-a146-6f3a26433ada.tmp, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: updater.exe, Pid: 5372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2a5245a1-82cb-4747-bfc8-5165e43acac7.tmp, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: updater.exe, Pid: 4344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\00904133-d5b3-4bec-9cfb-433edb52775d.tmp, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09f9e494-5bf7-49a2-9d6a-81e8e4514f9e.tmp, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: taskhostw.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\profext.dll, EstimatedImpact: 13% 2026-05-20T17:34:30.517 ProcessImageName: updater.exe, Pid: 3276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a94a2c27-3eb2-432b-bdc7-c45f8007beea.tmp, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: SQLyogCommunity.exe, Pid: 3804, TotalTime: 0, Count: 21, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: updater.exe, Pid: 4280, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T17:34:30.517 ProcessImageName: updater.exe, Pid: 5992, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T17:43:17.753 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T17:58:22.757 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0xa7890a82 Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0xa7890a82 2026-05-20T18:11:45.983 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T18:11:45.983 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T18:11:45.983 [Cloud] Queued cloud request. 2026-05-20T18:11:45.983 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T18:11:45.983 [Cloud] Dequeued cloud request. 2026-05-20T18:11:45.983 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T18:11:46.271 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\b97619f92caf35cd65d3923e7831e289777113ac Dynamic Signature Compilation Timestamp:05-20-2026 18:11:21 Persistence Type:Duration Time remaining:1728000000 2026-05-20T18:11:46.271 RTSD:RTSD recieved, rescanning impacted resources 2026-05-20T18:11:46.271 [Cloud] End of cloud request. 2026-05-20T18:11:46.773 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T18:12:30.945 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8a9_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #36706, FileId: 0x38000000058ce1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T18:13:27.750 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T18:15:34.939 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #36905, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T18:22:06.727 Engine:Setting original file name "powershell_ise.exe" for "c:\windows\assembly\nativeimages_v4.0.30319_32\microsoft.p0e11b656#\a3f937d60f23a6afba9ee28d4407b5c3\microsoft.powershell.gpowershell.ni.dll", hr=0x0 2026-05-20T18:22:49.364 Engine:Setting original file name "powershell_ise.exe" for "c:\windows\assembly\nativeimages_v4.0.30319_64\microsoft.p0e11b656#\a52e6ddcc94e300c30e244d58d33a356\microsoft.powershell.gpowershell.ni.dll", hr=0x0 2026-05-20T18:28:32.750 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000157E63AB3170, sigsha=e38cd0eab571423665adf9aa5888e28cacf8b14e, cached=false, source=2, resourceid=0xa06b7d60 2026-05-20T18:43:37.751 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T18:58:42.751 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T19:13:47.761 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T19:28:52.755 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T19:34:30.528 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 185625, Count: 18821, MaxTime: 1312, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-win32-5.6.36-0-VC11-installer.exe, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 19852, Count: 353, MaxTime: 2796, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\simple-acme.v2.3.6.2257.win-x64.pluggable\wacs.exe, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 6309, Count: 267, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\Backup\front_remove3321#\static\js\2.7859deac.chunk.js, EstimatedImpact: 31% 2026-05-20T19:34:30.528 ProcessImageName: powershell.exe, Pid: 4624, TotalTime: 4520, Count: 121, MaxTime: 750, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: httpd.exe, Pid: 2228, TotalTime: 2889, Count: 284, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\radio\lib\jquery.min.js, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 2184, Count: 83, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\win32kbase.sys, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: powershell.exe, Pid: 4524, TotalTime: 1795, Count: 181, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\7955504fd80b0f29a9781a7929e22c94\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 3% 2026-05-20T19:34:30.528 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 1780, Count: 69, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\TokenBroker.dll, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: notepad++.exe, Pid: 5156, TotalTime: 627, Count: 29, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Notepad++\updater\GUP.exe, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: powershell.exe, Pid: 3944, TotalTime: 492, Count: 39, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 1% 2026-05-20T19:34:30.528 ProcessImageName: SQLyogCommunity.exe, Pid: 3124, TotalTime: 325, Count: 27, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: mmc.exe, Pid: 4860, TotalTime: 307, Count: 18, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\AuthFWSnapin.dll, EstimatedImpact: 10% 2026-05-20T19:34:30.528 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 270, Count: 42, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\landing\db.opt, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: svchost.exe, Pid: 748, TotalTime: 246, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WmiPrvSE.exe, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: wacs.exe, Pid: 4412, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\public_suffix_list.dat, EstimatedImpact: 1% 2026-05-20T19:34:30.528 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.8957_none_c58d268797be8583\comctl32.dll, EstimatedImpact: 57% 2026-05-20T19:34:30.528 ProcessImageName: httpd.exe, Pid: 5908, TotalTime: 165, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SysWOW64\mswsock.dll, EstimatedImpact: 24% 2026-05-20T19:34:30.528 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 154, Count: 8, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\mspaint.exe, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: WmiPrvSE.exe, Pid: 4120, TotalTime: 139, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 100% 2026-05-20T19:34:30.528 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 138, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\ntprint.dll, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: notepad++.exe, Pid: 3964, TotalTime: 108, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\Notepad++\backup\new 1@2026-05-20_105501.tmp, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: httpd.exe, Pid: 1348, TotalTime: 91, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\ext\php_fileinfo.dll, EstimatedImpact: 41% 2026-05-20T19:34:30.528 ProcessImageName: WmiPrvSE.exe, Pid: 2380, TotalTime: 90, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 17% 2026-05-20T19:34:30.528 ProcessImageName: wacs.exe, Pid: 2852, TotalTime: 77, Count: 3, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\simple-acme\acme-v02.api.letsencrypt.org\Log\log-20260520.txt, EstimatedImpact: 1% 2026-05-20T19:34:30.528 ProcessImageName: taskhostw.exe, Pid: 1828, TotalTime: 76, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE\IDR_XML_DEFAULT_TRANSFORM[1], EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: mmc.exe, Pid: 5492, TotalTime: 61, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\TaskScheduler\28e60c397ff69b71301897f15f530d61\TaskScheduler.ni.dll, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: InstallAgentUserBroker.exe, Pid: 4596, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Windows.Web.Http.dll, EstimatedImpact: 35% 2026-05-20T19:34:30.528 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: ngentask.exe, Pid: 2712, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 28% 2026-05-20T19:34:30.528 ProcessImageName: updater.exe, Pid: 4568, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a58e0c0-33d2-4176-a79b-7abaa365eafe.tmp, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\3DE1511F-D145-46B1-8D6C-0B0696C7A314\69b8a4a.gpd, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: wacs.exe, Pid: 5868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings_default.json, EstimatedImpact: 2% 2026-05-20T19:34:30.528 ProcessImageName: updater.exe, Pid: 4060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: ngentask.exe, Pid: 2192, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 8% 2026-05-20T19:34:30.528 ProcessImageName: , Pid: 4, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\Segment0.cmf, EstimatedImpact: 2% 2026-05-20T19:34:30.528 ProcessImageName: updater.exe, Pid: 3276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a94a2c27-3eb2-432b-bdc7-c45f8007beea.tmp, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: updater.exe, Pid: 5924, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\159b7e8d-db86-49e5-820d-98e6e1671e3c.tmp, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: updater.exe, Pid: 2852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\05a8b611-9619-47da-a0b7-d483353b63a3.tmp, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: updater.exe, Pid: 4344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\00904133-d5b3-4bec-9cfb-433edb52775d.tmp, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09f9e494-5bf7-49a2-9d6a-81e8e4514f9e.tmp, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: taskhostw.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\profext.dll, EstimatedImpact: 13% 2026-05-20T19:34:30.528 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45f38139-ec8a-4d13-a146-6f3a26433ada.tmp, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: updater.exe, Pid: 1720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\031291be-b112-4e8b-abc0-8b13f1fe50e9.tmp, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: updater.exe, Pid: 5268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7179065-c98b-4b96-8cd8-36bc25ef060c.tmp, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: updater.exe, Pid: 5372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2a5245a1-82cb-4747-bfc8-5165e43acac7.tmp, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: SQLyogCommunity.exe, Pid: 3804, TotalTime: 0, Count: 21, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: updater.exe, Pid: 5992, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T19:34:30.528 ProcessImageName: updater.exe, Pid: 4280, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T19:43:57.761 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T19:59:02.760 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T20:14:07.760 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T20:15:31.949 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #44561, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T20:29:12.753 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T20:44:17.748 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000157EF1BEF48F, sigsha=88199b23bf19d286f43e8f883776ee295b1669db, cached=false, source=2, resourceid=0x010c04c8 2026-05-20T20:57:41.774 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T20:57:41.774 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T20:57:41.774 [Cloud] Queued cloud request. 2026-05-20T20:57:41.774 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T20:57:41.774 [Cloud] Dequeued cloud request. 2026-05-20T20:57:41.774 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T20:57:42.237 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\d1cd9bf2cada981105bf2988cd57ce7a8cde8e95 Dynamic Signature Compilation Timestamp:05-20-2026 20:57:16 Persistence Type:Duration Time remaining:150196224 2026-05-20T20:57:42.237 [Cloud] End of cloud request. 2026-05-20T20:57:42.237 RTSD:RTSD recieved, rescanning impacted resources 2026-05-20T20:57:42.740 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T20:59:22.753 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T21:01:30.883 Engine:Setting original file name "BM_IsPotentialSideLoad" for "c:\xampp\mercurymail\sqlite3.dll", hr=0x0 Internal signature match:subtype=Lowfi, sigseq=0x0006D3BD7CBBB9C8, sigsha=e39312c3efbecd0bf40a661fdf236a11f9813e9e, cached=false, source=2, resourceid=0x14bf86ab 2026-05-20T21:14:27.747 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T21:15:42.244 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #48083, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T21:29:32.753 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T21:34:30.532 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 226700, Count: 22151, MaxTime: 1421, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-windows-x64-7.3.5-0-VC15-installer.exe, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 19852, Count: 353, MaxTime: 2796, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\simple-acme.v2.3.6.2257.win-x64.pluggable\wacs.exe, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 6309, Count: 267, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\Backup\front_remove3321#\static\js\2.7859deac.chunk.js, EstimatedImpact: 31% 2026-05-20T21:34:30.532 ProcessImageName: powershell.exe, Pid: 4624, TotalTime: 4520, Count: 121, MaxTime: 750, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: httpd.exe, Pid: 2228, TotalTime: 2889, Count: 284, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\radio\lib\jquery.min.js, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 2184, Count: 83, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\win32kbase.sys, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: powershell.exe, Pid: 4524, TotalTime: 1795, Count: 181, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\7955504fd80b0f29a9781a7929e22c94\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 3% 2026-05-20T21:34:30.532 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 1780, Count: 69, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\TokenBroker.dll, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: notepad++.exe, Pid: 5156, TotalTime: 627, Count: 29, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Notepad++\updater\GUP.exe, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: powershell.exe, Pid: 3944, TotalTime: 492, Count: 39, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 1% 2026-05-20T21:34:30.532 ProcessImageName: SQLyogCommunity.exe, Pid: 3124, TotalTime: 325, Count: 27, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: mmc.exe, Pid: 4860, TotalTime: 307, Count: 18, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\AuthFWSnapin.dll, EstimatedImpact: 10% 2026-05-20T21:34:30.532 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 285, Count: 48, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\landing\db.opt, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: svchost.exe, Pid: 748, TotalTime: 246, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WmiPrvSE.exe, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.8957_none_c58d268797be8583\comctl32.dll, EstimatedImpact: 57% 2026-05-20T21:34:30.532 ProcessImageName: wacs.exe, Pid: 4412, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\public_suffix_list.dat, EstimatedImpact: 1% 2026-05-20T21:34:30.532 ProcessImageName: httpd.exe, Pid: 5908, TotalTime: 165, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SysWOW64\mswsock.dll, EstimatedImpact: 24% 2026-05-20T21:34:30.532 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 154, Count: 8, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\mspaint.exe, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: WmiPrvSE.exe, Pid: 4120, TotalTime: 139, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 100% 2026-05-20T21:34:30.532 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 138, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\ntprint.dll, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: notepad++.exe, Pid: 3964, TotalTime: 108, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\Notepad++\backup\new 1@2026-05-20_105501.tmp, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: httpd.exe, Pid: 1348, TotalTime: 91, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\ext\php_fileinfo.dll, EstimatedImpact: 41% 2026-05-20T21:34:30.532 ProcessImageName: WmiPrvSE.exe, Pid: 2380, TotalTime: 90, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 17% 2026-05-20T21:34:30.532 ProcessImageName: wacs.exe, Pid: 2852, TotalTime: 77, Count: 3, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\simple-acme\acme-v02.api.letsencrypt.org\Log\log-20260520.txt, EstimatedImpact: 1% 2026-05-20T21:34:30.532 ProcessImageName: taskhostw.exe, Pid: 1828, TotalTime: 76, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE\IDR_XML_DEFAULT_TRANSFORM[1], EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: mmc.exe, Pid: 5492, TotalTime: 61, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\TaskScheduler\28e60c397ff69b71301897f15f530d61\TaskScheduler.ni.dll, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: InstallAgentUserBroker.exe, Pid: 4596, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Windows.Web.Http.dll, EstimatedImpact: 35% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: ngentask.exe, Pid: 2712, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 28% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 4568, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a58e0c0-33d2-4176-a79b-7abaa365eafe.tmp, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\3DE1511F-D145-46B1-8D6C-0B0696C7A314\69b8a4a.gpd, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 4060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: wacs.exe, Pid: 5868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings_default.json, EstimatedImpact: 2% 2026-05-20T21:34:30.532 ProcessImageName: ngentask.exe, Pid: 2192, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 8% 2026-05-20T21:34:30.532 ProcessImageName: , Pid: 4, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\Segment0.cmf, EstimatedImpact: 2% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 5924, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\159b7e8d-db86-49e5-820d-98e6e1671e3c.tmp, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 3276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a94a2c27-3eb2-432b-bdc7-c45f8007beea.tmp, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 5268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7179065-c98b-4b96-8cd8-36bc25ef060c.tmp, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 4344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\00904133-d5b3-4bec-9cfb-433edb52775d.tmp, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 5372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2a5245a1-82cb-4747-bfc8-5165e43acac7.tmp, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45f38139-ec8a-4d13-a146-6f3a26433ada.tmp, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 1720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\031291be-b112-4e8b-abc0-8b13f1fe50e9.tmp, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 2852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\05a8b611-9619-47da-a0b7-d483353b63a3.tmp, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09f9e494-5bf7-49a2-9d6a-81e8e4514f9e.tmp, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: taskhostw.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\profext.dll, EstimatedImpact: 13% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 4624, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48d728c2-bd82-45fc-a992-1c824b1739a8.tmp, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9af40a84-b31b-4fbb-8903-aeb678ae06fb.tmp, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: SQLyogCommunity.exe, Pid: 3804, TotalTime: 0, Count: 21, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 5992, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T21:34:30.532 ProcessImageName: updater.exe, Pid: 4280, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0x9ea294dc Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0x9ea294dc Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0x9ea294dc BEGIN BM telemetry GUID:{1F1B5A32-D877-377F-A0ED-7D9728E6CAE1} SignatureID:55745797457393 SigSha:ddb4adac2aca8c16554162e265921a50721a9574 ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-20-2026 21:35:20 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-20T21:35:20.900 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T21:35:20.900 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T21:35:20.900 [Cloud] Queued cloud request. 2026-05-20T21:35:20.900 [Cloud] MpEngineCloudRequest(). hr = 0 BEGIN BM telemetry GUID:{80CF06B9-C767-064D-D968-EF7E095C8519} SignatureID:55745256291477 SigSha:7106c73e392948e275190c3cff85a5401a98a8bc ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-20-2026 21:35:20 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-20T21:35:20.900 [Cloud] Dequeued cloud request. 2026-05-20T21:35:20.900 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T21:35:21.435 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv2\android.php. status=0x40070000, statusex=0x200200, threatid=0x80000000, sigseq=0x20292818f356 Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0xc9b4faef Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0xc9b4faef 2026-05-20T21:35:21.451 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T21:35:21.451 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T21:35:21.451 [Cloud] Queued cloud request. 2026-05-20T21:35:21.451 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T21:35:21.451 [Cloud] End of cloud request. 2026-05-20T21:35:21.451 [Cloud] Dequeued cloud request. 2026-05-20T21:35:21.451 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T21:35:21.701 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv2\android.php. status=0x40030000, statusex=0x200200, threatid=0x80000000, sigseq=0x20292818f356 2026-05-20T21:35:21.701 [Cloud] End of cloud request. 2026-05-20T21:35:21.951 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T21:35:21.966 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T21:35:21.966 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T21:35:21.966 [Cloud] Queued cloud request. 2026-05-20T21:35:21.966 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T21:35:21.966 [Cloud] Dequeued cloud request. 2026-05-20T21:35:21.966 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T21:35:21.982 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-05-20T21:35:21.982 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T21:35:21.982 [Cloud] Queued cloud request. 2026-05-20T21:35:21.982 [Cloud] Dequeued cloud request. 2026-05-20T21:35:21.982 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T21:35:22.216 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-20T21:35:22.216 [Cloud] End of cloud request. 2026-05-20T21:35:22.388 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T21:35:22.388 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T21:35:22.388 [Cloud] Queued cloud request. 2026-05-20T21:35:22.388 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T21:35:22.388 [Cloud] Dequeued cloud request. 2026-05-20T21:35:22.388 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T21:35:22.730 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T21:35:28.844 [Cloud] End of cloud request. 2026-05-20T21:35:29.137 [Cloud] End of cloud request. 2026-05-20T21:35:29.358 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T21:44:02.463 [NRI] Successfully updated NIS service with platform settings for enforcement level Log IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvEnableOneDSTelemetry hr=0x8007007b 2026-05-20T21:44:02.478 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-20T21:44:02.478 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-20T21:44:02.478 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-20T21:44:02.478 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T21:44:02.478 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-20T21:44:02.478 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-20T21:44:02.478 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-20T21:44:02.478 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-20T21:44:02.478 MdCoreSvc is supported in this platform and OS 2026-05-20T21:44:02.992 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-20T21:44:02.992 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-20T21:44:02.992 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-20T21:44:37.757 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T21:59:42.747 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T22:14:47.762 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T22:22:56.901 Engine:Setting original file name "BM_IsPotentialSideLoad" for "c:\xampp2_not used\apache\bin\libxml2.dll", hr=0x0 Internal signature match:subtype=Lowfi, sigseq=0x0006D3BD7CBBB9C8, sigsha=e39312c3efbecd0bf40a661fdf236a11f9813e9e, cached=false, source=2, resourceid=0x84d157ca 2026-05-20T22:22:56.980 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-20T22:22:56.980 [Cloud] Start of cloud request. Passive mode: 0 2026-05-20T22:22:56.980 [Cloud] Queued cloud request. 2026-05-20T22:22:56.980 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-20T22:22:56.980 [Cloud] Dequeued cloud request. 2026-05-20T22:22:56.980 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-20T22:22:57.264 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\b960d21ddcf278ee3a8bfd4da20a8df1a03a64c0 Dynamic Signature Compilation Timestamp:05-20-2026 22:22:31 Persistence Type:Duration Time remaining:50065408 2026-05-20T22:22:57.279 [Cloud] End of cloud request. 2026-05-20T22:22:57.279 RTSD:RTSD recieved, rescanning impacted resources 2026-05-20T22:22:57.783 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-20T22:29:52.751 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T22:44:57.755 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T23:00:02.760 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T23:15:07.756 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T23:15:33.430 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #52406, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-20T23:30:12.760 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-20T23:34:30.534 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 267145, Count: 24923, MaxTime: 1421, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-windows-x64-7.3.5-0-VC15-installer.exe, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 19852, Count: 353, MaxTime: 2796, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\simple-acme.v2.3.6.2257.win-x64.pluggable\wacs.exe, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 6309, Count: 267, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\Backup\front_remove3321#\static\js\2.7859deac.chunk.js, EstimatedImpact: 31% 2026-05-20T23:34:30.534 ProcessImageName: powershell.exe, Pid: 4624, TotalTime: 4520, Count: 121, MaxTime: 750, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: httpd.exe, Pid: 2228, TotalTime: 2889, Count: 284, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\radio\lib\jquery.min.js, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 2184, Count: 83, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\win32kbase.sys, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 1826, Count: 70, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\TokenBroker.dll, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: powershell.exe, Pid: 4524, TotalTime: 1795, Count: 181, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\7955504fd80b0f29a9781a7929e22c94\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 3% 2026-05-20T23:34:30.534 ProcessImageName: notepad++.exe, Pid: 5156, TotalTime: 627, Count: 29, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Notepad++\updater\GUP.exe, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: powershell.exe, Pid: 3944, TotalTime: 492, Count: 39, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 1% 2026-05-20T23:34:30.534 ProcessImageName: SQLyogCommunity.exe, Pid: 3124, TotalTime: 325, Count: 27, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: mmc.exe, Pid: 4860, TotalTime: 307, Count: 18, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\AuthFWSnapin.dll, EstimatedImpact: 10% 2026-05-20T23:34:30.534 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 285, Count: 48, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\landing\db.opt, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: svchost.exe, Pid: 748, TotalTime: 246, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WmiPrvSE.exe, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: wacs.exe, Pid: 4412, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\public_suffix_list.dat, EstimatedImpact: 1% 2026-05-20T23:34:30.534 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.8957_none_c58d268797be8583\comctl32.dll, EstimatedImpact: 57% 2026-05-20T23:34:30.534 ProcessImageName: httpd.exe, Pid: 5908, TotalTime: 165, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SysWOW64\mswsock.dll, EstimatedImpact: 24% 2026-05-20T23:34:30.534 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 154, Count: 8, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\mspaint.exe, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: WmiPrvSE.exe, Pid: 4120, TotalTime: 139, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 100% 2026-05-20T23:34:30.534 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 138, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\ntprint.dll, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: notepad++.exe, Pid: 3964, TotalTime: 108, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\Notepad++\backup\new 1@2026-05-20_105501.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: httpd.exe, Pid: 1348, TotalTime: 91, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\ext\php_fileinfo.dll, EstimatedImpact: 41% 2026-05-20T23:34:30.534 ProcessImageName: WmiPrvSE.exe, Pid: 2380, TotalTime: 90, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 17% 2026-05-20T23:34:30.534 ProcessImageName: wacs.exe, Pid: 2852, TotalTime: 77, Count: 3, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\simple-acme\acme-v02.api.letsencrypt.org\Log\log-20260520.txt, EstimatedImpact: 1% 2026-05-20T23:34:30.534 ProcessImageName: taskhostw.exe, Pid: 1828, TotalTime: 76, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE\IDR_XML_DEFAULT_TRANSFORM[1], EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: mmc.exe, Pid: 5492, TotalTime: 61, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\TaskScheduler\28e60c397ff69b71301897f15f530d61\TaskScheduler.ni.dll, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: InstallAgentUserBroker.exe, Pid: 4596, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Windows.Web.Http.dll, EstimatedImpact: 35% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: ngentask.exe, Pid: 2712, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 28% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 4568, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a58e0c0-33d2-4176-a79b-7abaa365eafe.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 3888, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9877e08c-07e6-42a1-99b6-db7598ddd340.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\3DE1511F-D145-46B1-8D6C-0B0696C7A314\69b8a4a.gpd, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 4060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: wacs.exe, Pid: 5868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings_default.json, EstimatedImpact: 2% 2026-05-20T23:34:30.534 ProcessImageName: ngentask.exe, Pid: 2192, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 8% 2026-05-20T23:34:30.534 ProcessImageName: , Pid: 4, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\Segment0.cmf, EstimatedImpact: 2% 2026-05-20T23:34:30.534 ProcessImageName: taskhostw.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\profext.dll, EstimatedImpact: 13% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 5948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c08f7a5d-94b7-4b0a-9982-08f7e01021f0.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 5924, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\159b7e8d-db86-49e5-820d-98e6e1671e3c.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 5268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7179065-c98b-4b96-8cd8-36bc25ef060c.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 4344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\00904133-d5b3-4bec-9cfb-433edb52775d.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 3276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a94a2c27-3eb2-432b-bdc7-c45f8007beea.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 2852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\05a8b611-9619-47da-a0b7-d483353b63a3.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45f38139-ec8a-4d13-a146-6f3a26433ada.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 1720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\031291be-b112-4e8b-abc0-8b13f1fe50e9.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 5372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2a5245a1-82cb-4747-bfc8-5165e43acac7.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09f9e494-5bf7-49a2-9d6a-81e8e4514f9e.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 4624, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48d728c2-bd82-45fc-a992-1c824b1739a8.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9af40a84-b31b-4fbb-8903-aeb678ae06fb.tmp, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: SQLyogCommunity.exe, Pid: 3804, TotalTime: 0, Count: 21, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 4280, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T23:34:30.534 ProcessImageName: updater.exe, Pid: 5992, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-20T23:45:17.749 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T00:00:22.760 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T00:15:27.759 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T00:30:32.747 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T00:45:37.759 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T00:46:58.294 Engine:Setting original file name "BM_IsPotentialSideLoad_InvalidSigned" for "c:\xampp2_not used\apache\bin\libcurl.dll", hr=0x0 Internal signature match:subtype=Lowfi, sigseq=0x0006D0BDEB7D6832, sigsha=3d47532a79c790f8ead3e5eb181957c271ef3ad7, cached=false, source=2, resourceid=0x2f32e8aa 2026-05-21T00:46:58.356 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T00:46:58.356 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T00:46:58.356 [Cloud] Queued cloud request. 2026-05-21T00:46:58.356 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T00:46:58.356 [Cloud] Dequeued cloud request. 2026-05-21T00:46:58.356 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T00:46:58.701 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\2df9dacb62b123431484bab6a8cb57d33f8fb96f Dynamic Signature Compilation Timestamp:05-21-2026 00:46:33 Persistence Type:Duration Time remaining:50065408 2026-05-21T00:46:58.701 [Cloud] End of cloud request. 2026-05-21T00:46:58.701 RTSD:RTSD recieved, rescanning impacted resources 2026-05-21T00:46:59.206 [NRI] Successfully updated NIS service with platform settings for enforcement level Log Internal signature match:subtype=Lowfi, sigseq=0x0000055508F3A39A, sigsha=adc296cf14a948811ec4fc94642d047458c25c9d, cached=false, source=2, resourceid=0x41762251 2026-05-21T01:00:42.753 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T01:15:34.724 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #59744, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T01:15:47.747 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T01:30:52.753 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T01:34:30.540 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 336808, Count: 31896, MaxTime: 1421, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-windows-x64-7.3.5-0-VC15-installer.exe, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 19852, Count: 353, MaxTime: 2796, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\simple-acme.v2.3.6.2257.win-x64.pluggable\wacs.exe, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 6309, Count: 267, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\Backup\front_remove3321#\static\js\2.7859deac.chunk.js, EstimatedImpact: 31% 2026-05-21T01:34:30.540 ProcessImageName: powershell.exe, Pid: 4624, TotalTime: 4520, Count: 121, MaxTime: 750, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: httpd.exe, Pid: 2228, TotalTime: 2889, Count: 284, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\radio\lib\jquery.min.js, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 2184, Count: 83, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\win32kbase.sys, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 1857, Count: 71, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\TokenBroker.dll, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: powershell.exe, Pid: 4524, TotalTime: 1795, Count: 181, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\7955504fd80b0f29a9781a7929e22c94\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 3% 2026-05-21T01:34:30.540 ProcessImageName: notepad++.exe, Pid: 5156, TotalTime: 627, Count: 29, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Notepad++\updater\GUP.exe, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: powershell.exe, Pid: 3944, TotalTime: 492, Count: 39, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 1% 2026-05-21T01:34:30.540 ProcessImageName: SQLyogCommunity.exe, Pid: 3124, TotalTime: 325, Count: 27, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: mmc.exe, Pid: 4860, TotalTime: 307, Count: 18, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\AuthFWSnapin.dll, EstimatedImpact: 10% 2026-05-21T01:34:30.540 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 285, Count: 48, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\landing\db.opt, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: svchost.exe, Pid: 748, TotalTime: 246, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WmiPrvSE.exe, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.8957_none_c58d268797be8583\comctl32.dll, EstimatedImpact: 57% 2026-05-21T01:34:30.540 ProcessImageName: wacs.exe, Pid: 4412, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\public_suffix_list.dat, EstimatedImpact: 1% 2026-05-21T01:34:30.540 ProcessImageName: httpd.exe, Pid: 5908, TotalTime: 165, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SysWOW64\mswsock.dll, EstimatedImpact: 24% 2026-05-21T01:34:30.540 ProcessImageName: DeviceCensus.exe, Pid: 4688, TotalTime: 155, Count: 10, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Speech_OneCore\Common\sapi_onecore.dll, EstimatedImpact: 7% 2026-05-21T01:34:30.540 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 154, Count: 8, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\mspaint.exe, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: WmiPrvSE.exe, Pid: 4120, TotalTime: 139, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 100% 2026-05-21T01:34:30.540 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 138, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\ntprint.dll, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: notepad++.exe, Pid: 3964, TotalTime: 108, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\Notepad++\backup\new 1@2026-05-20_105501.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: httpd.exe, Pid: 1348, TotalTime: 91, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\ext\php_fileinfo.dll, EstimatedImpact: 41% 2026-05-21T01:34:30.540 ProcessImageName: WmiPrvSE.exe, Pid: 2380, TotalTime: 90, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 17% 2026-05-21T01:34:30.540 ProcessImageName: wacs.exe, Pid: 2852, TotalTime: 77, Count: 3, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\simple-acme\acme-v02.api.letsencrypt.org\Log\log-20260520.txt, EstimatedImpact: 1% 2026-05-21T01:34:30.540 ProcessImageName: taskhostw.exe, Pid: 1828, TotalTime: 76, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE\IDR_XML_DEFAULT_TRANSFORM[1], EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: mmc.exe, Pid: 5492, TotalTime: 61, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\TaskScheduler\28e60c397ff69b71301897f15f530d61\TaskScheduler.ni.dll, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: InstallAgentUserBroker.exe, Pid: 4596, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Windows.Web.Http.dll, EstimatedImpact: 35% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: ngentask.exe, Pid: 2712, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 28% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 4568, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a58e0c0-33d2-4176-a79b-7abaa365eafe.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 3888, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9877e08c-07e6-42a1-99b6-db7598ddd340.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\3DE1511F-D145-46B1-8D6C-0B0696C7A314\69b8a4a.gpd, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: wacs.exe, Pid: 5868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings_default.json, EstimatedImpact: 2% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 4060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: ngentask.exe, Pid: 2192, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 8% 2026-05-21T01:34:30.540 ProcessImageName: , Pid: 4, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\Segment0.cmf, EstimatedImpact: 2% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 5948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c08f7a5d-94b7-4b0a-9982-08f7e01021f0.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d00fac49-a8a6-408c-8d61-9adc6fa54a43.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 1720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\031291be-b112-4e8b-abc0-8b13f1fe50e9.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 5924, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\159b7e8d-db86-49e5-820d-98e6e1671e3c.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9af40a84-b31b-4fbb-8903-aeb678ae06fb.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 3276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a94a2c27-3eb2-432b-bdc7-c45f8007beea.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 4344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\00904133-d5b3-4bec-9cfb-433edb52775d.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 5268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7179065-c98b-4b96-8cd8-36bc25ef060c.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c54797d8-9dcb-4034-8140-5307170c8649.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 2852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\05a8b611-9619-47da-a0b7-d483353b63a3.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09f9e494-5bf7-49a2-9d6a-81e8e4514f9e.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 5372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2a5245a1-82cb-4747-bfc8-5165e43acac7.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 4624, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48d728c2-bd82-45fc-a992-1c824b1739a8.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: taskhostw.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\profext.dll, EstimatedImpact: 13% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45f38139-ec8a-4d13-a146-6f3a26433ada.tmp, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: SQLyogCommunity.exe, Pid: 3804, TotalTime: 0, Count: 21, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 4280, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-21T01:34:30.540 ProcessImageName: updater.exe, Pid: 5992, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-21T01:45:57.757 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T02:01:02.746 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T02:15:42.779 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #62378, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T02:16:07.751 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T02:22:24.326 Engine:Setting original file name "BM_IsPotentialSideLoad" for "c:\xampp\apache\bin\libxml2.dll", hr=0x0 Internal signature match:subtype=Lowfi, sigseq=0x0006D3BD7CBBB9C8, sigsha=e39312c3efbecd0bf40a661fdf236a11f9813e9e, cached=false, source=2, resourceid=0x57eb7534 2026-05-21T02:22:24.404 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T02:22:24.404 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T02:22:24.404 [Cloud] Queued cloud request. 2026-05-21T02:22:24.404 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T02:22:24.404 [Cloud] Dequeued cloud request. 2026-05-21T02:22:24.404 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T02:22:24.686 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\0922c631508528d3a8b262526378332a03428444 Dynamic Signature Compilation Timestamp:05-21-2026 02:21:59 Persistence Type:Duration Time remaining:150196224 2026-05-21T02:22:24.701 [Cloud] End of cloud request. 2026-05-21T02:22:24.701 RTSD:RTSD recieved, rescanning impacted resources 2026-05-21T02:22:25.213 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T02:31:12.760 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T02:46:17.745 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T03:01:22.755 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T03:10:44.063 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:AFCEC180-904C-44CF-85B4-2B53F7055437, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-21T03:10:44.063 Scheduled scan with Id AFCEC180-904C-44CF-85B4-2B53F7055437 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-21T03:10:44.063 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-21T03:10:44.063 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-21T03:10:44.063 [SFC] System file cache build is not needed (already completed) 2026-05-21T03:11:32.421 Engine:Triggered AR EMS scan 2026-05-21T03:11:32.421 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.437 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.453 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.453 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.468 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.484 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.484 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.499 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.531 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.531 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.546 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.624 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.640 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.656 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.656 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.671 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.671 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.687 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.703 Engine:EMS scan for process: explorer pid: 5208, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-21T03:11:32.718 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 BEGIN BM telemetry GUID:{1611F327-6C63-6CB0-50D6-ACC8600A585C} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5208 ProcessCreationTime:134237358974803704 SessionID:2 CreationTime:05-21-2026 03:11:32 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-21T03:11:33.749 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T03:11:33.749 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T03:11:33.749 [Cloud] Queued cloud request. 2026-05-21T03:11:33.749 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T03:11:33.749 [Cloud] Dequeued cloud request. 2026-05-21T03:11:33.749 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T03:11:43.445 [Cloud] End of cloud request. 2026-05-21T03:11:43.960 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T03:12:10.146 QuickScan:ScanID:AFCEC180-904C-44CF-85B4-2B53F7055437: Quick scan finished with error 0 2026-05-21T03:12:10.161 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-21T03:12:10.675 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-21T03:12:10.675 [RTP] Duplicating the current plugin configuration object... 2026-05-21T03:12:10.675 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-21T03:12:10.675 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-21T03:12:10.675 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-21T03:12:10.675 [RTP] No config change detected. Not updating plugin configuration. 2026-05-21T03:12:10.675 [RTP] No config changes found. No configuration switch. 2026-05-21T03:12:10.675 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-21T03:16:27.755 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T03:31:32.760 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T03:34:30.551 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 376815, Count: 34654, MaxTime: 1421, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-windows-x64-7.3.5-0-VC15-installer.exe, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 19852, Count: 353, MaxTime: 2796, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\simple-acme.v2.3.6.2257.win-x64.pluggable\wacs.exe, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 6309, Count: 267, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\Backup\front_remove3321#\static\js\2.7859deac.chunk.js, EstimatedImpact: 31% 2026-05-21T03:34:30.551 ProcessImageName: powershell.exe, Pid: 4624, TotalTime: 4520, Count: 121, MaxTime: 750, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: httpd.exe, Pid: 2228, TotalTime: 2889, Count: 284, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\radio\lib\jquery.min.js, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 2184, Count: 83, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\win32kbase.sys, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 1964, Count: 76, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\TokenBroker.dll, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: powershell.exe, Pid: 4524, TotalTime: 1795, Count: 181, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\7955504fd80b0f29a9781a7929e22c94\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 3% 2026-05-21T03:34:30.551 ProcessImageName: notepad++.exe, Pid: 5156, TotalTime: 627, Count: 29, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Notepad++\updater\GUP.exe, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: powershell.exe, Pid: 3944, TotalTime: 492, Count: 39, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 1% 2026-05-21T03:34:30.551 ProcessImageName: SQLyogCommunity.exe, Pid: 3124, TotalTime: 325, Count: 27, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: mmc.exe, Pid: 4860, TotalTime: 307, Count: 18, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\AuthFWSnapin.dll, EstimatedImpact: 10% 2026-05-21T03:34:30.551 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 300, Count: 53, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\landing\db.opt, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: svchost.exe, Pid: 748, TotalTime: 246, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WmiPrvSE.exe, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.8957_none_c58d268797be8583\comctl32.dll, EstimatedImpact: 57% 2026-05-21T03:34:30.551 ProcessImageName: wacs.exe, Pid: 4412, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\public_suffix_list.dat, EstimatedImpact: 1% 2026-05-21T03:34:30.551 ProcessImageName: httpd.exe, Pid: 5908, TotalTime: 165, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SysWOW64\mswsock.dll, EstimatedImpact: 24% 2026-05-21T03:34:30.551 ProcessImageName: DeviceCensus.exe, Pid: 4688, TotalTime: 155, Count: 10, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Speech_OneCore\Common\sapi_onecore.dll, EstimatedImpact: 7% 2026-05-21T03:34:30.551 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 154, Count: 8, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\mspaint.exe, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: WmiPrvSE.exe, Pid: 4120, TotalTime: 139, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 100% 2026-05-21T03:34:30.551 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 138, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\ntprint.dll, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: notepad++.exe, Pid: 3964, TotalTime: 108, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\Notepad++\backup\new 1@2026-05-20_105501.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: httpd.exe, Pid: 1348, TotalTime: 91, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\ext\php_fileinfo.dll, EstimatedImpact: 41% 2026-05-21T03:34:30.551 ProcessImageName: WmiPrvSE.exe, Pid: 2380, TotalTime: 90, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 17% 2026-05-21T03:34:30.551 ProcessImageName: wacs.exe, Pid: 2852, TotalTime: 77, Count: 3, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\simple-acme\acme-v02.api.letsencrypt.org\Log\log-20260520.txt, EstimatedImpact: 1% 2026-05-21T03:34:30.551 ProcessImageName: taskhostw.exe, Pid: 1828, TotalTime: 76, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE\IDR_XML_DEFAULT_TRANSFORM[1], EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: mmc.exe, Pid: 5492, TotalTime: 61, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\TaskScheduler\28e60c397ff69b71301897f15f530d61\TaskScheduler.ni.dll, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: InstallAgentUserBroker.exe, Pid: 4596, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Windows.Web.Http.dll, EstimatedImpact: 35% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: ngentask.exe, Pid: 2712, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 28% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 3888, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9877e08c-07e6-42a1-99b6-db7598ddd340.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 3644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\750b123d-f352-406c-a29a-05952292c3e4.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 4568, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a58e0c0-33d2-4176-a79b-7abaa365eafe.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\3DE1511F-D145-46B1-8D6C-0B0696C7A314\69b8a4a.gpd, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: wacs.exe, Pid: 5868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings_default.json, EstimatedImpact: 2% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 4060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: ngentask.exe, Pid: 2192, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 8% 2026-05-21T03:34:30.551 ProcessImageName: , Pid: 4, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\Segment0.cmf, EstimatedImpact: 2% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 5948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c08f7a5d-94b7-4b0a-9982-08f7e01021f0.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 5268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7179065-c98b-4b96-8cd8-36bc25ef060c.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: taskhostw.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\profext.dll, EstimatedImpact: 13% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 5372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2a5245a1-82cb-4747-bfc8-5165e43acac7.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 4528, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d6d84aa-23be-4d4e-89ae-9ca6296db885.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 3276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a94a2c27-3eb2-432b-bdc7-c45f8007beea.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c54797d8-9dcb-4034-8140-5307170c8649.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 4344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\00904133-d5b3-4bec-9cfb-433edb52775d.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 2852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\05a8b611-9619-47da-a0b7-d483353b63a3.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09f9e494-5bf7-49a2-9d6a-81e8e4514f9e.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 4624, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48d728c2-bd82-45fc-a992-1c824b1739a8.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d00fac49-a8a6-408c-8d61-9adc6fa54a43.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9af40a84-b31b-4fbb-8903-aeb678ae06fb.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 1720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\031291be-b112-4e8b-abc0-8b13f1fe50e9.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 5924, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\159b7e8d-db86-49e5-820d-98e6e1671e3c.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45f38139-ec8a-4d13-a146-6f3a26433ada.tmp, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: SQLyogCommunity.exe, Pid: 3804, TotalTime: 0, Count: 21, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 5992, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-21T03:34:30.551 ProcessImageName: updater.exe, Pid: 4280, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-21T03:46:37.759 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T04:01:42.758 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000108766DC1975, sigsha=aecef3f845b0f2d07826ff984849c077aad0fd76, cached=false, source=2, resourceid=0x70a4cb83 2026-05-21T04:15:24.816 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T04:15:24.816 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T04:15:24.816 [Cloud] Queued cloud request. 2026-05-21T04:15:24.816 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T04:15:24.816 [Cloud] Dequeued cloud request. 2026-05-21T04:15:24.816 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T04:15:25.273 [Cloud] End of cloud request. 2026-05-21T04:15:25.273 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00000e. status=0x40070000, statusex=0x200300, threatid=0x80000000, sigseq=0x108766dc1975 2026-05-21T04:15:25.773 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T04:15:42.180 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #65956, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T04:16:47.758 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T04:31:52.748 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T04:46:57.753 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T05:02:02.744 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T05:17:07.747 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T05:32:12.747 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T05:34:30.550 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 424928, Count: 38526, MaxTime: 1421, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-windows-x64-7.3.5-0-VC15-installer.exe, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 19852, Count: 353, MaxTime: 2796, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\simple-acme.v2.3.6.2257.win-x64.pluggable\wacs.exe, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 6309, Count: 267, MaxTime: 390, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\Backup\front_remove3321#\static\js\2.7859deac.chunk.js, EstimatedImpact: 31% 2026-05-21T05:34:30.550 ProcessImageName: powershell.exe, Pid: 4624, TotalTime: 4520, Count: 121, MaxTime: 750, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: httpd.exe, Pid: 2228, TotalTime: 2889, Count: 284, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\radio\lib\jquery.min.js, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 2184, Count: 83, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\win32kbase.sys, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 1964, Count: 76, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\TokenBroker.dll, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: powershell.exe, Pid: 4524, TotalTime: 1795, Count: 181, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pae3498d9#\7955504fd80b0f29a9781a7929e22c94\Microsoft.PowerShell.Commands.Management.ni.dll, EstimatedImpact: 3% 2026-05-21T05:34:30.550 ProcessImageName: notepad++.exe, Pid: 5156, TotalTime: 627, Count: 29, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Notepad++\updater\GUP.exe, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: powershell.exe, Pid: 3944, TotalTime: 492, Count: 39, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 1% 2026-05-21T05:34:30.550 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 330, Count: 63, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\landing\db.opt, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: SQLyogCommunity.exe, Pid: 3124, TotalTime: 325, Count: 27, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: mmc.exe, Pid: 4860, TotalTime: 307, Count: 18, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\AuthFWSnapin.dll, EstimatedImpact: 10% 2026-05-21T05:34:30.550 ProcessImageName: svchost.exe, Pid: 748, TotalTime: 246, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WmiPrvSE.exe, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.8957_none_c58d268797be8583\comctl32.dll, EstimatedImpact: 57% 2026-05-21T05:34:30.550 ProcessImageName: wacs.exe, Pid: 4412, TotalTime: 243, Count: 15, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\public_suffix_list.dat, EstimatedImpact: 1% 2026-05-21T05:34:30.550 ProcessImageName: httpd.exe, Pid: 5908, TotalTime: 165, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SysWOW64\mswsock.dll, EstimatedImpact: 24% 2026-05-21T05:34:30.550 ProcessImageName: DeviceCensus.exe, Pid: 4688, TotalTime: 155, Count: 10, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Speech_OneCore\Common\sapi_onecore.dll, EstimatedImpact: 7% 2026-05-21T05:34:30.550 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 154, Count: 8, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\mspaint.exe, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: WmiPrvSE.exe, Pid: 4120, TotalTime: 139, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 100% 2026-05-21T05:34:30.550 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 138, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\ntprint.dll, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: notepad++.exe, Pid: 3964, TotalTime: 108, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\Notepad++\backup\new 1@2026-05-20_105501.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: httpd.exe, Pid: 1348, TotalTime: 91, Count: 7, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\ext\php_fileinfo.dll, EstimatedImpact: 41% 2026-05-21T05:34:30.550 ProcessImageName: WmiPrvSE.exe, Pid: 2380, TotalTime: 90, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 17% 2026-05-21T05:34:30.550 ProcessImageName: wacs.exe, Pid: 2852, TotalTime: 77, Count: 3, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\simple-acme\acme-v02.api.letsencrypt.org\Log\log-20260520.txt, EstimatedImpact: 1% 2026-05-21T05:34:30.550 ProcessImageName: taskhostw.exe, Pid: 1828, TotalTime: 76, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE\IDR_XML_DEFAULT_TRANSFORM[1], EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: mmc.exe, Pid: 5492, TotalTime: 61, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\TaskScheduler\28e60c397ff69b71301897f15f530d61\TaskScheduler.ni.dll, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: InstallAgentUserBroker.exe, Pid: 4596, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Windows.Web.Http.dll, EstimatedImpact: 35% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: ngentask.exe, Pid: 2712, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log, EstimatedImpact: 28% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 3888, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9877e08c-07e6-42a1-99b6-db7598ddd340.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 3644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\750b123d-f352-406c-a29a-05952292c3e4.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 4568, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a58e0c0-33d2-4176-a79b-7abaa365eafe.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\3DE1511F-D145-46B1-8D6C-0B0696C7A314\69b8a4a.gpd, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 4060, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: wacs.exe, Pid: 5868, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings_default.json, EstimatedImpact: 2% 2026-05-21T05:34:30.550 ProcessImageName: ngentask.exe, Pid: 2192, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 8% 2026-05-21T05:34:30.550 ProcessImageName: , Pid: 4, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\Segment0.cmf, EstimatedImpact: 2% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\45f38139-ec8a-4d13-a146-6f3a26433ada.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 5948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2b290119-be96-474b-9392-deef4080d374.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 5948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c08f7a5d-94b7-4b0a-9982-08f7e01021f0.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 4344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\00904133-d5b3-4bec-9cfb-433edb52775d.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09f9e494-5bf7-49a2-9d6a-81e8e4514f9e.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 5268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7179065-c98b-4b96-8cd8-36bc25ef060c.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 3276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a94a2c27-3eb2-432b-bdc7-c45f8007beea.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c54797d8-9dcb-4034-8140-5307170c8649.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 2852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\05a8b611-9619-47da-a0b7-d483353b63a3.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 4508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c2b5ff01-231b-4f04-8379-ba8062572497.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 5372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2a5245a1-82cb-4747-bfc8-5165e43acac7.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 4528, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d6d84aa-23be-4d4e-89ae-9ca6296db885.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d00fac49-a8a6-408c-8d61-9adc6fa54a43.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 1720, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\031291be-b112-4e8b-abc0-8b13f1fe50e9.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 4624, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\48d728c2-bd82-45fc-a992-1c824b1739a8.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: taskhostw.exe, Pid: 4712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\profext.dll, EstimatedImpact: 13% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9af40a84-b31b-4fbb-8903-aeb678ae06fb.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 5924, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\159b7e8d-db86-49e5-820d-98e6e1671e3c.tmp, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: SQLyogCommunity.exe, Pid: 3804, TotalTime: 0, Count: 21, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 5992, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-21T05:34:30.550 ProcessImageName: updater.exe, Pid: 4280, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-21T05:47:17.747 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T06:02:22.746 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T06:15:34.473 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71150, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T06:17:27.756 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T06:32:32.755 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T06:47:37.755 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T07:02:42.754 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000157E075BDAF7, sigsha=88890d9310678dd16fbdb3eaa1b94e63c008c09c, cached=false, source=2, resourceid=0xfade677a Internal signature match:subtype=Lowfi, sigseq=0x0000157E7E10585E, sigsha=11649d496c66a5dd5424f700ae2b27af15ebc616, cached=false, source=2, resourceid=0xfade677a 2026-05-21T07:14:25.633 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T07:14:25.633 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T07:14:25.633 [Cloud] Queued cloud request. 2026-05-21T07:14:25.633 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T07:14:25.633 [Cloud] Dequeued cloud request. 2026-05-21T07:14:25.633 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T07:14:26.334 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\FileZilla_3.52.2_win64_sponsored-setup.exe. status=0x40070000, statusex=0x200300, threatid=0x1002bf63, sigseq=0x157e075bdaf7 2026-05-21T07:14:26.334 [Cloud] End of cloud request. 2026-05-21T07:14:26.851 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T07:15:43.752 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #74205, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T07:15:45.970 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sqla80_993_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #74300, FileId: 0x22fe000000014146, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T07:15:47.552 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sqla80_993_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #74331, FileId: 0x2308000000014146, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T07:15:48.717 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sqla80_993_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #74382, FileId: 0x2313000000014146, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T07:17:47.749 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T07:29:52.744 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-21T07:29:52.760 Job Notification: New process added to job (4156) 2026-05-21T07:29:52.776 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-21T07:29:52.776 Aggressive catchup quick scan threshold: 155487154759 / 25920000000000 2026-05-21T07:29:52.776 Job Notification: New process added to job (5008) 2026-05-21T07:29:52.791 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:4156] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5008]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-21T07:29:52.838 Job Notification: New process added to job (2092) 2026-05-21T07:29:52.838 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-21T07:29:52.838 Job Notification: New process added to job (4088) 2026-05-21T07:29:52.854 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26030.3011-0\MpCmdRun.exe][Pid:2092] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4088]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-21T07:29:53.276 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-21T07:29:53.307 [RTP] Duplicating the current plugin configuration object... 2026-05-21T07:29:53.307 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-21T07:29:53.307 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-21T07:29:53.307 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-21T07:29:53.307 [RTP] No config change detected. Not updating plugin configuration. 2026-05-21T07:29:53.307 [RTP] No config changes found. No configuration switch. 2026-05-21T07:29:53.307 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-21T07:29:53.932 Job Notification: New process added to job (4352) 2026-05-21T07:29:53.948 Task(GetDeviceTicket -AccessKey 98DB2E75-2065-8453-18B4-117662BB4038 ) launched as network service 2026-05-21T07:29:54.473 Job Notification: Process exited from job (4352) 2026-05-21T07:29:55.601 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T07:29:55.601 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T07:29:55.601 [Cloud] Queued cloud request. 2026-05-21T07:29:55.601 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T07:29:55.601 [Cloud] Dequeued cloud request. 2026-05-21T07:29:55.601 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T07:29:55.601 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-21T07:29:55.601 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T07:29:55.601 [Cloud] Queued cloud request. 2026-05-21T07:29:55.601 [Cloud] Dequeued cloud request. 2026-05-21T07:29:55.601 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T07:29:55.851 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-21T07:29:55.851 [Cloud] End of cloud request. 2026-05-21T07:29:55.883 [Cloud] End of cloud request. 2026-05-21T07:29:56.111 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T07:31:02.809 [PlatUpd] Purging orphaned platform update directories under C:\ProgramData\Microsoft\Windows Defender\Platform ... 2026-05-21T07:31:02.809 [PlatUpd] Not purging current location C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0 ... 2026-05-21T07:31:02.809 [PlatUpd] Not purging backup location C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0 ... 2026-05-21T07:31:02.809 [PlatUpd] Deleting orphaned platform update directory C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0 ... 2026-05-21T07:31:02.809 [PlatUpd] Purging orphaned platform update directories under C:\Program Files\Windows Defender\Platform ... 2026-05-21T07:31:02.809 [PlatUpd] Verified C:\Windows\TEMP\7AF526E8-2D18-4C06-B195-66815236DA1E\MpUpdate.dll. Calling MpUpdateStub(0) ... 2026-05-21T07:31:03.965 [PlatUpd] MpUpdateStub() succeeded. Stub DLL: C:\Windows\TEMP\7AF526E8-2D18-4C06-B195-66815236DA1E\MpUpdate.dll. 2026-05-21T07:31:03.981 [KSL] Entering CKSLEngine::DisableKSL. 2026-05-21T07:31:03.981 [KSL] Entering CKSLEngine::shutdownImpl. 2026-05-21T07:31:03.981 [KSL] Leaving CKSLEngine::shutdownImpl(0). 2026-05-21T07:31:03.981 [KSL] Leaving CKSLEngine::DisableKSL(0). 2026-05-21T07:31:03.981 [KSL] OnPlatformUpdate: hr=[0x8000000a] Type=[1] KslServiceExists=[1] KslActive=[1] KslState=[2] 2026-05-21T07:31:03.981 [PlatUpd] DlpActive 0, CopyAccActive 0 2026-05-21T07:31:03.981 [PlatUpd] PlatformUpdate is now allowed. Resuming platform update from C:\Windows\TEMP\7AF526E8-2D18-4C06-B195-66815236DA1E. 2026-05-21T07:31:03.981 [PlatUpd] NewLocation set to [C:\Windows\TEMP\7AF526E8-2D18-4C06-B195-66815236DA1E] to indicate we are in the middle of an update. 2026-05-21T07:31:03.997 Job Notification: New process added to job (2140) 2026-05-21T07:31:03.997 Task(-RestartService) launched as PPL process 2026-05-21T07:31:03.997 Job Notification: New process added to job (2032) -------------------------------------------------------------------------------- Windows Defender (77BDAF73-B396-481F-9042-AD358843EC24) Service Log Started On 05-21-2026 07:31:05 ************************************************************ OS install time: 05/14/2019 05:52:54.0 UTC Current time: 05/21/2026 07:31:05.335260200 UTC (87135421 ms since boot) 2026-05-21T07:31:05.327 MpEnsureProcessMitigationPolicy(0x7) returns 0 2026-05-21T07:31:05.327 ProductId: 2, ProductFeature: 0, LaunchedProtected: 3, IsWcos: 0, IsContainerOs: 0, DirtyShutdownDetected: 0, PassiveRemediation: 0, IsHybridModePolicyEnabled: 0, IsVerifiedAndReputableTrustModeEnabled: 0 2026-05-21T07:31:05.327 [WPP] Starting WPP trace with buffersize 4MB, maxfilesize: 16MB, filename: MpWppTracing-20260521-073105-00000003-fffffffeffffffff.bin ... 2026-05-21T07:31:05.343 [WPP] Trace session started - MpWppTracing-20260521-073105-00000003-fffffffeffffffff.bin 2026-05-21T07:31:05.343 [RbM] Rollback manager succesfully initialized. 2026-05-21T07:31:05.343 [RbM] Rollback manager EnableRollbackManager called. 2026-05-21T07:31:05.343 [RbM] Rollback manager EnableRollbackManager completed. 2026-05-21T07:31:05.343 [PlatUpd] Stage 1 - Starting platform update from %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26040.7-0 ... 2026-05-21T07:31:06.275 [PlatUpd] Updated service binary of WdNisSvc from "%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\NisSrv.exe" to "%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26040.7-0\NisSrv.exe" 2026-05-21T07:31:06.275 [PlatUpd] Updated driver binary link C:\Windows\system32\drivers\wd\WdBoot.sys to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\Drivers\WdBoot.sys 2026-05-21T07:31:06.275 [PlatUpd] Updated driver binary link C:\Windows\system32\drivers\wd\WdFilter.sys to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\Drivers\WdFilter.sys 2026-05-21T07:31:06.275 [PlatUpd] Updated driver binary link C:\Windows\system32\drivers\wd\WdNisDrv.sys to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\Drivers\WdNisDrv.sys 2026-05-21T07:31:06.369 [PlatUpd] Updated driver binary link C:\Windows\system32\drivers\wd\WdDevFlt.sys to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\Drivers\WdDevFlt.sys 2026-05-21T07:31:06.385 [PlatUpd] Updated driver binary link C:\Windows\system32\drivers\wd\KslD.sys to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\Drivers\KslD.sys 2026-05-21T07:31:06.869 [PlatUpd] Updated SOFTWARE\Classes\CLSID\{2781761E-28E0-4109-99FE-B9D127C57AFE}\InprocServer32[(default)] from "%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpOav.dll" to "%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpOav.dll" 2026-05-21T07:31:06.869 [PlatUpd] Updated SOFTWARE\WOW6432Node\Classes\CLSID\{2781761E-28E0-4109-99FE-B9D127C57AFE}\InprocServer32[(default)] from "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\X86\MpOav.dll" to "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\X86\MpOav.dll" 2026-05-21T07:31:06.869 [PlatUpd] MpAddMpUxRegistration succeeded 2026-05-21T07:31:06.869 [PlatUpd] MpManagementUpdateHandler: starting update for install path %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26040.7-0. 2026-05-21T07:31:06.869 [PlatUpd] MpManagementUpdateHandler: calling MpUpdateManagement() 2026-05-21T07:31:06.869 [PlatUpd] MpUpdateManagement: Management platform update started for components (3) 2026-05-21T07:31:06.869 [PlatUpd] Defender MDM CSP platform update not supported on Server SKUs 2026-05-21T07:31:06.869 [PlatUpd] WMI/PS provider platform update started 2026-05-21T07:31:06.869 [PlatUpd] Powershell module update started: ConfigDefender 2026-05-21T07:31:06.885 [PlatUpd] Powershell module update completed: ConfigDefender 2026-05-21T07:31:06.885 [PlatUpd] Powershell module update started: ConfigDefenderPerformance 2026-05-21T07:31:06.885 [PlatUpd] Powershell module update completed: ConfigDefenderPerformance 2026-05-21T07:31:07.088 [PlatUpd] WMI repository update completed 2026-05-21T07:31:07.088 [PlatUpd] Updated SOFTWARE\Classes\CLSID\{A7C452EF-8E9F-42EB-9F2B-245613CA0DC9}\InprocServer32[(default)] from "%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\ProtectionManagement.dll" to "%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26040.7-0\ProtectionManagement.dll" 2026-05-21T07:31:07.088 [PlatUpd] Unload current WMI provider so that new instance can be loaded 2026-05-21T07:31:07.150 [PlatUpd] WMI/PS provider platform update completed 2026-05-21T07:31:07.150 [PlatUpd] MpUpdateManagement: Management platform update completed 2026-05-21T07:31:07.150 [PlatUpd] Failed to read Misc config regarding new coreservice lifecycle management, using legacy core service lifecycle management anyway. hr = 0x80070002 2026-05-21T07:31:07.150 MdCoreSvc is supported in this platform and OS 2026-05-21T07:31:07.150 [PlatUpd] MDCoreSvc is supported by the version of the platform we are switching to. Making sure the service is registered with SCM 2026-05-21T07:31:07.150 [PlatUpd] Updated service binary of MDCoreSvc from "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpDefenderCoreService.exe" to "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpDefenderCoreService.exe" 2026-05-21T07:31:07.150 [PlatUpd] Because we updated service binary, and MdCoreSvc service was already running, we need to restart the service 2026-05-21T07:31:08.247 [PlatUpd] Firewall rules updated for %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MsMpEng.exe 2026-05-21T07:31:08.247 [PlatUpd] MpCheckAndUpdateBinaryLocationTo(%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26040.7-0): 10 items checked, 8 required update. hrMui: 0x1 hrEtw: 0 2026-05-21T07:31:08.247 [PlatUpd] Stage 1 - NewLocation updated from C:\Windows\TEMP\7AF526E8-2D18-4C06-B195-66815236DA1E to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0 to indicate we are in the middle of an update 2026-05-21T07:31:08.310 [PlatUpd] Stage 1 - Service binary path updated to "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MsMpEng.exe". 2026-05-21T07:31:08.310 [PlatUpd] Stage 1 - Removed BlockedLocation [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0] to indicate we are loaded successfully. 2026-05-21T07:31:08.341 Task(-RestartService) launched as PPL process 2026-05-21T07:31:08.341 MpPostPlatformUpdate is requesting a service restart. We will abort the current service start -------------------------------------------------------------------------------- Windows Defender (77BDAF73-B396-481F-9042-AD358843EC24) Service Log Started On 05-21-2026 07:31:08 ************************************************************ OS install time: 05/14/2019 05:52:54.0 UTC Current time: 05/21/2026 07:31:08.430025700 UTC (87138500 ms since boot) 2026-05-21T07:31:08.419 MpEnsureProcessMitigationPolicy(0x7) returns 0 2026-05-21T07:31:08.419 ProductId: 2, ProductFeature: 0, LaunchedProtected: 3, IsWcos: 0, IsContainerOs: 0, DirtyShutdownDetected: 0, PassiveRemediation: 0, IsHybridModePolicyEnabled: 0, IsVerifiedAndReputableTrustModeEnabled: 0 2026-05-21T07:31:08.435 [WPP] Starting WPP trace with buffersize 4MB, maxfilesize: 16MB, filename: MpWppTracing-20260521-073108-00000003-fffffffeffffffff.bin ... 2026-05-21T07:31:08.435 [WPP] Trace session started - MpWppTracing-20260521-073108-00000003-fffffffeffffffff.bin 2026-05-21T07:31:08.435 [RbM] Rollback manager succesfully initialized. 2026-05-21T07:31:08.435 [RbM] Rollback manager EnableRollbackManager called. 2026-05-21T07:31:08.435 [RbM] Rollback manager EnableRollbackManager completed. 2026-05-21T07:31:08.435 [PlatUpd] Stage 2 - Service started from new location. Removed NewLocation value: C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0 2026-05-21T07:31:08.435 [PlatUpd] [Catalog] Catalog installer only supported on client OS. No further processing required. 2026-05-21T07:31:08.435 [PlatUpd] Stage 2 - Updated BackupLocation to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0. 2026-05-21T07:31:08.450 [PlatUpd] MpRemoveMpUxRegistration failed (Ignored). hr = 0x800401f0 2026-05-21T07:31:08.450 [RbM] Platform LKG candidate becoming LKG: C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0. 2026-05-21T07:31:08.544 EnsureProtectedFolderAcls(), hr = 0x0 2026-05-21T07:31:08.544 [PlatUpd] Stage 2 - ReinforceServiceAcl (hr = 0) 2026-05-21T07:31:08.544 [PlatUpd] Stage 2 - Readded platform files to MOAC after ACL and Trust Label enforcement. hr=0 2026-05-21T07:31:08.544 [PlatUpd] Failed to read Misc config regarding new coreservice lifecycle management, using legacy core service lifecycle management anyway. hr = 0x80070002 2026-05-21T07:31:09.122 [PlatUpd] MpAddMpUxRegistration succeeded 2026-05-21T07:31:09.122 [PlatUpd] MpManagementUpdateHandler: starting update for install path %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26040.7-0. 2026-05-21T07:31:09.122 [PlatUpd] MpManagementUpdateHandler: calling MpUpdateManagement() 2026-05-21T07:31:09.122 [PlatUpd] MpUpdateManagement: Management platform update started for components (3) 2026-05-21T07:31:09.122 [PlatUpd] Defender MDM CSP platform update not supported on Server SKUs 2026-05-21T07:31:09.122 [PlatUpd] WMI/PS provider platform update started 2026-05-21T07:31:09.122 [PlatUpd] WMI/PS provider platform update not required 2026-05-21T07:31:09.122 [PlatUpd] MpUpdateManagement: Management platform update completed 2026-05-21T07:31:09.122 MdCoreSvc is supported in this platform and OS 2026-05-21T07:31:09.122 [PlatUpd] MDCoreSvc is supported by the version of the platform we are switching to. Making sure the service is registered with SCM 2026-05-21T07:31:09.122 [PlatUpd] Starting MdCoreSvc service 2026-05-21T07:31:09.185 [PlatUpd] Firewall rules updated for %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MsMpEng.exe 2026-05-21T07:31:09.185 [PlatUpd] MpCheckAndUpdateBinaryLocationTo(%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26040.7-0): 10 items checked, 1 required update. hrMui: 0x1 hrEtw: 0 2026-05-21T07:31:09.185 [TS] Troubleshooting mode is not available! 2026-05-21T07:31:09.185 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0, Scenario: Consumer, Source: Unknown, ConfigChange: Remove 2026-05-21T07:31:09.185 CheckProductDisabled(fWaitWSC: 1, fRemoveConfigs: 0) ... 2026-05-21T07:31:09.185 Service is asked to be reenabled. 2026-05-21T07:31:09.216 Task(-EnableService) launched as PPL process 2026-05-21T07:31:09.216 [Service] Enabling IOAV/IEV/ShellExt/EtwLogger registrations ... 2026-05-21T07:31:09.216 [Service] Enabling AutoLoggers ... 2026-05-21T07:31:09.216 [Service] Enabling AMSI registration ... 2026-05-21T07:31:09.216 [Service] Leaving EnableIOAVWorker(1, 0) with hr = 0 2026-05-21T07:31:09.216 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-21T07:31:09.232 Cache C:\ProgramData\Microsoft\Windows Defender\Scans\History\CacheManager\302F501F-0000-0000-0000-501F00000000-1.bin loaded.**********Cache stats************ No. Of buckets -> 39062 Each Bucket has max capacity of -> 1 entries number of Entries is 26177 Number of invalid entries is 0 Number of inserts issued is 737118 Number of replaces issued is 0 Number of insert failures is 5 Number of inserts with duplicate entries is 14788 Number of lookups is 70811920 Number of lookup misses is 2792244 Number of fast lookup misses is 47010340 Number of false fast lookups is 2792244 Number of invalidations is 470072 Number of maintenance invalidations is 122550 Current File Size is 958464 Journal ID = 1d50a16ac8ba444 Trusted image state = 4 USN = 12f847 Setup boot count = 2 2026-05-21T07:31:09.232 Verifying license file... 2026-05-21T07:31:09.232 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\msmplics.dll]. File not in cache (0x1) 2026-05-21T07:31:09.232 Verified [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\msmplics.dll] 2026-05-21T07:31:09.232 SharedSignatureRoot not configured. Disabling remote image load for msmpeng.exe. Once disabled, it can no longer be enabled without a service restart. hr=0 2026-05-21T07:31:09.232 Loaded module#0 MpComServer. 2026-05-21T07:31:09.232 Loaded module#1 StartupPolicies. 2026-05-21T07:31:09.232 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-21T07:31:09.232 COM server initialized successfully. 2026-05-21T07:31:09.247 MpRefreshDefenderCoreConfigs: failed because engine is not ready, we cannot let the process continue because we might start core service while its configuration is not ready. 2026-05-21T07:31:09.247 [Plugin] Verifying C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\mprtp.dll ... 2026-05-21T07:31:09.247 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\mprtp.dll] due to PPL. 2026-05-21T07:31:09.279 [RTP] [RTP] FilterCommunicator object 0x0000021D71E8BBE0 initialized (\MicrosoftMalwareProtectionAsyncPortWD, , ), threads: 0 normal, 0 very low, 0 alt, thread pool threads: 4 normal, 0 very low, 0 alt 2026-05-21T07:31:09.279 [RTP] Setting DisableAsyncScanOnClose to 0 (hr=0). 2026-05-21T07:31:09.279 [RTP] Setting DisableAsyncScanOnOpen to 0 in wdfilter (hr=0). 2026-05-21T07:31:09.279 [RTP] Setting FilterExperimentMode to 0 (hr=0). 2026-05-21T07:31:09.279 [RTP] Setting DisableDriverUnload to 1 (hr=0). 2026-05-21T07:31:09.279 [RTP] Setting RegLinkHardeningMode to 0 (hr=0). 2026-05-21T07:31:09.279 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-21T07:31:09.279 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-21T07:31:09.279 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-21T07:31:09.279 [RTP] Setting PreventPagingFileAbuse to 1 (hr=0). 2026-05-21T07:31:09.279 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-21T07:31:09.279 [RTP] [RTP] LastAccessTimeSuppression for network files is enabled by configuration. 2026-05-21T07:31:09.279 [RTP] [RTP] FilterCommunicator object 0x0000021D727D9BA0 initialized (\MicrosoftMalwareProtectionPortWD, \MicrosoftMalwareProtectionVeryLowIoPortWD, \MicrosoftMalwareProtectionRemoteIoPortWD), threads: 6 normal, 2 very low, 0 alt, thread pool threads: 0 normal, 0 very low, 6 alt 2026-05-21T07:31:09.279 [RTP] SyncDssAvailableThreads cap limit initialized by MiscConfig to: 14 2026-05-21T07:31:09.279 [RTP] [RtpCopyAccelerator] Windows19H1 0, WindowsCobalt 0, IsServerSKU 1, IsPassiveOrSideBySidePassiveMode 0, IsDevMode 0, fIsWindowsInhouseBuild 0, BuildLabEx 14393.9140.amd64fre.rs1_release.260506-0518 2026-05-21T07:31:09.279 [RTP] [RTP] StartCommunication 0x0000021D71E8BBE0 (\MicrosoftMalwareProtectionAsyncPortWD, ), threads: 0 normal, 0 very low, 0 alt, thread pool threads: 4 normal, 0 very low, 0 alt 2026-05-21T07:31:09.279 [NiPlugin] Skipping the NiPlugin initialization as C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\mpnirtp.dll does not exist. 2026-05-21T07:31:09.279 [init][RTP] RTPPlugin initialization completed 2026-05-21T07:31:09.279 OS boot count = 2 2026-05-21T07:31:09.279 OS Install = 0 2026-05-21T07:31:09.279 [init] MpAddMpUxRegistrationForToast failed (Ignored). hr = 0x8000401a 2026-05-21T07:31:09.279 [KSL] Entering CKSLEngine::Initialize. 2026-05-21T07:31:09.279 [KSL] Leaving CKSLEngine::Initialize(0). 2026-05-21T07:31:09.279 [KSL] Entering CKSLEngine::EnableKSL. State: [1] 2026-05-21T07:31:09.279 [KSL] MpInstallKslD: hr=0 2026-05-21T07:31:09.279 [KSL] MpRegisterKslD: hr=0 2026-05-21T07:31:09.279 [KSL] MpStartKslD: hr=0 2026-05-21T07:31:09.279 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-21T07:31:09.279 Loading engine... 2026-05-21T07:31:09.279 Verifying engine and signature files (source: 1) ... 2026-05-21T07:31:09.279 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpengine.dll] due to PPL. 2026-05-21T07:31:09.279 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpasbase.vdm] (file in cache) 2026-05-21T07:31:09.279 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpasdlta.vdm] (file in cache) 2026-05-21T07:31:09.279 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpavbase.vdm] (file in cache) 2026-05-21T07:31:09.279 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpavdlta.vdm] (file in cache) 2026-05-21T07:31:09.341 [Engine] IsHybridMode: 0 2026-05-21T07:31:09.341 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-05-21T07:31:09.372 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-41CC2F54C6C4E531B9992761DCA47EA7A8E57423.bin): 0x00000002 2026-05-21T07:31:09.388 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-41CC2F54C6C4E531B9992761DCA47EA7A8E57423.bin) 2026-05-21T07:31:09.388 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-21T07:31:09.388 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-21T07:31:09.388 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-21T07:31:09.388 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-21T07:31:16.482 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-21T07:31:16.482 [AutoExclusion] Applied roles from cache. 2026-05-21T07:31:16.482 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse IDynamicConfig::ReportChange ECS value=MpFC_DC_DisableAadDeviceIdQuery new=1 old0 2026-05-21T07:31:16.482 [Engine] New active engine 00007FFB12AE5810 (no old engine). Number of active engines: 1 2026-05-21T07:31:16.482 EngineInit:Global ASOC is enabled 2026-05-21T07:31:16.482 EngineInit:ASOO is enabled for developer volumes 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:31:16.497 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:31:16.497 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\1f8b180e9bb2b4a245c4c2b73a69873b6ea02534 Dynamic Signature Compilation Timestamp:05-20-2026 06:30:33 Persistence Type:Duration Time remaining:288000000 2026-05-21T07:31:16.497 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\8c653dd7d939cfd0ccbe4e9f2465c3b76c935ba7 Dynamic Signature Compilation Timestamp:05-20-2026 08:44:44 Persistence Type:Duration Time remaining:288000000 2026-05-21T07:31:16.497 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\860962578d50a7312d0a399c174a5d334c78d3e5 Dynamic Signature Compilation Timestamp:05-20-2026 08:44:57 Persistence Type:Duration Time remaining:288000000 2026-05-21T07:31:16.497 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\c0cad72d1e267eb4375e71edd3d047ae93348ee7 Dynamic Signature Compilation Timestamp:05-20-2026 08:44:59 Persistence Type:Duration Time remaining:288000000 2026-05-21T07:31:16.513 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\4ce2a490ca4596be369e308f09b5ae6869842672 Dynamic Signature Compilation Timestamp:05-20-2026 08:45:00 Persistence Type:Duration Time remaining:288000000 2026-05-21T07:31:16.513 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\d6f72d01512edc9e92ff37a01a6e5f821dfc07a4 Dynamic Signature Compilation Timestamp:05-20-2026 08:45:00 Persistence Type:Duration Time remaining:288000000 2026-05-21T07:31:16.513 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\75d38433449f96f46c4df18d909bc5d61c8f623f Dynamic Signature Compilation Timestamp:05-20-2026 08:45:01 Persistence Type:Duration Time remaining:288000000 2026-05-21T07:31:16.513 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\c675cca629230e561bb6a7a87dee00b83debae81 Dynamic Signature Compilation Timestamp:05-20-2026 08:45:02 Persistence Type:Duration Time remaining:288000000 2026-05-21T07:31:16.513 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\a79401363600781ce7cd29054248275f599084ce Dynamic Signature Compilation Timestamp:05-20-2026 08:47:05 Persistence Type:Duration Time remaining:288000000 2026-05-21T07:31:16.513 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-21T07:31:16.513 [SigStatUpd] CSignatureStatus: back to good 2026-05-21T07:31:16.513 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-21T07:31:16.513 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-21T07:31:16.513 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-21T07:31:16.513 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-21T07:31:16.513 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-21T07:31:16.513 Opening Sense registry key to get process path failed with hr=0x80070002. Fallback to programfiles. 2026-05-21T07:31:16.529 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-21T07:31:16.529 [Plugin] Initializing RTP plugin state... 2026-05-21T07:31:16.529 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-21T07:31:16.529 [RTP] ****************************RTP Perf Log*************************** RTP Start:N/A Last Perf:(null) First RTP Scan:N/A Plugin States: AV:2 AS:2 RTP:2 OA:2 BM:2 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:0 System File Cache: Hits:0 Misses:0 BM Queue:0,0,0 Proc:0,0,0 File:0,0,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,1,0 SetEngine:1,1,0 SetState:0,0,0 SetUser:0,1,0 Config:0,0,0 ProcExcl:0,0,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:0 Pending:0 RegSize:2882 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:2102 AsyncQCurrent:0 BMFlags:8 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:13 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:43 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:13 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:-1ms (0/0) Success: 0, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-21T07:31:16.529 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56} 2026-05-21T07:31:16.529 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-21T07:31:16.529 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-21T07:31:16.529 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-21T07:31:16.529 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-21T07:31:16.529 MdCoreSvc is supported in this platform and OS 2026-05-21T07:31:16.529 MdCoreSvc is supported in this platform and OS 2026-05-21T07:31:16.529 [PlatUpd] MDCoreSvc is supported by the version of the platform we are switching to. Making sure the service is registered with SCM 2026-05-21T07:31:16.529 [PlatUpd] Starting MdCoreSvc service 2026-05-21T07:31:16.529 Engine loaded! 2026-05-21T07:31:16.529 Engine:Failure in process enumeration: Image:, Error:GetImageNameConfigurationEx, 0x80078020, PID: 0 2026-05-21T07:31:16.529 Engine:Failure in process enumeration: Image:, Error:GetImageNameConfigurationEx, 0x80078020, PID: 4 2026-05-21T07:31:16.529 [DLP] Create FeatureControlState instance 2026-05-21T07:31:16.529 RegisterSModeChangeListener: hr = 0x1 2026-05-21T07:31:16.529 RegisterHybridModeChangeListener: hr = 0x1 2026-05-21T07:31:16.529 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-21T07:31:16.529 [PlatUpd] Updated install location from C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\ to C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\ 2026-05-21T07:31:16.529 [AutoPurge] Auto purger task is scheduled to run in 600000(ms) from now with period 86400000(ms) 2026-05-21T07:31:16.529 [SigReleaseHb] Initialized with Stage 0 2026-05-21T07:31:16.529 [EmergencySigManager] Emergency sig checks are currently disabled. Timer interval: 15 minutes. 2026-05-21T07:31:16.529 [SCC][CID=87146609_3332] Initializing ... 2026-05-21T07:31:16.529 [SCC][CID=87146609_3332] SCC Initialize! The feature is OFF on this machine (E5 = 0), hr: 0x80004001 2026-05-21T07:31:16.529 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-21T07:31:16.529 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-21T07:31:16.529 [NRI] Stopping NIS service ... 2026-05-21T07:31:16.529 [RTP] [RTP] Killbits updated: 0x200000000000000 -> 0x4000000 2026-05-21T07:31:16.544 [RTP] [RTP] LastAccessTimeSuppression is enabled (default behavior). Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.6.0 AV Signature Version: 1.451.6.0 ************************************************************ 2026-05-21T07:31:16.544 Resource usage Monitoring is enabled 2026-05-21T07:31:16.544 Ci Endpoint Security Policy Installation: Unsupported, hr = 0x00000001 2026-05-21T07:31:16.544 Job Notification: New process added to job (5628) 2026-05-21T07:31:16.591 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-21T07:31:16.591 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-21T07:31:16.591 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-21T07:31:16.591 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-21T07:31:16.591 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-21T07:31:16.591 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-21T07:31:16.591 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-21T07:31:16.591 [RTP] Generating the base plugin configuration ... 2026-05-21T07:31:16.591 [RTP] Path exclusion changed, new size in bytes: 2 2026-05-21T07:31:16.591 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-21T07:31:16.591 [RTP] Calling GenerateEngineConfigStruct (0x3e) ... 2026-05-21T07:31:16.591 [RTP] [RTP] RTPPlugin state has changed as follow: ASStatus:0->1, AVStatus:0->1, RTPStatus:0->1 2026-05-21T07:31:16.591 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-21T07:31:16.591 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-21T07:31:16.591 [RTP] [RTP] StartCommunication 0x0000021D727D9BA0 (\MicrosoftMalwareProtectionPortWD, \MicrosoftMalwareProtectionVeryLowIoPortWD), threads: 6 normal, 2 very low, 0 alt, thread pool threads: 0 normal, 0 very low, 6 alt 2026-05-21T07:31:16.607 [RTP] [RTP] RTP worker threads ready [6 threads] 2026-05-21T07:31:16.669 [RTP] [Mini-filter] First scan on a volume: \Device\HarddiskVolume2\Windows\Temp\MpCmdRun.log 2026-05-21T07:31:16.904 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T07:31:17.014 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-05-21T07:31:17.014 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-21T07:31:17.014 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-21T07:31:17.014 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-21T07:31:18.538 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-21T07:31:19.431 [RTP] Duplicating the current plugin configuration object... 2026-05-21T07:31:19.431 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-21T07:31:19.431 [RTP] Updating plugin configuration due to recent config changes (0x600) ... 2026-05-21T07:31:19.431 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-05-21T07:31:19.431 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x600, Changed: 0x218 2026-05-21T07:32:09.232 Process scan (poststartupscan) started. 2026-05-21T07:32:09.232 Process scan (poststartupscan) completed. 2026-05-21T07:32:09.738 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-05-21T07:32:09.753 [RTP] [RtpConfig] Config change detected, type: 1024 2026-05-21T07:32:12.285 [RTP] Duplicating the current plugin configuration object... 2026-05-21T07:32:12.285 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-21T07:32:12.285 [RTP] Updating plugin configuration due to recent config changes (0x400) ... 2026-05-21T07:32:12.285 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-05-21T07:32:12.285 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x400, Changed: 0x218 2026-05-21T07:36:16.498 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-21T07:36:16.529 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T07:41:16.529 Timer callback: Initializating/verifying scheduled tasks ... 2026-05-21T07:41:16.529 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-21T07:41:16.560 Job Notification: New process added to job (5792) 2026-05-21T07:41:16.576 Job Notification: New process added to job (4056) 2026-05-21T07:41:16.591 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:5792] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4056]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-21T07:41:16.591 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-21T07:41:16.607 [TaskUpdate] Run lost signature update scheduled job: SignatureUpdate -ScheduleJob -RestrictPrivileges 2026-05-21T07:41:16.622 [TaskUpdate] Run lost signature update scheduled job: SignatureUpdate -ScheduleJob -RestrictPrivileges 2026-05-21T07:41:16.638 Job Notification: New process added to job (800) 2026-05-21T07:41:16.638 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-21T07:41:16.654 Job Notification: New process added to job (6124) 2026-05-21T07:41:16.654 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:800] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6124]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-21T07:41:16.685 Job Notification: New process added to job (4908) 2026-05-21T07:41:16.685 Job Notification: Process exited from job (800) 2026-05-21T07:41:16.685 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-21T07:41:16.685 [TaskUpdate] MpCmdRun process completed before completion signal is received 2026-05-21T07:41:16.701 Job Notification: Process exited from job (6124) 2026-05-21T07:41:16.701 Job Notification: New process added to job (5268) 2026-05-21T07:41:16.716 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4908] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5268]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-21T07:41:16.794 Task(Scan -ScheduleJob -RestrictPrivileges -ScanType 2 -ScanTrigger 52) is scheduled to run in 71996710(ms) from now at 05:41 (03:41 UTC) with period 86400000(ms). Daily task start time is randomized to reduce spikes. 2026-05-21T07:41:20.148 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\0999CE2C-0483-45BD-A619-0A9572FF2B6315e0.1dce8f53629ba82 2026-05-21T07:41:20.194 Verifying engine and signature files (source: 0) ... 2026-05-21T07:41:20.194 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E6264ED3-8BB6-4861-9CC1-D388AF590EB6}\mpengine.dll] due to PPL. 2026-05-21T07:41:20.194 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E6264ED3-8BB6-4861-9CC1-D388AF590EB6}\mpasbase.vdm] (file in cache) 2026-05-21T07:41:20.194 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E6264ED3-8BB6-4861-9CC1-D388AF590EB6}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-21T07:41:20.194 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E6264ED3-8BB6-4861-9CC1-D388AF590EB6}\mpasdlta.vdm] 2026-05-21T07:41:20.194 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E6264ED3-8BB6-4861-9CC1-D388AF590EB6}\mpavbase.vdm] (file in cache) 2026-05-21T07:41:20.194 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E6264ED3-8BB6-4861-9CC1-D388AF590EB6}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-21T07:41:20.210 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E6264ED3-8BB6-4861-9CC1-D388AF590EB6}\mpavdlta.vdm] 2026-05-21T07:41:20.335 [Engine] IsHybridMode: 0 2026-05-21T07:41:20.335 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-05-21T07:41:20.351 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-343EEFE68ED23C70D656D16B3EC3A8EFCCF3E73E.bin): 0x00000002 2026-05-21T07:41:20.351 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-343EEFE68ED23C70D656D16B3EC3A8EFCCF3E73E.bin) 2026-05-21T07:41:20.351 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-21T07:41:20.351 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-21T07:41:20.351 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-21T07:41:20.351 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-21T07:41:28.468 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-21T07:41:28.468 [AutoExclusion] Applied roles from cache. 2026-05-21T07:41:28.468 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse IDynamicConfig::ReportChange ECS value=MpFC_DC_DisableAadDeviceIdQuery new=1 old0 2026-05-21T07:41:28.484 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB12AE5810, lRefCount: 5, hr=0 2026-05-21T07:41:28.484 [Engine] New active engine 00007FFB11965810 replacing engine 00007FFB12AE5810. Number of active engines: 2 2026-05-21T07:41:28.499 EngineInit:Global ASOC is enabled 2026-05-21T07:41:28.499 EngineInit:ASOO is enabled for developer volumes 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:41:28.515 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-21T07:41:28.531 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-21T07:41:28.531 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-21T07:41:28.531 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-21T07:41:28.531 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-21T07:41:28.531 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-21T07:41:28.546 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-21T07:41:28.546 [Plugin] Initializing RTP plugin state... 2026-05-21T07:41:28.546 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-21T07:41:28.546 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎21‎-‎2026 09:31:16 Last Perf:‎05‎-‎21‎-‎2026 09:31:16 First RTP Scan:‎05‎-‎21‎-‎2026 09:31:16 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:116 Misses:293 BM Queue:0,18,0 Proc:0,17,0 File:0,14,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:428 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1728234 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:415 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:591 TotalHits:3968 InstanceCacheInserts:32 InstanceCacheUpdates:0 InstanceCacheDeletes:28 InstanceCacheHits:0 InstanceCacheMisses:715 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:2ms (30/14) Success: 14, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-21T07:41:28.546 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E6264ED3-8BB6-4861-9CC1-D388AF590EB6} 2026-05-21T07:41:28.546 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-21T07:41:28.546 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F069BB84-DF52-4A1D-9E5C-13E06FB16830} removed 2026-05-21T07:41:28.546 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-21T07:41:28.546 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-21T07:41:28.546 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-21T07:41:28.546 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-21T07:41:28.546 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-21T07:41:28.546 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-21-2026 07:41:28 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-21-2026 07:41:28 2026-05-21T07:41:28.546 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-21T07:41:28.546 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-21T07:41:28.546 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T07:41:28.546 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-21T07:41:28.546 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-21T07:41:28.546 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-21T07:41:28.546 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-21T07:41:28.546 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-21T07:41:28.546 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-21T07:41:28.546 MdCoreSvc is supported in this platform and OS BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 05-21-2026 07:41:28 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.25.0 AV Signature Version: 1.451.25.0 ************************************************************ 2026-05-21T07:41:28.546 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-21T07:41:28.546 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\0999CE2C-0483-45BD-A619-0A9572FF2B6315e0.1dce8f53629ba82 Signature updated via MicrosoftUpdateServer on 05-21-2026 07:41:28 ************************************************************ 2026-05-21T07:41:28.609 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-21T07:41:28.609 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-21T07:41:28.624 Job Notification: Process exited from job (4908) 2026-05-21T07:41:28.624 Job Notification: Process exited from job (5268) 2026-05-21T07:41:28.640 Job Notification: Process exited from job (5792) 2026-05-21T07:41:28.640 Job Notification: Process exited from job (4056) 2026-05-21T07:41:28.765 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-21T07:41:28.765 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-21T07:41:28.765 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-21T07:41:28.765 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-21T07:41:28.765 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-21T07:41:28.765 [Engine] Engine 00007FFB12AE5810 no longer in use. Number of active engines: 1 2026-05-21T07:41:28.765 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-21T07:41:28.765 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-21T07:41:28.843 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 3190, Count: 270, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Microsoft VS Code\resources\app\extensions\github\dist\extension.js, EstimatedImpact: 0% 2026-05-21T07:41:28.843 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 138, Count: 9, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 7% 2026-05-21T07:41:28.874 [Engine] RSIG_UNLOADENGINE, 00007FFB12AE5810, err=0x0 2026-05-21T07:41:28.890 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0F0FE4AB-8A11-4D28-9E8B-887094C52E56} removed 2026-05-21T07:41:29.037 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-21T07:41:29.037 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-21T07:41:29.037 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-21T07:42:09.222 Process scan (postsignatureupdatescan) started. 2026-05-21T07:42:14.878 Process scan (postsignatureupdatescan) completed. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 2026-05-21T07:46:09.467 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-21T07:46:09.467 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-21T07:46:09.467 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T07:46:09.467 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-21T07:46:09.467 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-21T07:46:09.467 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-21T07:46:09.467 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-21T07:46:09.467 MdCoreSvc is supported in this platform and OS 2026-05-21T07:46:09.467 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T07:46:09.467 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-21T07:46:09.967 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-21T07:46:09.967 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-21T07:46:09.967 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-21T07:46:28.520 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-21T07:51:21.539 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T08:06:26.529 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T08:15:34.435 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1850, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T08:15:34.451 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1852, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T08:15:44.444 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1875, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T08:15:44.444 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1877, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T08:15:44.648 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1881, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T08:15:44.648 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #1883, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T08:21:31.534 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T08:36:36.533 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T08:51:41.538 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T09:06:38.493 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\xampp\tmp\#sqla80_99d_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #5317, FileId: 0x41ca000000014812, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T09:06:46.540 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T09:15:34.166 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5823, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T09:15:34.181 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5825, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T09:15:44.173 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5829, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T09:15:44.189 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5831, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T09:15:44.189 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #5834, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T09:21:51.531 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T09:36:56.537 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T09:41:28.485 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 86913, Count: 10079, MaxTime: 343, MaxTimeFile: \Device\HarddiskVolume2\Program Files\MySQL\MySQL Workbench 8.0 CE\WBControls.dll, EstimatedImpact: 1% 2026-05-21T09:41:28.485 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 93, Count: 3, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-21T09:41:28.485 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 46, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_99d_1.MAD, EstimatedImpact: 0% 2026-05-21T09:41:28.485 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70e92342-5839-4a7e-933e-ac59f03e94c6.tmp, EstimatedImpact: 0% 2026-05-21T09:41:28.485 ProcessImageName: updater.exe, Pid: 5068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2516ced8-779b-44e2-a753-43bec699cb97.tmp, EstimatedImpact: 0% 2026-05-21T09:52:01.532 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T10:07:06.541 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T10:15:33.979 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #8248, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T10:15:33.995 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #8250, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T10:15:43.988 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #8255, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T10:15:44.003 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #8257, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T10:22:11.531 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-05-21T10:34:29.038 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T10:34:29.038 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T10:34:29.038 [Cloud] Queued cloud request. 2026-05-21T10:34:29.038 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T10:34:29.085 Job Notification: New process added to job (3508) 2026-05-21T10:34:29.085 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey C7854D1B-D10B-BC15-CC4D-AB87DD721527) launched 2026-05-21T10:34:29.085 Job Notification: New process added to job (2880) 2026-05-21T10:34:29.101 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3508] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2880]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-21T10:34:29.116 Job Notification: New process added to job (4380) 2026-05-21T10:34:29.116 Job Notification: Process exited from job (3508) 2026-05-21T10:34:29.116 Job Notification: Process exited from job (2880) 2026-05-21T10:34:29.132 [Cloud] Dequeued cloud request. 2026-05-21T10:34:29.132 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T10:34:29.493 [Cloud] End of cloud request. 2026-05-21T10:34:29.493 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) BEGIN BM telemetry GUID:{13BFA9D7-DA38-0D2D-4FDA-19095ECAA2D3} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:3940 ProcessCreationTime:134238332689813680 SessionID:0 CreationTime:05-21-2026 10:34:29 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: N; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-05-21T10:34:29.503 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-21T10:34:29.534 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE 2026-05-21T10:34:29.565 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-21T10:34:29.565 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-21T10:34:30.065 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T10:34:32.519 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T10:34:32.519 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T10:34:32.519 [Cloud] Queued cloud request. 2026-05-21T10:34:32.519 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T10:34:32.519 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-05-21T10:34:32.519 [Cloud] Dequeued cloud request. 2026-05-21T10:34:32.519 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T10:34:32.519 [Cloud] Queued cloud request. 2026-05-21T10:34:32.519 [Cloud] Dequeued cloud request. 2026-05-21T10:34:32.519 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T10:34:32.519 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T10:34:32.659 [Cloud] End of cloud request. 2026-05-21T10:34:32.659 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-21T10:34:32.659 [Cloud] End of cloud request. 2026-05-21T10:34:33.159 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T10:34:35.862 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260521.txt. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #8913, FileId: 0x30000000014fd0, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x2020, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T10:34:41.159 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T10:34:41.159 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T10:34:41.159 [Cloud] Queued cloud request. 2026-05-21T10:34:41.159 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T10:34:41.159 [Cloud] Dequeued cloud request. 2026-05-21T10:34:41.159 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T10:34:41.175 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-05-21T10:34:41.175 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T10:34:41.175 [Cloud] Queued cloud request. 2026-05-21T10:34:41.175 [Cloud] Dequeued cloud request. 2026-05-21T10:34:41.175 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T10:34:41.237 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-21T10:34:41.237 [Cloud] End of cloud request. 2026-05-21T10:34:41.253 [Cloud] End of cloud request. 2026-05-21T10:34:41.745 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T10:37:16.531 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T10:52:21.540 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T11:07:26.529 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T11:15:32.964 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #9931, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T11:15:32.980 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #9933, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T11:15:42.978 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #9937, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T11:15:42.978 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #9938, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T11:15:42.993 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #9940, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T11:22:31.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T11:37:36.529 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T11:41:28.494 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 130735, Count: 13794, MaxTime: 359, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Microsoft VS Code\resources\app\extensions\node_modules\typescript\lib\tsserver.js, EstimatedImpact: 0% 2026-05-21T11:41:28.494 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 3357, Count: 54, MaxTime: 593, MaxTimeFile: \Device\HarddiskVolume2\win-acme\wacs.exe, EstimatedImpact: 0% 2026-05-21T11:41:28.494 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 46, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_99d_1.MAD, EstimatedImpact: 0% 2026-05-21T11:41:28.494 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 0% 2026-05-21T11:41:28.494 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70e92342-5839-4a7e-933e-ac59f03e94c6.tmp, EstimatedImpact: 0% 2026-05-21T11:41:28.494 ProcessImageName: updater.exe, Pid: 5940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a1426-9851-47c0-9d86-36e6279fffff.tmp, EstimatedImpact: 0% 2026-05-21T11:41:28.494 ProcessImageName: updater.exe, Pid: 5068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2516ced8-779b-44e2-a753-43bec699cb97.tmp, EstimatedImpact: 0% 2026-05-21T11:41:28.494 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\485638f5-3563-4ddc-aa66-60697e1788de.tmp, EstimatedImpact: 0% 2026-05-21T11:52:41.529 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T12:07:46.528 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T12:15:33.270 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #11122, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T12:15:33.286 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #11124, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T12:15:40.605 [RTP] [Mini-filter] OpenWithoutRead notification (69, 10742, \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe) sent successfully. 2026-05-21T12:15:43.290 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #11128, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T12:15:43.290 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #11131, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T12:15:43.290 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #11132, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T12:15:43.305 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #11134, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T12:22:51.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T12:29:46.344 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9a4_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #11567, FileId: 0x2370000000015706, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T12:29:46.969 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9a4_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #11572, FileId: 0x2371000000015706, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T12:37:56.537 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T12:53:01.538 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T13:08:06.532 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T13:15:35.648 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #12474, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T13:15:35.663 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #12476, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T13:15:45.657 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #12480, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T13:15:45.657 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #12482, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T13:15:45.813 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #12486, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T13:15:45.828 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #12488, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T13:23:11.532 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T13:38:16.531 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T13:41:28.504 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 152794, Count: 15859, MaxTime: 359, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Microsoft VS Code\resources\app\extensions\node_modules\typescript\lib\tsserver.js, EstimatedImpact: 0% 2026-05-21T13:41:28.504 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 3357, Count: 54, MaxTime: 593, MaxTimeFile: \Device\HarddiskVolume2\win-acme\wacs.exe, EstimatedImpact: 0% 2026-05-21T13:41:28.504 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 76, Count: 9, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_99d_1.MAD, EstimatedImpact: 0% 2026-05-21T13:41:28.504 ProcessImageName: updater.exe, Pid: 4868, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-21T13:41:28.504 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 0% 2026-05-21T13:41:28.504 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70e92342-5839-4a7e-933e-ac59f03e94c6.tmp, EstimatedImpact: 0% 2026-05-21T13:41:28.504 ProcessImageName: updater.exe, Pid: 5940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a1426-9851-47c0-9d86-36e6279fffff.tmp, EstimatedImpact: 0% 2026-05-21T13:41:28.504 ProcessImageName: updater.exe, Pid: 5068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2516ced8-779b-44e2-a753-43bec699cb97.tmp, EstimatedImpact: 0% 2026-05-21T13:41:28.504 ProcessImageName: updater.exe, Pid: 2804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6dca9142-dfb0-4a99-aa63-bf3262f5c7c1.tmp, EstimatedImpact: 0% 2026-05-21T13:41:28.504 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\485638f5-3563-4ddc-aa66-60697e1788de.tmp, EstimatedImpact: 0% 2026-05-21T13:53:21.535 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) BEGIN BM telemetry GUID:{628826A9-0283-3FFD-30B2-7B46D137115D} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5208 ProcessCreationTime:134237358974803704 SessionID:2 CreationTime:05-21-2026 14:00:20 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-21T14:00:20.877 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T14:00:20.877 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T14:00:20.877 [Cloud] Queued cloud request. 2026-05-21T14:00:20.877 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T14:00:20.877 [Cloud] Dequeued cloud request. 2026-05-21T14:00:20.877 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T14:00:21.158 [Cloud] End of cloud request. 2026-05-21T14:00:21.658 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T14:00:24.868 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\Prs4EB.tmp. Process: \Device\HarddiskVolume2\Windows\System32\rdpclip.exe, Status: 0xc0000001, State: 0, ScanRequest #13301, FileId: 0x19000000037983, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T14:08:26.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T14:15:33.647 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #13932, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T14:15:33.647 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #13934, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T14:15:43.661 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #13938, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T14:15:43.676 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #13940, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T14:16:56.081 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\php24BC.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #13974, FileId: 0x3a6400000000a422, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T14:23:31.534 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000055508F3A39A, sigsha=adc296cf14a948811ec4fc94642d047458c25c9d, cached=false, source=2, resourceid=0xc5b6b5f0 2026-05-21T14:38:36.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T14:44:17.370 Bm signature throttled:0x00003fb37eb842dc 2026-05-21T14:44:22.554 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\Prs4454.tmp. Process: \Device\HarddiskVolume2\Windows\System32\rdpclip.exe, Status: 0xc0000001, State: 0, ScanRequest #15067, FileId: 0x2a0000000964c2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T14:44:46.182 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #15178, FileId: 0xe000000054a59, Reason: OnOpen, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x120089, FileAttributes:0x20, ScanAttributes:0x8, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T14:44:46.401 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #15184, FileId: 0x2900000009653b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T14:44:56.360 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #15206, FileId: 0x2a00000009653b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T14:47:49.941 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #15462, FileId: 0x18000000055c9f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0xa21275a6 Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0xa21275a6 Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0xa21275a6 BEGIN BM telemetry GUID:{27592FFC-4DAE-6986-D99D-99935EF55F49} SignatureID:55745256291477 SigSha:7106c73e392948e275190c3cff85a5401a98a8bc ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-21-2026 14:50:40 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-21T14:50:40.325 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T14:50:40.325 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T14:50:40.325 [Cloud] Queued cloud request. 2026-05-21T14:50:40.325 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T14:50:40.325 [Cloud] Dequeued cloud request. 2026-05-21T14:50:40.325 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T14:50:40.853 [Cloud] End of cloud request. 2026-05-21T14:50:40.853 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp2_not used\htdocs\kptv\ro\android.php. status=0x40070000, statusex=0x200200, threatid=0x80000000, sigseq=0x55521838dea Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0x21d2f8a8 Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0x21d2f8a8 2026-05-21T14:50:40.853 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T14:50:40.853 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T14:50:40.853 [Cloud] Queued cloud request. 2026-05-21T14:50:40.853 [Cloud] Dequeued cloud request. 2026-05-21T14:50:40.853 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T14:50:40.869 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T14:50:40.869 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T14:50:40.869 [Cloud] Queued cloud request. 2026-05-21T14:50:40.869 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T14:50:40.869 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T14:50:40.869 [Cloud] Dequeued cloud request. 2026-05-21T14:50:40.869 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-05-21T14:50:40.869 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T14:50:40.869 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T14:50:40.869 [Cloud] Queued cloud request. 2026-05-21T14:50:40.869 [Cloud] Dequeued cloud request. 2026-05-21T14:50:40.869 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T14:50:41.088 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-21T14:50:41.088 [Cloud] End of cloud request. 2026-05-21T14:50:41.166 [Cloud] End of cloud request. 2026-05-21T14:50:41.166 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp2_not used\htdocs\kptv\ro\android.php. status=0x40030000, statusex=0x200200, threatid=0x80000000, sigseq=0x55521838dea 2026-05-21T14:50:41.228 [Cloud] End of cloud request. 2026-05-21T14:50:41.364 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T14:53:41.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T15:08:30.742 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sqla80_b20_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #17222, FileId: 0x300000000964c2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T15:08:31.335 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\#sqla80_b20_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #17226, FileId: 0x310000000964c2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T15:08:46.534 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T15:15:32.858 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #17508, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T15:15:32.874 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #17510, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T15:15:42.872 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #17528, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T15:15:42.872 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #17529, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T15:15:42.888 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #17531, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T15:23:51.540 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T15:38:56.533 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T15:41:28.514 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 220666, Count: 21148, MaxTime: 359, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Microsoft VS Code\resources\app\extensions\node_modules\typescript\lib\tsserver.js, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 3357, Count: 54, MaxTime: 593, MaxTimeFile: \Device\HarddiskVolume2\win-acme\wacs.exe, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 561, Count: 3, MaxTime: 546, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: SQLyogCommunity.exe, Pid: 3468, TotalTime: 417, Count: 32, MaxTime: 187, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 215, Count: 14, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 68% 2026-05-21T15:41:28.514 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 91, Count: 13, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_99d_1.MAD, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: FileZilla Server Interface.exe, Pid: 5088, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.14393.9140_none_f677bba0f2512d32\GdiPlus.dll, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\97491A74-085C-41D1-BAAD-22B8ED280865\pdc.xml, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: updater.exe, Pid: 4868, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\2\sa.Microsoft.MicrosoftPrinttoPDFSettings_8wekyb3d8bbwe_1__.Public.InstallAgent.dat, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70e92342-5839-4a7e-933e-ac59f03e94c6.tmp, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: updater.exe, Pid: 5940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a1426-9851-47c0-9d86-36e6279fffff.tmp, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d85ba49-a562-494a-b50f-401e4f2d20e9.tmp, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: updater.exe, Pid: 5068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2516ced8-779b-44e2-a753-43bec699cb97.tmp, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: updater.exe, Pid: 2952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bbbb13-1e56-4a2a-9901-1627f33db540.tmp, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: updater.exe, Pid: 2804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6dca9142-dfb0-4a99-aa63-bf3262f5c7c1.tmp, EstimatedImpact: 0% 2026-05-21T15:41:28.514 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\485638f5-3563-4ddc-aa66-60697e1788de.tmp, EstimatedImpact: 0% 2026-05-21T15:54:01.526 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T16:09:06.538 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T16:15:35.293 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #19949, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T16:15:35.302 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #19951, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T16:15:45.301 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #19955, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T16:15:45.317 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #19958, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T16:24:11.538 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T16:39:16.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T16:54:21.538 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T17:09:26.532 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T17:15:33.811 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22106, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T17:15:33.830 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22109, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T17:15:43.825 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22114, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T17:15:43.825 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22115, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T17:15:43.841 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #22116, FileId: 0x563000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T17:24:31.526 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T17:39:36.536 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T17:41:28.524 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 259461, Count: 24972, MaxTime: 859, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Microsoft VS Code\resources\app\extensions\ms-vscode-remote.remote-wsl-recommender\dist\extension.js, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 3357, Count: 54, MaxTime: 593, MaxTimeFile: \Device\HarddiskVolume2\win-acme\wacs.exe, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 561, Count: 3, MaxTime: 546, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: SQLyogCommunity.exe, Pid: 3468, TotalTime: 417, Count: 32, MaxTime: 187, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 215, Count: 14, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 68% 2026-05-21T17:41:28.524 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 91, Count: 13, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_99d_1.MAD, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: FileZilla Server Interface.exe, Pid: 5088, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.14393.9140_none_f677bba0f2512d32\GdiPlus.dll, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\97491A74-085C-41D1-BAAD-22B8ED280865\pdc.xml, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: updater.exe, Pid: 4868, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\2\sa.Microsoft.MicrosoftPrinttoPDFSettings_8wekyb3d8bbwe_1__.Public.InstallAgent.dat, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70e92342-5839-4a7e-933e-ac59f03e94c6.tmp, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: updater.exe, Pid: 5636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\441e07f5-0a30-459d-96f6-a9a53b4ff546.tmp, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d85ba49-a562-494a-b50f-401e4f2d20e9.tmp, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\485638f5-3563-4ddc-aa66-60697e1788de.tmp, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: updater.exe, Pid: 5068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2516ced8-779b-44e2-a753-43bec699cb97.tmp, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: updater.exe, Pid: 5940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a1426-9851-47c0-9d86-36e6279fffff.tmp, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: updater.exe, Pid: 2804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6dca9142-dfb0-4a99-aa63-bf3262f5c7c1.tmp, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: updater.exe, Pid: 2952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bbbb13-1e56-4a2a-9901-1627f33db540.tmp, EstimatedImpact: 0% 2026-05-21T17:41:28.524 ProcessImageName: updater.exe, Pid: 3932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21854cb4-27cf-439a-91b3-058c05125eca.tmp, EstimatedImpact: 0% 2026-05-21T17:54:41.525 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T18:09:46.541 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T18:15:33.940 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #24476, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T18:15:33.957 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #24478, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T18:15:43.958 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #24493, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T18:15:43.958 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #24495, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T18:15:44.114 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #24499, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T18:15:44.114 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #24501, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T18:24:51.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T18:39:56.534 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T18:55:01.535 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T19:10:06.525 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T19:15:34.461 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #25678, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T19:15:34.476 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #25680, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T19:15:44.469 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #25684, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T19:15:44.485 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #25687, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T19:25:11.525 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T19:40:16.528 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T19:41:28.527 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 301091, Count: 28594, MaxTime: 859, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Microsoft VS Code\resources\app\extensions\ms-vscode-remote.remote-wsl-recommender\dist\extension.js, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 3372, Count: 55, MaxTime: 593, MaxTimeFile: \Device\HarddiskVolume2\win-acme\wacs.exe, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 561, Count: 3, MaxTime: 546, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: SQLyogCommunity.exe, Pid: 3468, TotalTime: 417, Count: 32, MaxTime: 187, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 215, Count: 14, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 68% 2026-05-21T19:41:28.527 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 91, Count: 13, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_99d_1.MAD, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: FileZilla Server Interface.exe, Pid: 5088, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.14393.9140_none_f677bba0f2512d32\GdiPlus.dll, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\97491A74-085C-41D1-BAAD-22B8ED280865\pdc.xml, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: updater.exe, Pid: 4868, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: updater.exe, Pid: 2928, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\2\sa.Microsoft.MicrosoftPrinttoPDFSettings_8wekyb3d8bbwe_1__.Public.InstallAgent.dat, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70e92342-5839-4a7e-933e-ac59f03e94c6.tmp, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: updater.exe, Pid: 6008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\780b5e8f-4d1f-4bf4-a2ce-da03ad953b66.tmp, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: updater.exe, Pid: 5940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a1426-9851-47c0-9d86-36e6279fffff.tmp, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: updater.exe, Pid: 2952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bbbb13-1e56-4a2a-9901-1627f33db540.tmp, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: updater.exe, Pid: 2804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6dca9142-dfb0-4a99-aa63-bf3262f5c7c1.tmp, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: updater.exe, Pid: 5636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\441e07f5-0a30-459d-96f6-a9a53b4ff546.tmp, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\485638f5-3563-4ddc-aa66-60697e1788de.tmp, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: updater.exe, Pid: 5068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2516ced8-779b-44e2-a753-43bec699cb97.tmp, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: updater.exe, Pid: 3932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21854cb4-27cf-439a-91b3-058c05125eca.tmp, EstimatedImpact: 0% 2026-05-21T19:41:28.527 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d85ba49-a562-494a-b50f-401e4f2d20e9.tmp, EstimatedImpact: 0% 2026-05-21T19:55:21.533 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T20:10:26.536 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T20:10:27.286 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sqla80_d36_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #27741, FileId: 0x4f000000047bde, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T20:10:28.129 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sqla80_d36_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #27747, FileId: 0x50000000047bde, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T20:15:34.876 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #27763, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T20:15:34.876 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #27765, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T20:15:44.886 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #27770, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T20:15:44.886 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #27769, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T20:15:44.901 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #27771, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T20:15:44.901 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #27773, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T20:25:31.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000108766DC1975, sigsha=aecef3f845b0f2d07826ff984849c077aad0fd76, cached=false, source=2, resourceid=0x23e82ff5 Internal signature match:subtype=Lowfi, sigseq=0x0000157E7E10585E, sigsha=11649d496c66a5dd5424f700ae2b27af15ebc616, cached=false, source=2, resourceid=0x23e82ff5 2026-05-21T20:27:06.858 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T20:27:06.858 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T20:27:06.858 [Cloud] Queued cloud request. 2026-05-21T20:27:06.858 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T20:27:06.858 [Cloud] Dequeued cloud request. 2026-05-21T20:27:06.858 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T20:27:07.313 [Cloud] End of cloud request. 2026-05-21T20:27:07.313 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\FileZilla_3.62.1_win64_sponsored2-setup.exe. status=0x40070000, statusex=0x200300, threatid=0x80000000, sigseq=0x108766dc1975 2026-05-21T20:27:07.818 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T20:40:36.536 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T20:55:41.526 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T21:08:10.671 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sqla80_d39_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #29236, FileId: 0x3d0000000964c2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T21:10:46.524 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T21:15:35.943 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #29581, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T21:15:35.959 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #29583, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T21:15:45.952 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #29606, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T21:15:45.952 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #29607, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T21:15:45.968 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #29609, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0xd0b70dbd Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0xd0b70dbd Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0xd0b70dbd BEGIN BM telemetry GUID:{E9712DED-0A12-EAFA-6463-8151BE8BE995} SignatureID:55745797457393 SigSha:ddb4adac2aca8c16554162e265921a50721a9574 ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-21-2026 21:22:34 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-21T21:22:34.964 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T21:22:34.964 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T21:22:34.964 [Cloud] Queued cloud request. 2026-05-21T21:22:34.964 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T21:22:34.964 [Cloud] Dequeued cloud request. BEGIN BM telemetry GUID:{88F04668-150B-26A4-4507-A674FB90198A} SignatureID:55745256291477 SigSha:7106c73e392948e275190c3cff85a5401a98a8bc ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-21-2026 21:22:34 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-21T21:22:34.980 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T21:22:35.511 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T21:22:35.511 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T21:22:35.511 [Cloud] Queued cloud request. 2026-05-21T21:22:35.511 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T21:22:35.511 [Cloud] Dequeued cloud request. 2026-05-21T21:22:35.511 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T21:22:35.511 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-05-21T21:22:35.511 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T21:22:35.511 [Cloud] Queued cloud request. 2026-05-21T21:22:35.511 [Cloud] Dequeued cloud request. 2026-05-21T21:22:35.511 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T21:22:35.511 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T21:22:35.511 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T21:22:35.511 [Cloud] Queued cloud request. 2026-05-21T21:22:35.511 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T21:22:35.511 [Cloud] Dequeued cloud request. 2026-05-21T21:22:35.526 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T21:22:35.710 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-21T21:22:35.710 [Cloud] End of cloud request. 2026-05-21T21:22:35.710 [Cloud] End of cloud request. 2026-05-21T21:22:36.213 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T21:22:36.334 [Cloud] End of cloud request. 2026-05-21T21:22:36.847 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T21:22:41.388 [Cloud] End of cloud request. 2026-05-21T21:22:41.388 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv\backup_ro\android.php. status=0x40070000, statusex=0x200200, threatid=0x80000000, sigseq=0x55521838dea Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0x64abda3e Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0x64abda3e 2026-05-21T21:22:41.388 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T21:22:41.388 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T21:22:41.388 [Cloud] Queued cloud request. 2026-05-21T21:22:41.388 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T21:22:41.388 [Cloud] Dequeued cloud request. 2026-05-21T21:22:41.388 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T21:22:41.655 [Cloud] End of cloud request. 2026-05-21T21:22:41.655 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv\backup_ro\android.php. status=0x40030000, statusex=0x200200, threatid=0x80000000, sigseq=0x55521838dea 2026-05-21T21:22:41.896 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T21:25:51.524 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T21:37:43.630 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sqla80_d3d_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #30548, FileId: 0x23000000096559, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T21:37:44.489 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sqla80_d3d_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #30553, FileId: 0x24000000096559, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T21:40:56.534 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T21:41:28.533 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 410306, Count: 36551, MaxTime: 1515, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-windows-x64-7.3.5-0-VC15-installer.exe, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 3372, Count: 55, MaxTime: 593, MaxTimeFile: \Device\HarddiskVolume2\win-acme\wacs.exe, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 561, Count: 3, MaxTime: 546, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: SQLyogCommunity.exe, Pid: 3468, TotalTime: 417, Count: 32, MaxTime: 187, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 215, Count: 14, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 68% 2026-05-21T21:41:28.533 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 136, Count: 26, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_99d_1.MAD, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: FileZilla Server Interface.exe, Pid: 5088, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.14393.9140_none_f677bba0f2512d32\GdiPlus.dll, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\97491A74-085C-41D1-BAAD-22B8ED280865\pdc.xml, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: updater.exe, Pid: 4868, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\2\sa.Microsoft.MicrosoftPrinttoPDFSettings_8wekyb3d8bbwe_1__.Public.InstallAgent.dat, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: updater.exe, Pid: 2928, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70e92342-5839-4a7e-933e-ac59f03e94c6.tmp, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: updater.exe, Pid: 5940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a1426-9851-47c0-9d86-36e6279fffff.tmp, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: updater.exe, Pid: 136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbf61768-e842-4cb5-8d52-3f9683b6ac2e.tmp, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: updater.exe, Pid: 2952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bbbb13-1e56-4a2a-9901-1627f33db540.tmp, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: updater.exe, Pid: 5636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\441e07f5-0a30-459d-96f6-a9a53b4ff546.tmp, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: updater.exe, Pid: 2804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6dca9142-dfb0-4a99-aa63-bf3262f5c7c1.tmp, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d85ba49-a562-494a-b50f-401e4f2d20e9.tmp, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\485638f5-3563-4ddc-aa66-60697e1788de.tmp, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: updater.exe, Pid: 5068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2516ced8-779b-44e2-a753-43bec699cb97.tmp, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: updater.exe, Pid: 6008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\780b5e8f-4d1f-4bf4-a2ce-da03ad953b66.tmp, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9e1bbe2-a4ab-498e-a1eb-0a3303e40684.tmp, EstimatedImpact: 0% 2026-05-21T21:41:28.533 ProcessImageName: updater.exe, Pid: 3932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21854cb4-27cf-439a-91b3-058c05125eca.tmp, EstimatedImpact: 0% 2026-05-21T21:56:01.526 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T21:58:50.754 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sqla80_d3f_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #31167, FileId: 0x28000000096559, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T21:58:51.270 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sqla80_d3f_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #31171, FileId: 0x29000000096559, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T22:11:06.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T22:15:34.672 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31941, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T22:15:34.688 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31943, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T22:15:44.696 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31966, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T22:15:44.696 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #31968, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T22:26:11.535 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T22:41:16.524 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T22:56:21.539 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T23:11:26.524 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T23:15:34.370 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88821, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T23:15:34.370 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88823, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T23:15:44.383 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88846, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T23:15:44.383 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88848, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T23:15:44.555 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88851, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-21T23:26:31.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0xc3cb8689 Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0xc3cb8689 Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0xc3cb8689 BEGIN BM telemetry GUID:{85ABEDC3-5C44-BF3E-3AD6-0CC2F895B0CB} SignatureID:55745797457393 SigSha:ddb4adac2aca8c16554162e265921a50721a9574 ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-21-2026 23:27:35 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry BEGIN BM telemetry GUID:{B0F741C0-8A9C-90B5-6D86-784E8CA6E107} SignatureID:55745256291477 SigSha:7106c73e392948e275190c3cff85a5401a98a8bc ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-21-2026 23:27:35 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-21T23:27:35.271 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv2\backup_ro\android.php. status=0x40050000, statusex=0x0, threatid=0x80000000, sigseq=0x55521838dea Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0x53a651ad Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0x53a651ad 2026-05-21T23:27:35.286 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T23:27:35.286 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T23:27:35.286 [Cloud] Queued cloud request. 2026-05-21T23:27:35.286 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T23:27:35.286 [Cloud] Dequeued cloud request. 2026-05-21T23:27:35.286 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T23:27:35.780 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T23:27:35.780 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T23:27:35.780 [Cloud] Queued cloud request. 2026-05-21T23:27:35.780 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T23:27:35.780 [Cloud] Dequeued cloud request. 2026-05-21T23:27:35.780 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T23:27:36.005 [Cloud] End of cloud request. 2026-05-21T23:27:36.005 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv2\backup_ro\android.php. status=0x40030000, statusex=0x200200, threatid=0x80000000, sigseq=0x55521838dea 2026-05-21T23:27:36.021 [Cloud] End of cloud request. 2026-05-21T23:27:36.299 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-21T23:27:36.299 [Cloud] Start of cloud request. Passive mode: 0 2026-05-21T23:27:36.299 [Cloud] Queued cloud request. 2026-05-21T23:27:36.299 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-21T23:27:36.299 [Cloud] Dequeued cloud request. 2026-05-21T23:27:36.299 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-21T23:27:36.514 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T23:27:36.545 [Cloud] End of cloud request. 2026-05-21T23:27:37.049 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-21T23:41:28.547 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 478560, Count: 42136, MaxTime: 1515, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-windows-x64-7.3.5-0-VC15-installer.exe, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 3387, Count: 57, MaxTime: 593, MaxTimeFile: \Device\HarddiskVolume2\win-acme\wacs.exe, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 561, Count: 3, MaxTime: 546, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: SQLyogCommunity.exe, Pid: 3468, TotalTime: 417, Count: 32, MaxTime: 187, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 215, Count: 14, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 68% 2026-05-21T23:41:28.547 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 166, Count: 30, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_99d_1.MAD, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: FileZilla Server Interface.exe, Pid: 5088, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.14393.9140_none_f677bba0f2512d32\GdiPlus.dll, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\97491A74-085C-41D1-BAAD-22B8ED280865\pdc.xml, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 4868, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\2\sa.Microsoft.MicrosoftPrinttoPDFSettings_8wekyb3d8bbwe_1__.Public.InstallAgent.dat, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 2928, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f502d5c4-82d4-4e10-8bed-4a1f68a1eac9.tmp, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70e92342-5839-4a7e-933e-ac59f03e94c6.tmp, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 5940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a1426-9851-47c0-9d86-36e6279fffff.tmp, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 3932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21854cb4-27cf-439a-91b3-058c05125eca.tmp, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 5636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\441e07f5-0a30-459d-96f6-a9a53b4ff546.tmp, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 2952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bbbb13-1e56-4a2a-9901-1627f33db540.tmp, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d85ba49-a562-494a-b50f-401e4f2d20e9.tmp, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebc668a5-d965-47a6-99fb-a9876ffe31dd.tmp, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 6008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\780b5e8f-4d1f-4bf4-a2ce-da03ad953b66.tmp, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 2804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6dca9142-dfb0-4a99-aa63-bf3262f5c7c1.tmp, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\485638f5-3563-4ddc-aa66-60697e1788de.tmp, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbf61768-e842-4cb5-8d52-3f9683b6ac2e.tmp, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 5068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2516ced8-779b-44e2-a753-43bec699cb97.tmp, EstimatedImpact: 0% 2026-05-21T23:41:28.547 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9e1bbe2-a4ab-498e-a1eb-0a3303e40684.tmp, EstimatedImpact: 0% 2026-05-21T23:41:36.532 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-21T23:56:41.538 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T00:11:46.538 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T00:26:51.532 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T00:36:01.851 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:D16690FB-9D0C-4C54-8AA5-B7CB98015179, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-22T00:36:01.851 Scheduled scan with Id D16690FB-9D0C-4C54-8AA5-B7CB98015179 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-22T00:36:01.851 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-22T00:36:01.851 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-22T00:36:01.851 [SFC] System file cache build is not needed (already completed) 2026-05-22T00:36:17.345 Engine:Triggered AR EMS scan 2026-05-22T00:36:17.345 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.376 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.392 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.407 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.423 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.438 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.454 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.454 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.485 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.485 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.501 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.532 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.548 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.548 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.563 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.595 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.595 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.610 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.642 Engine:EMS scan for process: explorer pid: 5208, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-22T00:36:17.673 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 BEGIN BM telemetry GUID:{A8BB7DAF-7087-0DC7-F9E4-2BC6884989AD} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5208 ProcessCreationTime:134237358974803704 SessionID:2 CreationTime:05-22-2026 00:36:17 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-22T00:36:18.688 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T00:36:18.688 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T00:36:18.688 [Cloud] Queued cloud request. 2026-05-22T00:36:18.688 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T00:36:18.688 [Cloud] Dequeued cloud request. 2026-05-22T00:36:18.688 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T00:36:18.907 [Cloud] End of cloud request. 2026-05-22T00:36:19.418 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T00:36:58.681 QuickScan:ScanID:D16690FB-9D0C-4C54-8AA5-B7CB98015179: Quick scan finished with error 0 2026-05-22T00:36:58.681 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-22T00:36:59.187 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-22T00:36:59.187 [RTP] Duplicating the current plugin configuration object... 2026-05-22T00:36:59.187 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-22T00:36:59.187 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-22T00:36:59.187 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-22T00:36:59.187 [RTP] No config change detected. Not updating plugin configuration. 2026-05-22T00:36:59.187 [RTP] No config changes found. No configuration switch. 2026-05-22T00:36:59.187 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-22T00:41:56.532 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T00:57:01.531 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T01:12:06.537 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T01:15:44.897 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #91864, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T01:27:11.524 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T01:41:28.562 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 509282, Count: 44340, MaxTime: 1515, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-windows-x64-7.3.5-0-VC15-installer.exe, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 3387, Count: 57, MaxTime: 593, MaxTimeFile: \Device\HarddiskVolume2\win-acme\wacs.exe, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 561, Count: 3, MaxTime: 546, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: SQLyogCommunity.exe, Pid: 3468, TotalTime: 417, Count: 32, MaxTime: 187, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 215, Count: 14, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 68% 2026-05-22T01:41:28.562 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 166, Count: 30, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_99d_1.MAD, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: FileZilla Server Interface.exe, Pid: 5088, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.14393.9140_none_f677bba0f2512d32\GdiPlus.dll, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\97491A74-085C-41D1-BAAD-22B8ED280865\pdc.xml, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 4868, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\2\sa.Microsoft.MicrosoftPrinttoPDFSettings_8wekyb3d8bbwe_1__.Public.InstallAgent.dat, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 2928, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f502d5c4-82d4-4e10-8bed-4a1f68a1eac9.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70e92342-5839-4a7e-933e-ac59f03e94c6.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 6008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\780b5e8f-4d1f-4bf4-a2ce-da03ad953b66.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 5940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a1426-9851-47c0-9d86-36e6279fffff.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9e1bbe2-a4ab-498e-a1eb-0a3303e40684.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 3932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21854cb4-27cf-439a-91b3-058c05125eca.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 5636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\441e07f5-0a30-459d-96f6-a9a53b4ff546.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d85ba49-a562-494a-b50f-401e4f2d20e9.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebc668a5-d965-47a6-99fb-a9876ffe31dd.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 5068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2516ced8-779b-44e2-a753-43bec699cb97.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 2952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bbbb13-1e56-4a2a-9901-1627f33db540.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 2804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6dca9142-dfb0-4a99-aa63-bf3262f5c7c1.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 2744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d40647bd-1b86-418d-9129-11576a4c1c88.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\485638f5-3563-4ddc-aa66-60697e1788de.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 1656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0395a9f7-fc90-45da-b4af-8dde6253adcc.tmp, EstimatedImpact: 0% 2026-05-22T01:41:28.562 ProcessImageName: updater.exe, Pid: 136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbf61768-e842-4cb5-8d52-3f9683b6ac2e.tmp, EstimatedImpact: 0% 2026-05-22T01:42:16.535 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T01:48:49.484 Engine:Setting original file name "BM_IsPotentialSideLoad" for "c:\xampp\perl\vendor\lib\auto\dbd\sqlite\sqlite.dll", hr=0x0 Internal signature match:subtype=Lowfi, sigseq=0x0006D3BD7CBBB9C8, sigsha=e39312c3efbecd0bf40a661fdf236a11f9813e9e, cached=false, source=2, resourceid=0xbee1ce86 2026-05-22T01:48:49.531 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T01:48:49.531 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T01:48:49.531 [Cloud] Queued cloud request. 2026-05-22T01:48:49.531 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T01:48:49.531 [Cloud] Dequeued cloud request. 2026-05-22T01:48:49.531 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T01:48:49.861 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\aa9e7e7ca7edb13438bb4621d4cd20fc44906202 Dynamic Signature Compilation Timestamp:05-22-2026 01:48:23 Persistence Type:Duration Time remaining:150196224 2026-05-22T01:48:49.861 RTSD:RTSD recieved, rescanning impacted resources 2026-05-22T01:48:49.861 [Cloud] End of cloud request. 2026-05-22T01:48:50.370 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T01:57:21.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T02:12:26.529 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00002029EE42DDC7, sigsha=f5c3aee0a4850e373f8e84843c1322a2b76a074b, cached=false, source=2, resourceid=0x01b7167b Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0x01b7167b BEGIN BM telemetry GUID:{A6BF7AC1-FF24-D458-8064-F95E398B026F} SignatureID:55745797457393 SigSha:ddb4adac2aca8c16554162e265921a50721a9574 ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-22-2026 02:15:21 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry BEGIN BM telemetry GUID:{2D8AFDE5-B399-AFD5-B6AF-B507D074F261} SignatureID:55745256291477 SigSha:7106c73e392948e275190c3cff85a5401a98a8bc ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-22-2026 02:15:21 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry Internal signature match:subtype=Lowfi, sigseq=0x00002029EE42DDC7, sigsha=f5c3aee0a4850e373f8e84843c1322a2b76a074b, cached=false, source=2, resourceid=0x126f5086 2026-05-22T02:15:22.019 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T02:15:22.019 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T02:15:22.019 [Cloud] Queued cloud request. 2026-05-22T02:15:22.019 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T02:15:22.019 [Cloud] Dequeued cloud request. 2026-05-22T02:15:22.035 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T02:15:22.035 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T02:15:22.035 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T02:15:22.035 [Cloud] Queued cloud request. 2026-05-22T02:15:22.035 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T02:15:22.035 [Cloud] Dequeued cloud request. 2026-05-22T02:15:22.035 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T02:15:22.286 [Cloud] End of cloud request. 2026-05-22T02:15:22.302 [Cloud] End of cloud request. 2026-05-22T02:15:22.801 [NRI] Successfully updated NIS service with platform settings for enforcement level Log Internal signature match:subtype=Lowfi, sigseq=0x00002029EE42DDC7, sigsha=f5c3aee0a4850e373f8e84843c1322a2b76a074b, cached=false, source=2, resourceid=0xd564ae03 Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0xd564ae03 Internal signature match:subtype=Lowfi, sigseq=0x00002029EE42DDC7, sigsha=f5c3aee0a4850e373f8e84843c1322a2b76a074b, cached=false, source=2, resourceid=0x9ac1283b Internal signature match:subtype=Lowfi, sigseq=0x00002029EE42DDC7, sigsha=f5c3aee0a4850e373f8e84843c1322a2b76a074b, cached=false, source=2, resourceid=0x051c5fdc Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0x051c5fdc Internal signature match:subtype=Lowfi, sigseq=0x00002029EE42DDC7, sigsha=f5c3aee0a4850e373f8e84843c1322a2b76a074b, cached=false, source=2, resourceid=0x75591a22 2026-05-22T02:27:31.535 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T02:42:36.529 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T02:57:41.524 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T03:12:46.523 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T03:27:51.533 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T03:41:28.562 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 686530, Count: 57655, MaxTime: 1515, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-windows-x64-7.3.5-0-VC15-installer.exe, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 3387, Count: 57, MaxTime: 593, MaxTimeFile: \Device\HarddiskVolume2\win-acme\wacs.exe, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 561, Count: 3, MaxTime: 546, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: SQLyogCommunity.exe, Pid: 3468, TotalTime: 417, Count: 32, MaxTime: 187, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 215, Count: 14, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 68% 2026-05-22T03:41:28.562 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 166, Count: 30, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_99d_1.MAD, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: FileZilla Server Interface.exe, Pid: 5088, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.14393.9140_none_f677bba0f2512d32\GdiPlus.dll, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\97491A74-085C-41D1-BAAD-22B8ED280865\pdc.xml, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 4868, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 2928, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\2\sa.Microsoft.MicrosoftPrinttoPDFSettings_8wekyb3d8bbwe_1__.Public.InstallAgent.dat, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f502d5c4-82d4-4e10-8bed-4a1f68a1eac9.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70e92342-5839-4a7e-933e-ac59f03e94c6.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 6008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\780b5e8f-4d1f-4bf4-a2ce-da03ad953b66.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 5940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a1426-9851-47c0-9d86-36e6279fffff.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9e1bbe2-a4ab-498e-a1eb-0a3303e40684.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 3932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21854cb4-27cf-439a-91b3-058c05125eca.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d85ba49-a562-494a-b50f-401e4f2d20e9.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 5636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\441e07f5-0a30-459d-96f6-a9a53b4ff546.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 2952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bbbb13-1e56-4a2a-9901-1627f33db540.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 5600, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\690e4fa4-bc97-4f58-9e38-79db0227aa71.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebc668a5-d965-47a6-99fb-a9876ffe31dd.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 2804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6dca9142-dfb0-4a99-aa63-bf3262f5c7c1.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 2744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d40647bd-1b86-418d-9129-11576a4c1c88.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\485638f5-3563-4ddc-aa66-60697e1788de.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 1656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0395a9f7-fc90-45da-b4af-8dde6253adcc.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 1648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9dd9e946-eade-4c03-b288-b632d10337a4.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 5068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2516ced8-779b-44e2-a753-43bec699cb97.tmp, EstimatedImpact: 0% 2026-05-22T03:41:28.562 ProcessImageName: updater.exe, Pid: 136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbf61768-e842-4cb5-8d52-3f9683b6ac2e.tmp, EstimatedImpact: 0% 2026-05-22T03:42:56.533 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T03:58:01.532 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T04:13:06.532 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T04:15:33.421 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98289, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T04:16:02.598 ReportLowfi(c:\program files (x86)\google\chrome\application\148.0.7778.179\installer\chrmstp.exe, 0x437a0835) from 0x0006b6bd6566d2d9 Internal signature match:subtype=Lowfi, sigseq=0x000005550240CBF2, sigsha=e39a25e9b19899abbd79ec872fd8aeabe27e140d, cached=false, source=0, resourceid=0xad1657f5 BEGIN BM telemetry GUID:{8CC174F8-A30A-11DC-A459-829A6FF73308} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5208 ProcessCreationTime:134237358974803704 SessionID:2 CreationTime:05-22-2026 04:16:04 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-22T04:16:04.627 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T04:16:04.627 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T04:16:04.627 [Cloud] Queued cloud request. 2026-05-22T04:16:04.627 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T04:16:04.627 [Cloud] Dequeued cloud request. 2026-05-22T04:16:04.627 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T04:16:05.005 [Cloud] End of cloud request. 2026-05-22T04:16:05.518 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T04:16:14.441 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98629, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T04:28:11.532 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T04:43:16.532 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T04:58:21.531 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T05:13:26.536 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T05:28:31.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T05:41:28.561 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 838982, Count: 68852, MaxTime: 1515, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-windows-x64-7.3.5-0-VC15-installer.exe, EstimatedImpact: 1% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 5460, TotalTime: 7603, Count: 14, MaxTime: 4968, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping5460_1697751353\148.0.7778.179_chrome_installer_uncompressed.exe, EstimatedImpact: 17% 2026-05-22T05:41:28.561 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 3387, Count: 57, MaxTime: 593, MaxTimeFile: \Device\HarddiskVolume2\win-acme\wacs.exe, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 561, Count: 3, MaxTime: 546, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: SQLyogCommunity.exe, Pid: 3468, TotalTime: 417, Count: 32, MaxTime: 187, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 215, Count: 14, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 68% 2026-05-22T05:41:28.561 ProcessImageName: 148.0.7778.179_chrome_installer_uncompressed.exe, Pid: 2028, TotalTime: 187, Count: 3, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping5460_1697751353\CR_2155A.tmp\setup.exe, EstimatedImpact: 100% 2026-05-22T05:41:28.561 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 166, Count: 34, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_99d_1.MAD, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: setup.exe, Pid: 4816, TotalTime: 138, Count: 8, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 63% 2026-05-22T05:41:28.561 ProcessImageName: FileZilla Server Interface.exe, Pid: 5088, TotalTime: 106, Count: 10, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.14393.9140_none_f677bba0f2512d32\GdiPlus.dll, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\97491A74-085C-41D1-BAAD-22B8ED280865\pdc.xml, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\2\sa.Microsoft.MicrosoftPrinttoPDFSettings_8wekyb3d8bbwe_1__.Public.InstallAgent.dat, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 4868, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 2928, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f502d5c4-82d4-4e10-8bed-4a1f68a1eac9.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70e92342-5839-4a7e-933e-ac59f03e94c6.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 5940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a1426-9851-47c0-9d86-36e6279fffff.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 1648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9dd9e946-eade-4c03-b288-b632d10337a4.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 4812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_5460_761792097\decoded_xz, EstimatedImpact: 3% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9e1bbe2-a4ab-498e-a1eb-0a3303e40684.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 3932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21854cb4-27cf-439a-91b3-058c05125eca.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 5636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\441e07f5-0a30-459d-96f6-a9a53b4ff546.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 2952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bbbb13-1e56-4a2a-9901-1627f33db540.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 5600, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\690e4fa4-bc97-4f58-9e38-79db0227aa71.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d85ba49-a562-494a-b50f-401e4f2d20e9.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 6008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\780b5e8f-4d1f-4bf4-a2ce-da03ad953b66.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebc668a5-d965-47a6-99fb-a9876ffe31dd.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 2804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6dca9142-dfb0-4a99-aa63-bf3262f5c7c1.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 2744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d40647bd-1b86-418d-9129-11576a4c1c88.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbf61768-e842-4cb5-8d52-3f9683b6ac2e.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\485638f5-3563-4ddc-aa66-60697e1788de.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 1656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0395a9f7-fc90-45da-b4af-8dde6253adcc.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 5068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2516ced8-779b-44e2-a753-43bec699cb97.tmp, EstimatedImpact: 0% 2026-05-22T05:41:28.561 ProcessImageName: updater.exe, Pid: 3460, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-22T05:43:36.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T05:58:41.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T06:13:46.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T06:15:33.605 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103205, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T06:28:51.523 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T06:43:56.534 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T06:59:01.528 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T07:14:06.528 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000B1E79AAAACC6, sigsha=36046c13f19c561aedb654f634ba085d6a607ced, cached=false, source=2, resourceid=0x591a8519 Internal signature match:subtype=Lowfi, sigseq=0x000084E7E01AFFB6, sigsha=7a815adb9b9e14267419c8f39edc71f49b2651f9, cached=false, source=2, resourceid=0x591a8519 Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0x591a8519 BEGIN BM telemetry GUID:{69CB1BD5-5CA3-A50E-2F11-8255B0AE8303} SignatureID:55745797457393 SigSha:ddb4adac2aca8c16554162e265921a50721a9574 ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-22-2026 07:19:36 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry BEGIN BM telemetry GUID:{6E508A56-6D72-4D1D-60B8-25F2432C5276} SignatureID:55745256291477 SigSha:7106c73e392948e275190c3cff85a5401a98a8bc ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-22-2026 07:19:36 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-22T07:19:36.153 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\Temp\radio.tar\radio\var\www\sites\kptv.ro\public_html\radio\ro\music\187120171213-u2p.php. status=0x40050000, statusex=0x0, threatid=0x80000000, sigseq=0xb1e79aaaacc6 2026-05-22T07:19:37.144 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T07:19:37.144 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T07:19:37.144 [Cloud] Queued cloud request. 2026-05-22T07:19:37.144 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T07:19:37.144 [Cloud] Dequeued cloud request. 2026-05-22T07:19:37.144 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T07:19:37.160 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T07:19:37.160 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T07:19:37.160 [Cloud] Queued cloud request. 2026-05-22T07:19:37.160 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T07:19:37.160 [Cloud] Dequeued cloud request. 2026-05-22T07:19:37.160 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T07:19:37.394 [Cloud] End of cloud request. 2026-05-22T07:19:37.909 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T07:19:38.282 [Cloud] End of cloud request. 2026-05-22T07:19:38.795 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T07:29:11.532 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T07:41:16.521 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-22T07:41:16.552 Job Notification: New process added to job (3200) 2026-05-22T07:41:16.552 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-22T07:41:16.552 Job Notification: New process added to job (3212) 2026-05-22T07:41:16.552 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3200] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3212]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-22T07:41:16.601 Job Notification: New process added to job (2180) 2026-05-22T07:41:16.601 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-22T07:41:16.601 Job Notification: New process added to job (3988) 2026-05-22T07:41:16.617 Aggressive catchup quick scan threshold: 255147678812 / 25920000000000 2026-05-22T07:41:16.617 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:2180] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3988]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-22T07:41:17.117 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-22T07:41:17.179 [RTP] Duplicating the current plugin configuration object... 2026-05-22T07:41:17.179 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-22T07:41:17.179 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-22T07:41:17.179 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-22T07:41:17.179 [RTP] No config change detected. Not updating plugin configuration. 2026-05-22T07:41:17.179 [RTP] No config changes found. No configuration switch. 2026-05-22T07:41:17.179 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-22T07:41:17.226 Job Notification: New process added to job (2644) 2026-05-22T07:41:17.226 Task(GetDeviceTicket -AccessKey 5D0CB459-09F0-9E9A-64BE-ED97D0D6447F ) launched as network service 2026-05-22T07:41:17.731 Job Notification: Process exited from job (2644) 2026-05-22T07:41:18.849 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T07:41:18.849 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T07:41:18.849 [Cloud] Queued cloud request. 2026-05-22T07:41:18.849 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T07:41:18.849 [Cloud] Dequeued cloud request. 2026-05-22T07:41:18.849 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T07:41:18.849 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-22T07:41:18.849 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T07:41:18.849 [Cloud] Queued cloud request. 2026-05-22T07:41:18.849 [Cloud] Dequeued cloud request. 2026-05-22T07:41:18.849 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T07:41:19.066 [Cloud] End of cloud request. 2026-05-22T07:41:19.082 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-22T07:41:19.082 [Cloud] End of cloud request. 2026-05-22T07:41:19.371 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T07:41:28.566 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1138558, Count: 90048, MaxTime: 1515, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-windows-x64-7.3.5-0-VC15-installer.exe, EstimatedImpact: 1% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 5460, TotalTime: 7603, Count: 14, MaxTime: 4968, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping5460_1697751353\148.0.7778.179_chrome_installer_uncompressed.exe, EstimatedImpact: 17% 2026-05-22T07:41:28.566 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 3402, Count: 59, MaxTime: 593, MaxTimeFile: \Device\HarddiskVolume2\win-acme\wacs.exe, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 561, Count: 3, MaxTime: 546, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: SQLyogCommunity.exe, Pid: 3468, TotalTime: 417, Count: 32, MaxTime: 187, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 215, Count: 14, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 68% 2026-05-22T07:41:28.566 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 196, Count: 36, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_99d_1.MAD, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: 148.0.7778.179_chrome_installer_uncompressed.exe, Pid: 2028, TotalTime: 187, Count: 3, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping5460_1697751353\CR_2155A.tmp\setup.exe, EstimatedImpact: 100% 2026-05-22T07:41:28.566 ProcessImageName: setup.exe, Pid: 4816, TotalTime: 138, Count: 8, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 63% 2026-05-22T07:41:28.566 ProcessImageName: FileZilla Server Interface.exe, Pid: 5088, TotalTime: 106, Count: 10, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.14393.9140_none_f677bba0f2512d32\GdiPlus.dll, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\97491A74-085C-41D1-BAAD-22B8ED280865\pdc.xml, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\2\sa.Microsoft.MicrosoftPrinttoPDFSettings_8wekyb3d8bbwe_1__.Public.InstallAgent.dat, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 4868, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 2928, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f502d5c4-82d4-4e10-8bed-4a1f68a1eac9.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70e92342-5839-4a7e-933e-ac59f03e94c6.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 6008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\780b5e8f-4d1f-4bf4-a2ce-da03ad953b66.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 5940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\255a1426-9851-47c0-9d86-36e6279fffff.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 1648, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9dd9e946-eade-4c03-b288-b632d10337a4.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 4812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_5460_761792097\decoded_xz, EstimatedImpact: 3% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9e1bbe2-a4ab-498e-a1eb-0a3303e40684.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 4408, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce072c56-4fe2-4578-ac45-0680878a6420.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 5600, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\690e4fa4-bc97-4f58-9e38-79db0227aa71.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 5664, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ad468d84-57e5-4739-aed2-c8fbceedb307.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 5636, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\441e07f5-0a30-459d-96f6-a9a53b4ff546.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 3932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21854cb4-27cf-439a-91b3-058c05125eca.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d85ba49-a562-494a-b50f-401e4f2d20e9.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ebc668a5-d965-47a6-99fb-a9876ffe31dd.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 2952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bbbb13-1e56-4a2a-9901-1627f33db540.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 2804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6dca9142-dfb0-4a99-aa63-bf3262f5c7c1.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 2744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d40647bd-1b86-418d-9129-11576a4c1c88.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbf61768-e842-4cb5-8d52-3f9683b6ac2e.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\485638f5-3563-4ddc-aa66-60697e1788de.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 1656, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0395a9f7-fc90-45da-b4af-8dde6253adcc.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 5068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2516ced8-779b-44e2-a753-43bec699cb97.tmp, EstimatedImpact: 0% 2026-05-22T07:41:28.566 ProcessImageName: updater.exe, Pid: 3460, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-22T07:42:37.489 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\8D26C0BD-3DF3-4136-93B7-6CD55D6E21B3a00.1dce9be8ea99ad0 2026-05-22T07:42:37.552 Verifying engine and signature files (source: 0) ... 2026-05-22T07:42:37.552 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0611161E-7871-482F-8843-F188792E421E}\mpengine.dll] due to PPL. 2026-05-22T07:42:37.552 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0611161E-7871-482F-8843-F188792E421E}\mpasbase.vdm] (file in cache) 2026-05-22T07:42:37.552 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0611161E-7871-482F-8843-F188792E421E}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-22T07:42:37.552 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0611161E-7871-482F-8843-F188792E421E}\mpasdlta.vdm] 2026-05-22T07:42:37.552 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0611161E-7871-482F-8843-F188792E421E}\mpavbase.vdm] (file in cache) 2026-05-22T07:42:37.552 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0611161E-7871-482F-8843-F188792E421E}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-22T07:42:37.567 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0611161E-7871-482F-8843-F188792E421E}\mpavdlta.vdm] 2026-05-22T07:42:37.757 [Engine] IsHybridMode: 0 2026-05-22T07:42:37.757 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-05-22T07:42:37.851 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-E2389811183D1294EB950844D83CDC260007C90A.bin): 0x00000002 2026-05-22T07:42:37.866 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-E2389811183D1294EB950844D83CDC260007C90A.bin) 2026-05-22T07:42:37.866 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-22T07:42:37.866 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-22T07:42:37.866 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-22T07:42:37.866 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-22T07:42:46.042 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-22T07:42:46.042 [AutoExclusion] Applied roles from cache. 2026-05-22T07:42:46.042 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-22T07:42:46.057 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB11965810, lRefCount: 5, hr=0 2026-05-22T07:42:46.057 [Engine] New active engine 00007FFB12AE5810 replacing engine 00007FFB11965810. Number of active engines: 2 2026-05-22T07:42:46.073 EngineInit:Global ASOC is enabled 2026-05-22T07:42:46.073 EngineInit:ASOO is enabled for developer volumes 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-22T07:42:46.088 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-22T07:42:46.104 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-22T07:42:46.104 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-22T07:42:46.104 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-22T07:42:46.104 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-22T07:42:46.104 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-22T07:42:46.120 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-22T07:42:46.120 [Plugin] Initializing RTP plugin state... 2026-05-22T07:42:46.120 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-22T07:42:46.120 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎21‎-‎2026 09:41:28 Last Perf:‎05‎-‎21‎-‎2026 09:41:28 First RTP Scan:‎05‎-‎21‎-‎2026 09:41:28 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:10316 Misses:93614 BM Queue:0,120,0 Proc:0,52,0 File:0,120,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:106606 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:578070986 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:27595 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:106130 TotalHits:1039241 InstanceCacheInserts:22571 InstanceCacheUpdates:0 InstanceCacheDeletes:33 InstanceCacheHits:411 InstanceCacheMisses:106357 InstanceCacheOverflows:13935 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:3ms (911/255) Success: 255, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-22T07:42:46.120 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0611161E-7871-482F-8843-F188792E421E} 2026-05-22T07:42:46.120 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{094D9566-9D28-4880-A445-5B8D05AAA20D} removed 2026-05-22T07:42:46.120 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E6264ED3-8BB6-4861-9CC1-D388AF590EB6}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E6264ED3-8BB6-4861-9CC1-D388AF590EB6}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-22T07:42:46.120 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-22T07:42:46.120 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-22T07:42:46.120 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-22T07:42:46.120 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-22T07:42:46.120 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-22T07:42:46.120 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-22-2026 07:42:46 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-22-2026 07:42:46 2026-05-22T07:42:46.120 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-22T07:42:46.120 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-22T07:42:46.120 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T07:42:46.120 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-22T07:42:46.120 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-22T07:42:46.120 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-22T07:42:46.120 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-22T07:42:46.120 MdCoreSvc is supported in this platform and OS 2026-05-22T07:42:46.120 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-22T07:42:46.120 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 05-22-2026 07:42:46 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.40.0 AV Signature Version: 1.451.40.0 ************************************************************ 2026-05-22T07:42:46.120 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-22T07:42:46.120 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\8D26C0BD-3DF3-4136-93B7-6CD55D6E21B3a00.1dce9be8ea99ad0 2026-05-22T07:42:46.135 Process scan (postsignatureupdatescan) started. 2026-05-22T07:42:46.182 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-22T07:42:46.182 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-22T07:42:46.448 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-22T07:42:46.448 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-22T07:42:46.448 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-22T07:42:46.448 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-22T07:42:46.448 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). Signature updated via MicrosoftUpdateServer on 05-22-2026 07:42:46 ************************************************************ 2026-05-22T07:42:46.448 [Engine] Engine 00007FFB11965810 no longer in use. Number of active engines: 1 2026-05-22T07:42:46.448 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-22T07:42:46.448 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-22T07:42:46.463 Job Notification: Process exited from job (3200) 2026-05-22T07:42:46.463 Job Notification: Process exited from job (2180) 2026-05-22T07:42:46.463 Job Notification: Process exited from job (3212) 2026-05-22T07:42:46.479 Job Notification: Process exited from job (3988) 2026-05-22T07:42:46.620 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-22T07:42:46.620 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-22T07:42:46.620 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-22T07:42:47.354 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1139218, Count: 90194, MaxTime: 1515, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-windows-x64-7.3.5-0-VC15-installer.exe, EstimatedImpact: 1% 2026-05-22T07:42:47.354 ProcessImageName: updater.exe, Pid: 5460, TotalTime: 7603, Count: 14, MaxTime: 4968, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping5460_1697751353\148.0.7778.179_chrome_installer_uncompressed.exe, EstimatedImpact: 17% 2026-05-22T07:42:47.354 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 3448, Count: 60, MaxTime: 593, MaxTimeFile: \Device\HarddiskVolume2\win-acme\wacs.exe, EstimatedImpact: 0% 2026-05-22T07:42:47.354 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 561, Count: 3, MaxTime: 546, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 0% 2026-05-22T07:42:47.354 ProcessImageName: SQLyogCommunity.exe, Pid: 3468, TotalTime: 417, Count: 32, MaxTime: 187, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-22T07:42:47.354 ProcessImageName: xampp-control.exe, Pid: 4564, TotalTime: 215, Count: 14, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 68% 2026-05-22T07:42:47.354 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 196, Count: 36, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_99d_1.MAD, EstimatedImpact: 0% 2026-05-22T07:42:47.354 ProcessImageName: 148.0.7778.179_chrome_installer_uncompressed.exe, Pid: 2028, TotalTime: 187, Count: 3, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping5460_1697751353\CR_2155A.tmp\setup.exe, EstimatedImpact: 100% 2026-05-22T07:42:47.354 ProcessImageName: setup.exe, Pid: 4816, TotalTime: 138, Count: 8, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 63% 2026-05-22T07:42:47.354 ProcessImageName: FileZilla Server Interface.exe, Pid: 5088, TotalTime: 106, Count: 10, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.14393.9140_none_f677bba0f2512d32\GdiPlus.dll, EstimatedImpact: 0% 2026-05-22T07:42:47.354 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\97491A74-085C-41D1-BAAD-22B8ED280865\pdc.xml, EstimatedImpact: 0% 2026-05-22T07:42:47.354 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\2\sa.Microsoft.MicrosoftPrinttoPDFSettings_8wekyb3d8bbwe_1__.Public.InstallAgent.dat, EstimatedImpact: 0% 2026-05-22T07:42:47.354 ProcessImageName: updater.exe, Pid: 4868, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T07:42:47.354 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-22T07:42:47.354 ProcessImageName: updater.exe, Pid: 2928, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T07:42:47.354 ProcessImageName: updater.exe, Pid: 2420, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f502d5c4-82d4-4e10-8bed-4a1f68a1eac9.tmp, EstimatedImpact: 0% 2026-05-22T07:42:47.432 [Engine] RSIG_UNLOADENGINE, 00007FFB11965810, err=0x0 2026-05-22T07:42:47.448 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E6264ED3-8BB6-4861-9CC1-D388AF590EB6} removed 2026-05-22T07:42:52.354 Process scan (postsignatureupdatescan) completed. 2026-05-22T07:44:16.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T07:47:46.074 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-22T07:59:21.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T08:14:26.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T08:15:34.579 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #107498, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T08:15:34.595 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #107500, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T08:15:44.593 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #107504, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T08:15:44.609 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #107506, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T08:29:31.526 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T08:44:36.526 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T08:59:41.536 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T09:14:46.525 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T09:15:32.977 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #113844, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T09:15:32.977 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #113846, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T09:15:42.981 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #113869, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T09:15:42.996 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #113871, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T09:15:43.137 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #113875, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T09:15:43.152 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #113877, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T09:29:51.528 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T09:42:46.071 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 129102, Count: 14367, MaxTime: 343, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\plugins\wp-smushit\app\assets\js\smush-admin.min.js, EstimatedImpact: 1% 2026-05-22T09:42:46.071 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 77, Count: 3, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-22T09:42:46.071 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-22T09:42:46.071 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9379fee2-0194-410e-a4dd-01764e386572.tmp, EstimatedImpact: 0% 2026-05-22T09:42:46.071 ProcessImageName: updater.exe, Pid: 3880, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-22T09:44:56.535 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-05-22T09:57:53.305 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T09:57:53.305 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T09:57:53.305 [Cloud] Queued cloud request. 2026-05-22T09:57:53.305 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T09:57:53.305 [Cloud] Dequeued cloud request. 2026-05-22T09:57:53.305 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T09:57:53.724 [Cloud] End of cloud request. 2026-05-22T09:57:53.740 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-05-22T09:57:53.740 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-22T09:57:53.755 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE BEGIN BM telemetry GUID:{4EC9EE0F-9E15-3EDE-D8B4-389C13475FA2} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:1120 ProcessCreationTime:134239174732835472 SessionID:0 CreationTime:05-22-2026 09:57:53 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-05-22T09:57:53.787 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-22T09:57:53.818 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-22T09:57:54.255 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T09:57:54.302 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T09:57:54.302 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T09:57:54.302 [Cloud] Queued cloud request. 2026-05-22T09:57:54.302 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T09:57:54.302 [Cloud] Dequeued cloud request. 2026-05-22T09:57:54.302 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T09:57:54.396 [Cloud] End of cloud request. 2026-05-22T09:57:54.912 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T09:57:56.005 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T09:57:56.005 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T09:57:56.005 [Cloud] Queued cloud request. 2026-05-22T09:57:56.005 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T09:57:56.005 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-05-22T09:57:56.005 [Cloud] Dequeued cloud request. 2026-05-22T09:57:56.005 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T09:57:56.005 [Cloud] Queued cloud request. 2026-05-22T09:57:56.005 [Cloud] Dequeued cloud request. 2026-05-22T09:57:56.005 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T09:57:56.005 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T09:57:56.177 [Cloud] End of cloud request. 2026-05-22T09:57:56.209 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-22T09:57:56.209 [Cloud] End of cloud request. 2026-05-22T09:57:56.684 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T10:00:01.520 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T10:15:06.524 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T10:15:34.689 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #118412, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:15:34.704 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #118414, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:15:44.697 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #118427, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:15:44.713 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #118430, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 BEGIN BM telemetry GUID:{3FE2B02E-7964-C320-E107-B9E77624314E} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5208 ProcessCreationTime:134237358974803704 SessionID:2 CreationTime:05-22-2026 10:20:46 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-22T10:20:46.962 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T10:20:46.962 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T10:20:46.962 [Cloud] Queued cloud request. 2026-05-22T10:20:46.962 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T10:20:46.962 [Cloud] Dequeued cloud request. 2026-05-22T10:20:46.962 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T10:20:47.181 [Cloud] End of cloud request. 2026-05-22T10:20:47.681 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T10:20:51.806 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\Prs5FA6.tmp. Process: \Device\HarddiskVolume2\Windows\System32\rdpclip.exe, Status: 0xc0000001, State: 0, ScanRequest #119165, FileId: 0xb00000001e6fe, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:21:09.793 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #119273, FileId: 0xae00000001ea38, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:21:21.135 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\xampp\tmp\#sqla80_1713_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #119284, FileId: 0xb000000001ea38, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:21:21.135 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\ColumnAttributes.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #119285, FileId: 0xb100000001ea38, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:21:36.392 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #119312, FileId: 0xe000000054a59, Reason: OnOpen, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x120089, FileAttributes:0x20, ScanAttributes:0x8, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:21:36.392 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #119314, FileId: 0xe000000054a59, Reason: OnOpen, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x120089, FileAttributes:0x20, ScanAttributes:0x8, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:21:36.392 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #119315, FileId: 0xe000000054a59, Reason: OnOpen, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x120089, FileAttributes:0x20, ScanAttributes:0x8, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:21:36.392 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #119316, FileId: 0xe000000054a59, Reason: OnOpen, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x120089, FileAttributes:0x20, ScanAttributes:0x8, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:21:36.392 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #119317, FileId: 0xe000000054a59, Reason: OnOpen, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x120089, FileAttributes:0x20, ScanAttributes:0x8, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:21:36.392 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #119318, FileId: 0xe000000054a59, Reason: OnOpen, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x120089, FileAttributes:0x20, ScanAttributes:0x8, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:21:36.392 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #119319, FileId: 0xe000000054a59, Reason: OnOpen, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x120089, FileAttributes:0x20, ScanAttributes:0x8, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:21:36.392 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #119320, FileId: 0xe000000054a59, Reason: OnClose, IoStatusBlockForNewFile: 0x3, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:21:36.392 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\sqlyog.ini. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #119313, FileId: 0xe000000054a59, Reason: OnOpen, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x120089, FileAttributes:0x20, ScanAttributes:0x8, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:21:36.408 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Roaming\SQLyog\connrestore.db-journal. Process: \Device\HarddiskVolume2\Program Files\SQLyog Community\SQLyogCommunity.exe, Status: 0xc0000001, State: 0, ScanRequest #119321, FileId: 0xb300000001ea38, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T10:30:11.526 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T10:34:41.453 Job Notification: Process exited from job (4380) Internal signature match:subtype=Lowfi, sigseq=0x0000B1E79AAAACC6, sigsha=36046c13f19c561aedb654f634ba085d6a607ced, cached=false, source=2, resourceid=0xfa033e96 Internal signature match:subtype=Lowfi, sigseq=0x000084E7E01AFFB6, sigsha=7a815adb9b9e14267419c8f39edc71f49b2651f9, cached=false, source=2, resourceid=0xfa033e96 Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0xfa033e96 BEGIN BM telemetry GUID:{7E75A8EF-BD1C-C595-496C-01789E0DB7B0} SignatureID:55745256291477 SigSha:7106c73e392948e275190c3cff85a5401a98a8bc ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-22-2026 10:41:52 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-22T10:41:52.360 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\Temp\radio.tar\radio\var\www\sites\kptv.ro\public_html\radio\images\articole\918941u2p.php. status=0x40050000, statusex=0x0, threatid=0x80000000, sigseq=0xb1e79aaaacc6 2026-05-22T10:41:52.905 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T10:41:52.905 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T10:41:52.905 [Cloud] Queued cloud request. 2026-05-22T10:41:52.905 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T10:41:52.936 Job Notification: New process added to job (3932) 2026-05-22T10:41:52.936 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 76B0AC58-1839-1CB6-860D-A4450C8F160C) launched 2026-05-22T10:41:52.936 Job Notification: New process added to job (3220) 2026-05-22T10:41:52.952 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3932] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3220]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-22T10:41:52.952 Job Notification: New process added to job (4952) 2026-05-22T10:41:52.967 Job Notification: Process exited from job (3932) 2026-05-22T10:41:52.967 Job Notification: Process exited from job (3220) 2026-05-22T10:41:52.983 [Cloud] Dequeued cloud request. 2026-05-22T10:41:52.983 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T10:41:53.653 [Cloud] End of cloud request. 2026-05-22T10:41:54.165 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T10:45:16.523 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T11:00:21.532 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T11:15:26.533 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T11:15:34.770 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #122578, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T11:15:34.785 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #122580, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T11:15:44.783 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #122586, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T11:15:44.783 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #122587, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T11:15:44.783 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #122589, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T11:17:00.056 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\xampp\tmp\#sqla80_18cb_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #123839, FileId: 0xcde00000001dd44, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T11:17:11.787 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\xampp\tmp\#sqla80_18cb_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #124299, FileId: 0xcdf00000001dd44, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T11:30:31.531 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T11:42:46.085 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 301908, Count: 31235, MaxTime: 359, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\updraft\plugins-old\Ultimate_VC_Addons\assets\min-js\ultimate.min.js, EstimatedImpact: 2% 2026-05-22T11:42:46.085 ProcessImageName: SQLyogCommunity.exe, Pid: 228, TotalTime: 447, Count: 25, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-22T11:42:46.085 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 77, Count: 3, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-22T11:42:46.085 ProcessImageName: wacs.exe, Pid: 1120, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260522.txt, EstimatedImpact: 1% 2026-05-22T11:42:46.085 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-22T11:42:46.085 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 1% 2026-05-22T11:42:46.085 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9379fee2-0194-410e-a4dd-01764e386572.tmp, EstimatedImpact: 0% 2026-05-22T11:42:46.085 ProcessImageName: updater.exe, Pid: 6044, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d198e4e-cce2-48e5-a2c2-735fc709454e.tmp, EstimatedImpact: 0% 2026-05-22T11:42:46.085 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 30, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\top20.ibd, EstimatedImpact: 0% 2026-05-22T11:42:46.085 ProcessImageName: updater.exe, Pid: 3880, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-22T11:42:46.085 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7b773d2-8ced-4677-92e7-66a8d451e72f.tmp, EstimatedImpact: 0% 2026-05-22T11:45:36.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T12:00:41.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T12:15:34.625 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #127707, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T12:15:34.625 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #127709, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T12:15:44.633 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #127732, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T12:15:46.521 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T12:30:51.520 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T12:34:04.750 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\xampp\tmp\#sqla80_1a8f_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #129222, FileId: 0x8900000001eda4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T12:34:05.344 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\xampp\tmp\#sqla80_1a8f_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #129227, FileId: 0x8a00000001eda4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T12:45:56.520 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000BE29E2276550, sigsha=5b16219518db52ae795b67bd0c4b0db42fbaf824, cached=false, source=2, resourceid=0x178199cd Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0x178199cd BEGIN BM telemetry GUID:{3C4CE9CE-20D6-B918-F46E-652C7ED14F2B} SignatureID:55745797457393 SigSha:ddb4adac2aca8c16554162e265921a50721a9574 ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-22-2026 12:49:45 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry BEGIN BM telemetry GUID:{0ECAE4FC-414A-C21D-0827-1E4145558196} SignatureID:55745256291477 SigSha:7106c73e392948e275190c3cff85a5401a98a8bc ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-22-2026 12:49:45 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-22T12:49:45.728 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp2_not used\htdocs\kptv\images\galerie\17082530.php. status=0x40050000, statusex=0x0, threatid=0x80000000, sigseq=0xbe29e2276550 Internal signature match:subtype=Lowfi, sigseq=0x0000BE29E2276550, sigsha=5b16219518db52ae795b67bd0c4b0db42fbaf824, cached=false, source=2, resourceid=0x47391fef 2026-05-22T12:49:45.744 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T12:49:45.744 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T12:49:45.744 [Cloud] Queued cloud request. 2026-05-22T12:49:45.744 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T12:49:45.744 [Cloud] Dequeued cloud request. 2026-05-22T12:49:45.744 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T12:49:46.237 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T12:49:46.237 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T12:49:46.237 [Cloud] Queued cloud request. 2026-05-22T12:49:46.237 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T12:49:46.237 [Cloud] Dequeued cloud request. 2026-05-22T12:49:46.237 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T12:49:46.315 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\03e7ece19ee596268205f6fde500588007bb28d2 Dynamic Signature Compilation Timestamp:05-22-2026 12:49:19 Persistence Type:Duration Time remaining:288000000 2026-05-22T12:49:46.315 [Cloud] End of cloud request. 2026-05-22T12:49:46.315 RTSD:RTSD recieved, rescanning impacted resources Internal signature match:subtype=Lowfi, sigseq=0x00000070DE3CA1F0, sigsha=da39a3ee5e6b4b0d3255bfef95601890afd80709, cached=false, source=2, resourceid=0x47391fef 2026-05-22T12:49:46.331 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp2_not used\htdocs\kptv\images\galerie\17082530.php. status=0x40030000, statusex=0x200, threatid=0x80000000, sigseq=0xbe29e2276550 2026-05-22T12:49:46.456 [Cloud] End of cloud request. 2026-05-22T12:49:46.768 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T12:49:46.768 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T12:49:46.768 [Cloud] Queued cloud request. 2026-05-22T12:49:46.768 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T12:49:46.768 [Cloud] Dequeued cloud request. 2026-05-22T12:49:46.768 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T12:49:46.831 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T12:49:46.862 [Cloud] End of cloud request. 2026-05-22T12:49:47.378 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T13:01:01.535 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T13:15:33.264 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #131781, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T13:15:33.279 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #131783, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T13:15:43.293 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #131790, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T13:15:43.293 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #131792, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T13:16:06.532 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T13:31:11.524 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T13:38:42.275 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\xampp\tmp\#sqla80_1bd1_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #133143, FileId: 0xb100000001eda5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T13:38:43.197 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\#sqla80_1bd1_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #133147, FileId: 0xb200000001eda5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T13:42:46.091 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 929743, Count: 74854, MaxTime: 765, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\updraft\plugins-old\gutenberg\build\block-editor\index.js, EstimatedImpact: 4% 2026-05-22T13:42:46.091 ProcessImageName: SQLyogCommunity.exe, Pid: 228, TotalTime: 447, Count: 25, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-22T13:42:46.091 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 105, Count: 15, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\top20.ibd, EstimatedImpact: 0% 2026-05-22T13:42:46.091 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 77, Count: 3, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-22T13:42:46.091 ProcessImageName: wacs.exe, Pid: 1120, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260522.txt, EstimatedImpact: 1% 2026-05-22T13:42:46.091 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-22T13:42:46.091 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 1% 2026-05-22T13:42:46.091 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9379fee2-0194-410e-a4dd-01764e386572.tmp, EstimatedImpact: 0% 2026-05-22T13:42:46.091 ProcessImageName: updater.exe, Pid: 6044, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d198e4e-cce2-48e5-a2c2-735fc709454e.tmp, EstimatedImpact: 0% 2026-05-22T13:42:46.091 ProcessImageName: updater.exe, Pid: 3880, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-22T13:42:46.091 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0d95f35-f844-4a7b-af4b-84950bf3af0f.tmp, EstimatedImpact: 0% 2026-05-22T13:42:46.091 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\349967c3-ca78-490e-b50a-0dd9ec2e6c77.tmp, EstimatedImpact: 0% 2026-05-22T13:42:46.091 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7b773d2-8ced-4677-92e7-66a8d451e72f.tmp, EstimatedImpact: 0% 2026-05-22T13:46:16.524 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T13:59:35.082 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sqla80_1c5f_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #134375, FileId: 0x9600000001edf4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T13:59:35.598 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sqla80_1c5f_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #134379, FileId: 0x9700000001edf4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T14:01:21.534 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T14:07:29.563 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\#sqla80_1cb1_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #134939, FileId: 0x9b00000001edf4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T14:07:30.047 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sqla80_1cb1_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #134944, FileId: 0x9c00000001edf4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T14:15:34.834 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #135525, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T14:15:34.850 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #135527, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T14:15:44.843 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #135542, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T14:15:44.858 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #135544, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T14:15:45.030 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #135548, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T14:15:45.030 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #135550, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T14:16:26.529 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T14:31:31.526 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0x9a29f2c1 Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0x9a29f2c1 Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0x9a29f2c1 2026-05-22T14:42:49.846 Bm signature throttled:0x000032b3547485f1 2026-05-22T14:42:49.862 Bm signature throttled:0x000032b33432fc95 2026-05-22T14:42:49.862 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T14:42:49.862 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T14:42:49.862 [Cloud] Queued cloud request. 2026-05-22T14:42:49.862 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T14:42:49.862 [Cloud] Dequeued cloud request. 2026-05-22T14:42:49.862 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T14:42:50.392 [Cloud] End of cloud request. 2026-05-22T14:42:50.392 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\Temp\radio.tar\radio\var\www\sites\kptv.ro\public_html\radio\blackberry.php. status=0x40070000, statusex=0x200200, threatid=0x80000000, sigseq=0x20292818f356 Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0x7433287e Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0x7433287e 2026-05-22T14:42:50.407 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T14:42:50.407 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T14:42:50.407 [Cloud] Queued cloud request. 2026-05-22T14:42:50.407 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T14:42:50.407 [Cloud] Dequeued cloud request. 2026-05-22T14:42:50.407 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T14:42:50.895 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T14:42:50.942 [Cloud] End of cloud request. 2026-05-22T14:42:50.942 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\Temp\radio.tar\radio\var\www\sites\kptv.ro\public_html\radio\blackberry.php. status=0x40030000, statusex=0x200200, threatid=0x80000000, sigseq=0x20292818f356 2026-05-22T14:42:51.450 [NRI] Successfully updated NIS service with platform settings for enforcement level Log Internal signature match:subtype=Lowfi, sigseq=0x00001A2985E55790, sigsha=88cbf2a3b3bf6b6a86b3ca3d8c024e1f4a6f32b9, cached=false, source=2, resourceid=0xa29f777a Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0xa29f777a 2026-05-22T14:46:36.528 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T15:01:41.528 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T15:15:35.382 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #139713, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T15:15:35.397 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #139715, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T15:15:45.385 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #139735, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T15:15:45.400 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #139737, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T15:15:45.400 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #139739, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T15:15:45.400 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #139741, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T15:16:46.525 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T15:31:51.521 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000B1E79AAAACC6, sigsha=36046c13f19c561aedb654f634ba085d6a607ced, cached=false, source=2, resourceid=0xfbd7c0c7 Internal signature match:subtype=Lowfi, sigseq=0x000084E7E01AFFB6, sigsha=7a815adb9b9e14267419c8f39edc71f49b2651f9, cached=false, source=2, resourceid=0xfbd7c0c7 Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0xfbd7c0c7 BEGIN BM telemetry GUID:{69FCBAF8-D695-38D4-E7C4-94C531190CCE} SignatureID:55745797457393 SigSha:ddb4adac2aca8c16554162e265921a50721a9574 ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-22-2026 15:32:54 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry BEGIN BM telemetry GUID:{8F649765-CE7D-8B9A-E908-358EEC73A99A} SignatureID:55745256291477 SigSha:7106c73e392948e275190c3cff85a5401a98a8bc ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:05-22-2026 15:32:54 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-22T15:32:54.960 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T15:32:54.960 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T15:32:54.960 [Cloud] Queued cloud request. 2026-05-22T15:32:54.960 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T15:32:54.960 [Cloud] Dequeued cloud request. 2026-05-22T15:32:54.960 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T15:32:55.480 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T15:32:55.480 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T15:32:55.480 [Cloud] Queued cloud request. 2026-05-22T15:32:55.480 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T15:32:55.480 [Cloud] Dequeued cloud request. 2026-05-22T15:32:55.480 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T15:32:55.741 [Cloud] End of cloud request. 2026-05-22T15:32:55.741 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp2_not used\htdocs\kptv\ro\music\187120171213-u2p.php. status=0x40070000, statusex=0x200200, threatid=0x80000000, sigseq=0xb1e79aaaacc6 2026-05-22T15:32:55.757 [Cloud] End of cloud request. 2026-05-22T15:32:56.009 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-22T15:32:56.009 [Cloud] Start of cloud request. Passive mode: 0 2026-05-22T15:32:56.009 [Cloud] Queued cloud request. 2026-05-22T15:32:56.009 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-22T15:32:56.009 [Cloud] Dequeued cloud request. 2026-05-22T15:32:56.009 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-22T15:32:56.251 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T15:32:56.298 [Cloud] End of cloud request. 2026-05-22T15:32:56.806 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-22T15:42:46.105 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1283868, Count: 103202, MaxTime: 1093, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\updraft\plugins-old\amp\vendor\ampproject\common\src\Attribute.php->(SCRIPT0000), EstimatedImpact: 4% 2026-05-22T15:42:46.105 ProcessImageName: SQLyogCommunity.exe, Pid: 228, TotalTime: 447, Count: 25, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-22T15:42:46.105 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 23, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\top20.ibd, EstimatedImpact: 0% 2026-05-22T15:42:46.105 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 77, Count: 3, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-22T15:42:46.105 ProcessImageName: wacs.exe, Pid: 1120, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260522.txt, EstimatedImpact: 1% 2026-05-22T15:42:46.105 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 62, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-05-22T15:42:46.105 ProcessImageName: updater.exe, Pid: 32, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T15:42:46.105 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-22T15:42:46.105 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 1% 2026-05-22T15:42:46.105 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9379fee2-0194-410e-a4dd-01764e386572.tmp, EstimatedImpact: 0% 2026-05-22T15:42:46.105 ProcessImageName: updater.exe, Pid: 6044, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d198e4e-cce2-48e5-a2c2-735fc709454e.tmp, EstimatedImpact: 0% 2026-05-22T15:42:46.105 ProcessImageName: updater.exe, Pid: 3880, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-22T15:42:46.105 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0d95f35-f844-4a7b-af4b-84950bf3af0f.tmp, EstimatedImpact: 0% 2026-05-22T15:42:46.105 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23973eb0-e010-4daf-877e-021c26945921.tmp, EstimatedImpact: 0% 2026-05-22T15:42:46.105 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\349967c3-ca78-490e-b50a-0dd9ec2e6c77.tmp, EstimatedImpact: 0% 2026-05-22T15:42:46.105 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7b773d2-8ced-4677-92e7-66a8d451e72f.tmp, EstimatedImpact: 0% Internal signature match:subtype=Lowfi, sigseq=0x0000B1E79AAAACC6, sigsha=36046c13f19c561aedb654f634ba085d6a607ced, cached=false, source=2, resourceid=0xedcebbad Internal signature match:subtype=Lowfi, sigseq=0x000084E7E01AFFB6, sigsha=7a815adb9b9e14267419c8f39edc71f49b2651f9, cached=false, source=2, resourceid=0xedcebbad Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0xedcebbad 2026-05-22T15:46:18.348 Bm signature throttled:0x000032b3547485f1 2026-05-22T15:46:18.348 Bm signature throttled:0x000032b33432fc95 2026-05-22T15:46:18.348 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\music\187120171213-u2p.php. status=0x40050000, statusex=0x0, threatid=0x80000000, sigseq=0xb1e79aaaacc6 2026-05-22T15:46:56.521 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x000294BDC606B459, sigsha=425fe00cff03a4c1f56b5218212a01b292c0dbf5, cached=false, source=2, resourceid=0x52eaca41 2026-05-22T15:57:03.762 Lua SetAttribute:Filter caching disabled for \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\updraft\plugins-old\updraftplus\index.html (runtime MpDisableCaching from 0x00040cbdc4489f5e) 2026-05-22T15:57:03.762 MpLog-Throttle:The above 1 log lines will be snoozed for 3600000 ms Internal signature match:subtype=Lowfi, sigseq=0x000017E741530473, sigsha=60462a18b8bebb90c4c31884470339e8172f14bb, cached=false, source=2, resourceid=0xaacc66a2 Internal signature match:subtype=Lowfi, sigseq=0x000112E75BEB89A0, sigsha=df2e4c6cfedf431b491a3226e0c0200928a3db58, cached=false, source=2, resourceid=0xaacc66a2 2026-05-22T15:57:03.778 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\updraft\plugins-old\updraftplus\index.html. status=0x40050000, statusex=0x0, threatid=0x80000000, sigseq=0x17e741530473 2026-05-22T16:02:01.518 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00002029EE42DDC7, sigsha=f5c3aee0a4850e373f8e84843c1322a2b76a074b, cached=false, source=2, resourceid=0xaabde32d Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0xaabde32d 2026-05-22T16:07:29.746 Bm signature throttled:0x000032b3547485f1 2026-05-22T16:07:29.762 Bm signature throttled:0x000032b33432fc95 Internal signature match:subtype=Lowfi, sigseq=0x00002029EE42DDC7, sigsha=f5c3aee0a4850e373f8e84843c1322a2b76a074b, cached=false, source=2, resourceid=0xf4b78285 2026-05-22T16:15:34.891 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #143971, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T16:15:34.906 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #143973, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T16:15:44.894 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #143990, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T16:15:44.910 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #143992, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T16:15:44.910 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #143994, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T16:17:06.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00002029EE42DDC7, sigsha=f5c3aee0a4850e373f8e84843c1322a2b76a074b, cached=false, source=2, resourceid=0x1a142ef9 Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0x1a142ef9 2026-05-22T16:23:53.168 Bm signature throttled:0x000032b3547485f1 2026-05-22T16:23:53.168 Bm signature throttled:0x000032b33432fc95 Internal signature match:subtype=Lowfi, sigseq=0x00002029EE42DDC7, sigsha=f5c3aee0a4850e373f8e84843c1322a2b76a074b, cached=false, source=2, resourceid=0x8553988d Internal signature match:subtype=Lowfi, sigseq=0x00002029EE42DDC7, sigsha=f5c3aee0a4850e373f8e84843c1322a2b76a074b, cached=false, source=2, resourceid=0xcec79681 Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0xcec79681 Internal signature match:subtype=Lowfi, sigseq=0x00002029EE42DDC7, sigsha=f5c3aee0a4850e373f8e84843c1322a2b76a074b, cached=false, source=2, resourceid=0x0dfde030 2026-05-22T16:32:11.520 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T16:47:16.525 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T16:51:14.782 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sqla80_1fda_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #147673, FileId: 0x13000000021b78, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T16:51:15.403 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sqla80_1fda_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #147678, FileId: 0x14000000021b78, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T17:02:21.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T17:02:53.459 Lua SetAttribute:Filter caching disabled for \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\plugins\updraftplus\index.html (runtime MpDisableCaching from 0x00040cbdc4489f5e) 2026-05-22T17:02:53.459 MpLog-Throttle:The above 1 log lines will be snoozed for 3600000 ms Internal signature match:subtype=Lowfi, sigseq=0x000017E741530473, sigsha=60462a18b8bebb90c4c31884470339e8172f14bb, cached=false, source=2, resourceid=0x636fb04e Internal signature match:subtype=Lowfi, sigseq=0x000112E75BEB89A0, sigsha=df2e4c6cfedf431b491a3226e0c0200928a3db58, cached=false, source=2, resourceid=0x636fb04e 2026-05-22T17:02:53.475 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\plugins\updraftplus\index.html. status=0x40050000, statusex=0x0, threatid=0x80000000, sigseq=0x17e741530473 2026-05-22T17:15:34.391 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #149579, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T17:15:34.391 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #149581, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T17:15:44.399 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #149598, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T17:15:44.399 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #149597, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T17:15:44.430 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #149600, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T17:17:26.519 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T17:32:31.519 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T17:42:46.104 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1613959, Count: 138304, MaxTime: 1109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\plugins\amp\vendor\ampproject\common\src\Attribute.php, EstimatedImpact: 4% 2026-05-22T17:42:46.104 ProcessImageName: SQLyogCommunity.exe, Pid: 228, TotalTime: 447, Count: 25, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-22T17:42:46.104 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 27, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\top20.ibd, EstimatedImpact: 0% 2026-05-22T17:42:46.104 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 77, Count: 3, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-22T17:42:46.104 ProcessImageName: wacs.exe, Pid: 1120, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260522.txt, EstimatedImpact: 1% 2026-05-22T17:42:46.104 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 62, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-05-22T17:42:46.104 ProcessImageName: updater.exe, Pid: 32, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T17:42:46.104 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-22T17:42:46.104 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 1% 2026-05-22T17:42:46.104 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9379fee2-0194-410e-a4dd-01764e386572.tmp, EstimatedImpact: 0% 2026-05-22T17:42:46.104 ProcessImageName: updater.exe, Pid: 6044, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d198e4e-cce2-48e5-a2c2-735fc709454e.tmp, EstimatedImpact: 0% 2026-05-22T17:42:46.104 ProcessImageName: updater.exe, Pid: 3880, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-22T17:42:46.104 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0d95f35-f844-4a7b-af4b-84950bf3af0f.tmp, EstimatedImpact: 0% 2026-05-22T17:42:46.104 ProcessImageName: updater.exe, Pid: 5680, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\709b292e-fb96-40a0-b76b-b4138d594369.tmp, EstimatedImpact: 0% 2026-05-22T17:42:46.104 ProcessImageName: updater.exe, Pid: 5604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aa39ff88-8471-4745-82a1-788c32437ce7.tmp, EstimatedImpact: 0% 2026-05-22T17:42:46.104 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23973eb0-e010-4daf-877e-021c26945921.tmp, EstimatedImpact: 0% 2026-05-22T17:42:46.104 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\349967c3-ca78-490e-b50a-0dd9ec2e6c77.tmp, EstimatedImpact: 0% 2026-05-22T17:42:46.104 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7b773d2-8ced-4677-92e7-66a8d451e72f.tmp, EstimatedImpact: 0% 2026-05-22T17:47:36.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T18:02:41.523 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T18:15:34.736 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #154560, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T18:15:34.744 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #154562, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T18:15:44.756 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #154584, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T18:15:44.756 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #154587, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T18:17:46.528 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T18:28:00.490 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sqla80_2298_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #155540, FileId: 0x3900000000a02b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T18:28:01.053 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sqla80_2298_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #155544, FileId: 0x3a00000000a02b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T18:28:03.270 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sqla80_2299_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #155549, FileId: 0x3e00000000a02b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T18:28:04.848 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sqla80_229a_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #155555, FileId: 0x4200000000a02b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T18:28:06.317 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sqla80_229b_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #155559, FileId: 0x4600000000a02b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T18:28:07.859 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sqla80_229c_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #155563, FileId: 0x4a00000000a02b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T18:28:09.426 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqla80_229d_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #155567, FileId: 0x4e00000000a02b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T18:28:10.973 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqla80_229e_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #155571, FileId: 0x5200000000a02b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T18:28:12.603 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sqla80_229f_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #155575, FileId: 0x5600000000a02b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T18:32:51.528 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T18:47:56.533 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T19:03:01.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T19:15:34.261 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #157792, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T19:15:34.261 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #157794, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T19:15:44.287 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #157814, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T19:15:44.287 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #157816, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T19:15:44.459 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #157820, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T19:15:44.459 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #157822, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T19:18:06.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T19:33:11.526 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T19:42:46.109 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1852092, Count: 165749, MaxTime: 1109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\plugins\amp\vendor\ampproject\common\src\Attribute.php, EstimatedImpact: 4% 2026-05-22T19:42:46.109 ProcessImageName: SQLyogCommunity.exe, Pid: 228, TotalTime: 447, Count: 25, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 225, Count: 45, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\top20.ibd, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 122, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: wacs.exe, Pid: 1120, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260522.txt, EstimatedImpact: 1% 2026-05-22T19:42:46.109 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 62, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: updater.exe, Pid: 32, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 1% 2026-05-22T19:42:46.109 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9379fee2-0194-410e-a4dd-01764e386572.tmp, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: updater.exe, Pid: 6044, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d198e4e-cce2-48e5-a2c2-735fc709454e.tmp, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: updater.exe, Pid: 3880, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: updater.exe, Pid: 1068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e0c4c1d-1103-4ec3-9ce8-7a29f1e55099.tmp, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0d95f35-f844-4a7b-af4b-84950bf3af0f.tmp, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23973eb0-e010-4daf-877e-021c26945921.tmp, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: updater.exe, Pid: 5680, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\709b292e-fb96-40a0-b76b-b4138d594369.tmp, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: updater.exe, Pid: 5604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aa39ff88-8471-4745-82a1-788c32437ce7.tmp, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\349967c3-ca78-490e-b50a-0dd9ec2e6c77.tmp, EstimatedImpact: 0% 2026-05-22T19:42:46.109 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7b773d2-8ced-4677-92e7-66a8d451e72f.tmp, EstimatedImpact: 0% 2026-05-22T19:48:16.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T20:03:21.525 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T20:07:12.600 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sqla80_22d6_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #161996, FileId: 0x110000000021d22, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T20:07:13.209 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sqla80_22d6_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #162001, FileId: 0x111000000021d22, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T20:14:05.838 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\php7ED3.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #162738, FileId: 0xf0000000231a1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T20:15:34.926 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #162911, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T20:15:34.942 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #162913, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T20:15:44.934 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #162936, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T20:15:44.950 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #162939, FileId: 0x4b3b0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T20:18:26.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T20:33:31.525 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T20:33:50.578 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sqla80_2361_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #163560, FileId: 0x2000000002325e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T20:48:36.517 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T21:03:41.525 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T21:18:46.517 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T21:33:51.524 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T21:42:46.113 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1901114, Count: 172535, MaxTime: 1109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\plugins\amp\vendor\ampproject\common\src\Attribute.php, EstimatedImpact: 3% 2026-05-22T21:42:46.113 ProcessImageName: SQLyogCommunity.exe, Pid: 228, TotalTime: 447, Count: 25, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 270, Count: 56, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\top20.ibd, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 122, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: wacs.exe, Pid: 1120, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260522.txt, EstimatedImpact: 1% 2026-05-22T21:42:46.113 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 62, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: updater.exe, Pid: 32, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 1% 2026-05-22T21:42:46.113 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9379fee2-0194-410e-a4dd-01764e386572.tmp, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: updater.exe, Pid: 6044, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d198e4e-cce2-48e5-a2c2-735fc709454e.tmp, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: updater.exe, Pid: 3880, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: updater.exe, Pid: 2988, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7cf29d8-5adf-4b56-96c1-6799ca011a30.tmp, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0d95f35-f844-4a7b-af4b-84950bf3af0f.tmp, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: updater.exe, Pid: 5680, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\709b292e-fb96-40a0-b76b-b4138d594369.tmp, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: updater.exe, Pid: 5604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aa39ff88-8471-4745-82a1-788c32437ce7.tmp, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: updater.exe, Pid: 268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c39938d-670e-4de8-a90a-9c5908ce599c.tmp, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\349967c3-ca78-490e-b50a-0dd9ec2e6c77.tmp, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7b773d2-8ced-4677-92e7-66a8d451e72f.tmp, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23973eb0-e010-4daf-877e-021c26945921.tmp, EstimatedImpact: 0% 2026-05-22T21:42:46.113 ProcessImageName: updater.exe, Pid: 1068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e0c4c1d-1103-4ec3-9ce8-7a29f1e55099.tmp, EstimatedImpact: 0% 2026-05-22T21:48:56.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T22:04:01.528 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T22:15:33.534 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #163756, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-22T22:19:06.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T22:34:11.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T22:49:16.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T23:04:21.526 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T23:19:26.521 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T23:34:31.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-22T23:42:46.117 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1901144, Count: 172540, MaxTime: 1109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\plugins\amp\vendor\ampproject\common\src\Attribute.php, EstimatedImpact: 3% 2026-05-22T23:42:46.117 ProcessImageName: SQLyogCommunity.exe, Pid: 228, TotalTime: 447, Count: 25, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 270, Count: 56, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\top20.ibd, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 122, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: wacs.exe, Pid: 1120, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260522.txt, EstimatedImpact: 1% 2026-05-22T23:42:46.117 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 62, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 32, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 1% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9379fee2-0194-410e-a4dd-01764e386572.tmp, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 6044, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d198e4e-cce2-48e5-a2c2-735fc709454e.tmp, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 3880, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23973eb0-e010-4daf-877e-021c26945921.tmp, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0d95f35-f844-4a7b-af4b-84950bf3af0f.tmp, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 2988, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7cf29d8-5adf-4b56-96c1-6799ca011a30.tmp, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 5680, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\709b292e-fb96-40a0-b76b-b4138d594369.tmp, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 5604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aa39ff88-8471-4745-82a1-788c32437ce7.tmp, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 1068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e0c4c1d-1103-4ec3-9ce8-7a29f1e55099.tmp, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\349967c3-ca78-490e-b50a-0dd9ec2e6c77.tmp, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7b773d2-8ced-4677-92e7-66a8d451e72f.tmp, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c39938d-670e-4de8-a90a-9c5908ce599c.tmp, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8b9fa3a-d963-4a40-94d1-657d822f1a35.tmp, EstimatedImpact: 0% 2026-05-22T23:42:46.117 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ee09451-da9b-4539-93b6-baea694829e0.tmp, EstimatedImpact: 0% 2026-05-22T23:49:36.531 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T00:04:41.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T00:15:34.490 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #163930, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T00:19:46.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T00:34:51.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T00:36:01.857 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:10280BB9-D2DB-4FD6-8C2F-35D5C5BB1551, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-23T00:36:01.857 Scheduled scan with Id 10280BB9-D2DB-4FD6-8C2F-35D5C5BB1551 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-23T00:36:01.857 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-23T00:36:01.857 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-23T00:36:01.857 [SFC] System file cache build is not needed (already completed) 2026-05-23T00:36:16.591 Engine:Triggered AR EMS scan 2026-05-23T00:36:16.591 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.607 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.623 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.638 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.654 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.669 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.685 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.701 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.716 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.732 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.748 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.779 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.779 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.794 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.810 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.826 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.841 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.857 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.873 Engine:EMS scan for process: explorer pid: 5208, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-23T00:36:16.904 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 BEGIN BM telemetry GUID:{9892A500-E1FC-E2EE-659E-95462BC72A32} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5208 ProcessCreationTime:134237358974803704 SessionID:2 CreationTime:05-23-2026 00:36:16 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-23T00:36:17.904 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-23T00:36:17.904 [Cloud] Start of cloud request. Passive mode: 0 2026-05-23T00:36:17.904 [Cloud] Queued cloud request. 2026-05-23T00:36:17.904 [Cloud] Dequeued cloud request. 2026-05-23T00:36:17.904 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-23T00:36:17.904 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-23T00:36:18.123 [Cloud] End of cloud request. 2026-05-23T00:36:18.638 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-23T00:36:35.352 QuickScan:ScanID:10280BB9-D2DB-4FD6-8C2F-35D5C5BB1551: Quick scan finished with error 0 2026-05-23T00:36:35.368 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-23T00:36:35.878 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-23T00:36:35.878 [RTP] Duplicating the current plugin configuration object... 2026-05-23T00:36:35.878 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-23T00:36:35.878 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-23T00:36:35.878 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-23T00:36:35.878 [RTP] No config change detected. Not updating plugin configuration. 2026-05-23T00:36:35.878 [RTP] No config changes found. No configuration switch. 2026-05-23T00:36:35.878 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-23T00:49:56.519 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T01:05:01.530 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T01:20:06.529 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T01:35:11.518 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T01:42:46.130 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1901174, Count: 172544, MaxTime: 1109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\plugins\amp\vendor\ampproject\common\src\Attribute.php, EstimatedImpact: 2% 2026-05-23T01:42:46.130 ProcessImageName: SQLyogCommunity.exe, Pid: 228, TotalTime: 447, Count: 25, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 270, Count: 56, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\top20.ibd, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 122, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: wacs.exe, Pid: 1120, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260522.txt, EstimatedImpact: 1% 2026-05-23T01:42:46.130 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 62, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 32, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 1% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9379fee2-0194-410e-a4dd-01764e386572.tmp, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 4692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcdbbe49-d8ca-43c8-87bd-ad29603d7a23.tmp, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 6044, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d198e4e-cce2-48e5-a2c2-735fc709454e.tmp, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 3880, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 5604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aa39ff88-8471-4745-82a1-788c32437ce7.tmp, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0d95f35-f844-4a7b-af4b-84950bf3af0f.tmp, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ee09451-da9b-4539-93b6-baea694829e0.tmp, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 2988, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7cf29d8-5adf-4b56-96c1-6799ca011a30.tmp, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 5752, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b29e33d4-2e6c-4123-a26d-6f4a52be06e6.tmp, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 5680, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\709b292e-fb96-40a0-b76b-b4138d594369.tmp, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23973eb0-e010-4daf-877e-021c26945921.tmp, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\349967c3-ca78-490e-b50a-0dd9ec2e6c77.tmp, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7b773d2-8ced-4677-92e7-66a8d451e72f.tmp, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8b9fa3a-d963-4a40-94d1-657d822f1a35.tmp, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 1068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e0c4c1d-1103-4ec3-9ce8-7a29f1e55099.tmp, EstimatedImpact: 0% 2026-05-23T01:42:46.130 ProcessImageName: updater.exe, Pid: 268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c39938d-670e-4de8-a90a-9c5908ce599c.tmp, EstimatedImpact: 0% 2026-05-23T01:50:16.528 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T02:05:21.526 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T02:15:34.410 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #164236, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T02:20:26.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T02:35:31.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T02:50:36.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T03:05:41.521 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) BEGIN BM telemetry GUID:{2F29AB73-934A-F3AB-9A69-FF497C0537CE} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5208 ProcessCreationTime:134237358974803704 SessionID:2 CreationTime:05-23-2026 03:10:39 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-23T03:10:40.219 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-23T03:10:40.219 [Cloud] Start of cloud request. Passive mode: 0 2026-05-23T03:10:40.219 [Cloud] Queued cloud request. 2026-05-23T03:10:40.219 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-23T03:10:40.219 [Cloud] Dequeued cloud request. 2026-05-23T03:10:40.219 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-23T03:10:40.439 [Cloud] End of cloud request. 2026-05-23T03:10:40.948 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-23T03:20:46.526 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T03:35:51.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T03:42:46.133 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1901174, Count: 172544, MaxTime: 1109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\plugins\amp\vendor\ampproject\common\src\Attribute.php, EstimatedImpact: 2% 2026-05-23T03:42:46.133 ProcessImageName: SQLyogCommunity.exe, Pid: 228, TotalTime: 447, Count: 25, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 270, Count: 56, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\top20.ibd, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 122, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: wacs.exe, Pid: 1120, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260522.txt, EstimatedImpact: 1% 2026-05-23T03:42:46.133 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 62, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 32, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 1% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9379fee2-0194-410e-a4dd-01764e386572.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 4692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcdbbe49-d8ca-43c8-87bd-ad29603d7a23.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 6044, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d198e4e-cce2-48e5-a2c2-735fc709454e.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 3880, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 1068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e0c4c1d-1103-4ec3-9ce8-7a29f1e55099.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0d95f35-f844-4a7b-af4b-84950bf3af0f.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c39938d-670e-4de8-a90a-9c5908ce599c.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ee09451-da9b-4539-93b6-baea694829e0.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 5796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae4e753d-38a9-4314-99ab-b04f4fc37873.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 5752, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b29e33d4-2e6c-4123-a26d-6f4a52be06e6.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 5680, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\709b292e-fb96-40a0-b76b-b4138d594369.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 5604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aa39ff88-8471-4745-82a1-788c32437ce7.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8b9fa3a-d963-4a40-94d1-657d822f1a35.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 2988, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7cf29d8-5adf-4b56-96c1-6799ca011a30.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23973eb0-e010-4daf-877e-021c26945921.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\349967c3-ca78-490e-b50a-0dd9ec2e6c77.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7b773d2-8ced-4677-92e7-66a8d451e72f.tmp, EstimatedImpact: 0% 2026-05-23T03:42:46.133 ProcessImageName: updater.exe, Pid: 1624, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43ebbedf-3eeb-43c8-a50e-7a3a3549270e.tmp, EstimatedImpact: 0% 2026-05-23T03:50:56.526 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T04:06:01.515 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T04:15:34.907 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #164441, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T04:21:06.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T04:36:11.525 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T04:51:16.529 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T05:06:21.529 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T05:15:44.680 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #164541, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T05:21:26.517 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T05:36:31.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T05:42:46.142 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1901174, Count: 172545, MaxTime: 1109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\plugins\amp\vendor\ampproject\common\src\Attribute.php, EstimatedImpact: 2% 2026-05-23T05:42:46.142 ProcessImageName: SQLyogCommunity.exe, Pid: 228, TotalTime: 447, Count: 25, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 270, Count: 60, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\top20.ibd, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 122, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: wacs.exe, Pid: 1120, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260522.txt, EstimatedImpact: 1% 2026-05-23T05:42:46.142 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 62, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 32, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 1% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 6024, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\879dacc1-5388-4aa3-a829-21e27028d68d.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9379fee2-0194-410e-a4dd-01764e386572.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 4692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcdbbe49-d8ca-43c8-87bd-ad29603d7a23.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 6044, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d198e4e-cce2-48e5-a2c2-735fc709454e.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 3880, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 2988, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7cf29d8-5adf-4b56-96c1-6799ca011a30.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d0d95f35-f844-4a7b-af4b-84950bf3af0f.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 1068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1e0c4c1d-1103-4ec3-9ce8-7a29f1e55099.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7c39938d-670e-4de8-a90a-9c5908ce599c.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 1624, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\43ebbedf-3eeb-43c8-a50e-7a3a3549270e.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 5604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aa39ff88-8471-4745-82a1-788c32437ce7.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 5680, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\709b292e-fb96-40a0-b76b-b4138d594369.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 5752, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b29e33d4-2e6c-4123-a26d-6f4a52be06e6.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 5796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae4e753d-38a9-4314-99ab-b04f4fc37873.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8b9fa3a-d963-4a40-94d1-657d822f1a35.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7b773d2-8ced-4677-92e7-66a8d451e72f.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 4332, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ee09451-da9b-4539-93b6-baea694829e0.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a479507c-a0a8-4486-9988-0d33afd07634.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\349967c3-ca78-490e-b50a-0dd9ec2e6c77.tmp, EstimatedImpact: 0% 2026-05-23T05:42:46.142 ProcessImageName: updater.exe, Pid: 2960, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23973eb0-e010-4daf-877e-021c26945921.tmp, EstimatedImpact: 0% 2026-05-23T05:51:36.523 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T06:06:41.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T06:21:46.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T06:36:51.521 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T06:51:56.527 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T07:07:01.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T07:15:45.714 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #164833, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T07:22:06.515 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) BEGIN BM telemetry GUID:{50FD6612-27A1-C086-B71D-A93C3FF35672} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5208 ProcessCreationTime:134237358974803704 SessionID:2 CreationTime:05-23-2026 07:31:37 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-05-23T07:31:38.513 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-23T07:31:38.513 [Cloud] Start of cloud request. Passive mode: 0 2026-05-23T07:31:38.513 [Cloud] Queued cloud request. 2026-05-23T07:31:38.513 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-23T07:31:38.513 [Cloud] Dequeued cloud request. 2026-05-23T07:31:38.513 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-23T07:31:38.750 [Cloud] End of cloud request. 2026-05-23T07:31:39.263 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-23T07:37:11.515 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T07:41:16.520 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-23T07:41:16.536 Job Notification: New process added to job (184) 2026-05-23T07:41:16.551 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-23T07:41:16.551 Job Notification: New process added to job (6036) 2026-05-23T07:41:16.551 Aggressive catchup quick scan threshold: 255146973563 / 25920000000000 2026-05-23T07:41:16.551 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:184] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6036]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-23T07:41:16.645 Job Notification: New process added to job (3700) 2026-05-23T07:41:16.645 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-23T07:41:16.645 Job Notification: New process added to job (5728) 2026-05-23T07:41:16.661 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3700] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5728]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-23T07:41:16.864 Job Notification: New process added to job (3484) 2026-05-23T07:41:16.895 Task(GetDeviceTicket -AccessKey 1720216A-DDCC-F7D6-D2F9-17259B45A5EC ) launched as network service 2026-05-23T07:41:17.051 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-23T07:41:17.051 [RTP] Duplicating the current plugin configuration object... 2026-05-23T07:41:17.051 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-23T07:41:17.051 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-23T07:41:17.051 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-23T07:41:17.051 [RTP] No config change detected. Not updating plugin configuration. 2026-05-23T07:41:17.051 [RTP] No config changes found. No configuration switch. 2026-05-23T07:41:17.051 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-23T07:41:17.594 Job Notification: Process exited from job (3484) 2026-05-23T07:41:18.752 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-23T07:41:18.752 [Cloud] Start of cloud request. Passive mode: 0 2026-05-23T07:41:18.752 [Cloud] Queued cloud request. 2026-05-23T07:41:18.752 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-23T07:41:18.752 [Cloud] Dequeued cloud request. 2026-05-23T07:41:18.752 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-23T07:41:18.752 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-23T07:41:18.752 [Cloud] Start of cloud request. Passive mode: 0 2026-05-23T07:41:18.752 [Cloud] Queued cloud request. 2026-05-23T07:41:18.752 [Cloud] Dequeued cloud request. 2026-05-23T07:41:18.752 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-23T07:41:18.924 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-23T07:41:18.924 [Cloud] End of cloud request. 2026-05-23T07:41:18.940 [Cloud] End of cloud request. 2026-05-23T07:41:19.268 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-23T07:42:04.624 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\97B82DE4-B677-4B9C-8E87-1C3C6D4ECD65a88.1dcea87a5780864 2026-05-23T07:42:04.671 Verifying engine and signature files (source: 0) ... 2026-05-23T07:42:04.671 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C6A59699-53A5-4337-A25C-2026B077C09D}\mpengine.dll] due to PPL. 2026-05-23T07:42:04.671 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C6A59699-53A5-4337-A25C-2026B077C09D}\mpasbase.vdm] (file in cache) 2026-05-23T07:42:04.671 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C6A59699-53A5-4337-A25C-2026B077C09D}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-23T07:42:04.686 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C6A59699-53A5-4337-A25C-2026B077C09D}\mpasdlta.vdm] 2026-05-23T07:42:04.686 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C6A59699-53A5-4337-A25C-2026B077C09D}\mpavbase.vdm] (file in cache) 2026-05-23T07:42:04.686 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C6A59699-53A5-4337-A25C-2026B077C09D}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-23T07:42:04.686 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C6A59699-53A5-4337-A25C-2026B077C09D}\mpavdlta.vdm] 2026-05-23T07:42:04.858 [Engine] IsHybridMode: 0 2026-05-23T07:42:04.858 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-05-23T07:42:04.983 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-8D737290615CB0F059052795271BDE9E59097BCC.bin): 0x00000002 2026-05-23T07:42:04.983 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-8D737290615CB0F059052795271BDE9E59097BCC.bin) 2026-05-23T07:42:04.983 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-23T07:42:04.983 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-23T07:42:04.983 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-23T07:42:04.983 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-23T07:42:13.227 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-23T07:42:13.227 [AutoExclusion] Applied roles from cache. 2026-05-23T07:42:13.227 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-23T07:42:13.258 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB12AE5810, lRefCount: 5, hr=0 2026-05-23T07:42:13.258 [Engine] New active engine 00007FFB1FFA5810 replacing engine 00007FFB12AE5810. Number of active engines: 2 2026-05-23T07:42:13.274 EngineInit:Global ASOC is enabled 2026-05-23T07:42:13.274 EngineInit:ASOO is enabled for developer volumes 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-23T07:42:13.289 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-23T07:42:13.289 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\b97619f92caf35cd65d3923e7831e289777113ac Dynamic Signature Compilation Timestamp:05-20-2026 18:11:21 Persistence Type:Duration Time remaining:1728000000 2026-05-23T07:42:13.289 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\03e7ece19ee596268205f6fde500588007bb28d2 Dynamic Signature Compilation Timestamp:05-22-2026 12:49:19 Persistence Type:Duration Time remaining:288000000 2026-05-23T07:42:13.305 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-23T07:42:13.305 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-23T07:42:13.305 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-23T07:42:13.305 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-23T07:42:13.305 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-23T07:42:13.321 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-23T07:42:13.321 [Plugin] Initializing RTP plugin state... 2026-05-23T07:42:13.321 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-23T07:42:13.321 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎22‎-‎2026 09:42:46 Last Perf:‎05‎-‎22‎-‎2026 09:42:46 First RTP Scan:‎05‎-‎22‎-‎2026 09:42:46 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:5590 Misses:50766 BM Queue:0,1306,0 Proc:0,45,0 File:0,1306,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:164971 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-530168956 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:69379 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:163912 TotalHits:5799700 InstanceCacheInserts:25335 InstanceCacheUpdates:0 InstanceCacheDeletes:8225 InstanceCacheHits:517 InstanceCacheMisses:162175 InstanceCacheOverflows:13936 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:3ms (777/227) Success: 227, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-23T07:42:13.321 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C6A59699-53A5-4337-A25C-2026B077C09D} 2026-05-23T07:42:13.321 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0611161E-7871-482F-8843-F188792E421E}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0611161E-7871-482F-8843-F188792E421E}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-23T07:42:13.321 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5FEFC299-CA91-4FAF-9A8F-EBADA76301CD} removed 2026-05-23T07:42:13.321 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-23T07:42:13.321 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-23T07:42:13.321 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-23T07:42:13.321 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-23T07:42:13.321 MdCoreSvc is supported in this platform and OS 2026-05-23T07:42:13.321 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-23-2026 07:42:13 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-23-2026 07:42:13 2026-05-23T07:42:13.321 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-23T07:42:13.321 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-23T07:42:13.321 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-23T07:42:13.321 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-23T07:42:13.321 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-23T07:42:13.321 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-23T07:42:13.321 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-23T07:42:13.321 MdCoreSvc is supported in this platform and OS 2026-05-23T07:42:13.321 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-23T07:42:13.321 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 05-23-2026 07:42:13 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.55.0 AV Signature Version: 1.451.55.0 ************************************************************ 2026-05-23T07:42:13.321 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-23T07:42:13.321 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\97B82DE4-B677-4B9C-8E87-1C3C6D4ECD65a88.1dcea87a5780864 2026-05-23T07:42:13.368 Process scan (postsignatureupdatescan) started. Signature updated via MicrosoftUpdateServer on 05-23-2026 07:42:13 ************************************************************ 2026-05-23T07:42:13.383 Job Notification: Process exited from job (3700) 2026-05-23T07:42:13.383 Job Notification: Process exited from job (5728) 2026-05-23T07:42:13.399 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-23T07:42:13.399 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-23T07:42:13.399 Job Notification: Process exited from job (184) 2026-05-23T07:42:13.399 Job Notification: Process exited from job (6036) 2026-05-23T07:42:13.618 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-23T07:42:13.618 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-23T07:42:13.618 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-23T07:42:13.618 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-23T07:42:13.618 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-23T07:42:13.633 [Engine] Engine 00007FFB12AE5810 no longer in use. Number of active engines: 1 2026-05-23T07:42:13.633 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-23T07:42:13.633 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-23T07:42:13.821 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-23T07:42:13.821 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-23T07:42:13.821 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-23T07:42:14.618 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1901328, Count: 172601, MaxTime: 1109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\plugins\amp\vendor\ampproject\common\src\Attribute.php, EstimatedImpact: 2% 2026-05-23T07:42:14.618 ProcessImageName: SQLyogCommunity.exe, Pid: 228, TotalTime: 447, Count: 25, MaxTime: 218, MaxTimeFile: \Device\HarddiskVolume2\Program Files\SQLyog Community\htmlayout.dll, EstimatedImpact: 0% 2026-05-23T07:42:14.618 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 270, Count: 60, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\top20.ibd, EstimatedImpact: 0% 2026-05-23T07:42:14.618 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 168, Count: 9, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-23T07:42:14.618 ProcessImageName: wacs.exe, Pid: 1120, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260522.txt, EstimatedImpact: 1% 2026-05-23T07:42:14.618 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 62, Count: 5, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-05-23T07:42:14.618 ProcessImageName: updater.exe, Pid: 32, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T07:42:14.618 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-23T07:42:14.618 ProcessImageName: explorer.exe, Pid: 5208, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Users\Public\Desktop\SQLyog Community - 64 bit.lnk, EstimatedImpact: 1% 2026-05-23T07:42:14.618 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T07:42:14.618 ProcessImageName: updater.exe, Pid: 6024, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\879dacc1-5388-4aa3-a829-21e27028d68d.tmp, EstimatedImpact: 0% 2026-05-23T07:42:14.618 ProcessImageName: updater.exe, Pid: 3128, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9379fee2-0194-410e-a4dd-01764e386572.tmp, EstimatedImpact: 0% 2026-05-23T07:42:14.618 ProcessImageName: updater.exe, Pid: 4692, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcdbbe49-d8ca-43c8-87bd-ad29603d7a23.tmp, EstimatedImpact: 0% 2026-05-23T07:42:14.618 ProcessImageName: updater.exe, Pid: 6044, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d198e4e-cce2-48e5-a2c2-735fc709454e.tmp, EstimatedImpact: 0% 2026-05-23T07:42:14.696 [Engine] RSIG_UNLOADENGINE, 00007FFB12AE5810, err=0x0 2026-05-23T07:42:14.711 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0611161E-7871-482F-8843-F188792E421E} removed 2026-05-23T07:42:19.187 Process scan (postsignatureupdatescan) completed. 2026-05-23T07:47:13.287 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-23T07:52:16.520 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T08:07:21.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T08:15:33.857 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165076, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T08:15:33.873 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165078, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T08:15:43.866 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165084, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T08:15:43.866 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165083, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T08:15:43.882 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165086, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T08:22:26.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T08:37:31.519 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T08:52:36.523 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T09:07:41.523 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T09:15:34.673 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165397, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T09:15:34.682 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165399, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T09:15:44.693 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165404, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T09:15:44.693 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165407, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T09:22:46.518 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T09:37:51.518 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T09:42:13.268 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 451, Count: 57, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-05-23T09:42:13.268 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-23T09:42:13.268 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-23T09:42:13.268 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0a9baca-9149-4b7a-ac9e-8dcde27297a5.tmp, EstimatedImpact: 0% 2026-05-23T09:42:13.268 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f45a2b-0633-486e-8aa4-2ec72ed9a161.tmp, EstimatedImpact: 0% 2026-05-23T09:52:56.517 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T10:08:01.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T10:15:35.267 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165497, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T10:15:35.267 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165499, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T10:15:45.276 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165504, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T10:15:45.291 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165506, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T10:15:45.464 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165510, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T10:15:45.464 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165512, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T10:23:06.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-05-23T10:32:47.317 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-23T10:32:47.317 [Cloud] Start of cloud request. Passive mode: 0 2026-05-23T10:32:47.317 [Cloud] Queued cloud request. 2026-05-23T10:32:47.317 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-23T10:32:47.317 [Cloud] Dequeued cloud request. 2026-05-23T10:32:47.317 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-23T10:32:47.679 [Cloud] End of cloud request. 2026-05-23T10:32:47.679 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-05-23T10:32:47.695 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe BEGIN BM telemetry GUID:{30219157-A105-558E-8ACC-DEB7FEC70F09} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:2004 ProcessCreationTime:134240059672962823 SessionID:0 CreationTime:05-23-2026 10:32:47 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-05-23T10:32:47.710 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE 2026-05-23T10:32:47.742 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-23T10:32:47.742 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-23T10:32:48.210 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-23T10:32:48.445 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-23T10:32:48.445 [Cloud] Start of cloud request. Passive mode: 0 2026-05-23T10:32:48.445 [Cloud] Queued cloud request. 2026-05-23T10:32:48.445 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-23T10:32:48.445 [Cloud] Dequeued cloud request. 2026-05-23T10:32:48.445 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-23T10:32:48.679 [Cloud] End of cloud request. 2026-05-23T10:32:49.195 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-23T10:32:49.992 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-23T10:32:49.992 [Cloud] Start of cloud request. Passive mode: 0 2026-05-23T10:32:49.992 [Cloud] Queued cloud request. 2026-05-23T10:32:49.992 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-23T10:32:49.992 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-05-23T10:32:49.992 [Cloud] Dequeued cloud request. 2026-05-23T10:32:49.992 [Cloud] Start of cloud request. Passive mode: 0 2026-05-23T10:32:49.992 [Cloud] Queued cloud request. 2026-05-23T10:32:49.992 [Cloud] Dequeued cloud request. 2026-05-23T10:32:49.992 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-23T10:32:49.992 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-23T10:32:50.148 [Cloud] End of cloud request. 2026-05-23T10:32:50.195 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-23T10:32:50.195 [Cloud] End of cloud request. 2026-05-23T10:32:50.679 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-23T10:38:11.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T10:42:05.741 Job Notification: Process exited from job (4952) 2026-05-23T10:53:16.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T11:08:21.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T11:15:34.252 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165617, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T11:15:34.268 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165619, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T11:15:44.256 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165623, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T11:15:44.256 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165625, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T11:15:44.271 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165627, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T11:15:44.271 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165629, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T11:23:26.515 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T11:38:31.520 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T11:42:13.283 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 706, Count: 100, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\ro\header.tpl.php, EstimatedImpact: 0% 2026-05-23T11:42:13.283 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-23T11:42:13.283 ProcessImageName: wacs.exe, Pid: 2004, TotalTime: 107, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 3% 2026-05-23T11:42:13.283 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-23T11:42:13.283 ProcessImageName: updater.exe, Pid: 3140, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T11:42:13.283 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0a9baca-9149-4b7a-ac9e-8dcde27297a5.tmp, EstimatedImpact: 0% 2026-05-23T11:42:13.283 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f45a2b-0633-486e-8aa4-2ec72ed9a161.tmp, EstimatedImpact: 0% 2026-05-23T11:42:13.283 ProcessImageName: updater.exe, Pid: 2692, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-23T11:53:36.515 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T12:08:41.519 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T12:15:33.924 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165712, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T12:15:33.940 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165714, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T12:15:43.933 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165719, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T12:15:43.949 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165722, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T12:23:46.524 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T12:38:51.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T12:53:56.523 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T13:09:01.518 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T13:15:34.318 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165792, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T13:15:34.334 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165794, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T13:15:44.323 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165799, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T13:15:44.338 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165801, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T13:15:44.338 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #165803, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T13:24:06.512 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T13:39:11.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T13:42:13.288 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1821, Count: 219, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-23T13:42:13.288 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-23T13:42:13.288 ProcessImageName: wacs.exe, Pid: 2004, TotalTime: 107, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 3% 2026-05-23T13:42:13.288 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-23T13:42:13.288 ProcessImageName: updater.exe, Pid: 3140, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T13:42:13.288 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0a9baca-9149-4b7a-ac9e-8dcde27297a5.tmp, EstimatedImpact: 0% 2026-05-23T13:42:13.288 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0ffdb6e-e109-4b4e-b04c-91f7ed9eb481.tmp, EstimatedImpact: 0% 2026-05-23T13:42:13.288 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f45a2b-0633-486e-8aa4-2ec72ed9a161.tmp, EstimatedImpact: 0% 2026-05-23T13:42:13.288 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea648b19-ce69-4332-802a-56b4846644f0.tmp, EstimatedImpact: 0% 2026-05-23T13:42:13.288 ProcessImageName: updater.exe, Pid: 2692, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-23T13:54:16.517 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T14:09:21.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T14:15:35.082 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166041, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T14:15:35.113 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166044, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T14:15:45.091 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166049, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T14:15:45.091 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166051, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T14:15:45.107 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166054, FileId: 0xcc0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T14:24:26.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T14:39:31.515 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T14:54:36.520 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T15:09:41.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T15:15:35.026 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166139, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T15:15:35.042 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166141, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T15:15:45.036 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166146, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T15:15:45.036 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166148, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T15:15:45.192 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166152, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T15:15:45.207 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166154, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T15:24:46.525 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T15:39:51.511 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T15:42:13.303 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 3380, Count: 356, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-23T15:42:13.303 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-23T15:42:13.303 ProcessImageName: wacs.exe, Pid: 2004, TotalTime: 107, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 3% 2026-05-23T15:42:13.303 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T15:42:13.303 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-23T15:42:13.303 ProcessImageName: updater.exe, Pid: 3140, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T15:42:13.303 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0a9baca-9149-4b7a-ac9e-8dcde27297a5.tmp, EstimatedImpact: 0% 2026-05-23T15:42:13.303 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0ffdb6e-e109-4b4e-b04c-91f7ed9eb481.tmp, EstimatedImpact: 0% 2026-05-23T15:42:13.303 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f45a2b-0633-486e-8aa4-2ec72ed9a161.tmp, EstimatedImpact: 0% 2026-05-23T15:42:13.303 ProcessImageName: updater.exe, Pid: 5312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd4d45e9-fb63-4616-be94-ad4a0fa89acf.tmp, EstimatedImpact: 0% 2026-05-23T15:42:13.303 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea648b19-ce69-4332-802a-56b4846644f0.tmp, EstimatedImpact: 0% 2026-05-23T15:42:13.303 ProcessImageName: updater.exe, Pid: 2692, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-23T15:54:56.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T16:10:01.513 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T16:15:34.096 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166231, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T16:15:34.111 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166233, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T16:15:44.104 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166238, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T16:15:44.120 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166240, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T16:25:06.518 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T16:40:11.512 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T16:55:16.518 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T17:10:21.523 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T17:15:34.935 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166376, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T17:15:34.951 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166378, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T17:15:44.940 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166384, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T17:15:44.940 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166383, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T17:15:44.955 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166385, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T17:15:44.955 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166386, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T17:25:26.510 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T17:40:31.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T17:42:13.302 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 3683, Count: 385, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-23T17:42:13.302 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-23T17:42:13.302 ProcessImageName: wacs.exe, Pid: 2004, TotalTime: 107, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 3% 2026-05-23T17:42:13.302 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T17:42:13.302 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-23T17:42:13.302 ProcessImageName: updater.exe, Pid: 3140, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T17:42:13.302 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0a9baca-9149-4b7a-ac9e-8dcde27297a5.tmp, EstimatedImpact: 0% 2026-05-23T17:42:13.302 ProcessImageName: updater.exe, Pid: 6128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1678ab56-2416-4c45-9cf0-9ce7eb2265f2.tmp, EstimatedImpact: 0% 2026-05-23T17:42:13.302 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea648b19-ce69-4332-802a-56b4846644f0.tmp, EstimatedImpact: 0% 2026-05-23T17:42:13.302 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0ffdb6e-e109-4b4e-b04c-91f7ed9eb481.tmp, EstimatedImpact: 0% 2026-05-23T17:42:13.302 ProcessImageName: updater.exe, Pid: 5856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae41bf7f-a550-4d68-aedd-5a2b8b03bf09.tmp, EstimatedImpact: 0% 2026-05-23T17:42:13.302 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f45a2b-0633-486e-8aa4-2ec72ed9a161.tmp, EstimatedImpact: 0% 2026-05-23T17:42:13.302 ProcessImageName: updater.exe, Pid: 5312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd4d45e9-fb63-4616-be94-ad4a0fa89acf.tmp, EstimatedImpact: 0% 2026-05-23T17:42:13.302 ProcessImageName: updater.exe, Pid: 2692, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-23T17:55:36.510 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T18:10:41.521 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T18:15:34.698 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166523, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T18:15:34.714 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166525, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T18:15:44.711 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166530, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T18:15:44.727 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166533, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T18:25:46.511 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T18:40:51.515 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T18:55:56.520 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T19:11:01.520 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T19:15:35.188 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166601, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T19:15:35.188 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166603, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T19:15:45.197 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166608, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T19:15:45.212 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166611, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T19:26:06.519 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T19:41:11.519 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T19:42:13.306 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 4001, Count: 414, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-23T19:42:13.306 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 137, Count: 10, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-23T19:42:13.306 ProcessImageName: wacs.exe, Pid: 2004, TotalTime: 107, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 3% 2026-05-23T19:42:13.306 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T19:42:13.306 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-23T19:42:13.306 ProcessImageName: updater.exe, Pid: 3140, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T19:42:13.306 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0a9baca-9149-4b7a-ac9e-8dcde27297a5.tmp, EstimatedImpact: 0% 2026-05-23T19:42:13.306 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dfe04cd8-3d37-4888-ab58-8939038080cf.tmp, EstimatedImpact: 0% 2026-05-23T19:42:13.306 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0ffdb6e-e109-4b4e-b04c-91f7ed9eb481.tmp, EstimatedImpact: 0% 2026-05-23T19:42:13.306 ProcessImageName: updater.exe, Pid: 5856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae41bf7f-a550-4d68-aedd-5a2b8b03bf09.tmp, EstimatedImpact: 0% 2026-05-23T19:42:13.306 ProcessImageName: updater.exe, Pid: 6128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1678ab56-2416-4c45-9cf0-9ce7eb2265f2.tmp, EstimatedImpact: 0% 2026-05-23T19:42:13.306 ProcessImageName: updater.exe, Pid: 948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15f885b7-8d47-4d5b-8587-d041489dd399.tmp, EstimatedImpact: 0% 2026-05-23T19:42:13.306 ProcessImageName: updater.exe, Pid: 5312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd4d45e9-fb63-4616-be94-ad4a0fa89acf.tmp, EstimatedImpact: 0% 2026-05-23T19:42:13.306 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f45a2b-0633-486e-8aa4-2ec72ed9a161.tmp, EstimatedImpact: 0% 2026-05-23T19:42:13.306 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea648b19-ce69-4332-802a-56b4846644f0.tmp, EstimatedImpact: 0% 2026-05-23T19:42:13.306 ProcessImageName: updater.exe, Pid: 2692, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-23T19:56:16.523 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T20:11:21.513 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T20:15:34.026 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166717, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T20:15:34.042 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166719, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T20:15:44.035 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166723, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T20:15:44.035 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166725, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T20:15:44.191 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166729, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T20:15:44.206 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #166731, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T20:26:26.518 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T20:41:31.512 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T20:56:36.518 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T21:03:03.928 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sqla80_2e80_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #167964, FileId: 0x69d700000001c31f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T21:03:15.241 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sqla80_2e81_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #168407, FileId: 0x69db00000001c31f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T21:03:15.459 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sqla80_2e80_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #168416, FileId: 0x69dc00000001c31f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T21:03:15.475 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sqla80_2e81_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #168418, FileId: 0xaa00000001daa6, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T21:11:41.517 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T21:15:35.669 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168445, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T21:15:35.669 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168447, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T21:15:45.673 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168451, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T21:15:45.673 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168452, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T21:15:45.689 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168454, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T21:26:46.517 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T21:41:51.517 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T21:42:13.306 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 53552, Count: 6802, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 137, Count: 10, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: wacs.exe, Pid: 2004, TotalTime: 107, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 3% 2026-05-23T21:42:13.306 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: updater.exe, Pid: 3140, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3e1bb1d-6f3f-4f2d-aa03-d4a2c7e0b9e9.tmp, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_2e81_2.MAI, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0a9baca-9149-4b7a-ac9e-8dcde27297a5.tmp, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: updater.exe, Pid: 6128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1678ab56-2416-4c45-9cf0-9ce7eb2265f2.tmp, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0ffdb6e-e109-4b4e-b04c-91f7ed9eb481.tmp, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: updater.exe, Pid: 5856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae41bf7f-a550-4d68-aedd-5a2b8b03bf09.tmp, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f45a2b-0633-486e-8aa4-2ec72ed9a161.tmp, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: updater.exe, Pid: 2616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccccdd9e-1076-4910-9d6a-b859309278a7.tmp, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: updater.exe, Pid: 5312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd4d45e9-fb63-4616-be94-ad4a0fa89acf.tmp, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea648b19-ce69-4332-802a-56b4846644f0.tmp, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dfe04cd8-3d37-4888-ab58-8939038080cf.tmp, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: updater.exe, Pid: 948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15f885b7-8d47-4d5b-8587-d041489dd399.tmp, EstimatedImpact: 0% 2026-05-23T21:42:13.306 ProcessImageName: updater.exe, Pid: 2692, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-23T21:56:56.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T22:12:01.521 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T22:15:33.296 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168523, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T22:15:33.296 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168525, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T22:15:43.305 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168530, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T22:15:43.305 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168529, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T22:15:43.321 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168532, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T22:27:06.521 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T22:42:11.520 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T22:57:16.524 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T23:12:21.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T23:15:33.834 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168603, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T23:15:33.849 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168605, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T23:15:43.847 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168609, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T23:15:43.864 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168611, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T23:15:43.864 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168612, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-23T23:27:26.508 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T23:42:13.315 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 53598, Count: 6806, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 137, Count: 10, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: wacs.exe, Pid: 2004, TotalTime: 107, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 3% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 3140, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3e1bb1d-6f3f-4f2d-aa03-d4a2c7e0b9e9.tmp, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_2e81_2.MAI, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0a9baca-9149-4b7a-ac9e-8dcde27297a5.tmp, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 6128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb7133dd-7bbe-4d12-816d-6863447f71c8.tmp, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 6128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1678ab56-2416-4c45-9cf0-9ce7eb2265f2.tmp, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea648b19-ce69-4332-802a-56b4846644f0.tmp, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0ffdb6e-e109-4b4e-b04c-91f7ed9eb481.tmp, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 5856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae41bf7f-a550-4d68-aedd-5a2b8b03bf09.tmp, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f45a2b-0633-486e-8aa4-2ec72ed9a161.tmp, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 5312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd4d45e9-fb63-4616-be94-ad4a0fa89acf.tmp, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 5252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\325de65f-a125-45cc-9c42-26c3f940dd19.tmp, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 2616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccccdd9e-1076-4910-9d6a-b859309278a7.tmp, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dfe04cd8-3d37-4888-ab58-8939038080cf.tmp, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15f885b7-8d47-4d5b-8587-d041489dd399.tmp, EstimatedImpact: 0% 2026-05-23T23:42:13.315 ProcessImageName: updater.exe, Pid: 2692, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-23T23:42:31.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-23T23:57:36.513 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T00:12:41.523 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T00:15:36.107 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168682, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T00:15:36.122 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168684, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T00:15:46.124 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168688, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T00:15:46.140 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168691, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T00:27:46.523 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T00:36:01.848 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:ED0AE160-881F-42F4-B7E9-F336C5035439, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-24T00:36:01.848 Scheduled scan with Id ED0AE160-881F-42F4-B7E9-F336C5035439 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-24T00:36:01.848 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-24T00:36:01.848 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-24T00:36:01.848 [SFC] System file cache build is not needed (already completed) 2026-05-24T00:36:15.746 Engine:Triggered AR EMS scan 2026-05-24T00:36:15.746 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:15.809 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:15.824 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:15.840 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:15.856 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:15.871 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:15.887 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:15.903 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:15.918 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:15.934 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:15.949 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:15.965 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:15.981 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:15.996 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:16.012 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:16.028 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:16.028 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:16.043 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:16.074 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-24T00:36:29.744 QuickScan:ScanID:ED0AE160-881F-42F4-B7E9-F336C5035439: Quick scan finished with error 0 2026-05-24T00:36:29.744 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-24T00:36:30.255 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-24T00:36:30.255 [RTP] Duplicating the current plugin configuration object... 2026-05-24T00:36:30.255 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-24T00:36:30.255 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-24T00:36:30.255 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-24T00:36:30.255 [RTP] No config change detected. Not updating plugin configuration. 2026-05-24T00:36:30.255 [RTP] No config changes found. No configuration switch. 2026-05-24T00:36:30.255 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-24T00:42:51.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T00:57:56.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T01:13:01.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T01:15:35.772 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168950, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T01:15:35.787 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168952, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T01:15:45.782 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168956, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T01:15:45.797 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #168960, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T01:28:06.511 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T01:42:13.325 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 53628, Count: 6808, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 137, Count: 10, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: wacs.exe, Pid: 2004, TotalTime: 107, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 3% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 3140, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3e1bb1d-6f3f-4f2d-aa03-d4a2c7e0b9e9.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_2e81_2.MAI, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0a9baca-9149-4b7a-ac9e-8dcde27297a5.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 6128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1678ab56-2416-4c45-9cf0-9ce7eb2265f2.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 3444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5218976d-0092-4ef5-8a6f-155c0dade808.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0ffdb6e-e109-4b4e-b04c-91f7ed9eb481.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 5856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae41bf7f-a550-4d68-aedd-5a2b8b03bf09.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 6128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb7133dd-7bbe-4d12-816d-6863447f71c8.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f45a2b-0633-486e-8aa4-2ec72ed9a161.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 5312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd4d45e9-fb63-4616-be94-ad4a0fa89acf.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 5252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\325de65f-a125-45cc-9c42-26c3f940dd19.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15f885b7-8d47-4d5b-8587-d041489dd399.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea648b19-ce69-4332-802a-56b4846644f0.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 2268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07f7717a-5577-4406-b6d9-1d7d040f6b17.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dfe04cd8-3d37-4888-ab58-8939038080cf.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 2616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccccdd9e-1076-4910-9d6a-b859309278a7.tmp, EstimatedImpact: 0% 2026-05-24T01:42:13.325 ProcessImageName: updater.exe, Pid: 2692, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-24T01:43:11.511 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T01:58:16.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T02:13:21.521 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T02:15:35.733 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169034, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T02:15:35.749 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169036, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T02:15:45.741 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169040, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T02:15:45.741 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169042, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T02:15:45.898 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169046, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T02:15:45.898 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169048, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T02:28:26.515 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T02:43:31.520 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T02:58:36.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T03:13:41.513 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T03:15:34.844 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169117, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T03:15:34.859 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169119, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T03:28:46.513 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T03:42:13.330 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 53628, Count: 6808, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 137, Count: 10, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: wacs.exe, Pid: 2004, TotalTime: 107, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 3% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 3140, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3e1bb1d-6f3f-4f2d-aa03-d4a2c7e0b9e9.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 2012, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fa771294-c3bb-4d60-a64b-7fb3a53b950d.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_2e81_2.MAI, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0a9baca-9149-4b7a-ac9e-8dcde27297a5.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 6128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb7133dd-7bbe-4d12-816d-6863447f71c8.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 6128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1678ab56-2416-4c45-9cf0-9ce7eb2265f2.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 3444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5218976d-0092-4ef5-8a6f-155c0dade808.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0ffdb6e-e109-4b4e-b04c-91f7ed9eb481.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 5856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae41bf7f-a550-4d68-aedd-5a2b8b03bf09.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f45a2b-0633-486e-8aa4-2ec72ed9a161.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15f885b7-8d47-4d5b-8587-d041489dd399.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 5312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd4d45e9-fb63-4616-be94-ad4a0fa89acf.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 5252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\325de65f-a125-45cc-9c42-26c3f940dd19.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea648b19-ce69-4332-802a-56b4846644f0.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 2268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07f7717a-5577-4406-b6d9-1d7d040f6b17.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 4072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\648a0c76-a625-47a9-856f-31abb7006662.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dfe04cd8-3d37-4888-ab58-8939038080cf.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 2616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccccdd9e-1076-4910-9d6a-b859309278a7.tmp, EstimatedImpact: 0% 2026-05-24T03:42:13.330 ProcessImageName: updater.exe, Pid: 2692, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-24T03:43:51.508 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T03:58:56.508 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T04:14:01.508 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T04:29:06.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T04:44:11.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T04:59:16.517 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T05:14:21.522 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T05:15:43.258 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169282, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T05:29:26.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T05:42:13.344 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 53628, Count: 6808, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 137, Count: 10, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: wacs.exe, Pid: 2004, TotalTime: 107, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 3% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 3140, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 2012, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fa771294-c3bb-4d60-a64b-7fb3a53b950d.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3e1bb1d-6f3f-4f2d-aa03-d4a2c7e0b9e9.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_2e81_2.MAI, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0a9baca-9149-4b7a-ac9e-8dcde27297a5.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 6128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1678ab56-2416-4c45-9cf0-9ce7eb2265f2.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9db48d68-6fc7-43a4-a729-4cb7c4dfe80b.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea648b19-ce69-4332-802a-56b4846644f0.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0ffdb6e-e109-4b4e-b04c-91f7ed9eb481.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 5856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae41bf7f-a550-4d68-aedd-5a2b8b03bf09.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\35f45a2b-0633-486e-8aa4-2ec72ed9a161.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 6128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb7133dd-7bbe-4d12-816d-6863447f71c8.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 4072, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\648a0c76-a625-47a9-856f-31abb7006662.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 2616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccccdd9e-1076-4910-9d6a-b859309278a7.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 2596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9f49afc1-5cc8-4812-b974-171012496fd8.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 2468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dfe04cd8-3d37-4888-ab58-8939038080cf.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 2268, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\07f7717a-5577-4406-b6d9-1d7d040f6b17.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 3444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5218976d-0092-4ef5-8a6f-155c0dade808.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 5252, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\325de65f-a125-45cc-9c42-26c3f940dd19.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 5312, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd4d45e9-fb63-4616-be94-ad4a0fa89acf.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15f885b7-8d47-4d5b-8587-d041489dd399.tmp, EstimatedImpact: 0% 2026-05-24T05:42:13.344 ProcessImageName: updater.exe, Pid: 2692, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-24T05:44:31.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T05:59:36.521 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T06:14:41.515 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T06:29:46.509 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T06:44:51.520 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T06:59:56.519 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T07:15:01.513 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T07:15:43.697 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169595, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T07:30:06.513 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T07:41:16.506 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-24T07:41:16.522 Job Notification: New process added to job (5216) 2026-05-24T07:41:16.522 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-24T07:41:16.522 Job Notification: New process added to job (5228) 2026-05-24T07:41:16.522 Aggressive catchup quick scan threshold: 255146869000 / 25920000000000 2026-05-24T07:41:16.537 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:5216] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5228]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-24T07:41:16.662 Job Notification: New process added to job (5872) 2026-05-24T07:41:16.662 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-24T07:41:16.662 Job Notification: New process added to job (3988) 2026-05-24T07:41:16.678 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:5872] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3988]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-24T07:41:17.053 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-24T07:41:17.053 [RTP] Duplicating the current plugin configuration object... 2026-05-24T07:41:17.053 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-24T07:41:17.053 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-24T07:41:17.053 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-24T07:41:17.053 [RTP] No config change detected. Not updating plugin configuration. 2026-05-24T07:41:17.053 [RTP] No config changes found. No configuration switch. 2026-05-24T07:41:17.053 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-24T07:41:17.194 Job Notification: New process added to job (3976) 2026-05-24T07:41:17.194 Task(GetDeviceTicket -AccessKey 42AE734A-F780-F771-1681-1D889759FD2F ) launched as network service 2026-05-24T07:41:17.649 Job Notification: Process exited from job (3976) 2026-05-24T07:41:18.758 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-24T07:41:18.758 [Cloud] Start of cloud request. Passive mode: 0 2026-05-24T07:41:18.758 [Cloud] Queued cloud request. 2026-05-24T07:41:18.758 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-24T07:41:18.758 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-24T07:41:18.758 [Cloud] Start of cloud request. Passive mode: 0 2026-05-24T07:41:18.758 [Cloud] Queued cloud request. 2026-05-24T07:41:18.789 Job Notification: New process added to job (4176) 2026-05-24T07:41:18.789 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 4CD2F493-2C4E-CC72-1240-7E50297E178E) launched 2026-05-24T07:41:18.789 Job Notification: New process added to job (884) 2026-05-24T07:41:18.789 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4176] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:884]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-24T07:41:18.805 Job Notification: New process added to job (176) 2026-05-24T07:41:18.820 Job Notification: Process exited from job (4176) 2026-05-24T07:41:18.820 Job Notification: Process exited from job (884) 2026-05-24T07:41:18.820 [Cloud] Dequeued cloud request. 2026-05-24T07:41:18.820 [Cloud] Dequeued cloud request. 2026-05-24T07:41:18.820 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-24T07:41:18.820 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-24T07:41:19.055 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-24T07:41:19.055 [Cloud] End of cloud request. 2026-05-24T07:41:19.070 [Cloud] End of cloud request. 2026-05-24T07:41:19.258 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-24T07:41:40.890 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\5A1FAD63-4BD0-4756-A2BE-0FB46A4877C99b8.1dceb50c1d127d4 2026-05-24T07:41:40.937 Verifying engine and signature files (source: 0) ... 2026-05-24T07:41:40.937 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{63417F80-9E1F-4D2B-9D30-D46BE4BB6B69}\mpengine.dll] due to PPL. 2026-05-24T07:41:40.937 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{63417F80-9E1F-4D2B-9D30-D46BE4BB6B69}\mpasbase.vdm] (file in cache) 2026-05-24T07:41:40.937 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{63417F80-9E1F-4D2B-9D30-D46BE4BB6B69}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-24T07:41:40.937 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{63417F80-9E1F-4D2B-9D30-D46BE4BB6B69}\mpasdlta.vdm] 2026-05-24T07:41:40.937 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{63417F80-9E1F-4D2B-9D30-D46BE4BB6B69}\mpavbase.vdm] (file in cache) 2026-05-24T07:41:40.937 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{63417F80-9E1F-4D2B-9D30-D46BE4BB6B69}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-24T07:41:40.953 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{63417F80-9E1F-4D2B-9D30-D46BE4BB6B69}\mpavdlta.vdm] 2026-05-24T07:41:41.140 [Engine] IsHybridMode: 0 2026-05-24T07:41:41.140 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-05-24T07:41:41.234 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-C02B88EFCCF9BBE5CFF238FBB55E3BDF32D18D80.bin): 0x00000002 2026-05-24T07:41:41.234 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-C02B88EFCCF9BBE5CFF238FBB55E3BDF32D18D80.bin) 2026-05-24T07:41:41.234 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-24T07:41:41.234 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-24T07:41:41.234 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-24T07:41:41.234 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-24T07:41:49.439 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-24T07:41:49.439 [AutoExclusion] Applied roles from cache. 2026-05-24T07:41:49.439 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-24T07:41:49.454 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB1FFA5810, lRefCount: 5, hr=0 2026-05-24T07:41:49.454 [Engine] New active engine 00007FFB12AE5810 replacing engine 00007FFB1FFA5810. Number of active engines: 2 2026-05-24T07:41:49.470 EngineInit:Global ASOC is enabled 2026-05-24T07:41:49.470 EngineInit:ASOO is enabled for developer volumes 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-24T07:41:49.485 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-24T07:41:49.501 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-24T07:41:49.501 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-24T07:41:49.501 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-24T07:41:49.501 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-24T07:41:49.501 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-24T07:41:49.517 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-24T07:41:49.517 [Plugin] Initializing RTP plugin state... 2026-05-24T07:41:49.517 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-24T07:41:49.517 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎23‎-‎2026 09:42:13 Last Perf:‎05‎-‎23‎-‎2026 09:42:13 First RTP Scan:‎05‎-‎23‎-‎2026 09:42:16 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:481 Misses:2325 BM Queue:0,117,0 Proc:0,42,0 File:0,117,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:169730 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-521271584 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:69427 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:168145 TotalHits:5839161 InstanceCacheInserts:25548 InstanceCacheUpdates:0 InstanceCacheDeletes:10883 InstanceCacheHits:526 InstanceCacheMisses:162555 InstanceCacheOverflows:13936 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:3ms (716/223) Success: 223, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-24T07:41:49.517 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{63417F80-9E1F-4D2B-9D30-D46BE4BB6B69} 2026-05-24T07:41:49.517 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6D45060A-25F7-4B3D-8C2C-8BD5C48890F4} removed 2026-05-24T07:41:49.517 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C6A59699-53A5-4337-A25C-2026B077C09D}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C6A59699-53A5-4337-A25C-2026B077C09D}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-24T07:41:49.517 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-24T07:41:49.517 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-24T07:41:49.517 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-24T07:41:49.517 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-24T07:41:49.517 MdCoreSvc is supported in this platform and OS 2026-05-24T07:41:49.517 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-24-2026 07:41:49 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-24-2026 07:41:49 2026-05-24T07:41:49.517 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-24T07:41:49.517 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-24T07:41:49.517 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-24T07:41:49.517 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-24T07:41:49.517 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-24T07:41:49.517 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-24T07:41:49.517 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-24T07:41:49.517 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-24T07:41:49.517 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-24T07:41:49.517 MdCoreSvc is supported in this platform and OS Signature updated on 05-24-2026 07:41:49 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.76.0 AV Signature Version: 1.451.76.0 ************************************************************ 2026-05-24T07:41:49.532 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-24T07:41:49.532 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\5A1FAD63-4BD0-4756-A2BE-0FB46A4877C99b8.1dceb50c1d127d4 2026-05-24T07:41:49.579 Process scan (postsignatureupdatescan) started. 2026-05-24T07:41:49.579 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-24T07:41:49.579 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 05-24-2026 07:41:49 ************************************************************ 2026-05-24T07:41:49.595 Job Notification: Process exited from job (5872) 2026-05-24T07:41:49.595 Job Notification: Process exited from job (3988) 2026-05-24T07:41:49.610 Job Notification: Process exited from job (5216) 2026-05-24T07:41:49.610 Job Notification: Process exited from job (5228) 2026-05-24T07:41:49.814 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-24T07:41:49.814 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-24T07:41:49.814 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-24T07:41:49.814 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-24T07:41:49.814 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-24T07:41:49.814 [Engine] Engine 00007FFB1FFA5810 no longer in use. Number of active engines: 1 2026-05-24T07:41:49.814 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-24T07:41:49.814 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-24T07:41:50.017 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-24T07:41:50.017 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-24T07:41:50.017 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-24T07:41:50.860 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 53643, Count: 6814, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-24T07:41:50.860 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 183, Count: 14, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-24T07:41:50.860 ProcessImageName: wacs.exe, Pid: 2004, TotalTime: 107, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 3% 2026-05-24T07:41:50.860 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T07:41:50.860 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-24T07:41:50.860 ProcessImageName: updater.exe, Pid: 3140, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T07:41:50.860 ProcessImageName: updater.exe, Pid: 2012, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fa771294-c3bb-4d60-a64b-7fb3a53b950d.tmp, EstimatedImpact: 0% 2026-05-24T07:41:50.860 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3e1bb1d-6f3f-4f2d-aa03-d4a2c7e0b9e9.tmp, EstimatedImpact: 0% 2026-05-24T07:41:50.860 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 30, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_2e81_2.MAI, EstimatedImpact: 0% 2026-05-24T07:41:50.860 ProcessImageName: updater.exe, Pid: 5640, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e0a9baca-9149-4b7a-ac9e-8dcde27297a5.tmp, EstimatedImpact: 0% 2026-05-24T07:41:50.860 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0ffdb6e-e109-4b4e-b04c-91f7ed9eb481.tmp, EstimatedImpact: 0% 2026-05-24T07:41:50.860 ProcessImageName: updater.exe, Pid: 5856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae41bf7f-a550-4d68-aedd-5a2b8b03bf09.tmp, EstimatedImpact: 0% 2026-05-24T07:41:50.860 ProcessImageName: updater.exe, Pid: 3444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5218976d-0092-4ef5-8a6f-155c0dade808.tmp, EstimatedImpact: 0% 2026-05-24T07:41:50.907 [Engine] RSIG_UNLOADENGINE, 00007FFB1FFA5810, err=0x0 2026-05-24T07:41:50.939 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C6A59699-53A5-4337-A25C-2026B077C09D} removed 2026-05-24T07:41:55.673 Process scan (postsignatureupdatescan) completed. 2026-05-24T07:45:11.508 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T07:46:49.475 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-24T08:00:16.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T08:15:21.512 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T08:15:35.678 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169973, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T08:15:35.694 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169975, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T08:15:45.682 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169979, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T08:15:45.682 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169981, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T08:15:45.838 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169985, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T08:15:45.854 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #169987, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T08:30:26.506 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T08:45:31.508 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T09:00:36.506 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-05-24T09:14:28.314 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-24T09:14:28.314 [Cloud] Start of cloud request. Passive mode: 0 2026-05-24T09:14:28.314 [Cloud] Queued cloud request. 2026-05-24T09:14:28.314 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-24T09:14:28.314 [Cloud] Dequeued cloud request. 2026-05-24T09:14:28.314 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-24T09:14:28.665 [Cloud] End of cloud request. 2026-05-24T09:14:28.665 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-05-24T09:14:28.681 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe BEGIN BM telemetry GUID:{3FADA21C-17A5-4248-3628-FE2F249B2744} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:4848 ProcessCreationTime:134240876683028384 SessionID:0 CreationTime:05-24-2026 09:14:28 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-05-24T09:14:28.696 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE 2026-05-24T09:14:28.728 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-24T09:14:28.743 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-24T09:14:29.399 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-24T09:14:29.618 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-24T09:14:29.618 [Cloud] Start of cloud request. Passive mode: 0 2026-05-24T09:14:29.618 [Cloud] Queued cloud request. 2026-05-24T09:14:29.618 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-24T09:14:29.618 [Cloud] Dequeued cloud request. 2026-05-24T09:14:29.743 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-24T09:14:29.837 [Cloud] End of cloud request. 2026-05-24T09:14:30.353 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-24T09:14:30.931 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-24T09:14:30.931 [Cloud] Start of cloud request. Passive mode: 0 2026-05-24T09:14:30.931 [Cloud] Queued cloud request. 2026-05-24T09:14:30.931 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-24T09:14:30.931 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-05-24T09:14:30.931 [Cloud] Start of cloud request. Passive mode: 0 2026-05-24T09:14:30.931 [Cloud] Queued cloud request. 2026-05-24T09:14:30.931 [Cloud] Dequeued cloud request. 2026-05-24T09:14:30.931 [Cloud] Dequeued cloud request. 2026-05-24T09:14:30.931 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-24T09:14:30.946 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-24T09:14:31.134 [Cloud] End of cloud request. 2026-05-24T09:14:31.149 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-24T09:14:31.149 [Cloud] End of cloud request. 2026-05-24T09:14:31.659 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-24T09:15:33.977 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170284, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T09:15:33.993 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170286, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T09:15:41.511 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T09:15:43.986 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170290, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T09:15:44.001 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170293, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T09:30:46.511 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T09:41:49.454 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 3021, Count: 372, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-05-24T09:41:49.454 ProcessImageName: wacs.exe, Pid: 4848, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-24T09:41:49.454 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-24T09:41:49.454 ProcessImageName: updater.exe, Pid: 4128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9bb3f25f-262c-4094-a5ae-aa30fd9c5308.tmp, EstimatedImpact: 0% 2026-05-24T09:45:51.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T10:00:56.510 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T10:15:34.614 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170531, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T10:15:34.629 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170533, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T10:15:44.622 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170537, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T10:15:44.637 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170540, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T10:16:01.513 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T10:31:06.509 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T10:46:11.519 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T11:01:16.513 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T11:15:34.978 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170608, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T11:15:34.993 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170610, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T11:15:44.998 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170614, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T11:15:44.998 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170616, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T11:16:21.504 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T11:31:26.508 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T11:41:49.461 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 3126, Count: 382, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-05-24T11:41:49.461 ProcessImageName: wacs.exe, Pid: 4848, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-24T11:41:49.461 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-24T11:41:49.461 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\976fd3d0-57da-40f7-bacf-40f9ee19ff7a.tmp, EstimatedImpact: 0% 2026-05-24T11:41:49.461 ProcessImageName: updater.exe, Pid: 4128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9bb3f25f-262c-4094-a5ae-aa30fd9c5308.tmp, EstimatedImpact: 0% 2026-05-24T11:41:49.461 ProcessImageName: updater.exe, Pid: 184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7086d6e-63a8-40e2-99d6-59c8ccb5e744.tmp, EstimatedImpact: 0% 2026-05-24T11:46:31.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T12:01:36.512 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T12:15:33.952 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170688, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T12:15:33.952 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170690, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T12:15:43.966 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170695, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T12:15:43.966 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170694, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T12:15:43.982 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #170696, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T12:16:41.517 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T12:18:11.203 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\xampp\tmp\#sqla80_37f3_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #171899, FileId: 0xa800000001eda4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T12:31:46.511 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T12:46:51.506 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T13:01:56.504 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T13:05:48.518 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3a62_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #172488, FileId: 0xac00000001eda4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T13:05:49.096 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3a62_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #172492, FileId: 0xad00000001eda4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T13:13:48.383 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3aa0_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #172518, FileId: 0xb200000001eda4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T13:13:48.959 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3aa0_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #172522, FileId: 0xb300000001eda4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T13:15:33.917 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172536, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T13:15:33.933 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172538, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T13:15:43.921 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172542, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T13:15:43.921 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172544, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T13:15:44.093 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172548, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T13:15:44.093 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172550, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T13:17:01.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T13:32:06.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T13:41:49.471 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 53125, Count: 6936, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-05-24T13:41:49.471 ProcessImageName: wacs.exe, Pid: 4848, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-24T13:41:49.471 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-24T13:41:49.471 ProcessImageName: updater.exe, Pid: 5280, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T13:41:49.471 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 15, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_3aa0_1.MAI, EstimatedImpact: 0% 2026-05-24T13:41:49.471 ProcessImageName: updater.exe, Pid: 5136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\796a15f9-bca3-44e5-b24c-777c9df1675a.tmp, EstimatedImpact: 0% 2026-05-24T13:41:49.471 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\976fd3d0-57da-40f7-bacf-40f9ee19ff7a.tmp, EstimatedImpact: 0% 2026-05-24T13:41:49.471 ProcessImageName: updater.exe, Pid: 4128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9bb3f25f-262c-4094-a5ae-aa30fd9c5308.tmp, EstimatedImpact: 0% 2026-05-24T13:41:49.471 ProcessImageName: updater.exe, Pid: 184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7086d6e-63a8-40e2-99d6-59c8ccb5e744.tmp, EstimatedImpact: 0% 2026-05-24T13:47:11.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T14:02:16.515 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T14:15:33.983 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172619, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T14:15:33.999 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172621, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T14:15:43.997 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172624, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T14:15:44.013 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172626, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T14:17:21.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T14:32:26.513 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T14:47:31.503 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T14:50:20.984 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3d5c_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #172751, FileId: 0x51700000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T14:50:21.625 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3d5c_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #172755, FileId: 0x51800000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T15:02:36.513 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T15:15:35.868 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172789, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T15:15:35.883 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172791, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T15:15:45.871 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172795, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T15:15:45.871 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172797, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T15:15:45.887 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172799, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T15:15:45.887 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172801, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T15:17:41.518 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T15:32:46.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T15:41:49.481 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 53201, Count: 6974, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-05-24T15:41:49.481 ProcessImageName: wacs.exe, Pid: 4848, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-24T15:41:49.481 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-24T15:41:49.481 ProcessImageName: updater.exe, Pid: 5280, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T15:41:49.481 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 30, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_3aa0_1.MAI, EstimatedImpact: 0% 2026-05-24T15:41:49.481 ProcessImageName: updater.exe, Pid: 5852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab0a9e10-fc9c-425a-8006-fae4556153ef.tmp, EstimatedImpact: 0% 2026-05-24T15:41:49.481 ProcessImageName: updater.exe, Pid: 5136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\796a15f9-bca3-44e5-b24c-777c9df1675a.tmp, EstimatedImpact: 0% 2026-05-24T15:41:49.481 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24e38fbc-787f-4f26-a394-ed38defd13e8.tmp, EstimatedImpact: 0% 2026-05-24T15:41:49.481 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\976fd3d0-57da-40f7-bacf-40f9ee19ff7a.tmp, EstimatedImpact: 0% 2026-05-24T15:41:49.481 ProcessImageName: updater.exe, Pid: 4128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9bb3f25f-262c-4094-a5ae-aa30fd9c5308.tmp, EstimatedImpact: 0% 2026-05-24T15:41:49.481 ProcessImageName: updater.exe, Pid: 184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7086d6e-63a8-40e2-99d6-59c8ccb5e744.tmp, EstimatedImpact: 0% 2026-05-24T15:47:51.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T16:02:56.512 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T16:15:36.069 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172905, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:15:36.069 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172907, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:15:46.067 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172911, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:15:46.067 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172912, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:15:46.082 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #172913, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:18:01.517 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T16:28:47.409 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe0_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #172941, FileId: 0x51d00000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:28:48.003 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe0_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #172945, FileId: 0x51e00000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:01.395 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #172999, FileId: 0x52300000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:01.911 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173010, FileId: 0x52400000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:01.989 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173013, FileId: 0x52500000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:02.067 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173017, FileId: 0x52600000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:02.098 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173020, FileId: 0x52700000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:02.114 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173023, FileId: 0x52800000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:02.145 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173026, FileId: 0x52900000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:02.192 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173029, FileId: 0x52a00000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:02.239 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173032, FileId: 0x52b00000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:02.254 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173035, FileId: 0x52c00000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:02.286 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173038, FileId: 0x52d00000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:02.317 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173041, FileId: 0x52e00000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:03.005 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173044, FileId: 0x52f00000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:03.533 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173047, FileId: 0x53000000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:04.065 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173050, FileId: 0x53100000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:04.080 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173053, FileId: 0x53200000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:04.111 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173056, FileId: 0x53300000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:04.143 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173059, FileId: 0x53400000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:04.158 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173062, FileId: 0x53500000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:04.174 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173065, FileId: 0x53600000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:04.205 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173068, FileId: 0x53700000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:04.268 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173074, FileId: 0x53900000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:04.299 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173077, FileId: 0x53a00000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:04.330 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173080, FileId: 0x53b00000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:04.346 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173083, FileId: 0x53c00000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:04.377 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173086, FileId: 0x53d00000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:04.440 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173092, FileId: 0x53f00000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:04.861 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173105, FileId: 0x54000000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:29:05.283 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sqla80_3fe3_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #173114, FileId: 0x54100000002011e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T16:33:06.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T16:48:11.511 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T17:03:16.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T17:15:35.196 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173206, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T17:15:35.211 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173208, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T17:15:45.199 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173212, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T17:15:45.199 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173214, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T17:15:45.215 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173216, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T17:15:45.215 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173218, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T17:18:21.510 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T17:33:26.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T17:41:49.491 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 56481, Count: 7319, MaxTime: 484, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-24T17:41:49.491 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 86, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_3aa0_1.MAI, EstimatedImpact: 0% 2026-05-24T17:41:49.491 ProcessImageName: wacs.exe, Pid: 4848, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-24T17:41:49.491 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-24T17:41:49.491 ProcessImageName: updater.exe, Pid: 5280, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T17:41:49.491 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-24T17:41:49.491 ProcessImageName: updater.exe, Pid: 184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7086d6e-63a8-40e2-99d6-59c8ccb5e744.tmp, EstimatedImpact: 0% 2026-05-24T17:41:49.491 ProcessImageName: updater.exe, Pid: 5852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab0a9e10-fc9c-425a-8006-fae4556153ef.tmp, EstimatedImpact: 0% 2026-05-24T17:41:49.491 ProcessImageName: updater.exe, Pid: 4128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9bb3f25f-262c-4094-a5ae-aa30fd9c5308.tmp, EstimatedImpact: 0% 2026-05-24T17:41:49.491 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\976fd3d0-57da-40f7-bacf-40f9ee19ff7a.tmp, EstimatedImpact: 0% 2026-05-24T17:41:49.491 ProcessImageName: updater.exe, Pid: 5136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\796a15f9-bca3-44e5-b24c-777c9df1675a.tmp, EstimatedImpact: 0% 2026-05-24T17:41:49.491 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24e38fbc-787f-4f26-a394-ed38defd13e8.tmp, EstimatedImpact: 0% 2026-05-24T17:41:49.491 ProcessImageName: updater.exe, Pid: 2588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\042fef0a-4185-4fb4-a132-184c91fdc671.tmp, EstimatedImpact: 0% 2026-05-24T17:41:49.491 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b12ee6-dc38-495c-a781-9f266ca7ac7d.tmp, EstimatedImpact: 0% 2026-05-24T17:48:31.502 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T18:03:36.503 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T18:15:35.156 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173350, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T18:15:35.171 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173352, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T18:15:45.159 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173356, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T18:15:45.175 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173359, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T18:18:41.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T18:33:46.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T18:48:51.503 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T19:03:56.513 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T19:15:34.644 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173441, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T19:15:34.660 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173443, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T19:15:44.663 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173447, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T19:15:44.663 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173449, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T19:15:44.819 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173453, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T19:15:44.835 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173455, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T19:19:01.506 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T19:34:06.512 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T19:41:49.500 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 57361, Count: 7380, MaxTime: 484, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 86, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_3aa0_1.MAI, EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: wacs.exe, Pid: 4848, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-24T19:41:49.500 ProcessImageName: updater.exe, Pid: 2192, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: updater.exe, Pid: 5280, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24e38fbc-787f-4f26-a394-ed38defd13e8.tmp, EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: updater.exe, Pid: 5852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab0a9e10-fc9c-425a-8006-fae4556153ef.tmp, EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: updater.exe, Pid: 4128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9bb3f25f-262c-4094-a5ae-aa30fd9c5308.tmp, EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b12ee6-dc38-495c-a781-9f266ca7ac7d.tmp, EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: updater.exe, Pid: 5136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\796a15f9-bca3-44e5-b24c-777c9df1675a.tmp, EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\976fd3d0-57da-40f7-bacf-40f9ee19ff7a.tmp, EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: updater.exe, Pid: 2588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\042fef0a-4185-4fb4-a132-184c91fdc671.tmp, EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: updater.exe, Pid: 2168, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e45e69dd-3e8f-4767-89c9-6ecc2f16880e.tmp, EstimatedImpact: 0% 2026-05-24T19:41:49.500 ProcessImageName: updater.exe, Pid: 184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7086d6e-63a8-40e2-99d6-59c8ccb5e744.tmp, EstimatedImpact: 0% 2026-05-24T19:49:11.512 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T20:04:16.506 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T20:15:35.113 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173601, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T20:15:35.129 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173603, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T20:19:21.501 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T20:34:26.501 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T20:49:31.511 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T21:04:36.510 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T21:19:41.503 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T21:34:46.515 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T21:41:49.515 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 58409, Count: 7457, MaxTime: 484, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 86, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_3aa0_1.MAI, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: updater.exe, Pid: 2192, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: wacs.exe, Pid: 4848, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-24T21:41:49.515 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: updater.exe, Pid: 5280, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\976fd3d0-57da-40f7-bacf-40f9ee19ff7a.tmp, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: updater.exe, Pid: 5852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab0a9e10-fc9c-425a-8006-fae4556153ef.tmp, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: updater.exe, Pid: 3036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7fc04ef-f226-46ef-8eb3-7bc8754506c4.tmp, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: updater.exe, Pid: 4128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9bb3f25f-262c-4094-a5ae-aa30fd9c5308.tmp, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: updater.exe, Pid: 3732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\08fbb2d8-75d8-4253-9062-0786539d8c3f.tmp, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: updater.exe, Pid: 184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7086d6e-63a8-40e2-99d6-59c8ccb5e744.tmp, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: updater.exe, Pid: 5136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\796a15f9-bca3-44e5-b24c-777c9df1675a.tmp, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: updater.exe, Pid: 2588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\042fef0a-4185-4fb4-a132-184c91fdc671.tmp, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: updater.exe, Pid: 2168, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e45e69dd-3e8f-4767-89c9-6ecc2f16880e.tmp, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24e38fbc-787f-4f26-a394-ed38defd13e8.tmp, EstimatedImpact: 0% 2026-05-24T21:41:49.515 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b12ee6-dc38-495c-a781-9f266ca7ac7d.tmp, EstimatedImpact: 0% 2026-05-24T21:49:51.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T22:04:56.501 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T22:15:33.938 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173774, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-24T22:20:01.508 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T22:35:06.508 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T22:50:11.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T23:05:16.513 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T23:20:21.512 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T23:35:26.501 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-24T23:41:49.527 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 58409, Count: 7463, MaxTime: 484, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 135, Count: 88, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_3aa0_1.MAI, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: wacs.exe, Pid: 4848, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 2192, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 5280, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24e38fbc-787f-4f26-a394-ed38defd13e8.tmp, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 2168, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e45e69dd-3e8f-4767-89c9-6ecc2f16880e.tmp, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 5852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab0a9e10-fc9c-425a-8006-fae4556153ef.tmp, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 5804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aa9e44de-82eb-49e1-9264-34578979eaad.tmp, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b12ee6-dc38-495c-a781-9f266ca7ac7d.tmp, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\976fd3d0-57da-40f7-bacf-40f9ee19ff7a.tmp, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 3732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\08fbb2d8-75d8-4253-9062-0786539d8c3f.tmp, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 4128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9bb3f25f-262c-4094-a5ae-aa30fd9c5308.tmp, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7086d6e-63a8-40e2-99d6-59c8ccb5e744.tmp, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 5136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\796a15f9-bca3-44e5-b24c-777c9df1675a.tmp, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 3708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded30ba7-41e4-41ca-bbd0-51da7bf63a24.tmp, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 3036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7fc04ef-f226-46ef-8eb3-7bc8754506c4.tmp, EstimatedImpact: 0% 2026-05-24T23:41:49.527 ProcessImageName: updater.exe, Pid: 2588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\042fef0a-4185-4fb4-a132-184c91fdc671.tmp, EstimatedImpact: 0% 2026-05-24T23:50:31.506 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T00:05:36.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T00:15:45.713 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #173948, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T00:20:41.506 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T00:35:46.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T00:36:01.856 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:110CA1F8-C753-47F8-A2D5-C12FCA361EF0, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-25T00:36:01.856 Scheduled scan with Id 110CA1F8-C753-47F8-A2D5-C12FCA361EF0 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-25T00:36:01.856 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-25T00:36:01.856 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-25T00:36:01.856 [SFC] System file cache build is not needed (already completed) 2026-05-25T00:36:15.956 Engine:Triggered AR EMS scan 2026-05-25T00:36:15.956 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:15.972 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:15.988 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.003 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.019 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.034 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.050 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.066 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.081 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.097 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.113 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.128 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.144 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.159 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.159 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.191 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.191 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.206 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:16.238 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-25T00:36:30.004 QuickScan:ScanID:110CA1F8-C753-47F8-A2D5-C12FCA361EF0: Quick scan finished with error 0 2026-05-25T00:36:30.004 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-25T00:36:30.514 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-25T00:36:30.514 [RTP] Duplicating the current plugin configuration object... 2026-05-25T00:36:30.514 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-25T00:36:30.514 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-25T00:36:30.514 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-25T00:36:30.514 [RTP] No config change detected. Not updating plugin configuration. 2026-05-25T00:36:30.514 [RTP] No config changes found. No configuration switch. 2026-05-25T00:36:30.514 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-25T00:50:51.516 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T01:05:56.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T01:21:01.504 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T01:36:06.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T01:41:49.534 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 58409, Count: 7464, MaxTime: 484, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 135, Count: 88, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_3aa0_1.MAI, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 2192, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: wacs.exe, Pid: 4848, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 5280, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69c450df-7719-414b-9767-cb90d935a4f8.tmp, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b12ee6-dc38-495c-a781-9f266ca7ac7d.tmp, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 3740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b62b594f-7be1-4676-bb51-164d00cbc8e4.tmp, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7086d6e-63a8-40e2-99d6-59c8ccb5e744.tmp, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 5852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab0a9e10-fc9c-425a-8006-fae4556153ef.tmp, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 5804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aa9e44de-82eb-49e1-9264-34578979eaad.tmp, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\976fd3d0-57da-40f7-bacf-40f9ee19ff7a.tmp, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 4128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9bb3f25f-262c-4094-a5ae-aa30fd9c5308.tmp, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 5136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\796a15f9-bca3-44e5-b24c-777c9df1675a.tmp, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 3732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\08fbb2d8-75d8-4253-9062-0786539d8c3f.tmp, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 3708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded30ba7-41e4-41ca-bbd0-51da7bf63a24.tmp, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 3036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7fc04ef-f226-46ef-8eb3-7bc8754506c4.tmp, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 2588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\042fef0a-4185-4fb4-a132-184c91fdc671.tmp, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 2168, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e45e69dd-3e8f-4767-89c9-6ecc2f16880e.tmp, EstimatedImpact: 0% 2026-05-25T01:41:49.534 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24e38fbc-787f-4f26-a394-ed38defd13e8.tmp, EstimatedImpact: 0% 2026-05-25T01:51:11.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T02:06:16.508 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T02:15:45.587 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #174320, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T02:21:21.502 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T02:36:26.499 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T02:51:31.502 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T03:06:36.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T03:21:41.502 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T03:36:46.501 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T03:41:49.539 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 59259, Count: 7519, MaxTime: 484, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 135, Count: 88, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_3aa0_1.MAI, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: wacs.exe, Pid: 4848, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 2192, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 5280, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69c450df-7719-414b-9767-cb90d935a4f8.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7086d6e-63a8-40e2-99d6-59c8ccb5e744.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b12ee6-dc38-495c-a781-9f266ca7ac7d.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\976fd3d0-57da-40f7-bacf-40f9ee19ff7a.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 5852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab0a9e10-fc9c-425a-8006-fae4556153ef.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 5804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aa9e44de-82eb-49e1-9264-34578979eaad.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 4128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9bb3f25f-262c-4094-a5ae-aa30fd9c5308.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 5112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c87fcc14-4734-46ff-b22f-e359b6ba6139.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 3740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b62b594f-7be1-4676-bb51-164d00cbc8e4.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 3732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\08fbb2d8-75d8-4253-9062-0786539d8c3f.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 3708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded30ba7-41e4-41ca-bbd0-51da7bf63a24.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 3036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7fc04ef-f226-46ef-8eb3-7bc8754506c4.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 5136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\796a15f9-bca3-44e5-b24c-777c9df1675a.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 2704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f318d27-0a4c-4758-8b26-e7bb55eaa5fc.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 2588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\042fef0a-4185-4fb4-a132-184c91fdc671.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 2168, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e45e69dd-3e8f-4767-89c9-6ecc2f16880e.tmp, EstimatedImpact: 0% 2026-05-25T03:41:49.539 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24e38fbc-787f-4f26-a394-ed38defd13e8.tmp, EstimatedImpact: 0% 2026-05-25T03:51:51.511 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T04:06:56.501 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T04:22:01.511 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T04:37:06.510 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T04:52:11.510 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T05:07:16.504 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T05:15:33.760 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #174549, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T05:22:21.509 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T05:37:26.508 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T05:41:49.540 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 59259, Count: 7520, MaxTime: 484, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 165, Count: 93, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_3aa0_1.MAI, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: wacs.exe, Pid: 4848, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 2192, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 5280, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 2824, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f36b9ff1-0dc2-4960-aee1-0bcd4e9cd939.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69c450df-7719-414b-9767-cb90d935a4f8.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 4860, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24e38fbc-787f-4f26-a394-ed38defd13e8.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 2168, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e45e69dd-3e8f-4767-89c9-6ecc2f16880e.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b12ee6-dc38-495c-a781-9f266ca7ac7d.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 5852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab0a9e10-fc9c-425a-8006-fae4556153ef.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\976fd3d0-57da-40f7-bacf-40f9ee19ff7a.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 5804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aa9e44de-82eb-49e1-9264-34578979eaad.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 4128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9bb3f25f-262c-4094-a5ae-aa30fd9c5308.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 3732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\08fbb2d8-75d8-4253-9062-0786539d8c3f.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 3740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b62b594f-7be1-4676-bb51-164d00cbc8e4.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7086d6e-63a8-40e2-99d6-59c8ccb5e744.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 3708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded30ba7-41e4-41ca-bbd0-51da7bf63a24.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 3036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7fc04ef-f226-46ef-8eb3-7bc8754506c4.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 5136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\796a15f9-bca3-44e5-b24c-777c9df1675a.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 5112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c87fcc14-4734-46ff-b22f-e359b6ba6139.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 2704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f318d27-0a4c-4758-8b26-e7bb55eaa5fc.tmp, EstimatedImpact: 0% 2026-05-25T05:41:49.540 ProcessImageName: updater.exe, Pid: 2588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\042fef0a-4185-4fb4-a132-184c91fdc671.tmp, EstimatedImpact: 0% 2026-05-25T05:52:31.514 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T06:07:36.498 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T06:15:44.086 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #174678, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T06:22:41.508 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T06:37:46.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T06:52:51.512 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T07:07:56.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T07:23:01.512 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T07:38:06.506 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T07:41:16.513 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-25T07:41:16.529 Job Notification: New process added to job (5152) 2026-05-25T07:41:16.544 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-25T07:41:16.544 Job Notification: New process added to job (3996) 2026-05-25T07:41:16.544 Aggressive catchup quick scan threshold: 255146914355 / 25920000000000 2026-05-25T07:41:16.560 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:5152] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3996]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-25T07:41:16.654 Job Notification: New process added to job (3452) 2026-05-25T07:41:16.669 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-25T07:41:16.669 Job Notification: New process added to job (2140) 2026-05-25T07:41:16.685 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3452] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2140]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-25T07:41:17.060 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-25T07:41:17.122 [RTP] Duplicating the current plugin configuration object... 2026-05-25T07:41:17.122 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-25T07:41:17.122 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-25T07:41:17.122 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-25T07:41:17.122 [RTP] No config change detected. Not updating plugin configuration. 2026-05-25T07:41:17.122 [RTP] No config changes found. No configuration switch. 2026-05-25T07:41:17.122 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-25T07:41:17.185 Job Notification: New process added to job (4228) 2026-05-25T07:41:17.185 Task(GetDeviceTicket -AccessKey E4C932F0-5F80-F1E4-F42A-63005B4CA228 ) launched as network service 2026-05-25T07:41:17.645 Job Notification: Process exited from job (4228) 2026-05-25T07:41:19.890 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-25T07:41:19.890 [Cloud] Start of cloud request. Passive mode: 0 2026-05-25T07:41:19.890 [Cloud] Queued cloud request. 2026-05-25T07:41:19.890 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-25T07:41:19.890 [Cloud] Dequeued cloud request. 2026-05-25T07:41:19.890 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-25T07:41:19.890 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-25T07:41:19.890 [Cloud] Start of cloud request. Passive mode: 0 2026-05-25T07:41:19.890 [Cloud] Queued cloud request. 2026-05-25T07:41:19.890 [Cloud] Dequeued cloud request. 2026-05-25T07:41:19.890 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-25T07:41:20.109 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-25T07:41:20.109 [Cloud] End of cloud request. 2026-05-25T07:41:20.124 [Cloud] End of cloud request. 2026-05-25T07:41:20.405 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-25T07:41:31.848 Job Notification: Process exited from job (176) 2026-05-25T07:41:48.272 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\30AF4EC9-81BD-4879-8044-31F1B82B092031c.1dcec19f08b843b 2026-05-25T07:41:48.319 Verifying engine and signature files (source: 0) ... 2026-05-25T07:41:48.319 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6F1B6310-9CCD-48DA-9F80-87F70CEBA648}\mpengine.dll] due to PPL. 2026-05-25T07:41:48.319 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6F1B6310-9CCD-48DA-9F80-87F70CEBA648}\mpasbase.vdm] (file in cache) 2026-05-25T07:41:48.319 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6F1B6310-9CCD-48DA-9F80-87F70CEBA648}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-25T07:41:48.334 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6F1B6310-9CCD-48DA-9F80-87F70CEBA648}\mpasdlta.vdm] 2026-05-25T07:41:48.334 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6F1B6310-9CCD-48DA-9F80-87F70CEBA648}\mpavbase.vdm] (file in cache) 2026-05-25T07:41:48.334 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6F1B6310-9CCD-48DA-9F80-87F70CEBA648}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-25T07:41:48.334 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6F1B6310-9CCD-48DA-9F80-87F70CEBA648}\mpavdlta.vdm] 2026-05-25T07:41:48.522 [Engine] IsHybridMode: 0 2026-05-25T07:41:48.522 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-05-25T07:41:48.635 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-FF48829CE40649270CCD7DD7E576CDFDACF9C5F6.bin): 0x00000002 2026-05-25T07:41:48.635 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-FF48829CE40649270CCD7DD7E576CDFDACF9C5F6.bin) 2026-05-25T07:41:48.635 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-25T07:41:48.635 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-25T07:41:48.635 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-25T07:41:48.635 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-05-25T07:41:49.541 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 59274, Count: 7525, MaxTime: 484, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 195, Count: 102, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_3aa0_1.MAI, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 153, Count: 12, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: wacs.exe, Pid: 4848, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 2192, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 5280, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 2824, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f36b9ff1-0dc2-4960-aee1-0bcd4e9cd939.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69c450df-7719-414b-9767-cb90d935a4f8.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 4860, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 2588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\042fef0a-4185-4fb4-a132-184c91fdc671.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 2368, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fd25bf4-ae1f-43d2-a37b-d0f18a1fcf17.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b12ee6-dc38-495c-a781-9f266ca7ac7d.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 5852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab0a9e10-fc9c-425a-8006-fae4556153ef.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 2168, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e45e69dd-3e8f-4767-89c9-6ecc2f16880e.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 5804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aa9e44de-82eb-49e1-9264-34578979eaad.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7086d6e-63a8-40e2-99d6-59c8ccb5e744.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\976fd3d0-57da-40f7-bacf-40f9ee19ff7a.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24e38fbc-787f-4f26-a394-ed38defd13e8.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 4128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9bb3f25f-262c-4094-a5ae-aa30fd9c5308.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 4088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ee2c3b32-7131-40ed-900f-552ee2659e6f.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 3740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b62b594f-7be1-4676-bb51-164d00cbc8e4.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 5136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\796a15f9-bca3-44e5-b24c-777c9df1675a.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 5112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c87fcc14-4734-46ff-b22f-e359b6ba6139.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 3732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\08fbb2d8-75d8-4253-9062-0786539d8c3f.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 3708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ded30ba7-41e4-41ca-bbd0-51da7bf63a24.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 3036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a7fc04ef-f226-46ef-8eb3-7bc8754506c4.tmp, EstimatedImpact: 0% 2026-05-25T07:41:49.541 ProcessImageName: updater.exe, Pid: 2704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f318d27-0a4c-4758-8b26-e7bb55eaa5fc.tmp, EstimatedImpact: 0% IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-25T07:41:56.768 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-25T07:41:56.768 [AutoExclusion] Applied roles from cache. 2026-05-25T07:41:56.768 [AutoExclusion] Started roles monitoring. 2026-05-25T07:41:56.768 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB12AE5810, lRefCount: 5, hr=0 2026-05-25T07:41:56.768 [Engine] New active engine 00007FFB1FFA5810 replacing engine 00007FFB12AE5810. Number of active engines: 2 2026-05-25T07:41:56.783 EngineInit:Global ASOC is enabled 2026-05-25T07:41:56.783 EngineInit:ASOO is enabled for developer volumes 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-25T07:41:56.814 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-25T07:41:56.814 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-25T07:41:56.814 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-25T07:41:56.830 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-25T07:41:56.830 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-25T07:41:56.830 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-25T07:41:56.830 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-25T07:41:56.830 [Plugin] Initializing RTP plugin state... 2026-05-25T07:41:56.830 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-25T07:41:56.830 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎24‎-‎2026 09:41:49 Last Perf:‎05‎-‎24‎-‎2026 09:41:49 First RTP Scan:‎05‎-‎24‎-‎2026 09:41:50 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:735 Misses:2605 BM Queue:0,115,0 Proc:0,40,0 File:0,90,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:175091 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-502847182 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:68995 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:172625 TotalHits:5961722 InstanceCacheInserts:25862 InstanceCacheUpdates:0 InstanceCacheDeletes:11087 InstanceCacheHits:564 InstanceCacheMisses:163187 InstanceCacheOverflows:13936 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:3ms (662/213) Success: 213, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-25T07:41:56.830 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6F1B6310-9CCD-48DA-9F80-87F70CEBA648} 2026-05-25T07:41:56.830 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{15132715-F478-43B0-A206-60BFA542CAB5} removed 2026-05-25T07:41:56.830 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{63417F80-9E1F-4D2B-9D30-D46BE4BB6B69}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{63417F80-9E1F-4D2B-9D30-D46BE4BB6B69}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-25T07:41:56.837 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-25T07:41:56.837 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-25T07:41:56.837 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-25T07:41:56.837 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-25T07:41:56.837 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-25-2026 07:41:56 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-25-2026 07:41:56 2026-05-25T07:41:56.840 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-05-25T07:41:56.840 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-25T07:41:56.840 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-25T07:41:56.840 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-25T07:41:56.840 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-25T07:41:56.840 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-25T07:41:56.840 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-25T07:41:56.840 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-25T07:41:56.840 MdCoreSvc is supported in this platform and OS 2026-05-25T07:41:56.840 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-25T07:41:56.840 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). Signature updated on 05-25-2026 07:41:56 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.89.0 AV Signature Version: 1.451.89.0 ************************************************************ 2026-05-25T07:41:56.840 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 BmLoggingDisabled:MpDisableBmLogging not set. 2026-05-25T07:41:56.840 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\30AF4EC9-81BD-4879-8044-31F1B82B092031c.1dcec19f08b843b 2026-05-25T07:41:56.855 Process scan (postsignatureupdatescan) started. 2026-05-25T07:41:56.902 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-25T07:41:56.902 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 05-25-2026 07:41:56 ************************************************************ 2026-05-25T07:41:57.136 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-25T07:41:57.136 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-25T07:41:57.136 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-25T07:41:57.136 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-25T07:41:57.136 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-25T07:41:57.136 Job Notification: Process exited from job (3452) 2026-05-25T07:41:57.136 Job Notification: Process exited from job (5152) 2026-05-25T07:41:57.136 Job Notification: Process exited from job (3996) 2026-05-25T07:41:57.136 Job Notification: Process exited from job (2140) 2026-05-25T07:41:57.136 [Engine] Engine 00007FFB12AE5810 no longer in use. Number of active engines: 1 2026-05-25T07:41:57.136 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-25T07:41:57.136 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-25T07:41:57.324 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-25T07:41:57.324 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-25T07:41:57.324 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-25T07:41:58.183 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 59274, Count: 7525, MaxTime: 484, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-25T07:41:58.183 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 195, Count: 102, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_3aa0_1.MAI, EstimatedImpact: 0% 2026-05-25T07:41:58.183 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 153, Count: 12, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-25T07:41:58.183 ProcessImageName: wacs.exe, Pid: 4848, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-25T07:41:58.183 ProcessImageName: updater.exe, Pid: 2192, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T07:41:58.183 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-25T07:41:58.183 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-25T07:41:58.183 ProcessImageName: updater.exe, Pid: 5280, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T07:41:58.183 ProcessImageName: updater.exe, Pid: 2824, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f36b9ff1-0dc2-4960-aee1-0bcd4e9cd939.tmp, EstimatedImpact: 0% 2026-05-25T07:41:58.183 ProcessImageName: updater.exe, Pid: 6132, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69c450df-7719-414b-9767-cb90d935a4f8.tmp, EstimatedImpact: 0% 2026-05-25T07:41:58.183 ProcessImageName: updater.exe, Pid: 4860, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-25T07:41:58.183 ProcessImageName: updater.exe, Pid: 2588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\042fef0a-4185-4fb4-a132-184c91fdc671.tmp, EstimatedImpact: 0% 2026-05-25T07:41:58.183 ProcessImageName: updater.exe, Pid: 2368, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fd25bf4-ae1f-43d2-a37b-d0f18a1fcf17.tmp, EstimatedImpact: 0% 2026-05-25T07:41:58.183 ProcessImageName: updater.exe, Pid: 1372, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\39b12ee6-dc38-495c-a781-9f266ca7ac7d.tmp, EstimatedImpact: 0% 2026-05-25T07:41:58.246 [Engine] RSIG_UNLOADENGINE, 00007FFB12AE5810, err=0x0 2026-05-25T07:41:58.261 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{63417F80-9E1F-4D2B-9D30-D46BE4BB6B69} removed 2026-05-25T07:42:02.824 Process scan (postsignatureupdatescan) completed. 2026-05-25T07:46:56.792 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-25T07:53:11.500 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T08:08:16.511 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T08:15:36.435 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175226, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T08:15:36.451 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175228, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T08:15:46.439 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175232, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T08:15:46.439 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175234, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T08:15:46.454 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175236, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T08:15:46.454 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175238, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-05-25T08:22:11.332 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-25T08:22:11.332 [Cloud] Start of cloud request. Passive mode: 0 2026-05-25T08:22:11.332 [Cloud] Queued cloud request. 2026-05-25T08:22:11.332 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-25T08:22:11.363 Job Notification: New process added to job (4352) 2026-05-25T08:22:11.363 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 856332B5-C104-A47F-23B3-3641ADA1D046) launched 2026-05-25T08:22:11.378 Job Notification: New process added to job (4544) 2026-05-25T08:22:11.378 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4352] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4544]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-25T08:22:11.394 Job Notification: New process added to job (5376) 2026-05-25T08:22:11.394 Job Notification: Process exited from job (4352) 2026-05-25T08:22:11.410 Job Notification: Process exited from job (4544) 2026-05-25T08:22:11.416 [Cloud] Dequeued cloud request. 2026-05-25T08:22:11.416 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-25T08:22:11.738 [Cloud] End of cloud request. 2026-05-25T08:22:11.738 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-05-25T08:22:11.738 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-25T08:22:11.754 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE BEGIN BM telemetry GUID:{330D37B2-6703-090F-9FC8-D71E8AA6538D} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:3540 ProcessCreationTime:134241709313182221 SessionID:0 CreationTime:05-25-2026 08:22:11 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-05-25T08:22:11.785 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-25T08:22:11.785 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-25T08:22:12.269 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-25T08:22:12.285 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-25T08:22:12.285 [Cloud] Start of cloud request. Passive mode: 0 2026-05-25T08:22:12.285 [Cloud] Queued cloud request. 2026-05-25T08:22:12.285 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-25T08:22:12.285 [Cloud] Dequeued cloud request. 2026-05-25T08:22:12.347 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-25T08:22:12.472 [Cloud] End of cloud request. 2026-05-25T08:22:12.988 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-25T08:22:14.019 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-25T08:22:14.019 [Cloud] Start of cloud request. Passive mode: 0 2026-05-25T08:22:14.019 [Cloud] Queued cloud request. 2026-05-25T08:22:14.019 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-25T08:22:14.019 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-05-25T08:22:14.019 [Cloud] Dequeued cloud request. 2026-05-25T08:22:14.019 [Cloud] Start of cloud request. Passive mode: 0 2026-05-25T08:22:14.019 [Cloud] Queued cloud request. 2026-05-25T08:22:14.019 [Cloud] Dequeued cloud request. 2026-05-25T08:22:14.019 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-25T08:22:14.035 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-25T08:22:14.160 [Cloud] End of cloud request. 2026-05-25T08:22:14.175 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-25T08:22:14.175 [Cloud] End of cloud request. 2026-05-25T08:22:14.676 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-25T08:23:21.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T08:38:26.498 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T08:53:31.504 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T09:08:36.504 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T09:15:35.001 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175386, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T09:15:35.001 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175388, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T09:15:45.005 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175392, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T09:15:45.005 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175393, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T09:15:45.020 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175395, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T09:23:41.509 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T09:38:46.503 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T09:41:56.767 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1003, Count: 82, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-05-25T09:41:56.767 ProcessImageName: wacs.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-25T09:41:56.767 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7a69891-c3ff-4475-804f-ac3d2d1d5337.tmp, EstimatedImpact: 0% 2026-05-25T09:41:56.767 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4845a2ec-92d5-444a-8320-f0cf42f2d38d.tmp, EstimatedImpact: 0% 2026-05-25T09:53:51.508 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T10:08:56.497 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T10:15:36.865 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175481, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T10:15:36.865 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175483, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T10:15:46.883 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175487, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T10:15:46.899 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175490, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T10:15:47.024 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175493, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T10:15:47.040 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #175495, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T10:24:01.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T10:27:19.328 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43b7_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #176681, FileId: 0x6100000000249ba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T10:27:30.238 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43b7_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177148, FileId: 0x6110000000249ba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T10:27:30.254 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43b7_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177151, FileId: 0x6120000000249ba, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T10:39:06.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T10:54:11.502 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T11:09:16.501 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T11:15:33.683 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177224, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T11:15:33.689 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177226, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T11:15:43.688 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177230, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T11:15:43.688 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177231, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T11:15:43.703 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177233, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T11:24:21.501 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T11:39:26.509 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T11:41:56.772 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 43639, Count: 6332, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-05-25T11:41:56.772 ProcessImageName: updater.exe, Pid: 948, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T11:41:56.772 ProcessImageName: wacs.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-25T11:41:56.772 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 15, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_43b7_9.MAI, EstimatedImpact: 0% 2026-05-25T11:41:56.772 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7a69891-c3ff-4475-804f-ac3d2d1d5337.tmp, EstimatedImpact: 0% 2026-05-25T11:41:56.772 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4845a2ec-92d5-444a-8320-f0cf42f2d38d.tmp, EstimatedImpact: 0% 2026-05-25T11:41:56.772 ProcessImageName: updater.exe, Pid: 4356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fbfd30d-de35-4049-9fc0-12b84a561d7b.tmp, EstimatedImpact: 0% 2026-05-25T11:54:31.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T12:09:36.510 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T12:15:35.233 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177301, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T12:15:35.265 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177304, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T12:15:45.246 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177308, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T12:15:45.246 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177309, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T12:15:45.262 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177312, FileId: 0x564000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T12:24:41.496 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T12:39:46.504 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T12:54:51.504 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T13:09:56.498 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T13:15:35.345 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177432, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T13:15:35.361 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177434, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T13:15:45.375 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177438, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T13:15:45.375 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177441, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T13:25:01.498 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T13:40:06.498 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T13:41:56.782 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 44214, Count: 6381, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-25T13:41:56.782 ProcessImageName: updater.exe, Pid: 948, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T13:41:56.782 ProcessImageName: wacs.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-25T13:41:56.782 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-25T13:41:56.782 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 15, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_43b7_9.MAI, EstimatedImpact: 0% 2026-05-25T13:41:56.782 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7a69891-c3ff-4475-804f-ac3d2d1d5337.tmp, EstimatedImpact: 0% 2026-05-25T13:41:56.782 ProcessImageName: updater.exe, Pid: 5616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb66a1bf-a77c-4c71-bb46-b0e110ff2883.tmp, EstimatedImpact: 0% 2026-05-25T13:41:56.782 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4845a2ec-92d5-444a-8320-f0cf42f2d38d.tmp, EstimatedImpact: 0% 2026-05-25T13:41:56.782 ProcessImageName: updater.exe, Pid: 4356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fbfd30d-de35-4049-9fc0-12b84a561d7b.tmp, EstimatedImpact: 0% 2026-05-25T13:41:56.782 ProcessImageName: updater.exe, Pid: 4316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b45a3a72-05a3-4c0f-8dd6-dda6091e2801.tmp, EstimatedImpact: 0% 2026-05-25T13:55:11.502 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T14:10:16.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T14:15:33.885 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177518, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T14:15:33.900 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177520, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T14:15:43.899 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177524, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T14:15:43.899 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177525, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T14:15:43.915 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177527, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T14:25:21.502 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T14:40:26.506 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T14:55:31.496 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T15:10:36.506 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T15:15:34.584 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177608, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T15:15:34.600 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177610, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T15:15:44.593 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177614, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T15:15:44.593 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177616, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T15:15:44.780 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177620, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T15:15:44.780 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177622, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T15:25:41.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T15:40:46.500 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T15:41:56.796 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 44290, Count: 6387, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-25T15:41:56.796 ProcessImageName: updater.exe, Pid: 948, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T15:41:56.796 ProcessImageName: wacs.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-25T15:41:56.796 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d624b5f-d4bb-48f5-aec8-e6b8d38f9ad3.tmp, EstimatedImpact: 0% 2026-05-25T15:41:56.796 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-25T15:41:56.796 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 15, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_43b7_9.MAI, EstimatedImpact: 0% 2026-05-25T15:41:56.796 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7a69891-c3ff-4475-804f-ac3d2d1d5337.tmp, EstimatedImpact: 0% 2026-05-25T15:41:56.796 ProcessImageName: updater.exe, Pid: 5616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb66a1bf-a77c-4c71-bb46-b0e110ff2883.tmp, EstimatedImpact: 0% 2026-05-25T15:41:56.796 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4845a2ec-92d5-444a-8320-f0cf42f2d38d.tmp, EstimatedImpact: 0% 2026-05-25T15:41:56.796 ProcessImageName: updater.exe, Pid: 4356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fbfd30d-de35-4049-9fc0-12b84a561d7b.tmp, EstimatedImpact: 0% 2026-05-25T15:41:56.796 ProcessImageName: updater.exe, Pid: 4316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b45a3a72-05a3-4c0f-8dd6-dda6091e2801.tmp, EstimatedImpact: 0% 2026-05-25T15:41:56.796 ProcessImageName: updater.exe, Pid: 4236, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-25T15:55:51.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T16:10:56.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T16:15:35.237 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177741, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:15:35.253 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177743, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:15:45.251 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177747, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:15:45.267 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177749, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:15:45.267 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #177751, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:26:01.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T16:41:06.509 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T16:52:22.224 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177793, FileId: 0x2325000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:24.696 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177859, FileId: 0x2327000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:24.727 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177862, FileId: 0x2328000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:24.790 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177866, FileId: 0x2329000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:24.821 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177869, FileId: 0x232a000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:24.837 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177872, FileId: 0x232b000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:24.883 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177875, FileId: 0x232c000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:24.899 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177878, FileId: 0x232d000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:24.946 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177881, FileId: 0x232e000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:24.962 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177884, FileId: 0x232f000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:24.993 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177887, FileId: 0x2330000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:25.024 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177890, FileId: 0x2331000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:25.669 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177894, FileId: 0x2332000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:26.258 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177897, FileId: 0x2333000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:26.762 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177900, FileId: 0x2334000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:26.793 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177903, FileId: 0x2335000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:26.856 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177906, FileId: 0x2336000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:26.871 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177909, FileId: 0x2337000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:26.887 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177912, FileId: 0x2338000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:26.903 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177915, FileId: 0x2339000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:26.934 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177918, FileId: 0x233a000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:26.950 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177921, FileId: 0x233b000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:26.996 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177924, FileId: 0x233c000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:27.028 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177927, FileId: 0x233d000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:27.059 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177930, FileId: 0x233e000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:27.106 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177933, FileId: 0x233f000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:27.231 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177936, FileId: 0x2340000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:27.246 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177939, FileId: 0x2341000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:27.278 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177942, FileId: 0x2342000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:27.887 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43c9_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177956, FileId: 0x2343000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:29.903 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177987, FileId: 0x2348000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:29.934 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177992, FileId: 0x2349000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:29.965 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177995, FileId: 0x234a000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:30.043 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #177998, FileId: 0x234b000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:30.043 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178001, FileId: 0x234c000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:30.090 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178004, FileId: 0x234d000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:30.137 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178007, FileId: 0x234e000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:30.200 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_10.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178010, FileId: 0x234f000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:30.215 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_12.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178013, FileId: 0x2350000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:30.246 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_14.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178016, FileId: 0x2351000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:30.293 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_16.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178019, FileId: 0x2352000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:30.793 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_18.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178030, FileId: 0x2353000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:31.328 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_1a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178033, FileId: 0x2354000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:31.895 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_1c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178036, FileId: 0x2355000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:31.914 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_1e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178039, FileId: 0x2356000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:31.945 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_20.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178042, FileId: 0x2357000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:31.976 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_22.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178045, FileId: 0x2358000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:31.992 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_24.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178048, FileId: 0x2359000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:32.008 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_26.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178051, FileId: 0x235a000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:32.031 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_28.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178054, FileId: 0x235b000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:52:32.672 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sqla80_43ca_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #178084, FileId: 0x2365000000008759, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T16:56:11.509 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T17:11:16.509 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T17:26:21.498 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T17:41:26.497 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T17:41:56.801 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 48447, Count: 6731, MaxTime: 625, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-25T17:41:56.801 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 131, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_43b7_9.MAI, EstimatedImpact: 0% 2026-05-25T17:41:56.801 ProcessImageName: updater.exe, Pid: 948, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T17:41:56.801 ProcessImageName: wacs.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-25T17:41:56.801 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d624b5f-d4bb-48f5-aec8-e6b8d38f9ad3.tmp, EstimatedImpact: 0% 2026-05-25T17:41:56.801 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-25T17:41:56.801 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7a69891-c3ff-4475-804f-ac3d2d1d5337.tmp, EstimatedImpact: 0% 2026-05-25T17:41:56.801 ProcessImageName: updater.exe, Pid: 4316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b45a3a72-05a3-4c0f-8dd6-dda6091e2801.tmp, EstimatedImpact: 0% 2026-05-25T17:41:56.801 ProcessImageName: updater.exe, Pid: 704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bea45f-2f89-4c11-b87c-a1cb9525a83f.tmp, EstimatedImpact: 0% 2026-05-25T17:41:56.801 ProcessImageName: updater.exe, Pid: 5616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb66a1bf-a77c-4c71-bb46-b0e110ff2883.tmp, EstimatedImpact: 0% 2026-05-25T17:41:56.801 ProcessImageName: updater.exe, Pid: 5528, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21efcfc5-e86d-4bd3-9046-e93480387388.tmp, EstimatedImpact: 0% 2026-05-25T17:41:56.801 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4845a2ec-92d5-444a-8320-f0cf42f2d38d.tmp, EstimatedImpact: 0% 2026-05-25T17:41:56.801 ProcessImageName: updater.exe, Pid: 4356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fbfd30d-de35-4049-9fc0-12b84a561d7b.tmp, EstimatedImpact: 0% 2026-05-25T17:41:56.801 ProcessImageName: updater.exe, Pid: 4236, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-25T17:56:31.497 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T18:11:36.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T18:15:45.553 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #178209, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T18:26:41.494 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T18:41:46.506 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T18:56:51.506 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T19:11:56.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T19:27:01.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T19:41:56.806 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 48447, Count: 6731, MaxTime: 625, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 131, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_43b7_9.MAI, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: updater.exe, Pid: 948, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: wacs.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-25T19:41:56.806 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d624b5f-d4bb-48f5-aec8-e6b8d38f9ad3.tmp, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7a69891-c3ff-4475-804f-ac3d2d1d5337.tmp, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: updater.exe, Pid: 4316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b45a3a72-05a3-4c0f-8dd6-dda6091e2801.tmp, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: updater.exe, Pid: 704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bea45f-2f89-4c11-b87c-a1cb9525a83f.tmp, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: updater.exe, Pid: 5616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb66a1bf-a77c-4c71-bb46-b0e110ff2883.tmp, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: updater.exe, Pid: 5528, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21efcfc5-e86d-4bd3-9046-e93480387388.tmp, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4845a2ec-92d5-444a-8320-f0cf42f2d38d.tmp, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: updater.exe, Pid: 2224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0daa2bcd-d640-4cbb-8a61-a00f8e82560d.tmp, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: updater.exe, Pid: 2192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e40b4161-2534-4257-ab54-6d2cc79c488d.tmp, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: updater.exe, Pid: 4356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fbfd30d-de35-4049-9fc0-12b84a561d7b.tmp, EstimatedImpact: 0% 2026-05-25T19:41:56.806 ProcessImageName: updater.exe, Pid: 4236, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-25T19:42:06.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T19:57:11.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T20:12:16.504 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T20:15:44.981 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #178451, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T20:27:21.509 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T20:42:26.508 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T20:57:31.503 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T21:12:36.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T21:27:41.502 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T21:41:56.809 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 48582, Count: 6751, MaxTime: 625, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 131, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_43b7_9.MAI, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: updater.exe, Pid: 948, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: wacs.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-25T21:41:56.809 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d624b5f-d4bb-48f5-aec8-e6b8d38f9ad3.tmp, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: updater.exe, Pid: 3860, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7bf70fdf-aa44-4759-8132-a79c99fdb03f.tmp, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7a69891-c3ff-4475-804f-ac3d2d1d5337.tmp, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: updater.exe, Pid: 5616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb66a1bf-a77c-4c71-bb46-b0e110ff2883.tmp, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: updater.exe, Pid: 4356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fbfd30d-de35-4049-9fc0-12b84a561d7b.tmp, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: updater.exe, Pid: 4316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b45a3a72-05a3-4c0f-8dd6-dda6091e2801.tmp, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: updater.exe, Pid: 5528, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21efcfc5-e86d-4bd3-9046-e93480387388.tmp, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4845a2ec-92d5-444a-8320-f0cf42f2d38d.tmp, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: updater.exe, Pid: 4952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e459fe6-a838-49b7-9812-2bc427c6036c.tmp, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: updater.exe, Pid: 704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bea45f-2f89-4c11-b87c-a1cb9525a83f.tmp, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: updater.exe, Pid: 2224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0daa2bcd-d640-4cbb-8a61-a00f8e82560d.tmp, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: updater.exe, Pid: 2192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e40b4161-2534-4257-ab54-6d2cc79c488d.tmp, EstimatedImpact: 0% 2026-05-25T21:41:56.809 ProcessImageName: updater.exe, Pid: 4236, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-25T21:42:46.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T21:57:51.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T22:12:56.502 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T22:15:44.981 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #178704, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-25T22:28:01.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T22:43:06.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T22:58:11.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T23:13:16.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T23:28:21.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T23:41:56.809 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51089, Count: 6941, MaxTime: 625, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 136, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_43b7_9.MAI, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 948, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: wacs.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d624b5f-d4bb-48f5-aec8-e6b8d38f9ad3.tmp, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 3860, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7bf70fdf-aa44-4759-8132-a79c99fdb03f.tmp, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7a69891-c3ff-4475-804f-ac3d2d1d5337.tmp, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 4316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b45a3a72-05a3-4c0f-8dd6-dda6091e2801.tmp, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 3652, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6784109a-b5d8-4cda-95ae-e59c864faa87.tmp, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 5528, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21efcfc5-e86d-4bd3-9046-e93480387388.tmp, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 5616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb66a1bf-a77c-4c71-bb46-b0e110ff2883.tmp, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4845a2ec-92d5-444a-8320-f0cf42f2d38d.tmp, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 2224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0daa2bcd-d640-4cbb-8a61-a00f8e82560d.tmp, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 4952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e459fe6-a838-49b7-9812-2bc427c6036c.tmp, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 2192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e40b4161-2534-4257-ab54-6d2cc79c488d.tmp, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23179191-908a-483a-a8de-a89b1e04c7c1.tmp, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bea45f-2f89-4c11-b87c-a1cb9525a83f.tmp, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 4356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fbfd30d-de35-4049-9fc0-12b84a561d7b.tmp, EstimatedImpact: 0% 2026-05-25T23:41:56.809 ProcessImageName: updater.exe, Pid: 4236, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-25T23:43:26.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-25T23:58:31.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T00:13:36.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T00:15:36.529 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #178896, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T00:28:41.498 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T00:36:01.868 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:9F252BD2-4A16-47D3-94E3-A7F1AFD30343, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-26T00:36:01.868 Scheduled scan with Id 9F252BD2-4A16-47D3-94E3-A7F1AFD30343 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-26T00:36:01.868 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-26T00:36:01.868 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-26T00:36:01.868 [SFC] System file cache build is not needed (already completed) 2026-05-26T00:36:16.055 Engine:Triggered AR EMS scan 2026-05-26T00:36:16.055 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.070 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.086 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.101 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.117 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.133 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.148 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.164 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.180 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.195 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.211 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.242 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.242 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.258 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.273 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.289 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.305 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.320 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:16.336 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-26T00:36:29.883 QuickScan:ScanID:9F252BD2-4A16-47D3-94E3-A7F1AFD30343: Quick scan finished with error 0 2026-05-26T00:36:29.883 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-26T00:36:30.390 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-26T00:36:30.390 [RTP] Duplicating the current plugin configuration object... 2026-05-26T00:36:30.390 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-26T00:36:30.390 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-26T00:36:30.390 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-26T00:36:30.390 [RTP] No config change detected. Not updating plugin configuration. 2026-05-26T00:36:30.390 [RTP] No config changes found. No configuration switch. 2026-05-26T00:36:30.390 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-26T00:43:46.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T00:58:51.492 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T01:13:56.497 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T01:15:44.358 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #179146, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T01:29:01.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T01:41:56.813 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51119, Count: 6947, MaxTime: 625, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 136, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_43b7_9.MAI, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 948, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: wacs.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d624b5f-d4bb-48f5-aec8-e6b8d38f9ad3.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 940, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f4fbffde-810d-453e-8a3b-79bbb57286de.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 3860, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7bf70fdf-aa44-4759-8132-a79c99fdb03f.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7a69891-c3ff-4475-804f-ac3d2d1d5337.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 5992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34a6ebba-94f3-4432-82e5-ffc5adb45984.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 4356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fbfd30d-de35-4049-9fc0-12b84a561d7b.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 4316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b45a3a72-05a3-4c0f-8dd6-dda6091e2801.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 3652, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6784109a-b5d8-4cda-95ae-e59c864faa87.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 2192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e40b4161-2534-4257-ab54-6d2cc79c488d.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 5616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb66a1bf-a77c-4c71-bb46-b0e110ff2883.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 5528, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21efcfc5-e86d-4bd3-9046-e93480387388.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4845a2ec-92d5-444a-8320-f0cf42f2d38d.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 2224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0daa2bcd-d640-4cbb-8a61-a00f8e82560d.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23179191-908a-483a-a8de-a89b1e04c7c1.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bea45f-2f89-4c11-b87c-a1cb9525a83f.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 4952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e459fe6-a838-49b7-9812-2bc427c6036c.tmp, EstimatedImpact: 0% 2026-05-26T01:41:56.813 ProcessImageName: updater.exe, Pid: 4236, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-26T01:44:06.507 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T01:59:11.501 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T02:14:16.501 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T02:29:21.506 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T02:44:26.500 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T02:59:31.506 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T03:14:36.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T03:15:44.924 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #179363, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T03:29:41.499 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T03:41:56.818 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51119, Count: 6948, MaxTime: 625, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 150, Count: 140, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_43b7_9.MAI, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 948, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: wacs.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 3860, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7bf70fdf-aa44-4759-8132-a79c99fdb03f.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d624b5f-d4bb-48f5-aec8-e6b8d38f9ad3.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 940, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f4fbffde-810d-453e-8a3b-79bbb57286de.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7a69891-c3ff-4475-804f-ac3d2d1d5337.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 5528, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21efcfc5-e86d-4bd3-9046-e93480387388.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4845a2ec-92d5-444a-8320-f0cf42f2d38d.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 4316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b45a3a72-05a3-4c0f-8dd6-dda6091e2801.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 4952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e459fe6-a838-49b7-9812-2bc427c6036c.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 2932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\412cf080-e721-468f-b4d7-b3b938670d7c.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\feb594ea-8e9d-4ac6-8b21-bd19b2bed6fe.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 2224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0daa2bcd-d640-4cbb-8a61-a00f8e82560d.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 5992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34a6ebba-94f3-4432-82e5-ffc5adb45984.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 3652, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6784109a-b5d8-4cda-95ae-e59c864faa87.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 4356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fbfd30d-de35-4049-9fc0-12b84a561d7b.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 2192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e40b4161-2534-4257-ab54-6d2cc79c488d.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23179191-908a-483a-a8de-a89b1e04c7c1.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 5616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb66a1bf-a77c-4c71-bb46-b0e110ff2883.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bea45f-2f89-4c11-b87c-a1cb9525a83f.tmp, EstimatedImpact: 0% 2026-05-26T03:41:56.818 ProcessImageName: updater.exe, Pid: 4236, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-26T03:44:46.504 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T03:59:51.503 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T04:14:56.504 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T04:30:01.503 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T04:45:06.492 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T05:00:11.497 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T05:15:16.491 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T05:15:45.459 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #179522, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T05:30:21.502 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T05:41:56.833 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51134, Count: 6950, MaxTime: 625, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 150, Count: 140, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_43b7_9.MAI, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 948, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: wacs.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 3860, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7bf70fdf-aa44-4759-8132-a79c99fdb03f.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d624b5f-d4bb-48f5-aec8-e6b8d38f9ad3.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 940, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f4fbffde-810d-453e-8a3b-79bbb57286de.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7a69891-c3ff-4475-804f-ac3d2d1d5337.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 5528, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21efcfc5-e86d-4bd3-9046-e93480387388.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4845a2ec-92d5-444a-8320-f0cf42f2d38d.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 4356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3fbfd30d-de35-4049-9fc0-12b84a561d7b.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 4316, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b45a3a72-05a3-4c0f-8dd6-dda6091e2801.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 3804, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4bfe24f2-853a-4365-80f9-c0ff4dab8c26.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 2932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\412cf080-e721-468f-b4d7-b3b938670d7c.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\feb594ea-8e9d-4ac6-8b21-bd19b2bed6fe.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 5992, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34a6ebba-94f3-4432-82e5-ffc5adb45984.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 2224, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0daa2bcd-d640-4cbb-8a61-a00f8e82560d.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 2192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e40b4161-2534-4257-ab54-6d2cc79c488d.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 4952, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e459fe6-a838-49b7-9812-2bc427c6036c.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 5816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a6fa47fe-4810-47d3-84b4-97083aebd4fa.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 3652, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6784109a-b5d8-4cda-95ae-e59c864faa87.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\23179191-908a-483a-a8de-a89b1e04c7c1.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 5616, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb66a1bf-a77c-4c71-bb46-b0e110ff2883.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 704, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\44bea45f-2f89-4c11-b87c-a1cb9525a83f.tmp, EstimatedImpact: 0% 2026-05-26T05:41:56.833 ProcessImageName: updater.exe, Pid: 4236, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-26T05:45:26.502 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T06:00:31.501 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T06:15:36.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T06:30:41.501 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T06:45:46.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T07:00:51.505 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T07:15:43.890 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #179905, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T07:15:56.492 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T07:31:01.499 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T07:41:16.494 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-26T07:41:16.510 Job Notification: New process added to job (4476) 2026-05-26T07:41:16.528 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-26T07:41:16.528 Aggressive catchup quick scan threshold: 255146611803 / 25920000000000 2026-05-26T07:41:16.528 Job Notification: New process added to job (3812) 2026-05-26T07:41:16.528 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4476] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3812]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-26T07:41:16.684 Job Notification: New process added to job (5616) 2026-05-26T07:41:16.684 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-26T07:41:16.684 Job Notification: New process added to job (2776) 2026-05-26T07:41:16.700 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:5616] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2776]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-26T07:41:17.090 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-26T07:41:17.153 [RTP] Duplicating the current plugin configuration object... 2026-05-26T07:41:17.153 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-26T07:41:17.153 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-26T07:41:17.153 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-26T07:41:17.153 [RTP] No config change detected. Not updating plugin configuration. 2026-05-26T07:41:17.153 [RTP] No config changes found. No configuration switch. 2026-05-26T07:41:17.153 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-26T07:41:17.215 Job Notification: New process added to job (5104) 2026-05-26T07:41:17.215 Task(GetDeviceTicket -AccessKey C9D0F925-2E3B-C277-A2BF-F7931531B58E ) launched as network service 2026-05-26T07:41:17.668 Job Notification: Process exited from job (5104) 2026-05-26T07:41:19.207 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-26T07:41:19.207 [Cloud] Start of cloud request. Passive mode: 0 2026-05-26T07:41:19.207 [Cloud] Queued cloud request. 2026-05-26T07:41:19.207 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-26T07:41:19.207 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-26T07:41:19.207 [Cloud] Dequeued cloud request. 2026-05-26T07:41:19.207 [Cloud] Start of cloud request. Passive mode: 0 2026-05-26T07:41:19.207 [Cloud] Queued cloud request. 2026-05-26T07:41:19.207 [Cloud] Dequeued cloud request. 2026-05-26T07:41:19.207 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-26T07:41:19.207 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-26T07:41:19.467 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-26T07:41:19.467 [Cloud] End of cloud request. 2026-05-26T07:41:19.660 [Cloud] End of cloud request. 2026-05-26T07:41:19.707 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-26T07:41:36.332 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\C24F1A94-D4B5-4BB1-9CBF-58B31121090E718.1dcece3101fa2c6 2026-05-26T07:41:36.378 Verifying engine and signature files (source: 0) ... 2026-05-26T07:41:36.378 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4B6E6DCF-A2E1-403F-8D95-AF52F3341D4C}\mpengine.dll] due to PPL. 2026-05-26T07:41:36.378 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4B6E6DCF-A2E1-403F-8D95-AF52F3341D4C}\mpasbase.vdm] (file in cache) 2026-05-26T07:41:36.378 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4B6E6DCF-A2E1-403F-8D95-AF52F3341D4C}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-26T07:41:36.394 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4B6E6DCF-A2E1-403F-8D95-AF52F3341D4C}\mpasdlta.vdm] 2026-05-26T07:41:36.394 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4B6E6DCF-A2E1-403F-8D95-AF52F3341D4C}\mpavbase.vdm] (file in cache) 2026-05-26T07:41:36.394 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4B6E6DCF-A2E1-403F-8D95-AF52F3341D4C}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-26T07:41:36.410 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4B6E6DCF-A2E1-403F-8D95-AF52F3341D4C}\mpavdlta.vdm] 2026-05-26T07:41:36.624 [Engine] IsHybridMode: 0 2026-05-26T07:41:36.624 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-05-26T07:41:36.749 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-228F4772DC921576A5D85CFF670E3D28112A61D1.bin): 0x00000002 2026-05-26T07:41:36.749 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-228F4772DC921576A5D85CFF670E3D28112A61D1.bin) 2026-05-26T07:41:36.749 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-26T07:41:36.749 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-26T07:41:36.749 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-26T07:41:36.749 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-26T07:41:44.815 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-26T07:41:44.815 [AutoExclusion] Applied roles from cache. 2026-05-26T07:41:44.815 [AutoExclusion] Started roles monitoring. 2026-05-26T07:41:44.830 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB1FFA5810, lRefCount: 5, hr=0 2026-05-26T07:41:44.830 [Engine] New active engine 00007FFB12AE5810 replacing engine 00007FFB1FFA5810. Number of active engines: 2 2026-05-26T07:41:44.830 EngineInit:Global ASOC is enabled 2026-05-26T07:41:44.846 EngineInit:ASOO is enabled for developer volumes 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-26T07:41:44.862 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-26T07:41:44.862 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-26T07:41:44.877 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-26T07:41:44.877 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-26T07:41:44.877 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-26T07:41:44.877 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-26T07:41:44.877 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-26T07:41:44.877 [Plugin] Initializing RTP plugin state... 2026-05-26T07:41:44.877 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-26T07:41:44.877 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎25‎-‎2026 09:41:57 Last Perf:‎05‎-‎25‎-‎2026 09:41:56 First RTP Scan:‎05‎-‎25‎-‎2026 09:42:04 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:508 Misses:2379 BM Queue:0,88,0 Proc:0,43,0 File:0,81,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:180028 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-496411448 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:68956 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:176638 TotalHits:5989147 InstanceCacheInserts:26164 InstanceCacheUpdates:0 InstanceCacheDeletes:11363 InstanceCacheHits:588 InstanceCacheMisses:163691 InstanceCacheOverflows:13936 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:3ms (777/218) Success: 218, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-26T07:41:44.877 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4B6E6DCF-A2E1-403F-8D95-AF52F3341D4C} 2026-05-26T07:41:44.877 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6F1B6310-9CCD-48DA-9F80-87F70CEBA648}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6F1B6310-9CCD-48DA-9F80-87F70CEBA648}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-26T07:41:44.877 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A3CCC746-3C20-4EBF-8563-C3F6E6A6FB79} removed 2026-05-26T07:41:44.877 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-26T07:41:44.877 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-26T07:41:44.877 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-26T07:41:44.877 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-26T07:41:44.877 MdCoreSvc is supported in this platform and OS 2026-05-26T07:41:44.877 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-26-2026 07:41:44 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-26-2026 07:41:44 2026-05-26T07:41:44.877 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-26T07:41:44.877 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-26T07:41:44.893 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-26T07:41:44.893 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-26T07:41:44.893 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-26T07:41:44.893 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-26T07:41:44.893 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-26T07:41:44.893 MdCoreSvc is supported in this platform and OS 2026-05-26T07:41:44.893 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-26T07:41:44.893 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 05-26-2026 07:41:44 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.110.0 AV Signature Version: 1.451.110.0 ************************************************************ 2026-05-26T07:41:44.893 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-26T07:41:44.893 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\C24F1A94-D4B5-4BB1-9CBF-58B31121090E718.1dcece3101fa2c6 Signature updated via MicrosoftUpdateServer on 05-26-2026 07:41:44 ************************************************************ 2026-05-26T07:41:44.955 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-26T07:41:44.955 Process scan (postsignatureupdatescan) started. 2026-05-26T07:41:44.955 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-26T07:41:45.143 Job Notification: Process exited from job (5616) 2026-05-26T07:41:45.159 Job Notification: Process exited from job (2776) 2026-05-26T07:41:45.159 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-26T07:41:45.159 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-26T07:41:45.159 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-26T07:41:45.159 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-26T07:41:45.159 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-26T07:41:45.174 Job Notification: Process exited from job (4476) 2026-05-26T07:41:45.174 [Engine] Engine 00007FFB1FFA5810 no longer in use. Number of active engines: 1 2026-05-26T07:41:45.174 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-26T07:41:45.174 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-26T07:41:45.174 Job Notification: Process exited from job (3812) 2026-05-26T07:41:45.377 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-26T07:41:45.377 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-26T07:41:45.377 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-26T07:41:46.018 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51194, Count: 6960, MaxTime: 625, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-26T07:41:46.018 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 231, Count: 9, MaxTime: 125, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-26T07:41:46.018 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 150, Count: 140, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_43b7_9.MAI, EstimatedImpact: 0% 2026-05-26T07:41:46.018 ProcessImageName: updater.exe, Pid: 948, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-26T07:41:46.018 ProcessImageName: wacs.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-26T07:41:46.018 ProcessImageName: updater.exe, Pid: 3860, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7bf70fdf-aa44-4759-8132-a79c99fdb03f.tmp, EstimatedImpact: 0% 2026-05-26T07:41:46.018 ProcessImageName: updater.exe, Pid: 5064, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d624b5f-d4bb-48f5-aec8-e6b8d38f9ad3.tmp, EstimatedImpact: 0% 2026-05-26T07:41:46.018 ProcessImageName: updater.exe, Pid: 940, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f4fbffde-810d-453e-8a3b-79bbb57286de.tmp, EstimatedImpact: 0% 2026-05-26T07:41:46.018 ProcessImageName: updater.exe, Pid: 3732, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\24129fdf-09a1-4bb6-97d9-a55d53488f33.tmp, EstimatedImpact: 0% 2026-05-26T07:41:46.018 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-26T07:41:46.018 ProcessImageName: updater.exe, Pid: 2776, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b7a69891-c3ff-4475-804f-ac3d2d1d5337.tmp, EstimatedImpact: 0% 2026-05-26T07:41:46.018 ProcessImageName: updater.exe, Pid: 5528, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21efcfc5-e86d-4bd3-9046-e93480387388.tmp, EstimatedImpact: 0% 2026-05-26T07:41:46.018 ProcessImageName: updater.exe, Pid: 5424, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4845a2ec-92d5-444a-8320-f0cf42f2d38d.tmp, EstimatedImpact: 0% 2026-05-26T07:41:46.065 [Engine] RSIG_UNLOADENGINE, 00007FFB1FFA5810, err=0x0 2026-05-26T07:41:46.080 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6F1B6310-9CCD-48DA-9F80-87F70CEBA648} removed 2026-05-26T07:41:50.893 Process scan (postsignatureupdatescan) completed. 2026-05-26T07:46:06.498 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T07:46:44.860 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-26T08:01:11.503 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T08:15:35.457 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #180210, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T08:15:35.473 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #180212, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T08:15:45.465 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #180216, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T08:15:45.465 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #180218, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T08:15:45.465 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #180220, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T08:16:16.492 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T08:22:24.920 Job Notification: Process exited from job (5376) 2026-05-26T08:31:21.492 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T08:46:26.497 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T09:01:31.502 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T09:15:33.687 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #180359, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T09:15:33.696 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #180361, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T09:15:43.700 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #180365, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T09:15:43.716 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #180366, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T09:15:43.716 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #180367, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T09:16:36.502 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T09:31:41.501 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T09:41:44.830 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 846, Count: 129, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\.htaccess, EstimatedImpact: 0% 2026-05-26T09:41:44.830 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-26T09:41:44.830 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d96db3de-ec32-4d9c-b042-149ba5214e68.tmp, EstimatedImpact: 0% 2026-05-26T09:41:44.830 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\162ee648-e8ef-4820-8905-ef421f2b02bb.tmp, EstimatedImpact: 0% 2026-05-26T09:46:46.496 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T09:48:17.286 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4550_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #181634, FileId: 0xdb000000025489, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T09:48:27.614 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4550_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #182082, FileId: 0xdc000000025489, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-05-26T09:53:10.332 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-26T09:53:10.332 [Cloud] Start of cloud request. Passive mode: 0 2026-05-26T09:53:10.332 [Cloud] Queued cloud request. 2026-05-26T09:53:10.332 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-26T09:53:10.363 Job Notification: New process added to job (3028) 2026-05-26T09:53:10.379 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey AFFDEEFA-A614-5217-77B1-E90AB14741DF) launched 2026-05-26T09:53:10.379 Job Notification: New process added to job (4968) 2026-05-26T09:53:10.379 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3028] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4968]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-26T09:53:10.395 Job Notification: New process added to job (2724) 2026-05-26T09:53:10.410 Job Notification: Process exited from job (3028) 2026-05-26T09:53:10.410 Job Notification: Process exited from job (4968) 2026-05-26T09:53:10.410 [Cloud] Dequeued cloud request. 2026-05-26T09:53:10.410 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-26T09:53:10.778 [Cloud] End of cloud request. 2026-05-26T09:53:10.778 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-05-26T09:53:10.793 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe BEGIN BM telemetry GUID:{5D10EE63-E317-2798-549F-ECF4088C519C} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:228 ProcessCreationTime:134242627903213820 SessionID:0 CreationTime:05-26-2026 09:53:10 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-05-26T09:53:10.809 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE 2026-05-26T09:53:10.840 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-26T09:53:10.840 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-26T09:53:11.293 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-26T09:53:11.309 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-26T09:53:11.309 [Cloud] Start of cloud request. Passive mode: 0 2026-05-26T09:53:11.309 [Cloud] Queued cloud request. 2026-05-26T09:53:11.309 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-26T09:53:11.309 [Cloud] Dequeued cloud request. 2026-05-26T09:53:11.309 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-26T09:53:11.497 [Cloud] End of cloud request. 2026-05-26T09:53:12.028 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-26T09:53:13.090 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-26T09:53:13.090 [Cloud] Start of cloud request. Passive mode: 0 2026-05-26T09:53:13.090 [Cloud] Queued cloud request. 2026-05-26T09:53:13.090 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-26T09:53:13.090 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-05-26T09:53:13.090 [Cloud] Dequeued cloud request. 2026-05-26T09:53:13.090 [Cloud] Start of cloud request. Passive mode: 0 2026-05-26T09:53:13.090 [Cloud] Queued cloud request. 2026-05-26T09:53:13.090 [Cloud] Dequeued cloud request. 2026-05-26T09:53:13.090 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-26T09:53:13.090 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-26T09:53:13.231 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-26T09:53:13.231 [Cloud] End of cloud request. 2026-05-26T09:53:13.247 [Cloud] End of cloud request. 2026-05-26T09:53:13.735 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-26T10:01:51.490 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T10:15:34.429 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182137, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T10:15:34.444 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182139, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T10:15:44.449 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182143, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T10:15:44.449 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182145, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T10:16:56.500 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T10:32:01.494 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T10:47:06.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T11:02:11.494 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T11:15:36.182 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182226, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T11:15:36.198 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182228, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T11:15:46.185 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182232, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T11:15:46.201 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182234, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T11:15:46.201 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182236, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T11:17:16.504 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T11:32:21.489 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T11:41:44.841 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 42687, Count: 6366, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-05-26T11:41:44.841 ProcessImageName: wacs.exe, Pid: 228, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260526.txt, EstimatedImpact: 1% 2026-05-26T11:41:44.841 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-26T11:41:44.841 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d96db3de-ec32-4d9c-b042-149ba5214e68.tmp, EstimatedImpact: 0% 2026-05-26T11:41:44.841 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\993c15e6-52d8-46a7-850d-f24521cdb827.tmp, EstimatedImpact: 0% 2026-05-26T11:41:44.841 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\38398b91-0c24-41cd-991d-c6119a28173f.tmp, EstimatedImpact: 0% 2026-05-26T11:41:44.841 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\162ee648-e8ef-4820-8905-ef421f2b02bb.tmp, EstimatedImpact: 0% 2026-05-26T11:41:44.841 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 0, Count: 4, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4550_1.MAI, EstimatedImpact: 0% 2026-05-26T11:47:26.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T12:02:31.503 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T12:15:35.503 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182323, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T12:15:35.503 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182325, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T12:15:45.516 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182329, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T12:15:45.516 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182331, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T12:15:45.766 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182335, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T12:15:45.766 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182337, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T12:17:36.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T12:32:41.497 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T12:47:46.502 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T12:51:44.109 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4569_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #182385, FileId: 0x54ff0000000082d0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T13:02:51.491 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T13:15:35.096 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182478, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T13:15:35.105 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182480, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T13:15:45.105 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182484, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T13:15:45.120 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182486, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T13:17:56.496 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T13:33:01.490 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T13:41:44.845 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 44740, Count: 6503, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\consiliul-judetean-mures\174e84801cd720a4f5bb40a6c64be734.html, EstimatedImpact: 0% 2026-05-26T13:41:44.845 ProcessImageName: wacs.exe, Pid: 228, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260526.txt, EstimatedImpact: 1% 2026-05-26T13:41:44.845 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-26T13:41:44.845 ProcessImageName: updater.exe, Pid: 836, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0958995e-85d7-475a-8168-802e33012f1c.tmp, EstimatedImpact: 0% 2026-05-26T13:41:44.845 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-26T13:41:44.845 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-26T13:41:44.845 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 15, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4569_1.MAI, EstimatedImpact: 0% 2026-05-26T13:41:44.845 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d96db3de-ec32-4d9c-b042-149ba5214e68.tmp, EstimatedImpact: 0% 2026-05-26T13:41:44.845 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\993c15e6-52d8-46a7-850d-f24521cdb827.tmp, EstimatedImpact: 0% 2026-05-26T13:41:44.845 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\38398b91-0c24-41cd-991d-c6119a28173f.tmp, EstimatedImpact: 0% 2026-05-26T13:41:44.845 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\162ee648-e8ef-4820-8905-ef421f2b02bb.tmp, EstimatedImpact: 0% 2026-05-26T13:48:06.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T14:03:11.490 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T14:15:36.403 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182651, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T14:15:36.418 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182653, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T14:15:46.407 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182657, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T14:15:46.422 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182659, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T14:18:16.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T14:33:21.489 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T14:44:58.127 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\xampp\tmp\#sqla80_45c2_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #182698, FileId: 0xd92000000025ba2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T14:48:26.489 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T15:03:31.498 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T15:15:34.807 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182742, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T15:15:34.816 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182744, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T15:15:44.821 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182748, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T15:15:44.821 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182749, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T15:15:44.821 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182750, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T15:18:36.488 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T15:33:41.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T15:41:44.855 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 48141, Count: 6732, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\consiliul-judetean-mures\174e84801cd720a4f5bb40a6c64be734.html, EstimatedImpact: 0% 2026-05-26T15:41:44.855 ProcessImageName: wacs.exe, Pid: 228, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260526.txt, EstimatedImpact: 1% 2026-05-26T15:41:44.855 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-26T15:41:44.855 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-26T15:41:44.855 ProcessImageName: updater.exe, Pid: 836, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0958995e-85d7-475a-8168-802e33012f1c.tmp, EstimatedImpact: 0% 2026-05-26T15:41:44.855 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 30, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4569_1.MAI, EstimatedImpact: 0% 2026-05-26T15:41:44.855 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-26T15:41:44.855 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d96db3de-ec32-4d9c-b042-149ba5214e68.tmp, EstimatedImpact: 0% 2026-05-26T15:41:44.855 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\993c15e6-52d8-46a7-850d-f24521cdb827.tmp, EstimatedImpact: 0% 2026-05-26T15:41:44.855 ProcessImageName: updater.exe, Pid: 3420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e385115-4ded-44b2-b98b-7322cc9a1f01.tmp, EstimatedImpact: 0% 2026-05-26T15:41:44.855 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\38398b91-0c24-41cd-991d-c6119a28173f.tmp, EstimatedImpact: 0% 2026-05-26T15:41:44.855 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\162ee648-e8ef-4820-8905-ef421f2b02bb.tmp, EstimatedImpact: 0% 2026-05-26T15:41:44.855 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a5bc9cb-e37c-4ac4-bed8-e9d9cc460e68.tmp, EstimatedImpact: 0% 2026-05-26T15:48:46.488 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T16:03:51.492 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T16:15:34.820 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182837, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T16:15:34.835 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182839, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T16:15:44.833 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182843, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T16:15:44.849 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182845, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T16:18:56.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T16:34:01.496 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T16:49:06.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T17:04:11.496 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T17:15:34.303 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182918, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T17:15:34.303 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182920, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T17:15:44.316 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182924, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T17:15:44.332 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182926, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T17:15:44.332 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #182928, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T17:19:16.496 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T17:34:21.490 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T17:41:44.862 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 48141, Count: 6735, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\consiliul-judetean-mures\174e84801cd720a4f5bb40a6c64be734.html, EstimatedImpact: 0% 2026-05-26T17:41:44.862 ProcessImageName: wacs.exe, Pid: 228, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260526.txt, EstimatedImpact: 1% 2026-05-26T17:41:44.862 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-26T17:41:44.862 ProcessImageName: updater.exe, Pid: 836, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0958995e-85d7-475a-8168-802e33012f1c.tmp, EstimatedImpact: 0% 2026-05-26T17:41:44.862 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-26T17:41:44.862 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 30, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4569_1.MAI, EstimatedImpact: 0% 2026-05-26T17:41:44.862 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-26T17:41:44.862 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d96db3de-ec32-4d9c-b042-149ba5214e68.tmp, EstimatedImpact: 0% 2026-05-26T17:41:44.862 ProcessImageName: updater.exe, Pid: 5652, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a39800aa-97cd-47d9-abb4-8f0a47f10d2c.tmp, EstimatedImpact: 0% 2026-05-26T17:41:44.862 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58d69cf0-459c-4bef-9637-993fa0898e8f.tmp, EstimatedImpact: 0% 2026-05-26T17:41:44.862 ProcessImageName: updater.exe, Pid: 3420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e385115-4ded-44b2-b98b-7322cc9a1f01.tmp, EstimatedImpact: 0% 2026-05-26T17:41:44.862 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\38398b91-0c24-41cd-991d-c6119a28173f.tmp, EstimatedImpact: 0% 2026-05-26T17:41:44.862 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\162ee648-e8ef-4820-8905-ef421f2b02bb.tmp, EstimatedImpact: 0% 2026-05-26T17:41:44.862 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\993c15e6-52d8-46a7-850d-f24521cdb827.tmp, EstimatedImpact: 0% 2026-05-26T17:41:44.862 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a5bc9cb-e37c-4ac4-bed8-e9d9cc460e68.tmp, EstimatedImpact: 0% 2026-05-26T17:49:26.500 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T18:04:31.500 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T18:15:35.830 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183010, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T18:15:35.846 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183012, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T18:15:45.844 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183016, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T18:15:45.844 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183018, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T18:15:46.044 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183022, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T18:15:46.059 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183024, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T18:19:36.489 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T18:34:41.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T18:49:46.499 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T19:04:51.498 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T19:15:34.212 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183101, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T19:15:34.228 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183103, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T19:15:44.222 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183107, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T19:15:44.237 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183110, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T19:19:56.492 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T19:35:01.498 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T19:41:44.864 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 48141, Count: 6737, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\consiliul-judetean-mures\174e84801cd720a4f5bb40a6c64be734.html, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: wacs.exe, Pid: 228, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260526.txt, EstimatedImpact: 1% 2026-05-26T19:41:44.864 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: updater.exe, Pid: 836, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0958995e-85d7-475a-8168-802e33012f1c.tmp, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 30, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4569_1.MAI, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d96db3de-ec32-4d9c-b042-149ba5214e68.tmp, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: updater.exe, Pid: 2272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\721b4924-35a2-46b9-8513-669eda21bc09.tmp, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: updater.exe, Pid: 5652, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a39800aa-97cd-47d9-abb4-8f0a47f10d2c.tmp, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58d69cf0-459c-4bef-9637-993fa0898e8f.tmp, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: updater.exe, Pid: 3420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e385115-4ded-44b2-b98b-7322cc9a1f01.tmp, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a5bc9cb-e37c-4ac4-bed8-e9d9cc460e68.tmp, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\993c15e6-52d8-46a7-850d-f24521cdb827.tmp, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\38398b91-0c24-41cd-991d-c6119a28173f.tmp, EstimatedImpact: 0% 2026-05-26T19:41:44.864 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\162ee648-e8ef-4820-8905-ef421f2b02bb.tmp, EstimatedImpact: 0% IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-26T19:45:48.338 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-26T19:45:48.354 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-26T19:45:48.354 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-26T19:45:48.354 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-26T19:45:48.354 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-26T19:45:48.354 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-26T19:45:48.354 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-26T19:45:48.354 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-26T19:45:48.354 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-26T19:45:48.354 MdCoreSvc is supported in this platform and OS 2026-05-26T19:45:48.853 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-26T19:45:48.853 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-26T19:45:48.853 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-26T19:50:06.497 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T20:05:11.486 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T20:15:35.426 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183220, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T20:15:35.442 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183222, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T20:15:45.440 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183226, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T20:15:45.456 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183228, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T20:20:16.486 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T20:35:21.497 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b 2026-05-26T20:45:49.651 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-26T20:45:49.667 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-26T20:45:49.667 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-26T20:45:49.667 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-26T20:45:49.667 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-26T20:45:49.667 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-26T20:45:49.667 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-26T20:45:49.667 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-26T20:45:49.667 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-26T20:45:49.667 MdCoreSvc is supported in this platform and OS 2026-05-26T20:45:50.170 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-26T20:45:50.170 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-26T20:45:50.170 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-26T20:50:26.490 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T21:05:31.501 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T21:15:34.055 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183312, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:15:34.070 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183314, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:15:44.058 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183318, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:15:44.074 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183321, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:20:36.496 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T21:35:41.486 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T21:41:44.874 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 48141, Count: 6746, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\consiliul-judetean-mures\174e84801cd720a4f5bb40a6c64be734.html, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: wacs.exe, Pid: 228, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260526.txt, EstimatedImpact: 1% 2026-05-26T21:41:44.874 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: updater.exe, Pid: 836, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0958995e-85d7-475a-8168-802e33012f1c.tmp, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: updater.exe, Pid: 5176, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1948670-7ba9-4745-951f-469b591a4e3e.tmp, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 30, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4569_1.MAI, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d96db3de-ec32-4d9c-b042-149ba5214e68.tmp, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: updater.exe, Pid: 5652, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a39800aa-97cd-47d9-abb4-8f0a47f10d2c.tmp, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\993c15e6-52d8-46a7-850d-f24521cdb827.tmp, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: updater.exe, Pid: 3420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e385115-4ded-44b2-b98b-7322cc9a1f01.tmp, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\38398b91-0c24-41cd-991d-c6119a28173f.tmp, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\162ee648-e8ef-4820-8905-ef421f2b02bb.tmp, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a5bc9cb-e37c-4ac4-bed8-e9d9cc460e68.tmp, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: updater.exe, Pid: 2272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\721b4924-35a2-46b9-8513-669eda21bc09.tmp, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c77cba82-b7b6-4deb-9ddd-d9702dcf4049.tmp, EstimatedImpact: 0% 2026-05-26T21:41:44.874 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58d69cf0-459c-4bef-9637-993fa0898e8f.tmp, EstimatedImpact: 0% 2026-05-26T21:46:31.810 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183426, FileId: 0x101e000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:31.950 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183433, FileId: 0x1020000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:32.013 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183439, FileId: 0x1022000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:32.044 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183442, FileId: 0x1023000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:32.075 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183445, FileId: 0x1024000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:32.107 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183448, FileId: 0x1025000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:32.138 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183451, FileId: 0x1026000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:32.169 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183454, FileId: 0x1027000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:32.200 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183457, FileId: 0x1028000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:32.729 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183460, FileId: 0x1029000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.140 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183463, FileId: 0x102a000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.589 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183466, FileId: 0x102b000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.621 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183469, FileId: 0x102c000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.652 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183472, FileId: 0x102d000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.668 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183475, FileId: 0x102e000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.683 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183478, FileId: 0x102f000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.699 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183481, FileId: 0x1030000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.730 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183484, FileId: 0x1031000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.761 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183487, FileId: 0x1032000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.808 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183490, FileId: 0x1033000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.855 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183493, FileId: 0x1034000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.871 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183496, FileId: 0x1035000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.902 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183499, FileId: 0x1036000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.933 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183502, FileId: 0x1037000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.949 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183505, FileId: 0x1038000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:33.980 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183508, FileId: 0x1039000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:34.402 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183521, FileId: 0x103a000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:34.761 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463a_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183530, FileId: 0x103b000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:46.668 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463b_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183572, FileId: 0x1042000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:46.715 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463b_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183575, FileId: 0x1043000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:46.746 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463b_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183578, FileId: 0x1044000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:48.269 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463b_1c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183611, FileId: 0x104f000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:46:48.613 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\xampp\tmp\#sqla80_463b_3a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #183650, FileId: 0x105c000000005b09, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T21:50:46.500 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T22:05:51.489 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T22:15:45.774 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183723, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-26T22:20:56.485 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T22:36:01.485 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpFC_EnableIpV6Reporting new=1 old0 2026-05-26T22:45:51.139 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-26T22:45:51.139 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-26T22:45:51.139 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-26T22:45:51.139 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-26T22:45:51.139 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-26T22:45:51.139 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-26T22:45:51.139 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-26T22:45:51.139 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-26T22:45:51.139 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-26T22:45:51.139 MdCoreSvc is supported in this platform and OS 2026-05-26T22:45:51.643 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-26T22:45:51.643 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-26T22:45:51.643 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-26T22:51:06.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T23:06:11.485 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T23:21:16.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T23:36:21.485 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-26T23:41:44.873 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51508, Count: 7110, MaxTime: 468, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 210, Count: 158, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4569_1.MAI, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: wacs.exe, Pid: 228, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260526.txt, EstimatedImpact: 1% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 836, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0958995e-85d7-475a-8168-802e33012f1c.tmp, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 5176, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1948670-7ba9-4745-951f-469b591a4e3e.tmp, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ace3a6a-9c49-4f4c-9e6f-065c182ccc94.tmp, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d96db3de-ec32-4d9c-b042-149ba5214e68.tmp, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 5888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\112903ef-7f2d-4d6a-993b-4eb8d0e0a3f4.tmp, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 5652, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a39800aa-97cd-47d9-abb4-8f0a47f10d2c.tmp, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\993c15e6-52d8-46a7-850d-f24521cdb827.tmp, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\162ee648-e8ef-4820-8905-ef421f2b02bb.tmp, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 3420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e385115-4ded-44b2-b98b-7322cc9a1f01.tmp, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\38398b91-0c24-41cd-991d-c6119a28173f.tmp, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a5bc9cb-e37c-4ac4-bed8-e9d9cc460e68.tmp, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 2272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\721b4924-35a2-46b9-8513-669eda21bc09.tmp, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c77cba82-b7b6-4deb-9ddd-d9702dcf4049.tmp, EstimatedImpact: 0% 2026-05-26T23:41:44.873 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58d69cf0-459c-4bef-9637-993fa0898e8f.tmp, EstimatedImpact: 0% 2026-05-26T23:51:26.486 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T00:06:31.486 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T00:15:43.268 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #183893, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T00:21:36.491 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T00:36:01.870 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:D90B09C7-6257-410A-BDA2-EA82813EA3C0, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-27T00:36:01.870 Scheduled scan with Id D90B09C7-6257-410A-BDA2-EA82813EA3C0 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-27T00:36:01.870 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-27T00:36:01.870 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-27T00:36:01.870 [SFC] System file cache build is not needed (already completed) 2026-05-27T00:36:15.955 Engine:Triggered AR EMS scan 2026-05-27T00:36:15.955 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:15.971 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:15.986 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.002 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.018 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.033 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.049 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.080 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.096 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.096 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.111 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.143 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.158 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.174 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.174 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.205 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.205 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.221 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:16.252 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-27T00:36:30.080 QuickScan:ScanID:D90B09C7-6257-410A-BDA2-EA82813EA3C0: Quick scan finished with error 0 2026-05-27T00:36:30.080 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-27T00:36:30.581 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-27T00:36:30.581 [RTP] Duplicating the current plugin configuration object... 2026-05-27T00:36:30.581 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-27T00:36:30.581 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-27T00:36:30.581 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-27T00:36:30.581 [RTP] No config change detected. Not updating plugin configuration. 2026-05-27T00:36:30.581 [RTP] No config changes found. No configuration switch. 2026-05-27T00:36:30.581 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-27T00:36:41.485 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T00:51:46.491 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T01:06:51.485 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T01:21:56.490 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T01:37:01.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T01:41:44.883 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 52281, Count: 7172, MaxTime: 468, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 270, Count: 163, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4569_1.MAI, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: wacs.exe, Pid: 228, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260526.txt, EstimatedImpact: 1% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 836, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0958995e-85d7-475a-8168-802e33012f1c.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 5176, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1948670-7ba9-4745-951f-469b591a4e3e.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ace3a6a-9c49-4f4c-9e6f-065c182ccc94.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d96db3de-ec32-4d9c-b042-149ba5214e68.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\993c15e6-52d8-46a7-850d-f24521cdb827.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 5888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\112903ef-7f2d-4d6a-993b-4eb8d0e0a3f4.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 5652, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a39800aa-97cd-47d9-abb4-8f0a47f10d2c.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\478338d1-e736-41de-8674-937e7ef5677d.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 3420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e385115-4ded-44b2-b98b-7322cc9a1f01.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\38398b91-0c24-41cd-991d-c6119a28173f.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\162ee648-e8ef-4820-8905-ef421f2b02bb.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a5bc9cb-e37c-4ac4-bed8-e9d9cc460e68.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 2272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\721b4924-35a2-46b9-8513-669eda21bc09.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c77cba82-b7b6-4deb-9ddd-d9702dcf4049.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58d69cf0-459c-4bef-9637-993fa0898e8f.tmp, EstimatedImpact: 0% 2026-05-27T01:41:44.883 ProcessImageName: updater.exe, Pid: 380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e41ee0a9-83ef-4395-91fa-a0af30826cde.tmp, EstimatedImpact: 0% 2026-05-27T01:52:06.499 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T02:07:11.499 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T02:15:44.657 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #184223, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T02:22:16.489 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T02:37:21.498 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T02:52:26.498 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T03:07:31.492 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T03:22:36.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T03:37:41.497 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T03:41:44.882 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 53177, Count: 7239, MaxTime: 468, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 270, Count: 163, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4569_1.MAI, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: wacs.exe, Pid: 228, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260526.txt, EstimatedImpact: 1% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 836, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0958995e-85d7-475a-8168-802e33012f1c.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 5176, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1948670-7ba9-4745-951f-469b591a4e3e.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ace3a6a-9c49-4f4c-9e6f-065c182ccc94.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d96db3de-ec32-4d9c-b042-149ba5214e68.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 6128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\445e4037-1ff5-4954-ad26-891272769f95.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 5888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\112903ef-7f2d-4d6a-993b-4eb8d0e0a3f4.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26f3884b-9253-48da-8f04-0358ea6ff6d2.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 5652, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a39800aa-97cd-47d9-abb4-8f0a47f10d2c.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 2272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\721b4924-35a2-46b9-8513-669eda21bc09.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\478338d1-e736-41de-8674-937e7ef5677d.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\993c15e6-52d8-46a7-850d-f24521cdb827.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a5bc9cb-e37c-4ac4-bed8-e9d9cc460e68.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\162ee648-e8ef-4820-8905-ef421f2b02bb.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\38398b91-0c24-41cd-991d-c6119a28173f.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 3420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e385115-4ded-44b2-b98b-7322cc9a1f01.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e41ee0a9-83ef-4395-91fa-a0af30826cde.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58d69cf0-459c-4bef-9637-993fa0898e8f.tmp, EstimatedImpact: 0% 2026-05-27T03:41:44.882 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c77cba82-b7b6-4deb-9ddd-d9702dcf4049.tmp, EstimatedImpact: 0% 2026-05-27T03:52:46.497 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T04:07:51.486 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T04:15:46.729 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #184452, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T04:22:56.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T04:38:01.485 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T04:53:06.485 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T05:08:11.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T05:23:16.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T05:38:21.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T05:41:44.882 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 53177, Count: 7240, MaxTime: 468, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 270, Count: 163, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4569_1.MAI, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: wacs.exe, Pid: 228, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260526.txt, EstimatedImpact: 1% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 836, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0958995e-85d7-475a-8168-802e33012f1c.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 5176, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1948670-7ba9-4745-951f-469b591a4e3e.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ace3a6a-9c49-4f4c-9e6f-065c182ccc94.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d96db3de-ec32-4d9c-b042-149ba5214e68.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 6128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\445e4037-1ff5-4954-ad26-891272769f95.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 5888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\112903ef-7f2d-4d6a-993b-4eb8d0e0a3f4.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26f3884b-9253-48da-8f04-0358ea6ff6d2.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 5652, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a39800aa-97cd-47d9-abb4-8f0a47f10d2c.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\478338d1-e736-41de-8674-937e7ef5677d.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\993c15e6-52d8-46a7-850d-f24521cdb827.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3afdbfe0-cd7a-4aad-8443-c29f749f68de.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 3420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e385115-4ded-44b2-b98b-7322cc9a1f01.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\38398b91-0c24-41cd-991d-c6119a28173f.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\162ee648-e8ef-4820-8905-ef421f2b02bb.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a5bc9cb-e37c-4ac4-bed8-e9d9cc460e68.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 2272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\721b4924-35a2-46b9-8513-669eda21bc09.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c77cba82-b7b6-4deb-9ddd-d9702dcf4049.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58d69cf0-459c-4bef-9637-993fa0898e8f.tmp, EstimatedImpact: 0% 2026-05-27T05:41:44.882 ProcessImageName: updater.exe, Pid: 380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e41ee0a9-83ef-4395-91fa-a0af30826cde.tmp, EstimatedImpact: 0% 2026-05-27T05:53:26.494 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T06:08:31.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T06:15:44.142 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #184648, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T06:23:36.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T06:38:41.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T06:53:46.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T07:08:51.492 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T07:23:56.492 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T07:39:01.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T07:41:16.485 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-27T07:41:16.501 Job Notification: New process added to job (4492) 2026-05-27T07:41:16.501 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-27T07:41:16.501 Job Notification: New process added to job (2700) 2026-05-27T07:41:16.501 Aggressive catchup quick scan threshold: 255146445616 / 25920000000000 2026-05-27T07:41:16.532 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4492] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2700]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-27T07:41:16.657 Job Notification: New process added to job (4692) 2026-05-27T07:41:16.657 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-27T07:41:16.657 Job Notification: New process added to job (5268) 2026-05-27T07:41:16.657 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4692] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5268]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-27T07:41:17.017 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-27T07:41:17.017 [RTP] Duplicating the current plugin configuration object... 2026-05-27T07:41:17.017 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-27T07:41:17.017 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-27T07:41:17.017 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-27T07:41:17.017 [RTP] No config change detected. Not updating plugin configuration. 2026-05-27T07:41:17.017 [RTP] No config changes found. No configuration switch. 2026-05-27T07:41:17.017 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-27T07:41:17.032 Job Notification: New process added to job (3484) 2026-05-27T07:41:17.048 Task(GetDeviceTicket -AccessKey CA822964-2C09-03E5-981A-86CC3FC6D7A3 ) launched as network service 2026-05-27T07:41:17.110 Job Notification: Process exited from job (3484) 2026-05-27T07:41:21.386 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-27T07:41:21.386 [Cloud] Start of cloud request. Passive mode: 0 2026-05-27T07:41:21.386 [Cloud] Queued cloud request. 2026-05-27T07:41:21.386 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-27T07:41:21.386 [Cloud] Dequeued cloud request. 2026-05-27T07:41:21.386 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-27T07:41:21.386 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-27T07:41:21.386 [Cloud] Start of cloud request. Passive mode: 0 2026-05-27T07:41:21.386 [Cloud] Queued cloud request. 2026-05-27T07:41:21.386 [Cloud] Dequeued cloud request. 2026-05-27T07:41:21.386 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-27T07:41:21.668 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-27T07:41:21.683 [Cloud] End of cloud request. 2026-05-27T07:41:21.683 [Cloud] End of cloud request. 2026-05-27T07:41:21.886 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-27T07:41:36.721 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\4045C5C4-09BC-4AA3-AF73-28EFE64BAD36390.1dcedac39d4e7c9 2026-05-27T07:41:36.784 Verifying engine and signature files (source: 0) ... 2026-05-27T07:41:36.784 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{31FEC401-1AAA-4A6B-9EF8-20138A023F3C}\mpengine.dll] due to PPL. 2026-05-27T07:41:36.784 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{31FEC401-1AAA-4A6B-9EF8-20138A023F3C}\mpasbase.vdm] (file in cache) 2026-05-27T07:41:36.784 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{31FEC401-1AAA-4A6B-9EF8-20138A023F3C}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-27T07:41:36.784 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{31FEC401-1AAA-4A6B-9EF8-20138A023F3C}\mpasdlta.vdm] 2026-05-27T07:41:36.784 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{31FEC401-1AAA-4A6B-9EF8-20138A023F3C}\mpavbase.vdm] (file in cache) 2026-05-27T07:41:36.784 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{31FEC401-1AAA-4A6B-9EF8-20138A023F3C}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-27T07:41:36.799 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{31FEC401-1AAA-4A6B-9EF8-20138A023F3C}\mpavdlta.vdm] 2026-05-27T07:41:40.392 [Engine] IsHybridMode: 0 2026-05-27T07:41:40.392 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-05-27T07:41:40.564 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-C1C057BEEF85F8DA8789B7744C8A93D98828554D.bin): 0x00000002 2026-05-27T07:41:40.564 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-C1C057BEEF85F8DA8789B7744C8A93D98828554D.bin) 2026-05-27T07:41:40.564 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-27T07:41:40.564 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-27T07:41:40.564 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-27T07:41:40.564 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-05-27T07:41:44.892 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 55016, Count: 7360, MaxTime: 468, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 315, Count: 171, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4569_1.MAI, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 152, Count: 12, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: wacs.exe, Pid: 228, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260526.txt, EstimatedImpact: 1% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 836, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0958995e-85d7-475a-8168-802e33012f1c.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 5176, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1948670-7ba9-4745-951f-469b591a4e3e.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ace3a6a-9c49-4f4c-9e6f-065c182ccc94.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d96db3de-ec32-4d9c-b042-149ba5214e68.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\478338d1-e736-41de-8674-937e7ef5677d.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\993c15e6-52d8-46a7-850d-f24521cdb827.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3afdbfe0-cd7a-4aad-8443-c29f749f68de.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 6128, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\445e4037-1ff5-4954-ad26-891272769f95.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\38398b91-0c24-41cd-991d-c6119a28173f.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 2856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\162ee648-e8ef-4820-8905-ef421f2b02bb.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a5bc9cb-e37c-4ac4-bed8-e9d9cc460e68.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 2272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\721b4924-35a2-46b9-8513-669eda21bc09.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 2096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\51b7c3b7-a33a-46e1-b9be-79c88af4046b.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 5888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\112903ef-7f2d-4d6a-993b-4eb8d0e0a3f4.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\26f3884b-9253-48da-8f04-0358ea6ff6d2.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 1120, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c77cba82-b7b6-4deb-9ddd-d9702dcf4049.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\58d69cf0-459c-4bef-9637-993fa0898e8f.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 5652, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a39800aa-97cd-47d9-abb4-8f0a47f10d2c.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 4364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\09067169-334c-4402-9270-7f5e54965f61.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e41ee0a9-83ef-4395-91fa-a0af30826cde.tmp, EstimatedImpact: 0% 2026-05-27T07:41:44.892 ProcessImageName: updater.exe, Pid: 3420, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e385115-4ded-44b2-b98b-7322cc9a1f01.tmp, EstimatedImpact: 0% IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-27T07:41:48.896 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-27T07:41:48.912 [AutoExclusion] Applied roles from cache. 2026-05-27T07:41:48.912 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse IDynamicConfig::ReportChange ECS value=MpFC_EnableIpV6Reporting new=1 old0 2026-05-27T07:41:48.912 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB12AE5810, lRefCount: 5, hr=0 2026-05-27T07:41:48.912 [Engine] New active engine 00007FFB1FFA5810 replacing engine 00007FFB12AE5810. Number of active engines: 2 2026-05-27T07:41:48.928 EngineInit:Global ASOC is enabled 2026-05-27T07:41:48.928 EngineInit:ASOO is enabled for developer volumes 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-27T07:41:48.943 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-27T07:41:48.959 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-27T07:41:48.959 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-27T07:41:48.959 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-27T07:41:48.959 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-27T07:41:48.959 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-27T07:41:48.975 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-27T07:41:48.975 [Plugin] Initializing RTP plugin state... 2026-05-27T07:41:48.975 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-27T07:41:48.975 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎26‎-‎2026 09:41:45 Last Perf:‎05‎-‎26‎-‎2026 09:41:44 First RTP Scan:‎05‎-‎26‎-‎2026 09:41:45 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:560 Misses:2392 BM Queue:0,119,0 Proc:0,40,0 File:0,96,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:185051 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-489140050 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:68927 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:180729 TotalHits:6023259 InstanceCacheInserts:26493 InstanceCacheUpdates:0 InstanceCacheDeletes:11641 InstanceCacheHits:619 InstanceCacheMisses:164220 InstanceCacheOverflows:13936 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:3ms (740/217) Success: 217, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-27T07:41:48.975 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{31FEC401-1AAA-4A6B-9EF8-20138A023F3C} 2026-05-27T07:41:48.975 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4B6E6DCF-A2E1-403F-8D95-AF52F3341D4C}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4B6E6DCF-A2E1-403F-8D95-AF52F3341D4C}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-27T07:41:48.975 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{FB1D98DB-FC2C-4062-8CAF-0C85C1059552} removed 2026-05-27T07:41:48.975 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-27T07:41:48.975 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-27T07:41:48.975 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-27T07:41:48.975 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-27T07:41:48.975 MdCoreSvc is supported in this platform and OS 2026-05-27T07:41:48.975 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-27-2026 07:41:48 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-27-2026 07:41:48 2026-05-27T07:41:48.975 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-27T07:41:48.975 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-27T07:41:48.975 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-27T07:41:48.975 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-27T07:41:48.975 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-27T07:41:48.975 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-27T07:41:48.975 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-27T07:41:48.975 MdCoreSvc is supported in this platform and OS 2026-05-27T07:41:48.975 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-27T07:41:48.975 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 05-27-2026 07:41:48 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.125.0 AV Signature Version: 1.451.125.0 ************************************************************ 2026-05-27T07:41:48.975 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-27T07:41:48.975 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\4045C5C4-09BC-4AA3-AF73-28EFE64BAD36390.1dcedac39d4e7c9 2026-05-27T07:41:48.990 Process scan (postsignatureupdatescan) started. 2026-05-27T07:41:49.037 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-27T07:41:49.037 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 05-27-2026 07:41:49 ************************************************************ 2026-05-27T07:41:49.068 Job Notification: Process exited from job (4692) 2026-05-27T07:41:49.068 Job Notification: Process exited from job (4492) 2026-05-27T07:41:49.068 Job Notification: Process exited from job (5268) 2026-05-27T07:41:49.068 Job Notification: Process exited from job (2700) 2026-05-27T07:41:49.256 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-27T07:41:49.256 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-27T07:41:49.256 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-27T07:41:49.256 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-27T07:41:49.256 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-27T07:41:49.256 [Engine] Engine 00007FFB12AE5810 no longer in use. Number of active engines: 1 2026-05-27T07:41:49.256 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-27T07:41:49.256 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-27T07:41:49.475 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-27T07:41:49.475 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-27T07:41:49.475 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-27T07:41:50.600 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 55016, Count: 7360, MaxTime: 468, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-27T07:41:50.600 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 315, Count: 171, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4569_1.MAI, EstimatedImpact: 0% 2026-05-27T07:41:50.600 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 152, Count: 12, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-27T07:41:50.600 ProcessImageName: wacs.exe, Pid: 228, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260526.txt, EstimatedImpact: 1% 2026-05-27T07:41:50.600 ProcessImageName: updater.exe, Pid: 4048, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T07:41:50.600 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T07:41:50.600 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-27T07:41:50.600 ProcessImageName: updater.exe, Pid: 836, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0958995e-85d7-475a-8168-802e33012f1c.tmp, EstimatedImpact: 0% 2026-05-27T07:41:50.600 ProcessImageName: updater.exe, Pid: 5176, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d1948670-7ba9-4745-951f-469b591a4e3e.tmp, EstimatedImpact: 0% 2026-05-27T07:41:50.600 ProcessImageName: updater.exe, Pid: 3812, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ace3a6a-9c49-4f4c-9e6f-065c182ccc94.tmp, EstimatedImpact: 0% 2026-05-27T07:41:50.600 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-27T07:41:50.600 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d96db3de-ec32-4d9c-b042-149ba5214e68.tmp, EstimatedImpact: 0% 2026-05-27T07:41:50.600 ProcessImageName: updater.exe, Pid: 5588, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\478338d1-e736-41de-8674-937e7ef5677d.tmp, EstimatedImpact: 0% 2026-05-27T07:41:50.600 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\993c15e6-52d8-46a7-850d-f24521cdb827.tmp, EstimatedImpact: 0% 2026-05-27T07:41:50.600 ProcessImageName: updater.exe, Pid: 4492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3afdbfe0-cd7a-4aad-8443-c29f749f68de.tmp, EstimatedImpact: 0% 2026-05-27T07:41:50.646 [Engine] RSIG_UNLOADENGINE, 00007FFB12AE5810, err=0x0 2026-05-27T07:41:50.662 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4B6E6DCF-A2E1-403F-8D95-AF52F3341D4C} removed 2026-05-27T07:41:55.434 Process scan (postsignatureupdatescan) completed. 2026-05-27T07:46:48.936 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-27T07:54:06.491 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T08:09:11.491 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T08:15:34.143 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185245, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T08:15:34.158 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185247, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T08:15:44.157 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185251, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T08:15:44.172 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185254, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T08:24:16.496 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T08:39:21.490 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T08:54:26.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T09:09:31.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T09:15:34.874 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185379, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T09:15:34.874 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185381, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T09:15:44.882 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185385, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T09:15:44.882 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185387, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T09:15:45.058 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185391, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T09:15:45.058 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185393, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T09:24:36.489 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T09:39:41.494 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T09:41:48.911 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 938, Count: 110, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\conf_\fix_mysql.php, EstimatedImpact: 0% 2026-05-27T09:41:48.911 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-27T09:41:48.911 ProcessImageName: updater.exe, Pid: 648, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eeea045a-0469-4790-a997-049d1ee7e695.tmp, EstimatedImpact: 0% 2026-05-27T09:41:48.911 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be13bc0c-d4fe-45ba-b81e-328ede43de91.tmp, EstimatedImpact: 0% 2026-05-27T09:53:23.677 Job Notification: Process exited from job (2724) 2026-05-27T09:54:46.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-05-27T10:04:07.335 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-27T10:04:07.335 [Cloud] Start of cloud request. Passive mode: 0 2026-05-27T10:04:07.335 [Cloud] Queued cloud request. 2026-05-27T10:04:07.335 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-27T10:04:07.366 Job Notification: New process added to job (3988) 2026-05-27T10:04:07.382 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 85ED3829-6BB0-AF83-BB61-6A30B3F52F04) launched 2026-05-27T10:04:07.382 Job Notification: New process added to job (5708) 2026-05-27T10:04:07.382 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3988] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5708]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-27T10:04:07.398 Job Notification: New process added to job (5908) 2026-05-27T10:04:07.398 Job Notification: Process exited from job (3988) 2026-05-27T10:04:07.398 Job Notification: Process exited from job (5708) 2026-05-27T10:04:07.413 [Cloud] Dequeued cloud request. 2026-05-27T10:04:07.413 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-27T10:04:07.791 [Cloud] End of cloud request. 2026-05-27T10:04:07.791 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-05-27T10:04:07.791 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe BEGIN BM telemetry GUID:{9DFB3290-169E-33AF-BA0B-09744B69D16C} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:184 ProcessCreationTime:134243498473240930 SessionID:0 CreationTime:05-27-2026 10:04:07 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-05-27T10:04:07.807 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE 2026-05-27T10:04:07.838 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-27T10:04:07.838 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-27T10:04:08.307 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-27T10:04:08.838 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-27T10:04:08.838 [Cloud] Start of cloud request. Passive mode: 0 2026-05-27T10:04:08.838 [Cloud] Queued cloud request. 2026-05-27T10:04:08.838 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-27T10:04:08.838 [Cloud] Dequeued cloud request. 2026-05-27T10:04:08.838 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-27T10:04:08.916 [Cloud] End of cloud request. 2026-05-27T10:04:09.416 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-27T10:04:10.088 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-27T10:04:10.088 [Cloud] Start of cloud request. Passive mode: 0 2026-05-27T10:04:10.088 [Cloud] Queued cloud request. 2026-05-27T10:04:10.088 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-27T10:04:10.088 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-05-27T10:04:10.088 [Cloud] Dequeued cloud request. 2026-05-27T10:04:10.088 [Cloud] Start of cloud request. Passive mode: 0 2026-05-27T10:04:10.088 [Cloud] Queued cloud request. 2026-05-27T10:04:10.088 [Cloud] Dequeued cloud request. 2026-05-27T10:04:10.088 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-27T10:04:10.088 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-27T10:04:10.229 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-27T10:04:10.229 [Cloud] End of cloud request. 2026-05-27T10:04:10.245 [Cloud] End of cloud request. 2026-05-27T10:04:10.738 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-27T10:09:51.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T10:15:34.425 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185550, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T10:15:34.461 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185553, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T10:15:44.433 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185557, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T10:15:44.449 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185559, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T10:15:44.449 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185561, FileId: 0xcd0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T10:24:56.488 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T10:40:01.488 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T10:55:06.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T11:10:11.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T11:15:33.945 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185648, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T11:15:33.960 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185650, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T11:15:43.948 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185654, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T11:15:43.948 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185656, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T11:15:43.964 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185658, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T11:15:43.964 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185660, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T11:25:16.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T11:40:21.491 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T11:41:48.916 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1194, Count: 149, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\conf_\fix_mysql.php, EstimatedImpact: 0% 2026-05-27T11:41:48.916 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-27T11:41:48.916 ProcessImageName: wacs.exe, Pid: 184, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-27T11:41:48.916 ProcessImageName: updater.exe, Pid: 648, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eeea045a-0469-4790-a997-049d1ee7e695.tmp, EstimatedImpact: 0% 2026-05-27T11:41:48.916 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be13bc0c-d4fe-45ba-b81e-328ede43de91.tmp, EstimatedImpact: 0% 2026-05-27T11:41:48.916 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4abad6a9-f4b4-46fc-9fb0-557f9e6e68fa.tmp, EstimatedImpact: 0% 2026-05-27T11:41:48.916 ProcessImageName: updater.exe, Pid: 1532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0418178e-b504-49bd-af9e-c9e6815cd3e1.tmp, EstimatedImpact: 0% 2026-05-27T11:55:26.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T12:10:31.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T12:15:33.187 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185758, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T12:15:33.203 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185760, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T12:15:43.201 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185765, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T12:15:43.201 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185766, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T12:15:43.217 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185767, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T12:25:36.489 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T12:40:41.490 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T12:55:46.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T13:10:51.489 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T13:15:35.611 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185903, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T13:15:35.627 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185905, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T13:15:45.625 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185909, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T13:15:45.641 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185911, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T13:25:56.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T13:41:01.494 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T13:41:48.921 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 2383, Count: 274, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-27T13:41:48.921 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-27T13:41:48.921 ProcessImageName: wacs.exe, Pid: 184, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-27T13:41:48.921 ProcessImageName: updater.exe, Pid: 648, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eeea045a-0469-4790-a997-049d1ee7e695.tmp, EstimatedImpact: 0% 2026-05-27T13:41:48.921 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\64292b3b-c930-49dd-b08b-291777375a60.tmp, EstimatedImpact: 0% 2026-05-27T13:41:48.921 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be13bc0c-d4fe-45ba-b81e-328ede43de91.tmp, EstimatedImpact: 0% 2026-05-27T13:41:48.921 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4abad6a9-f4b4-46fc-9fb0-557f9e6e68fa.tmp, EstimatedImpact: 0% 2026-05-27T13:41:48.921 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5bc699c-28a6-4c54-b6ca-3b8abc378bbf.tmp, EstimatedImpact: 0% 2026-05-27T13:41:48.921 ProcessImageName: updater.exe, Pid: 1532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0418178e-b504-49bd-af9e-c9e6815cd3e1.tmp, EstimatedImpact: 0% 2026-05-27T13:56:06.488 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T14:11:11.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T14:15:34.795 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185990, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T14:15:34.811 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185992, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T14:15:44.809 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185995, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T14:15:44.825 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #185997, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T14:15:44.965 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186001, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T14:15:44.981 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186003, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T14:26:16.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T14:41:21.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T14:56:26.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T15:11:31.486 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T15:15:33.130 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186074, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T15:15:33.130 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186076, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T15:15:43.134 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186080, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T15:15:43.134 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186082, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T15:15:43.150 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186084, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T15:15:43.150 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186086, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T15:26:36.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T15:41:41.486 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T15:41:48.936 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 3296, Count: 344, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-27T15:41:48.936 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T15:41:48.936 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-27T15:41:48.936 ProcessImageName: wacs.exe, Pid: 184, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-27T15:41:48.936 ProcessImageName: updater.exe, Pid: 648, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eeea045a-0469-4790-a997-049d1ee7e695.tmp, EstimatedImpact: 0% 2026-05-27T15:41:48.936 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\64292b3b-c930-49dd-b08b-291777375a60.tmp, EstimatedImpact: 0% 2026-05-27T15:41:48.936 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be13bc0c-d4fe-45ba-b81e-328ede43de91.tmp, EstimatedImpact: 0% 2026-05-27T15:41:48.936 ProcessImageName: updater.exe, Pid: 5876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bf1e7d-d6bf-4ac1-a235-8bc1124a8d6a.tmp, EstimatedImpact: 0% 2026-05-27T15:41:48.936 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4abad6a9-f4b4-46fc-9fb0-557f9e6e68fa.tmp, EstimatedImpact: 0% 2026-05-27T15:41:48.936 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5bc699c-28a6-4c54-b6ca-3b8abc378bbf.tmp, EstimatedImpact: 0% 2026-05-27T15:41:48.936 ProcessImageName: updater.exe, Pid: 1532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0418178e-b504-49bd-af9e-c9e6815cd3e1.tmp, EstimatedImpact: 0% 2026-05-27T15:56:46.480 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T16:11:51.485 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T16:15:34.197 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186172, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T16:15:34.197 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186174, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T16:15:44.211 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186179, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T16:15:44.227 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186181, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T16:26:56.480 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T16:42:01.494 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T16:57:06.495 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T17:12:11.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T17:15:34.000 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186273, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T17:15:34.015 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186275, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T17:15:44.025 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186280, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T17:15:44.025 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #186282, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T17:27:16.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T17:40:05.702 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4708_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #187485, FileId: 0x530000000270ea, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T17:40:16.613 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4708_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #187931, FileId: 0x540000000270ea, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T17:41:48.950 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 45971, Count: 6528, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-27T17:41:48.950 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T17:41:48.950 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-27T17:41:48.950 ProcessImageName: wacs.exe, Pid: 184, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-27T17:41:48.950 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4708_1.MAI, EstimatedImpact: 0% 2026-05-27T17:41:48.950 ProcessImageName: updater.exe, Pid: 648, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eeea045a-0469-4790-a997-049d1ee7e695.tmp, EstimatedImpact: 0% 2026-05-27T17:41:48.950 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\64292b3b-c930-49dd-b08b-291777375a60.tmp, EstimatedImpact: 0% 2026-05-27T17:41:48.950 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be13bc0c-d4fe-45ba-b81e-328ede43de91.tmp, EstimatedImpact: 0% 2026-05-27T17:41:48.950 ProcessImageName: updater.exe, Pid: 5876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bf1e7d-d6bf-4ac1-a235-8bc1124a8d6a.tmp, EstimatedImpact: 0% 2026-05-27T17:41:48.950 ProcessImageName: updater.exe, Pid: 5824, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff788aaf-9753-4d92-8aaf-1cc6f1f7f710.tmp, EstimatedImpact: 0% 2026-05-27T17:41:48.950 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4abad6a9-f4b4-46fc-9fb0-557f9e6e68fa.tmp, EstimatedImpact: 0% 2026-05-27T17:41:48.950 ProcessImageName: updater.exe, Pid: 2380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b5eade3-c025-4595-a495-0604d29ad624.tmp, EstimatedImpact: 0% 2026-05-27T17:41:48.950 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5bc699c-28a6-4c54-b6ca-3b8abc378bbf.tmp, EstimatedImpact: 0% 2026-05-27T17:41:48.950 ProcessImageName: updater.exe, Pid: 1532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0418178e-b504-49bd-af9e-c9e6815cd3e1.tmp, EstimatedImpact: 0% 2026-05-27T17:42:21.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T17:57:26.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T18:01:42.063 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4713_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #187968, FileId: 0x590000000270ea, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T18:12:31.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T18:15:33.606 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #187990, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T18:15:33.621 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #187992, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T18:15:43.634 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #187997, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T18:15:43.634 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188000, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T18:27:36.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T18:42:41.492 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T18:57:46.492 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T19:03:32.884 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4717_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188061, FileId: 0x40100000002745f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T19:12:51.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T19:15:35.756 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188086, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T19:15:35.771 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188088, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T19:15:45.775 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188093, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T19:15:45.775 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188095, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T19:15:45.953 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188099, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T19:15:45.953 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188101, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T19:27:56.491 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T19:41:48.960 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 46047, Count: 6538, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 90, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4708_1.MAI, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: wacs.exe, Pid: 184, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-27T19:41:48.960 ProcessImageName: updater.exe, Pid: 648, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eeea045a-0469-4790-a997-049d1ee7e695.tmp, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\64292b3b-c930-49dd-b08b-291777375a60.tmp, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be13bc0c-d4fe-45ba-b81e-328ede43de91.tmp, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: updater.exe, Pid: 4728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a3b3ec7-87b5-4045-8e21-7360e124d4f8.tmp, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: updater.exe, Pid: 2380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b5eade3-c025-4595-a495-0604d29ad624.tmp, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5bc699c-28a6-4c54-b6ca-3b8abc378bbf.tmp, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: updater.exe, Pid: 5876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bf1e7d-d6bf-4ac1-a235-8bc1124a8d6a.tmp, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: updater.exe, Pid: 5824, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff788aaf-9753-4d92-8aaf-1cc6f1f7f710.tmp, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4abad6a9-f4b4-46fc-9fb0-557f9e6e68fa.tmp, EstimatedImpact: 0% 2026-05-27T19:41:48.960 ProcessImageName: updater.exe, Pid: 1532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0418178e-b504-49bd-af9e-c9e6815cd3e1.tmp, EstimatedImpact: 0% 2026-05-27T19:43:01.485 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T19:58:06.490 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T20:13:11.490 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T20:15:33.703 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188216, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T20:15:33.719 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188218, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T20:15:43.711 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188223, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T20:15:43.727 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188226, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T20:28:16.490 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T20:43:21.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T20:58:26.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T21:13:31.488 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T21:15:34.953 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188299, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T21:15:34.969 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188301, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T21:15:44.967 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188306, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T21:15:44.967 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188307, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T21:15:44.983 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188309, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T21:28:36.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T21:41:48.960 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 46047, Count: 6539, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 90, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4708_1.MAI, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: wacs.exe, Pid: 184, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-27T21:41:48.960 ProcessImageName: updater.exe, Pid: 648, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eeea045a-0469-4790-a997-049d1ee7e695.tmp, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\64292b3b-c930-49dd-b08b-291777375a60.tmp, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be13bc0c-d4fe-45ba-b81e-328ede43de91.tmp, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: updater.exe, Pid: 4732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\621fd82b-a45c-4a43-88f8-3788e459ffd2.tmp, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: updater.exe, Pid: 5876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bf1e7d-d6bf-4ac1-a235-8bc1124a8d6a.tmp, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: updater.exe, Pid: 2380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b5eade3-c025-4595-a495-0604d29ad624.tmp, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: updater.exe, Pid: 5824, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff788aaf-9753-4d92-8aaf-1cc6f1f7f710.tmp, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4abad6a9-f4b4-46fc-9fb0-557f9e6e68fa.tmp, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5bc699c-28a6-4c54-b6ca-3b8abc378bbf.tmp, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: updater.exe, Pid: 4728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a3b3ec7-87b5-4045-8e21-7360e124d4f8.tmp, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: updater.exe, Pid: 1532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0418178e-b504-49bd-af9e-c9e6815cd3e1.tmp, EstimatedImpact: 0% 2026-05-27T21:41:48.960 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\454c14e0-382c-4cc3-a397-d23c9197568c.tmp, EstimatedImpact: 0% 2026-05-27T21:43:41.488 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T21:51:19.904 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sqla80_472e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188350, FileId: 0x640000000270ea, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T21:58:46.493 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T22:13:51.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T22:15:35.348 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188383, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:15:35.348 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188385, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:15:45.341 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188390, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:15:45.357 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188392, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:28:56.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T22:44:01.491 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T22:52:31.849 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4739_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188458, FileId: 0x17f000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:52:32.443 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4739_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188462, FileId: 0x180000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:43.817 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188471, FileId: 0x184000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:46.247 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188533, FileId: 0x186000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:46.294 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188536, FileId: 0x187000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:46.388 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188540, FileId: 0x188000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:46.419 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188543, FileId: 0x189000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:46.451 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188546, FileId: 0x18a000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:46.482 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188549, FileId: 0x18b000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:46.544 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188552, FileId: 0x18c000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:46.591 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188555, FileId: 0x18d000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:46.622 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188558, FileId: 0x18e000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:46.638 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188561, FileId: 0x18f000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:46.669 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188564, FileId: 0x190000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:47.315 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188568, FileId: 0x191000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:47.808 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188571, FileId: 0x192000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:48.378 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188574, FileId: 0x193000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:48.425 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188577, FileId: 0x194000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:48.456 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188580, FileId: 0x195000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:48.472 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188583, FileId: 0x196000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:48.488 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188586, FileId: 0x197000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:48.503 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188589, FileId: 0x198000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:53:49.206 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sqla80_473a_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188629, FileId: 0x1a2000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T22:59:06.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T23:14:11.491 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T23:15:36.175 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4741_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #188739, FileId: 0x1c2000000027662, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-27T23:29:16.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T23:41:48.975 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 55246, Count: 7290, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 315, Count: 105, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4708_1.MAI, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: wacs.exe, Pid: 184, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 648, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eeea045a-0469-4790-a997-049d1ee7e695.tmp, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\64292b3b-c930-49dd-b08b-291777375a60.tmp, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be13bc0c-d4fe-45ba-b81e-328ede43de91.tmp, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 4732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\621fd82b-a45c-4a43-88f8-3788e459ffd2.tmp, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 4728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a3b3ec7-87b5-4045-8e21-7360e124d4f8.tmp, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 5824, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff788aaf-9753-4d92-8aaf-1cc6f1f7f710.tmp, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ede79eca-ed85-4af0-9d84-a18d6148c2ec.tmp, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 5876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bf1e7d-d6bf-4ac1-a235-8bc1124a8d6a.tmp, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4abad6a9-f4b4-46fc-9fb0-557f9e6e68fa.tmp, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 2380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b5eade3-c025-4595-a495-0604d29ad624.tmp, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5bc699c-28a6-4c54-b6ca-3b8abc378bbf.tmp, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 1532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0418178e-b504-49bd-af9e-c9e6815cd3e1.tmp, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\454c14e0-382c-4cc3-a397-d23c9197568c.tmp, EstimatedImpact: 0% 2026-05-27T23:41:48.975 ProcessImageName: updater.exe, Pid: 1216, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2c2f7521-c375-4f3c-8821-d73a1d2a6074.tmp, EstimatedImpact: 0% 2026-05-27T23:44:21.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-27T23:59:26.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T00:14:31.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T00:15:45.513 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #188841, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T00:29:36.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T00:36:01.877 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:746DF63D-2FEF-43E1-9807-AEE0E5C44A1D, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-28T00:36:01.877 Scheduled scan with Id 746DF63D-2FEF-43E1-9807-AEE0E5C44A1D configured CPU priority: normal (LowCpuPriority: 0) 2026-05-28T00:36:01.877 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-28T00:36:01.877 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-28T00:36:01.877 [SFC] System file cache build is not needed (already completed) 2026-05-28T00:36:16.096 Engine:Triggered AR EMS scan 2026-05-28T00:36:16.096 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.111 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.127 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.143 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.158 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.174 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.190 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.205 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.221 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.236 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.252 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.268 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.283 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.299 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.315 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.330 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.346 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.361 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:16.377 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-28T00:36:30.197 QuickScan:ScanID:746DF63D-2FEF-43E1-9807-AEE0E5C44A1D: Quick scan finished with error 0 2026-05-28T00:36:30.197 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-28T00:36:30.698 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-28T00:36:30.698 [RTP] Duplicating the current plugin configuration object... 2026-05-28T00:36:30.698 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-28T00:36:30.698 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-28T00:36:30.698 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-28T00:36:30.698 [RTP] No config change detected. Not updating plugin configuration. 2026-05-28T00:36:30.698 [RTP] No config changes found. No configuration switch. 2026-05-28T00:36:30.698 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-28T00:44:41.489 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T00:59:46.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T01:14:51.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T01:29:56.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T01:41:48.989 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 55246, Count: 7292, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 315, Count: 105, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4708_1.MAI, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: wacs.exe, Pid: 184, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 648, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eeea045a-0469-4790-a997-049d1ee7e695.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\64292b3b-c930-49dd-b08b-291777375a60.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 2224, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2bb2de69-2e4f-402d-a0a3-7e531460ede4.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be13bc0c-d4fe-45ba-b81e-328ede43de91.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ede79eca-ed85-4af0-9d84-a18d6148c2ec.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 1532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0418178e-b504-49bd-af9e-c9e6815cd3e1.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 5876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bf1e7d-d6bf-4ac1-a235-8bc1124a8d6a.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 5824, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff788aaf-9753-4d92-8aaf-1cc6f1f7f710.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4abad6a9-f4b4-46fc-9fb0-557f9e6e68fa.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 1216, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2c2f7521-c375-4f3c-8821-d73a1d2a6074.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\454c14e0-382c-4cc3-a397-d23c9197568c.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5bc699c-28a6-4c54-b6ca-3b8abc378bbf.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 2380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b5eade3-c025-4595-a495-0604d29ad624.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 2744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcde1df9-4119-4149-a6c0-773ba00ec7b7.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 4732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\621fd82b-a45c-4a43-88f8-3788e459ffd2.tmp, EstimatedImpact: 0% 2026-05-28T01:41:48.989 ProcessImageName: updater.exe, Pid: 4728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a3b3ec7-87b5-4045-8e21-7360e124d4f8.tmp, EstimatedImpact: 0% 2026-05-28T01:45:01.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T02:00:06.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T02:15:11.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T02:15:45.592 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #189224, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T02:30:16.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T02:45:21.480 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T03:00:26.485 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T03:15:31.491 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T03:30:36.490 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T03:41:48.999 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 55781, Count: 7325, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 315, Count: 105, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4708_1.MAI, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: wacs.exe, Pid: 184, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 648, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eeea045a-0469-4790-a997-049d1ee7e695.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\64292b3b-c930-49dd-b08b-291777375a60.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 2224, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2bb2de69-2e4f-402d-a0a3-7e531460ede4.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be13bc0c-d4fe-45ba-b81e-328ede43de91.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 5876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bf1e7d-d6bf-4ac1-a235-8bc1124a8d6a.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 5824, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff788aaf-9753-4d92-8aaf-1cc6f1f7f710.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 2380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b5eade3-c025-4595-a495-0604d29ad624.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4abad6a9-f4b4-46fc-9fb0-557f9e6e68fa.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 4020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\10cd4306-9e59-44a9-bf49-5463a6d83227.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 3880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfc7ce9a-4671-4f82-ba86-d15637f9d363.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 2744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcde1df9-4119-4149-a6c0-773ba00ec7b7.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\454c14e0-382c-4cc3-a397-d23c9197568c.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5bc699c-28a6-4c54-b6ca-3b8abc378bbf.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 1532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0418178e-b504-49bd-af9e-c9e6815cd3e1.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 4728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a3b3ec7-87b5-4045-8e21-7360e124d4f8.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 1216, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2c2f7521-c375-4f3c-8821-d73a1d2a6074.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 4732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\621fd82b-a45c-4a43-88f8-3788e459ffd2.tmp, EstimatedImpact: 0% 2026-05-28T03:41:48.999 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ede79eca-ed85-4af0-9d84-a18d6148c2ec.tmp, EstimatedImpact: 0% 2026-05-28T03:45:41.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T04:00:46.490 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T04:15:45.329 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #189411, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T04:15:51.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T04:30:56.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T04:46:01.489 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T05:01:06.488 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T05:16:11.488 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T05:31:16.488 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T05:41:48.999 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 57544, Count: 7446, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 315, Count: 105, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4708_1.MAI, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: wacs.exe, Pid: 184, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 648, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eeea045a-0469-4790-a997-049d1ee7e695.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\64292b3b-c930-49dd-b08b-291777375a60.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 2224, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2bb2de69-2e4f-402d-a0a3-7e531460ede4.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be13bc0c-d4fe-45ba-b81e-328ede43de91.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ede79eca-ed85-4af0-9d84-a18d6148c2ec.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 4732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\621fd82b-a45c-4a43-88f8-3788e459ffd2.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 5876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bf1e7d-d6bf-4ac1-a235-8bc1124a8d6a.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 5824, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff788aaf-9753-4d92-8aaf-1cc6f1f7f710.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 5244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5467cbe2-2ab2-4865-83a7-9313e28512c9.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4abad6a9-f4b4-46fc-9fb0-557f9e6e68fa.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 4728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a3b3ec7-87b5-4045-8e21-7360e124d4f8.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 3880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfc7ce9a-4671-4f82-ba86-d15637f9d363.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 2744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcde1df9-4119-4149-a6c0-773ba00ec7b7.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 2380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b5eade3-c025-4595-a495-0604d29ad624.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5bc699c-28a6-4c54-b6ca-3b8abc378bbf.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\454c14e0-382c-4cc3-a397-d23c9197568c.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 2012, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0d4c37e-51da-4fdf-9a1f-ed030cdb46ce.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 1532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0418178e-b504-49bd-af9e-c9e6815cd3e1.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 1216, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2c2f7521-c375-4f3c-8821-d73a1d2a6074.tmp, EstimatedImpact: 0% 2026-05-28T05:41:48.999 ProcessImageName: updater.exe, Pid: 4020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\10cd4306-9e59-44a9-bf49-5463a6d83227.tmp, EstimatedImpact: 0% 2026-05-28T05:46:21.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T06:01:26.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T06:15:46.297 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #189625, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T06:16:31.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T06:31:36.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T06:46:41.486 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T07:01:46.475 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T07:16:51.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T07:23:08.494 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4797_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #189768, FileId: 0x1742000000024dd0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T07:23:09.606 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4797_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #189798, FileId: 0x174c000000024dd0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T07:23:10.270 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4797_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #189828, FileId: 0x1756000000024dd0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T07:31:56.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T07:41:16.477 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-28T07:41:16.508 Job Notification: New process added to job (2880) 2026-05-28T07:41:16.508 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-28T07:41:16.508 Aggressive catchup quick scan threshold: 255146407741 / 25920000000000 2026-05-28T07:41:16.508 Job Notification: New process added to job (5600) 2026-05-28T07:41:16.539 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:2880] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5600]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-28T07:41:16.617 Job Notification: New process added to job (3476) 2026-05-28T07:41:16.617 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-28T07:41:16.617 Job Notification: New process added to job (5372) 2026-05-28T07:41:16.649 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3476] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5372]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-28T07:41:16.899 Job Notification: New process added to job (4984) 2026-05-28T07:41:16.899 Task(GetDeviceTicket -AccessKey 140491AE-35D5-AD3C-9CCD-BDBCEE8CB6EB ) launched as network service 2026-05-28T07:41:17.008 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-28T07:41:17.024 [RTP] Duplicating the current plugin configuration object... 2026-05-28T07:41:17.024 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-28T07:41:17.024 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-28T07:41:17.024 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-28T07:41:17.024 [RTP] No config change detected. Not updating plugin configuration. 2026-05-28T07:41:17.024 [RTP] No config changes found. No configuration switch. 2026-05-28T07:41:17.024 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-28T07:41:17.426 Job Notification: Process exited from job (4984) 2026-05-28T07:41:18.615 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-28T07:41:18.615 [Cloud] Start of cloud request. Passive mode: 0 2026-05-28T07:41:18.615 [Cloud] Queued cloud request. 2026-05-28T07:41:18.615 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-28T07:41:18.615 [Cloud] Dequeued cloud request. 2026-05-28T07:41:18.615 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-28T07:41:18.615 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-28T07:41:18.615 [Cloud] Start of cloud request. Passive mode: 0 2026-05-28T07:41:18.615 [Cloud] Queued cloud request. 2026-05-28T07:41:18.615 [Cloud] Dequeued cloud request. 2026-05-28T07:41:18.615 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-28T07:41:18.890 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-28T07:41:18.890 [Cloud] End of cloud request. 2026-05-28T07:41:18.899 [Cloud] End of cloud request. 2026-05-28T07:41:19.118 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-28T07:41:49.008 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 57683, Count: 7468, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 330, Count: 171, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4708_1.MAI, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 137, Count: 12, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: wacs.exe, Pid: 184, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 5132, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfcb3ab3-15b9-42a1-afbd-da132517ef74.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 648, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eeea045a-0469-4790-a997-049d1ee7e695.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\64292b3b-c930-49dd-b08b-291777375a60.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 2224, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2bb2de69-2e4f-402d-a0a3-7e531460ede4.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be13bc0c-d4fe-45ba-b81e-328ede43de91.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 2012, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0d4c37e-51da-4fdf-9a1f-ed030cdb46ce.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 1532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0418178e-b504-49bd-af9e-c9e6815cd3e1.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 1216, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2c2f7521-c375-4f3c-8821-d73a1d2a6074.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 5876, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69bf1e7d-d6bf-4ac1-a235-8bc1124a8d6a.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 5824, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff788aaf-9753-4d92-8aaf-1cc6f1f7f710.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ede79eca-ed85-4af0-9d84-a18d6148c2ec.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 4732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\621fd82b-a45c-4a43-88f8-3788e459ffd2.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 4728, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a3b3ec7-87b5-4045-8e21-7360e124d4f8.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 5740, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4abad6a9-f4b4-46fc-9fb0-557f9e6e68fa.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 4020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\10cd4306-9e59-44a9-bf49-5463a6d83227.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 3880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfc7ce9a-4671-4f82-ba86-d15637f9d363.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 5476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\454c14e0-382c-4cc3-a397-d23c9197568c.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 2744, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bcde1df9-4119-4149-a6c0-773ba00ec7b7.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 2444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9b9f4cb4-d6c5-49ad-8d7d-e3f4e8a148b7.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 2380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5b5eade3-c025-4595-a495-0604d29ad624.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c5bc699c-28a6-4c54-b6ca-3b8abc378bbf.tmp, EstimatedImpact: 0% 2026-05-28T07:41:49.008 ProcessImageName: updater.exe, Pid: 5244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5467cbe2-2ab2-4865-83a7-9313e28512c9.tmp, EstimatedImpact: 0% 2026-05-28T07:42:02.114 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\B4302B32-A1D9-407E-92CB-F7D2D6734A0C15d4.1dcee7577fa8591 2026-05-28T07:42:02.161 Verifying engine and signature files (source: 0) ... 2026-05-28T07:42:02.161 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{82C4727E-38D3-4EE4-9491-75B84F06B24A}\mpengine.dll] due to PPL. 2026-05-28T07:42:02.161 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{82C4727E-38D3-4EE4-9491-75B84F06B24A}\mpasbase.vdm] (file in cache) 2026-05-28T07:42:02.161 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{82C4727E-38D3-4EE4-9491-75B84F06B24A}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-28T07:42:02.176 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{82C4727E-38D3-4EE4-9491-75B84F06B24A}\mpasdlta.vdm] 2026-05-28T07:42:02.176 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{82C4727E-38D3-4EE4-9491-75B84F06B24A}\mpavbase.vdm] (file in cache) 2026-05-28T07:42:02.176 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{82C4727E-38D3-4EE4-9491-75B84F06B24A}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-28T07:42:02.192 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{82C4727E-38D3-4EE4-9491-75B84F06B24A}\mpavdlta.vdm] 2026-05-28T07:42:02.348 [Engine] IsHybridMode: 0 2026-05-28T07:42:02.348 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-05-28T07:42:02.395 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-467DCFB5E923C445C867BD4AF6659018CCBE079F.bin): 0x00000002 2026-05-28T07:42:02.395 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-467DCFB5E923C445C867BD4AF6659018CCBE079F.bin) 2026-05-28T07:42:02.395 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-28T07:42:02.395 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-28T07:42:02.395 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-28T07:42:02.395 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-28T07:42:10.519 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-28T07:42:10.519 [AutoExclusion] Applied roles from cache. 2026-05-28T07:42:10.519 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-28T07:42:10.534 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB1FFA5810, lRefCount: 5, hr=0 2026-05-28T07:42:10.534 [Engine] New active engine 00007FFB12AE5810 replacing engine 00007FFB1FFA5810. Number of active engines: 2 2026-05-28T07:42:10.550 EngineInit:Global ASOC is enabled 2026-05-28T07:42:10.550 EngineInit:ASOO is enabled for developer volumes 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-28T07:42:10.566 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-28T07:42:10.566 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\06ff1e82b25bc865fcf45785a596b71efcb90bff Dynamic Signature Compilation Timestamp:04-28-2026 02:02:07 Persistence Type:Duration Time remaining:150196224 2026-05-28T07:42:10.566 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\37a106a745de29425fa0d904bab9a4a28bad2914 Dynamic Signature Compilation Timestamp:04-28-2026 02:02:07 Persistence Type:Duration Time remaining:150196224 2026-05-28T07:42:10.566 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\e9da7d12d6a7604088a69870fdc3bbff85ac7880 Dynamic Signature Compilation Timestamp:04-28-2026 02:02:07 Persistence Type:Duration Time remaining:150196224 2026-05-28T07:42:10.566 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-28T07:42:10.581 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-28T07:42:10.581 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-28T07:42:10.581 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-28T07:42:10.581 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-28T07:42:10.581 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-28T07:42:10.581 [Plugin] Initializing RTP plugin state... 2026-05-28T07:42:10.581 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-28T07:42:10.581 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎27‎-‎2026 09:41:49 Last Perf:‎05‎-‎27‎-‎2026 09:41:48 First RTP Scan:‎05‎-‎27‎-‎2026 09:41:49 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:531 Misses:2372 BM Queue:0,129,0 Proc:0,46,0 File:0,95,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:190015 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-482781810 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:68945 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:184763 TotalHits:6063346 InstanceCacheInserts:26870 InstanceCacheUpdates:0 InstanceCacheDeletes:11942 InstanceCacheHits:667 InstanceCacheMisses:164788 InstanceCacheOverflows:13936 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:3ms (739/213) Success: 213, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-28T07:42:10.581 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{82C4727E-38D3-4EE4-9491-75B84F06B24A} 2026-05-28T07:42:10.581 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{31FEC401-1AAA-4A6B-9EF8-20138A023F3C}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{31FEC401-1AAA-4A6B-9EF8-20138A023F3C}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-28T07:42:10.581 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{61D3D1DC-26B5-4BEF-8D91-EC79FF95EC65} removed 2026-05-28T07:42:10.581 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-28T07:42:10.581 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-28T07:42:10.581 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-28T07:42:10.597 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-28T07:42:10.597 MdCoreSvc is supported in this platform and OS 2026-05-28T07:42:10.597 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-28-2026 07:42:10 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-28-2026 07:42:10 2026-05-28T07:42:10.597 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-28T07:42:10.597 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-28T07:42:10.597 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-28T07:42:10.597 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-28T07:42:10.597 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-28T07:42:10.597 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-28T07:42:10.597 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-28T07:42:10.597 MdCoreSvc is supported in this platform and OS 2026-05-28T07:42:10.597 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-28T07:42:10.597 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 05-28-2026 07:42:10 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.140.0 AV Signature Version: 1.451.140.0 ************************************************************ 2026-05-28T07:42:10.597 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-28T07:42:10.597 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\B4302B32-A1D9-407E-92CB-F7D2D6734A0C15d4.1dcee7577fa8591 2026-05-28T07:42:10.612 Process scan (postsignatureupdatescan) started. 2026-05-28T07:42:10.659 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-28T07:42:10.659 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 05-28-2026 07:42:10 ************************************************************ 2026-05-28T07:42:10.878 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-28T07:42:10.878 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-28T07:42:10.878 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-28T07:42:10.878 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-28T07:42:10.878 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-28T07:42:10.894 Job Notification: Process exited from job (3476) 2026-05-28T07:42:10.894 Job Notification: Process exited from job (5372) 2026-05-28T07:42:10.894 [Engine] Engine 00007FFB1FFA5810 no longer in use. Number of active engines: 1 2026-05-28T07:42:10.894 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-28T07:42:10.894 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-28T07:42:10.894 Job Notification: Process exited from job (2880) 2026-05-28T07:42:10.894 Job Notification: Process exited from job (5600) 2026-05-28T07:42:11.081 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-28T07:42:11.081 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-28T07:42:11.081 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-28T07:42:12.003 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 57683, Count: 7468, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-28T07:42:12.003 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 330, Count: 171, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4708_1.MAI, EstimatedImpact: 0% 2026-05-28T07:42:12.003 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 137, Count: 12, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-28T07:42:12.003 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-28T07:42:12.003 ProcessImageName: updater.exe, Pid: 6140, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T07:42:12.003 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T07:42:12.003 ProcessImageName: wacs.exe, Pid: 184, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-28T07:42:12.003 ProcessImageName: updater.exe, Pid: 5132, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cfcb3ab3-15b9-42a1-afbd-da132517ef74.tmp, EstimatedImpact: 0% 2026-05-28T07:42:12.003 ProcessImageName: updater.exe, Pid: 648, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eeea045a-0469-4790-a997-049d1ee7e695.tmp, EstimatedImpact: 0% 2026-05-28T07:42:12.003 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\64292b3b-c930-49dd-b08b-291777375a60.tmp, EstimatedImpact: 0% 2026-05-28T07:42:12.003 ProcessImageName: updater.exe, Pid: 2224, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2bb2de69-2e4f-402d-a0a3-7e531460ede4.tmp, EstimatedImpact: 0% 2026-05-28T07:42:12.003 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be13bc0c-d4fe-45ba-b81e-328ede43de91.tmp, EstimatedImpact: 0% 2026-05-28T07:42:12.050 [Engine] RSIG_UNLOADENGINE, 00007FFB1FFA5810, err=0x0 2026-05-28T07:42:12.066 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{31FEC401-1AAA-4A6B-9EF8-20138A023F3C} removed 2026-05-28T07:42:16.941 Process scan (postsignatureupdatescan) completed. 2026-05-28T07:47:01.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T07:47:10.565 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-28T08:02:06.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T08:15:35.685 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190183, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T08:15:35.701 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190185, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T08:15:45.705 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190190, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T08:15:45.705 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190192, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T08:15:45.705 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190193, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T08:17:11.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T08:32:16.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-05-28T08:32:40.351 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-28T08:32:40.351 [Cloud] Start of cloud request. Passive mode: 0 2026-05-28T08:32:40.351 [Cloud] Queued cloud request. 2026-05-28T08:32:40.351 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-28T08:32:40.351 [Cloud] Dequeued cloud request. 2026-05-28T08:32:40.351 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-28T08:32:40.736 [Cloud] End of cloud request. 2026-05-28T08:32:40.736 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-05-28T08:32:40.736 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-28T08:32:40.752 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE BEGIN BM telemetry GUID:{69DB2D44-9435-3008-1C58-0112694858B3} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:4696 ProcessCreationTime:134244307603399892 SessionID:0 CreationTime:05-28-2026 08:32:40 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-05-28T08:32:40.799 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-28T08:32:40.799 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-28T08:32:41.252 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-28T08:32:41.518 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-28T08:32:41.518 [Cloud] Start of cloud request. Passive mode: 0 2026-05-28T08:32:41.518 [Cloud] Queued cloud request. 2026-05-28T08:32:41.518 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-28T08:32:41.518 [Cloud] Dequeued cloud request. 2026-05-28T08:32:41.549 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-28T08:32:41.705 [Cloud] End of cloud request. 2026-05-28T08:32:42.205 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-28T08:32:43.064 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-28T08:32:43.064 [Cloud] Start of cloud request. Passive mode: 0 2026-05-28T08:32:43.064 [Cloud] Queued cloud request. 2026-05-28T08:32:43.064 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-28T08:32:43.064 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-05-28T08:32:43.064 [Cloud] Dequeued cloud request. 2026-05-28T08:32:43.064 [Cloud] Start of cloud request. Passive mode: 0 2026-05-28T08:32:43.064 [Cloud] Queued cloud request. 2026-05-28T08:32:43.064 [Cloud] Dequeued cloud request. 2026-05-28T08:32:43.064 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-28T08:32:43.080 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-28T08:32:43.252 [Cloud] End of cloud request. 2026-05-28T08:32:43.268 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-28T08:32:43.268 [Cloud] End of cloud request. 2026-05-28T08:32:43.756 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-28T08:47:21.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T09:02:26.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T09:15:34.839 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190522, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T09:15:34.854 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190524, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T09:15:44.847 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190528, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T09:15:44.863 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190531, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T09:17:31.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T09:32:36.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T09:42:10.541 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 3834, Count: 320, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\politica\udmr-mures\6cf3f53ff3d682e0a4e11b7e5e45ddd3.html, EstimatedImpact: 0% 2026-05-28T09:42:10.541 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-28T09:42:10.541 ProcessImageName: wacs.exe, Pid: 4696, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260528.txt, EstimatedImpact: 1% 2026-05-28T09:42:10.541 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-28T09:42:10.541 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-28T09:42:10.541 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0596808-af1b-4088-9efb-b61a8d3c92db.tmp, EstimatedImpact: 0% 2026-05-28T09:47:41.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T10:02:46.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T10:04:20.801 Job Notification: Process exited from job (5908) 2026-05-28T10:15:35.984 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190621, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T10:15:35.999 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190623, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T10:15:45.987 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190628, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T10:15:45.987 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190630, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T10:15:46.003 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190632, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T10:15:46.003 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190634, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T10:17:51.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T10:32:56.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T10:48:01.480 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T11:03:06.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T11:15:34.917 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190764, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:15:34.932 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190766, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:15:44.920 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190770, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:15:44.920 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190772, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:15:44.935 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190774, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:15:44.935 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #190776, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:18:11.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T11:33:16.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T11:42:10.545 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 4332, Count: 371, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\mobile\category\politica\udmr-mures\6cf3f53ff3d682e0a4e11b7e5e45ddd3.html, EstimatedImpact: 0% 2026-05-28T11:42:10.545 ProcessImageName: php-cgi.exe, Pid: 744, TotalTime: 200, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-28T11:42:10.545 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-28T11:42:10.545 ProcessImageName: wacs.exe, Pid: 4696, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260528.txt, EstimatedImpact: 1% 2026-05-28T11:42:10.545 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-28T11:42:10.545 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-28T11:42:10.545 ProcessImageName: updater.exe, Pid: 5788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3ae7650-9b82-4065-b808-bfe400af54f8.tmp, EstimatedImpact: 0% 2026-05-28T11:42:10.545 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0596808-af1b-4088-9efb-b61a8d3c92db.tmp, EstimatedImpact: 0% 2026-05-28T11:42:10.545 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d0624cd-ed0b-44b8-85a8-bcfc484e9149.tmp, EstimatedImpact: 0% 2026-05-28T11:48:21.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T11:49:56.519 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #191986, FileId: 0x4b5000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:09.206 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192494, FileId: 0x4b7000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:09.269 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192497, FileId: 0x4b8000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:09.331 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192501, FileId: 0x4b9000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:09.362 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192504, FileId: 0x4ba000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:09.378 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192507, FileId: 0x4bb000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:09.409 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192510, FileId: 0x4bc000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:09.456 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192513, FileId: 0x4bd000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:09.487 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192516, FileId: 0x4be000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:09.503 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192519, FileId: 0x4bf000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:09.534 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192522, FileId: 0x4c0000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:09.550 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192525, FileId: 0x4c1000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:10.036 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192529, FileId: 0x4c2000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:10.442 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192532, FileId: 0x4c3000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:10.845 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192535, FileId: 0x4c4000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:10.876 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192538, FileId: 0x4c5000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:10.908 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192541, FileId: 0x4c6000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:10.923 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192544, FileId: 0x4c7000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:10.939 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192547, FileId: 0x4c8000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:10.955 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192550, FileId: 0x4c9000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:10.970 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192553, FileId: 0x4ca000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:11.001 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192556, FileId: 0x4cb000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:11.048 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192559, FileId: 0x4cc000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:11.080 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192562, FileId: 0x4cd000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:11.111 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192565, FileId: 0x4ce000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:11.142 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192568, FileId: 0x4cf000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:11.173 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192571, FileId: 0x4d0000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:11.189 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192574, FileId: 0x4d1000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:11.220 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192577, FileId: 0x4d2000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:11.642 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192590, FileId: 0x4d3000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T11:50:12.064 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192599, FileId: 0x4d4000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T12:01:11.210 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47f1_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192653, FileId: 0x4da000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T12:01:11.796 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sqla80_47f1_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192657, FileId: 0x4db000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T12:03:26.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T12:15:35.150 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192683, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T12:15:35.165 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192685, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T12:15:45.158 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192689, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T12:15:45.158 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192691, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T12:15:45.315 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192695, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T12:15:45.315 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192697, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T12:18:31.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T12:33:36.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T12:48:41.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T13:03:46.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T13:15:35.188 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192777, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T13:15:35.204 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192779, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T13:15:45.191 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192782, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T13:15:45.191 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192784, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T13:15:45.207 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192786, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T13:15:45.209 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192788, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T13:18:51.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T13:29:19.946 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4809_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192810, FileId: 0x4e2000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T13:33:56.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T13:42:10.554 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 55902, Count: 7050, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-28T13:42:10.554 ProcessImageName: php-cgi.exe, Pid: 744, TotalTime: 200, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-28T13:42:10.554 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 105, Count: 75, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1.MAI, EstimatedImpact: 0% 2026-05-28T13:42:10.554 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-28T13:42:10.554 ProcessImageName: wacs.exe, Pid: 4696, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260528.txt, EstimatedImpact: 1% 2026-05-28T13:42:10.554 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T13:42:10.554 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-28T13:42:10.554 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-28T13:42:10.554 ProcessImageName: updater.exe, Pid: 5788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3ae7650-9b82-4065-b808-bfe400af54f8.tmp, EstimatedImpact: 0% 2026-05-28T13:42:10.554 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0596808-af1b-4088-9efb-b61a8d3c92db.tmp, EstimatedImpact: 0% 2026-05-28T13:42:10.554 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d0624cd-ed0b-44b8-85a8-bcfc484e9149.tmp, EstimatedImpact: 0% 2026-05-28T13:42:10.554 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-28T13:49:01.476 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T14:04:06.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T14:15:35.206 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192867, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T14:15:35.221 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192869, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T14:15:45.210 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192873, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T14:15:45.226 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192876, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T14:19:11.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T14:34:16.475 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T14:49:21.480 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T14:57:21.464 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4814_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192922, FileId: 0xd5000000027391, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T14:57:22.011 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4814_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #192926, FileId: 0xd6000000027391, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T15:04:26.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T15:15:34.190 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192953, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T15:15:34.206 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192955, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T15:15:44.195 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192959, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T15:15:44.211 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #192962, FileId: 0x46570000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T15:19:31.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T15:34:36.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T15:42:10.559 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 56008, Count: 7065, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-28T15:42:10.559 ProcessImageName: php-cgi.exe, Pid: 744, TotalTime: 200, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-28T15:42:10.559 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 79, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1.MAI, EstimatedImpact: 0% 2026-05-28T15:42:10.559 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-28T15:42:10.559 ProcessImageName: wacs.exe, Pid: 4696, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260528.txt, EstimatedImpact: 1% 2026-05-28T15:42:10.559 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T15:42:10.559 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-28T15:42:10.559 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-28T15:42:10.559 ProcessImageName: updater.exe, Pid: 5788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3ae7650-9b82-4065-b808-bfe400af54f8.tmp, EstimatedImpact: 0% 2026-05-28T15:42:10.559 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fdb0162f-8c25-45ac-8d42-b36c7287236b.tmp, EstimatedImpact: 0% 2026-05-28T15:42:10.559 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0596808-af1b-4088-9efb-b61a8d3c92db.tmp, EstimatedImpact: 0% 2026-05-28T15:42:10.559 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d0624cd-ed0b-44b8-85a8-bcfc484e9149.tmp, EstimatedImpact: 0% 2026-05-28T15:42:10.559 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2bee3cf-7503-47ba-80a2-fb98a8c8142a.tmp, EstimatedImpact: 0% 2026-05-28T15:42:10.559 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-28T15:49:41.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T15:57:44.892 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4829_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #193030, FileId: 0x4e8000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T15:57:45.486 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4829_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #193034, FileId: 0x4e9000000009138, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T16:04:46.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T16:15:35.033 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193061, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T16:15:35.048 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193063, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T16:15:45.044 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193067, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T16:15:45.060 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193069, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T16:19:51.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T16:34:56.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T16:37:22.336 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sqla80_482b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #193096, FileId: 0xde000000027391, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T16:37:22.367 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqla80_482c_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #193099, FileId: 0xdf000000027391, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T16:37:23.102 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqla80_482b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #193104, FileId: 0xe0000000027391, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T16:37:23.227 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sqla80_482c_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #193107, FileId: 0xe1000000027391, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T16:38:14.167 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sqla80_482d_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #193112, FileId: 0xe5000000027391, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T16:39:27.092 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sqla80_482e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #193116, FileId: 0xe9000000027391, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T16:39:27.670 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sqla80_482e_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #193120, FileId: 0xea000000027391, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T16:40:15.361 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sqla80_482f_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #193125, FileId: 0xee000000027391, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T16:50:01.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T17:05:06.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T17:15:35.229 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193180, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T17:15:35.244 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193182, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T17:15:45.243 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193186, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T17:15:45.243 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193188, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T17:15:45.430 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193192, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T17:15:45.430 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193194, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T17:20:11.487 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T17:35:16.476 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T17:42:10.569 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 57784, Count: 7186, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-28T17:42:10.569 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 210, Count: 99, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1.MAI, EstimatedImpact: 0% 2026-05-28T17:42:10.569 ProcessImageName: php-cgi.exe, Pid: 744, TotalTime: 200, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-28T17:42:10.569 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-28T17:42:10.569 ProcessImageName: wacs.exe, Pid: 4696, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260528.txt, EstimatedImpact: 1% 2026-05-28T17:42:10.569 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T17:42:10.569 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T17:42:10.569 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-28T17:42:10.569 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-28T17:42:10.569 ProcessImageName: updater.exe, Pid: 5788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3ae7650-9b82-4065-b808-bfe400af54f8.tmp, EstimatedImpact: 0% 2026-05-28T17:42:10.569 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fdb0162f-8c25-45ac-8d42-b36c7287236b.tmp, EstimatedImpact: 0% 2026-05-28T17:42:10.569 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d0624cd-ed0b-44b8-85a8-bcfc484e9149.tmp, EstimatedImpact: 0% 2026-05-28T17:42:10.569 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7929bf34-01d3-45f4-b82f-fbfd8b728825.tmp, EstimatedImpact: 0% 2026-05-28T17:42:10.569 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2bee3cf-7503-47ba-80a2-fb98a8c8142a.tmp, EstimatedImpact: 0% 2026-05-28T17:42:10.569 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0596808-af1b-4088-9efb-b61a8d3c92db.tmp, EstimatedImpact: 0% 2026-05-28T17:42:10.569 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-28T17:50:21.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T18:05:26.480 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T18:15:36.253 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193270, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T18:15:36.269 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193272, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T18:15:46.257 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193276, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T18:20:31.471 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T18:35:36.471 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T18:50:41.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T19:05:46.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T19:20:51.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T19:35:56.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T19:42:10.579 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 57844, Count: 7194, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 210, Count: 99, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1.MAI, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: php-cgi.exe, Pid: 744, TotalTime: 200, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-28T19:42:10.579 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 4, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: wacs.exe, Pid: 4696, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260528.txt, EstimatedImpact: 1% 2026-05-28T19:42:10.579 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2bee3cf-7503-47ba-80a2-fb98a8c8142a.tmp, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7929bf34-01d3-45f4-b82f-fbfd8b728825.tmp, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fdb0162f-8c25-45ac-8d42-b36c7287236b.tmp, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: updater.exe, Pid: 5788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3ae7650-9b82-4065-b808-bfe400af54f8.tmp, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0596808-af1b-4088-9efb-b61a8d3c92db.tmp, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: updater.exe, Pid: 3604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88868102-8c75-4d62-8b87-0dd38c84f375.tmp, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d0624cd-ed0b-44b8-85a8-bcfc484e9149.tmp, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-28T19:42:10.579 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-28T19:51:01.473 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T20:06:06.471 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T20:15:35.362 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193482, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T20:21:11.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T20:36:16.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T20:51:21.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T21:06:26.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T21:15:44.597 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193584, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T21:21:31.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T21:36:36.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T21:42:10.580 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 57844, Count: 7195, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 210, Count: 99, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1.MAI, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: php-cgi.exe, Pid: 744, TotalTime: 200, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-28T21:42:10.580 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 122, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: wacs.exe, Pid: 4696, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260528.txt, EstimatedImpact: 1% 2026-05-28T21:42:10.580 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: updater.exe, Pid: 3604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88868102-8c75-4d62-8b87-0dd38c84f375.tmp, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7929bf34-01d3-45f4-b82f-fbfd8b728825.tmp, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2bee3cf-7503-47ba-80a2-fb98a8c8142a.tmp, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fdb0162f-8c25-45ac-8d42-b36c7287236b.tmp, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0596808-af1b-4088-9efb-b61a8d3c92db.tmp, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: updater.exe, Pid: 5788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3ae7650-9b82-4065-b808-bfe400af54f8.tmp, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: updater.exe, Pid: 5536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2a9ff98f-a380-4409-9c83-7f12e45b7da3.tmp, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d0624cd-ed0b-44b8-85a8-bcfc484e9149.tmp, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: updater.exe, Pid: 3796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab85c2a2-1a4b-4e23-9e9b-2ddbb0c8527a.tmp, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-28T21:42:10.580 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-28T21:51:41.484 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T22:06:46.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T22:21:51.480 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T22:36:56.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T22:52:01.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T23:07:06.473 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T23:15:46.074 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #193785, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-28T23:22:11.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T23:37:16.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-28T23:42:10.592 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 59128, Count: 7276, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 210, Count: 101, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1.MAI, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: php-cgi.exe, Pid: 744, TotalTime: 200, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-28T23:42:10.592 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 122, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: wacs.exe, Pid: 4696, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260528.txt, EstimatedImpact: 1% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 4812, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2bee3cf-7503-47ba-80a2-fb98a8c8142a.tmp, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 3796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab85c2a2-1a4b-4e23-9e9b-2ddbb0c8527a.tmp, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 3604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88868102-8c75-4d62-8b87-0dd38c84f375.tmp, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d0624cd-ed0b-44b8-85a8-bcfc484e9149.tmp, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7929bf34-01d3-45f4-b82f-fbfd8b728825.tmp, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 5788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3ae7650-9b82-4065-b808-bfe400af54f8.tmp, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 5736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ecb2abcf-d500-486e-b35e-494290c6c4b8.tmp, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fdb0162f-8c25-45ac-8d42-b36c7287236b.tmp, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0596808-af1b-4088-9efb-b61a8d3c92db.tmp, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 5536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2a9ff98f-a380-4409-9c83-7f12e45b7da3.tmp, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-28T23:42:10.592 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-28T23:52:21.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T00:07:26.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T00:22:31.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T00:36:01.889 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:BA86E437-F342-4794-ABB0-0DE798C12AFC, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-29T00:36:01.889 Scheduled scan with Id BA86E437-F342-4794-ABB0-0DE798C12AFC configured CPU priority: normal (LowCpuPriority: 0) 2026-05-29T00:36:01.889 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-29T00:36:01.889 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-29T00:36:01.889 [SFC] System file cache build is not needed (already completed) 2026-05-29T00:36:16.138 Engine:Triggered AR EMS scan 2026-05-29T00:36:16.138 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.154 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.169 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.185 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.200 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.216 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.232 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.247 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.263 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.279 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.294 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.325 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.325 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.341 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.357 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.372 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.388 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.404 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:16.419 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-29T00:36:29.988 QuickScan:ScanID:BA86E437-F342-4794-ABB0-0DE798C12AFC: Quick scan finished with error 0 2026-05-29T00:36:30.003 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-29T00:36:30.516 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-29T00:36:30.516 [RTP] Duplicating the current plugin configuration object... 2026-05-29T00:36:30.516 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-29T00:36:30.516 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-29T00:36:30.516 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-29T00:36:30.516 [RTP] No config change detected. Not updating plugin configuration. 2026-05-29T00:36:30.516 [RTP] No config changes found. No configuration switch. 2026-05-29T00:36:30.516 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-29T00:37:36.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T00:52:41.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T01:07:46.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T01:15:44.705 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #194120, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T01:22:51.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T01:37:56.469 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T01:42:10.606 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 59128, Count: 7289, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 210, Count: 101, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1.MAI, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: php-cgi.exe, Pid: 744, TotalTime: 200, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-29T01:42:10.606 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 122, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: wacs.exe, Pid: 4696, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260528.txt, EstimatedImpact: 1% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 4812, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 2696, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 5788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3ae7650-9b82-4065-b808-bfe400af54f8.tmp, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 5536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2a9ff98f-a380-4409-9c83-7f12e45b7da3.tmp, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0596808-af1b-4088-9efb-b61a8d3c92db.tmp, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 5736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ecb2abcf-d500-486e-b35e-494290c6c4b8.tmp, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fdb0162f-8c25-45ac-8d42-b36c7287236b.tmp, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 3796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab85c2a2-1a4b-4e23-9e9b-2ddbb0c8527a.tmp, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 3604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88868102-8c75-4d62-8b87-0dd38c84f375.tmp, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7555a4c8-537b-4e10-b06a-a3dc69a02a96.tmp, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d0624cd-ed0b-44b8-85a8-bcfc484e9149.tmp, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7929bf34-01d3-45f4-b82f-fbfd8b728825.tmp, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2bee3cf-7503-47ba-80a2-fb98a8c8142a.tmp, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T01:42:10.606 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T01:53:01.469 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T02:08:06.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T02:23:11.469 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T02:38:16.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T02:53:21.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T03:08:26.473 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T03:15:34.853 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #194344, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T03:23:31.473 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T03:38:36.483 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T03:42:10.618 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 59249, Count: 7325, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 240, Count: 106, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1.MAI, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: php-cgi.exe, Pid: 744, TotalTime: 200, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-29T03:42:10.618 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 122, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: wacs.exe, Pid: 4696, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260528.txt, EstimatedImpact: 1% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 4812, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 5272, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 2696, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fdb0162f-8c25-45ac-8d42-b36c7287236b.tmp, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2bee3cf-7503-47ba-80a2-fb98a8c8142a.tmp, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0596808-af1b-4088-9efb-b61a8d3c92db.tmp, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 3796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab85c2a2-1a4b-4e23-9e9b-2ddbb0c8527a.tmp, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 3604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88868102-8c75-4d62-8b87-0dd38c84f375.tmp, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 5788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3ae7650-9b82-4065-b808-bfe400af54f8.tmp, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 5736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ecb2abcf-d500-486e-b35e-494290c6c4b8.tmp, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d0624cd-ed0b-44b8-85a8-bcfc484e9149.tmp, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7929bf34-01d3-45f4-b82f-fbfd8b728825.tmp, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7555a4c8-537b-4e10-b06a-a3dc69a02a96.tmp, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 5536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2a9ff98f-a380-4409-9c83-7f12e45b7da3.tmp, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 5412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bfeddf9-f2c6-4c5b-8020-8a29fe074f0e.tmp, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T03:42:10.618 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T03:53:41.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T04:08:46.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T04:23:51.476 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T04:38:56.471 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T04:54:01.471 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T05:09:06.475 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T05:15:33.725 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #194548, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T05:24:11.480 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T05:39:16.473 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T05:42:10.621 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 59249, Count: 7325, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 240, Count: 106, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1.MAI, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: php-cgi.exe, Pid: 744, TotalTime: 200, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-29T05:42:10.621 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 137, Count: 8, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: wacs.exe, Pid: 4696, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260528.txt, EstimatedImpact: 1% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 4812, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 5272, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 2696, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 5736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ecb2abcf-d500-486e-b35e-494290c6c4b8.tmp, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 5536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2a9ff98f-a380-4409-9c83-7f12e45b7da3.tmp, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0596808-af1b-4088-9efb-b61a8d3c92db.tmp, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 6008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfd54ce4-46a5-4c87-8102-1526cd7d8e15.tmp, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 3796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab85c2a2-1a4b-4e23-9e9b-2ddbb0c8527a.tmp, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 3604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88868102-8c75-4d62-8b87-0dd38c84f375.tmp, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fdb0162f-8c25-45ac-8d42-b36c7287236b.tmp, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 5788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3ae7650-9b82-4065-b808-bfe400af54f8.tmp, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7555a4c8-537b-4e10-b06a-a3dc69a02a96.tmp, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d0624cd-ed0b-44b8-85a8-bcfc484e9149.tmp, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7929bf34-01d3-45f4-b82f-fbfd8b728825.tmp, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 2196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\da11a4e9-27f5-4ef0-b8ba-58c98c2befe6.tmp, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2bee3cf-7503-47ba-80a2-fb98a8c8142a.tmp, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 5412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bfeddf9-f2c6-4c5b-8020-8a29fe074f0e.tmp, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T05:42:10.621 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T05:54:21.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T06:09:26.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T06:24:31.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T06:39:36.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T06:54:41.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T07:09:46.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T07:15:44.624 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #194756, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T07:24:51.467 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) BEGIN BM telemetry GUID:{E685811D-9CB8-F00A-1450-E20FC6336F83} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:5780 ProcessCreationTime:134245138573512593 SessionID:0 CreationTime:05-29-2026 07:37:37 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-05-29T07:37:37.878 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-29T07:37:37.878 [Cloud] Start of cloud request. Passive mode: 0 2026-05-29T07:37:37.878 [Cloud] Queued cloud request. 2026-05-29T07:37:37.878 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-29T07:37:37.925 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey C4B8E856-ACCC-1BBA-C6CE-22621EFC2CE5) launched 2026-05-29T07:37:37.925 Job Notification: New process added to job (5620) 2026-05-29T07:37:37.925 Job Notification: New process added to job (2152) 2026-05-29T07:37:37.940 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:5620] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2152]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-29T07:37:37.956 Job Notification: New process added to job (3380) 2026-05-29T07:37:37.972 Job Notification: Process exited from job (5620) 2026-05-29T07:37:37.972 Job Notification: Process exited from job (2152) 2026-05-29T07:37:37.972 [Cloud] Dequeued cloud request. 2026-05-29T07:37:37.972 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-29T07:37:38.322 [Cloud] End of cloud request. 2026-05-29T07:37:38.826 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-29T07:39:56.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T07:41:16.477 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-29T07:41:16.493 Job Notification: New process added to job (4628) 2026-05-29T07:41:16.493 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-29T07:41:16.493 Job Notification: New process added to job (1684) 2026-05-29T07:41:16.493 Aggressive catchup quick scan threshold: 255146176561 / 25920000000000 2026-05-29T07:41:16.508 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4628] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:1684]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-29T07:41:16.618 Job Notification: New process added to job (3200) 2026-05-29T07:41:16.618 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-29T07:41:16.618 Job Notification: New process added to job (3936) 2026-05-29T07:41:16.633 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3200] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3936]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-29T07:41:16.837 Job Notification: New process added to job (4176) 2026-05-29T07:41:16.852 Task(GetDeviceTicket -AccessKey 4E5D56BB-4906-58F7-EEBF-AE20C778F14B ) launched as network service 2026-05-29T07:41:16.883 Job Notification: Process exited from job (4176) 2026-05-29T07:41:17.024 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-29T07:41:17.024 [RTP] Duplicating the current plugin configuration object... 2026-05-29T07:41:17.024 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-29T07:41:17.024 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-29T07:41:17.024 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-29T07:41:17.024 [RTP] No config change detected. Not updating plugin configuration. 2026-05-29T07:41:17.024 [RTP] No config changes found. No configuration switch. 2026-05-29T07:41:17.024 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-29T07:41:18.087 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-29T07:41:18.087 [Cloud] Start of cloud request. Passive mode: 0 2026-05-29T07:41:18.087 [Cloud] Queued cloud request. 2026-05-29T07:41:18.087 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-29T07:41:18.087 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-29T07:41:18.087 [Cloud] Dequeued cloud request. 2026-05-29T07:41:18.087 [Cloud] Start of cloud request. Passive mode: 0 2026-05-29T07:41:18.087 [Cloud] Queued cloud request. 2026-05-29T07:41:18.087 [Cloud] Dequeued cloud request. 2026-05-29T07:41:18.087 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-29T07:41:18.087 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-29T07:41:18.321 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-29T07:41:18.321 [Cloud] End of cloud request. 2026-05-29T07:41:18.353 [Cloud] End of cloud request. 2026-05-29T07:41:18.603 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-29T07:42:03.867 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\4B9CC68C-4345-4277-9A03-ABDE369DD62C12cc.1dcef3ea343aefe 2026-05-29T07:42:03.929 Verifying engine and signature files (source: 0) ... 2026-05-29T07:42:03.929 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{15D58CBF-A44A-4F52-9D1D-4FBE7CD7F8E2}\mpengine.dll] due to PPL. 2026-05-29T07:42:03.929 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{15D58CBF-A44A-4F52-9D1D-4FBE7CD7F8E2}\mpasbase.vdm] (file in cache) 2026-05-29T07:42:03.929 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{15D58CBF-A44A-4F52-9D1D-4FBE7CD7F8E2}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-29T07:42:03.929 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{15D58CBF-A44A-4F52-9D1D-4FBE7CD7F8E2}\mpasdlta.vdm] 2026-05-29T07:42:03.929 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{15D58CBF-A44A-4F52-9D1D-4FBE7CD7F8E2}\mpavbase.vdm] (file in cache) 2026-05-29T07:42:03.929 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{15D58CBF-A44A-4F52-9D1D-4FBE7CD7F8E2}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-29T07:42:03.945 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{15D58CBF-A44A-4F52-9D1D-4FBE7CD7F8E2}\mpavdlta.vdm] 2026-05-29T07:42:04.117 [Engine] IsHybridMode: 0 2026-05-29T07:42:04.117 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-05-29T07:42:04.211 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-BCB46CAF3E691367348E11035E0BB6B0CD410D3E.bin): 0x00000002 2026-05-29T07:42:04.211 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-BCB46CAF3E691367348E11035E0BB6B0CD410D3E.bin) 2026-05-29T07:42:04.211 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-29T07:42:04.211 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-29T07:42:04.211 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-29T07:42:04.211 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-05-29T07:42:10.623 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 59249, Count: 7334, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 270, Count: 111, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1.MAI, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: php-cgi.exe, Pid: 744, TotalTime: 200, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-29T07:42:10.623 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 168, Count: 11, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: wacs.exe, Pid: 4696, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260528.txt, EstimatedImpact: 1% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 4812, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 5272, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 2696, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 5412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bfeddf9-f2c6-4c5b-8020-8a29fe074f0e.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 6008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfd54ce4-46a5-4c87-8102-1526cd7d8e15.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 5788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3ae7650-9b82-4065-b808-bfe400af54f8.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fdb0162f-8c25-45ac-8d42-b36c7287236b.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 5736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ecb2abcf-d500-486e-b35e-494290c6c4b8.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 3796, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ab85c2a2-1a4b-4e23-9e9b-2ddbb0c8527a.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 3604, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\88868102-8c75-4d62-8b87-0dd38c84f375.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 3476, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b026adb0-4c27-4382-9142-fab985a86517.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 2824, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14b9dcac-a7a4-438f-b78f-6bf1b3c56f70.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 380, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7555a4c8-537b-4e10-b06a-a3dc69a02a96.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 2560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8d0624cd-ed0b-44b8-85a8-bcfc484e9149.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 2428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7929bf34-01d3-45f4-b82f-fbfd8b728825.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 2196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\da11a4e9-27f5-4ef0-b8ba-58c98c2befe6.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f2bee3cf-7503-47ba-80a2-fb98a8c8142a.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 5536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2a9ff98f-a380-4409-9c83-7f12e45b7da3.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 4136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f0596808-af1b-4088-9efb-b61a8d3c92db.tmp, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 4424, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T07:42:10.623 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-29T07:42:12.472 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-29T07:42:12.472 [AutoExclusion] Applied roles from cache. 2026-05-29T07:42:12.472 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-05-29T07:42:12.472 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB12AE5810, lRefCount: 5, hr=0 2026-05-29T07:42:12.472 [Engine] New active engine 00007FFB1FFA5810 replacing engine 00007FFB12AE5810. Number of active engines: 2 2026-05-29T07:42:12.488 EngineInit:Global ASOC is enabled 2026-05-29T07:42:12.488 EngineInit:ASOO is enabled for developer volumes 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-29T07:42:12.503 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-29T07:42:12.519 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-29T07:42:12.519 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-29T07:42:12.519 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-29T07:42:12.519 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-29T07:42:12.519 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-29T07:42:12.535 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-29T07:42:12.535 [Plugin] Initializing RTP plugin state... 2026-05-29T07:42:12.535 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-29T07:42:12.535 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎28‎-‎2026 09:42:10 Last Perf:‎05‎-‎28‎-‎2026 09:42:10 First RTP Scan:‎05‎-‎28‎-‎2026 09:42:16 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:529 Misses:2355 BM Queue:0,68,0 Proc:0,41,0 File:0,68,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:194906 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-475044344 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:68969 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:188773 TotalHits:6113684 InstanceCacheInserts:27198 InstanceCacheUpdates:0 InstanceCacheDeletes:12268 InstanceCacheHits:710 InstanceCacheMisses:165315 InstanceCacheOverflows:13936 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:3ms (657/214) Success: 214, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-29T07:42:12.535 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{15D58CBF-A44A-4F52-9D1D-4FBE7CD7F8E2} 2026-05-29T07:42:12.535 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{82C4727E-38D3-4EE4-9491-75B84F06B24A}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{82C4727E-38D3-4EE4-9491-75B84F06B24A}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-29T07:42:12.535 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{8A1135F5-BED2-446D-9244-BA2667198CBE} removed 2026-05-29T07:42:12.535 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-29T07:42:12.535 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-29T07:42:12.535 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-29T07:42:12.535 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-29T07:42:12.535 MdCoreSvc is supported in this platform and OS 2026-05-29T07:42:12.535 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-29-2026 07:42:12 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-29-2026 07:42:12 2026-05-29T07:42:12.535 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-29T07:42:12.535 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-29T07:42:12.535 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-29T07:42:12.535 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-29T07:42:12.535 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-29T07:42:12.535 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-29T07:42:12.535 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-29T07:42:12.535 MdCoreSvc is supported in this platform and OS 2026-05-29T07:42:12.535 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-29T07:42:12.535 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 05-29-2026 07:42:12 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.156.0 AV Signature Version: 1.451.156.0 ************************************************************ 2026-05-29T07:42:12.535 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-29T07:42:12.535 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\4B9CC68C-4345-4277-9A03-ABDE369DD62C12cc.1dcef3ea343aefe 2026-05-29T07:42:12.550 Process scan (postsignatureupdatescan) started. 2026-05-29T07:42:12.597 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-29T07:42:12.597 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-05-29T07:42:12.832 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-29T07:42:12.832 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-29T07:42:12.832 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-29T07:42:12.832 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-29T07:42:12.832 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). Signature updated via MicrosoftUpdateServer on 05-29-2026 07:42:12 ************************************************************ 2026-05-29T07:42:12.832 [Engine] Engine 00007FFB12AE5810 no longer in use. Number of active engines: 1 2026-05-29T07:42:12.832 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-29T07:42:12.832 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-29T07:42:12.847 Job Notification: Process exited from job (3200) 2026-05-29T07:42:12.847 Job Notification: Process exited from job (3936) 2026-05-29T07:42:12.863 Job Notification: Process exited from job (4628) 2026-05-29T07:42:12.863 Job Notification: Process exited from job (1684) 2026-05-29T07:42:13.035 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-29T07:42:13.035 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-29T07:42:13.035 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-29T07:42:13.722 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 59249, Count: 7334, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-05-29T07:42:13.722 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 270, Count: 111, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_47ee_1.MAI, EstimatedImpact: 0% 2026-05-29T07:42:13.722 ProcessImageName: php-cgi.exe, Pid: 744, TotalTime: 200, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-29T07:42:13.722 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 168, Count: 11, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-29T07:42:13.722 ProcessImageName: wacs.exe, Pid: 4696, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260528.txt, EstimatedImpact: 1% 2026-05-29T07:42:13.722 ProcessImageName: updater.exe, Pid: 4812, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T07:42:13.722 ProcessImageName: updater.exe, Pid: 5272, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T07:42:13.722 ProcessImageName: updater.exe, Pid: 3540, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T07:42:13.722 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T07:42:13.722 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-29T07:42:13.722 ProcessImageName: updater.exe, Pid: 2696, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T07:42:13.722 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-29T07:42:13.722 ProcessImageName: updater.exe, Pid: 5412, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1bfeddf9-f2c6-4c5b-8020-8a29fe074f0e.tmp, EstimatedImpact: 0% 2026-05-29T07:42:13.722 ProcessImageName: updater.exe, Pid: 6008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfd54ce4-46a5-4c87-8102-1526cd7d8e15.tmp, EstimatedImpact: 0% 2026-05-29T07:42:13.722 ProcessImageName: updater.exe, Pid: 5788, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3ae7650-9b82-4065-b808-bfe400af54f8.tmp, EstimatedImpact: 0% 2026-05-29T07:42:13.769 [Engine] RSIG_UNLOADENGINE, 00007FFB12AE5810, err=0x0 2026-05-29T07:42:13.785 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{82C4727E-38D3-4EE4-9491-75B84F06B24A} removed 2026-05-29T07:42:18.645 Process scan (postsignatureupdatescan) completed. 2026-05-29T07:47:12.502 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-29T07:54:18.278 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4b99_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #196229, FileId: 0x141700000001cf1a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T07:54:29.012 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4b99_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #196675, FileId: 0x141800000001cf1a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T07:55:01.476 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T08:10:06.482 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T08:15:35.803 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #196771, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T08:15:35.818 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #196774, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T08:15:45.812 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #196778, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T08:15:45.827 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #196780, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T08:15:45.989 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #196784, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T08:15:45.989 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #196786, FileId: 0x565000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T08:25:11.476 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T08:40:16.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T08:49:12.388 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4ba0_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #196829, FileId: 0x215f000000008bbd, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T08:55:21.476 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T09:10:26.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T09:15:33.549 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #196873, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T09:15:33.565 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #196875, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T09:15:43.558 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #196879, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T09:15:43.574 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #196881, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T09:25:31.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T09:40:36.467 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T09:42:12.482 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 45760, Count: 6447, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-29T09:42:12.482 ProcessImageName: updater.exe, Pid: 400, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7b2489e-9ac2-4453-8fd1-0345156ee7fd.tmp, EstimatedImpact: 0% 2026-05-29T09:42:12.482 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 15, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4ba0_1.MAI, EstimatedImpact: 0% 2026-05-29T09:42:12.482 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\008a9afc-8dd2-47d2-bddf-15497ad203ef.tmp, EstimatedImpact: 0% 2026-05-29T09:55:41.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T10:10:46.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T10:15:33.878 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197158, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T10:15:33.894 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197160, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T10:15:43.887 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197165, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T10:15:43.887 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197164, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T10:15:43.902 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197167, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T10:25:51.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T10:40:56.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T10:56:01.473 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T11:11:06.473 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T11:15:35.081 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197252, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T11:15:35.096 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197254, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T11:15:45.084 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197258, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T11:15:45.084 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197260, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T11:15:45.100 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197262, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T11:15:45.100 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197264, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T11:26:11.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T11:41:16.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T11:42:12.492 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 45928, Count: 6463, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-29T11:42:12.492 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 5, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-29T11:42:12.492 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-29T11:42:12.492 ProcessImageName: updater.exe, Pid: 400, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7b2489e-9ac2-4453-8fd1-0345156ee7fd.tmp, EstimatedImpact: 0% 2026-05-29T11:42:12.492 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 15, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4ba0_1.MAI, EstimatedImpact: 0% 2026-05-29T11:42:12.492 ProcessImageName: updater.exe, Pid: 5564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2789b17-ac89-4743-a395-c40faa24ee80.tmp, EstimatedImpact: 0% 2026-05-29T11:42:12.492 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\008a9afc-8dd2-47d2-bddf-15497ad203ef.tmp, EstimatedImpact: 0% 2026-05-29T11:42:12.492 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8755d0b-749a-41cd-b8f5-84f01669c30a.tmp, EstimatedImpact: 0% 2026-05-29T11:56:21.466 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T12:11:26.481 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T12:15:34.685 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197373, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T12:15:34.700 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197375, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T12:15:44.699 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197379, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T12:15:44.714 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197381, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T12:15:44.714 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197383, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T12:26:31.480 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T12:41:36.476 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T12:56:41.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T13:11:46.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T13:15:35.804 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197464, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T13:15:35.819 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197466, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T13:15:45.818 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197470, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T13:15:45.818 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197472, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T13:15:45.974 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197476, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T13:15:45.974 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197478, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T13:26:51.480 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T13:41:56.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T13:42:12.502 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 46639, Count: 6522, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-29T13:42:12.502 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-29T13:42:12.502 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-29T13:42:12.502 ProcessImageName: updater.exe, Pid: 1592, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T13:42:12.502 ProcessImageName: updater.exe, Pid: 400, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7b2489e-9ac2-4453-8fd1-0345156ee7fd.tmp, EstimatedImpact: 0% 2026-05-29T13:42:12.502 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 15, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4ba0_1.MAI, EstimatedImpact: 0% 2026-05-29T13:42:12.502 ProcessImageName: updater.exe, Pid: 5564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2789b17-ac89-4743-a395-c40faa24ee80.tmp, EstimatedImpact: 0% 2026-05-29T13:42:12.502 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d8f2ae20-775d-4a43-92d6-b25bf65bf47b.tmp, EstimatedImpact: 0% 2026-05-29T13:42:12.502 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\008a9afc-8dd2-47d2-bddf-15497ad203ef.tmp, EstimatedImpact: 0% 2026-05-29T13:42:12.502 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8755d0b-749a-41cd-b8f5-84f01669c30a.tmp, EstimatedImpact: 0% 2026-05-29T13:57:01.479 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T14:12:06.468 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T14:15:35.764 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197552, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T14:15:35.780 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197554, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T14:15:45.778 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197558, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T14:15:45.794 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197560, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T14:15:45.794 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197562, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T14:27:11.468 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T14:42:16.473 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T14:57:21.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T15:12:26.467 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T15:15:35.042 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197641, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T15:15:35.057 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197643, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T15:15:45.062 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197646, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T15:15:45.062 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197649, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T15:27:31.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T15:42:12.501 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 46942, Count: 6560, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-29T15:42:12.501 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-29T15:42:12.501 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-29T15:42:12.501 ProcessImageName: updater.exe, Pid: 1592, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T15:42:12.501 ProcessImageName: updater.exe, Pid: 400, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7b2489e-9ac2-4453-8fd1-0345156ee7fd.tmp, EstimatedImpact: 0% 2026-05-29T15:42:12.501 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 15, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4ba0_1.MAI, EstimatedImpact: 0% 2026-05-29T15:42:12.501 ProcessImageName: updater.exe, Pid: 5564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2789b17-ac89-4743-a395-c40faa24ee80.tmp, EstimatedImpact: 0% 2026-05-29T15:42:12.501 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d8f2ae20-775d-4a43-92d6-b25bf65bf47b.tmp, EstimatedImpact: 0% 2026-05-29T15:42:12.501 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\008a9afc-8dd2-47d2-bddf-15497ad203ef.tmp, EstimatedImpact: 0% 2026-05-29T15:42:12.501 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\979a2a54-bd9a-4f8e-a2e3-953140e2a658.tmp, EstimatedImpact: 0% 2026-05-29T15:42:12.501 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8755d0b-749a-41cd-b8f5-84f01669c30a.tmp, EstimatedImpact: 0% 2026-05-29T15:42:12.501 ProcessImageName: updater.exe, Pid: 1508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T15:42:36.471 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T15:57:41.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T16:12:46.466 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T16:15:33.331 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197736, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T16:15:33.346 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197738, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T16:15:43.345 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197742, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T16:15:43.360 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197745, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T16:27:51.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T16:42:56.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T16:58:01.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T17:13:06.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T17:15:36.064 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197814, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T17:15:36.080 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197816, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T17:15:46.068 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197820, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T17:15:46.084 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197823, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T17:28:11.469 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T17:42:12.516 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 47003, Count: 6569, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-29T17:42:12.516 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-29T17:42:12.516 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-29T17:42:12.516 ProcessImageName: updater.exe, Pid: 1592, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T17:42:12.516 ProcessImageName: updater.exe, Pid: 400, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7b2489e-9ac2-4453-8fd1-0345156ee7fd.tmp, EstimatedImpact: 0% 2026-05-29T17:42:12.516 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 15, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4ba0_1.MAI, EstimatedImpact: 0% 2026-05-29T17:42:12.516 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\979a2a54-bd9a-4f8e-a2e3-953140e2a658.tmp, EstimatedImpact: 0% 2026-05-29T17:42:12.516 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\037c0303-dd1a-4eff-b865-1aba700acfb2.tmp, EstimatedImpact: 0% 2026-05-29T17:42:12.516 ProcessImageName: updater.exe, Pid: 5564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2789b17-ac89-4743-a395-c40faa24ee80.tmp, EstimatedImpact: 0% 2026-05-29T17:42:12.516 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d8f2ae20-775d-4a43-92d6-b25bf65bf47b.tmp, EstimatedImpact: 0% 2026-05-29T17:42:12.516 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\008a9afc-8dd2-47d2-bddf-15497ad203ef.tmp, EstimatedImpact: 0% 2026-05-29T17:42:12.516 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8755d0b-749a-41cd-b8f5-84f01669c30a.tmp, EstimatedImpact: 0% 2026-05-29T17:42:12.516 ProcessImageName: updater.exe, Pid: 1132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cefca629-c64a-4384-b17f-17b261aa0dc4.tmp, EstimatedImpact: 0% 2026-05-29T17:42:12.516 ProcessImageName: updater.exe, Pid: 1508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T17:43:16.469 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T17:58:21.464 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T18:13:26.478 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T18:15:34.033 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197924, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T18:15:34.048 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197926, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T18:15:44.046 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197929, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T18:15:44.046 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197931, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T18:15:44.329 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197935, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T18:15:44.329 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #197937, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T18:28:31.464 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T18:43:36.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T18:58:41.477 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T19:13:46.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T19:15:33.919 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198019, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T19:15:33.935 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198021, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T19:15:43.933 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198025, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T19:15:43.949 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198028, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T19:28:51.466 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T19:42:12.516 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 47539, Count: 6602, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: updater.exe, Pid: 1592, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: updater.exe, Pid: 400, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7b2489e-9ac2-4453-8fd1-0345156ee7fd.tmp, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 15, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4ba0_1.MAI, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: updater.exe, Pid: 5564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2789b17-ac89-4743-a395-c40faa24ee80.tmp, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\008a9afc-8dd2-47d2-bddf-15497ad203ef.tmp, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d8f2ae20-775d-4a43-92d6-b25bf65bf47b.tmp, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: updater.exe, Pid: 5180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a6ec83-88d0-4737-8c47-61f0e378e0e9.tmp, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\037c0303-dd1a-4eff-b865-1aba700acfb2.tmp, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\979a2a54-bd9a-4f8e-a2e3-953140e2a658.tmp, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8755d0b-749a-41cd-b8f5-84f01669c30a.tmp, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: updater.exe, Pid: 1132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cefca629-c64a-4384-b17f-17b261aa0dc4.tmp, EstimatedImpact: 0% 2026-05-29T19:42:12.516 ProcessImageName: updater.exe, Pid: 1508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T19:43:56.466 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T19:59:01.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T20:14:06.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T20:15:35.170 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198149, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T20:15:35.185 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198151, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T20:15:45.190 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198155, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T20:15:45.190 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198158, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T20:29:11.475 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T20:44:16.475 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T20:59:21.475 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T21:14:26.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T21:15:34.003 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198235, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T21:15:34.003 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198237, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T21:15:44.011 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198241, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T21:15:44.011 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198242, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T21:15:44.027 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198243, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T21:29:31.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T21:42:12.520 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 47569, Count: 6618, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 45, Count: 12, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4ba0_1.MAI, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: updater.exe, Pid: 1592, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: updater.exe, Pid: 400, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7b2489e-9ac2-4453-8fd1-0345156ee7fd.tmp, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: updater.exe, Pid: 5204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f844eb04-fd46-422e-b8de-efba18a99438.tmp, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8755d0b-749a-41cd-b8f5-84f01669c30a.tmp, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: updater.exe, Pid: 5180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a6ec83-88d0-4737-8c47-61f0e378e0e9.tmp, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e89d9fc9-6ff0-4d78-b682-4da9371bf8a9.tmp, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: updater.exe, Pid: 1132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cefca629-c64a-4384-b17f-17b261aa0dc4.tmp, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: updater.exe, Pid: 5564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2789b17-ac89-4743-a395-c40faa24ee80.tmp, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\037c0303-dd1a-4eff-b865-1aba700acfb2.tmp, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\008a9afc-8dd2-47d2-bddf-15497ad203ef.tmp, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\979a2a54-bd9a-4f8e-a2e3-953140e2a658.tmp, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d8f2ae20-775d-4a43-92d6-b25bf65bf47b.tmp, EstimatedImpact: 0% 2026-05-29T21:42:12.520 ProcessImageName: updater.exe, Pid: 1508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T21:44:36.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T21:59:41.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T22:14:46.467 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T22:15:34.676 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198332, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T22:15:34.692 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198334, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T22:15:44.689 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198338, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T22:15:44.705 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198342, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T22:18:32.655 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4c81_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #198348, FileId: 0x216f000000008bbd, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T22:29:51.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T22:30:13.696 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4c8a_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #198375, FileId: 0x2174000000008bbd, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T22:33:13.244 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4c8b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #198383, FileId: 0x2178000000008bbd, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T22:44:56.475 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T23:00:01.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T23:15:06.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T23:15:34.693 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198445, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T23:15:34.709 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198447, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T23:15:44.703 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198451, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T23:15:44.703 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198453, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T23:15:44.874 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198457, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T23:15:44.874 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198459, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T23:30:11.469 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-29T23:33:28.792 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4c95_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #198484, FileId: 0x3cdc00000000c42e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T23:33:29.370 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4c95_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #198488, FileId: 0x3cdd00000000c42e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-29T23:42:12.534 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 49297, Count: 6746, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 90, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4ba0_1.MAI, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 1592, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 5656, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\189bb2b7-3549-47ba-8579-2a9771b90611.tmp, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 400, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7b2489e-9ac2-4453-8fd1-0345156ee7fd.tmp, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e89d9fc9-6ff0-4d78-b682-4da9371bf8a9.tmp, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 1132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cefca629-c64a-4384-b17f-17b261aa0dc4.tmp, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 5204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f844eb04-fd46-422e-b8de-efba18a99438.tmp, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 5180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a6ec83-88d0-4737-8c47-61f0e378e0e9.tmp, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\979a2a54-bd9a-4f8e-a2e3-953140e2a658.tmp, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d8f2ae20-775d-4a43-92d6-b25bf65bf47b.tmp, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\037c0303-dd1a-4eff-b865-1aba700acfb2.tmp, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 5564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2789b17-ac89-4743-a395-c40faa24ee80.tmp, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8755d0b-749a-41cd-b8f5-84f01669c30a.tmp, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\008a9afc-8dd2-47d2-bddf-15497ad203ef.tmp, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 3708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\85e5e1ef-6bee-4a0d-80f8-11f473069f1e.tmp, EstimatedImpact: 0% 2026-05-29T23:42:12.534 ProcessImageName: updater.exe, Pid: 1508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-29T23:45:16.476 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T00:00:21.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T00:15:26.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T00:15:34.156 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198539, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T00:15:34.156 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198541, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T00:15:44.159 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198545, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T00:15:44.159 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198547, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T00:15:44.175 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198549, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T00:15:44.175 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198551, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T00:30:31.464 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T00:36:01.902 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:358DB200-0C92-48D4-A6E5-725914EDE4C9, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-30T00:36:01.902 Scheduled scan with Id 358DB200-0C92-48D4-A6E5-725914EDE4C9 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-30T00:36:01.902 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-30T00:36:01.902 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-30T00:36:01.902 [SFC] System file cache build is not needed (already completed) 2026-05-30T00:36:16.076 Engine:Triggered AR EMS scan 2026-05-30T00:36:16.091 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.107 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.123 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.138 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.154 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.170 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.185 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.201 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.232 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.232 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.248 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.279 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.295 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.295 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.310 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.326 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.341 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.357 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:16.373 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-30T00:36:30.094 QuickScan:ScanID:358DB200-0C92-48D4-A6E5-725914EDE4C9: Quick scan finished with error 0 2026-05-30T00:36:30.094 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-30T00:36:30.602 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-30T00:36:30.602 [RTP] Duplicating the current plugin configuration object... 2026-05-30T00:36:30.602 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-30T00:36:30.602 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-30T00:36:30.602 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-30T00:36:30.602 [RTP] No config change detected. Not updating plugin configuration. 2026-05-30T00:36:30.602 [RTP] No config changes found. No configuration switch. 2026-05-30T00:36:30.602 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-30T00:45:36.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T00:47:08.419 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4cad_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #198745, FileId: 0x217f000000008bbd, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T00:47:09.028 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4cad_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #198749, FileId: 0x2180000000008bbd, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T00:50:33.787 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4cae_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #198755, FileId: 0x2184000000008bbd, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T01:00:41.469 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T01:15:34.772 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198796, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T01:15:34.788 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198798, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T01:15:44.775 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198802, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T01:15:44.775 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198804, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T01:15:44.791 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #198806, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T01:15:46.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T01:30:51.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T01:42:12.545 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 50377, Count: 6826, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 34, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4ba0_1.MAI, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 1592, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 5656, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\189bb2b7-3549-47ba-8579-2a9771b90611.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 400, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7b2489e-9ac2-4453-8fd1-0345156ee7fd.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\037c0303-dd1a-4eff-b865-1aba700acfb2.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\979a2a54-bd9a-4f8e-a2e3-953140e2a658.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d8f2ae20-775d-4a43-92d6-b25bf65bf47b.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 5204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f844eb04-fd46-422e-b8de-efba18a99438.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 5180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a6ec83-88d0-4737-8c47-61f0e378e0e9.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 5564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2789b17-ac89-4743-a395-c40faa24ee80.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\008a9afc-8dd2-47d2-bddf-15497ad203ef.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 3708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\85e5e1ef-6bee-4a0d-80f8-11f473069f1e.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bccedb0d-a4c2-4d09-ad65-ee5c6e17a7d8.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8755d0b-749a-41cd-b8f5-84f01669c30a.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 1132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cefca629-c64a-4384-b17f-17b261aa0dc4.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e89d9fc9-6ff0-4d78-b682-4da9371bf8a9.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59c430d2-8a26-4097-a169-be9b70a5c7d1.tmp, EstimatedImpact: 0% 2026-05-30T01:42:12.545 ProcessImageName: updater.exe, Pid: 1508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-30T01:45:56.468 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T02:01:01.467 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T02:16:06.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T02:31:11.467 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T02:46:16.471 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T03:01:21.471 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T03:15:33.360 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #199047, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T03:16:26.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T03:31:31.476 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T03:42:12.559 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 50467, Count: 6842, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 38, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4ba0_1.MAI, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 1592, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 5656, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\189bb2b7-3549-47ba-8579-2a9771b90611.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 400, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7b2489e-9ac2-4453-8fd1-0345156ee7fd.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d8f2ae20-775d-4a43-92d6-b25bf65bf47b.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\979a2a54-bd9a-4f8e-a2e3-953140e2a658.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 5816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d6e3519-12e0-4ea8-a976-98be75cdc647.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 5204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f844eb04-fd46-422e-b8de-efba18a99438.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 5180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a6ec83-88d0-4737-8c47-61f0e378e0e9.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\037c0303-dd1a-4eff-b865-1aba700acfb2.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 5564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2789b17-ac89-4743-a395-c40faa24ee80.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\008a9afc-8dd2-47d2-bddf-15497ad203ef.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 3708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\85e5e1ef-6bee-4a0d-80f8-11f473069f1e.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bccedb0d-a4c2-4d09-ad65-ee5c6e17a7d8.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 2488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3145374-4c53-4563-b9d6-68baef4183d4.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8755d0b-749a-41cd-b8f5-84f01669c30a.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e89d9fc9-6ff0-4d78-b682-4da9371bf8a9.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 1132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cefca629-c64a-4384-b17f-17b261aa0dc4.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59c430d2-8a26-4097-a169-be9b70a5c7d1.tmp, EstimatedImpact: 0% 2026-05-30T03:42:12.559 ProcessImageName: updater.exe, Pid: 1508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-30T03:46:36.476 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T04:01:41.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T04:16:46.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T04:31:51.475 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T04:46:56.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T05:02:01.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T05:15:33.930 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #199249, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T05:17:06.468 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T05:32:11.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T05:42:12.569 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 50467, Count: 6842, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 38, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4ba0_1.MAI, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 1592, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 5656, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\189bb2b7-3549-47ba-8579-2a9771b90611.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 400, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7b2489e-9ac2-4453-8fd1-0345156ee7fd.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 4068, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92de7399-78b7-4604-b53e-488602b96641.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 5180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a6ec83-88d0-4737-8c47-61f0e378e0e9.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 2488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3145374-4c53-4563-b9d6-68baef4183d4.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 5816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d6e3519-12e0-4ea8-a976-98be75cdc647.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8755d0b-749a-41cd-b8f5-84f01669c30a.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e89d9fc9-6ff0-4d78-b682-4da9371bf8a9.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 1244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4bd9f4fe-a025-4525-a554-ed982eb0cc9c.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\037c0303-dd1a-4eff-b865-1aba700acfb2.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 1132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cefca629-c64a-4384-b17f-17b261aa0dc4.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 5564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2789b17-ac89-4743-a395-c40faa24ee80.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59c430d2-8a26-4097-a169-be9b70a5c7d1.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\008a9afc-8dd2-47d2-bddf-15497ad203ef.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 5204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f844eb04-fd46-422e-b8de-efba18a99438.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 3708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\85e5e1ef-6bee-4a0d-80f8-11f473069f1e.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\979a2a54-bd9a-4f8e-a2e3-953140e2a658.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d8f2ae20-775d-4a43-92d6-b25bf65bf47b.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bccedb0d-a4c2-4d09-ad65-ee5c6e17a7d8.tmp, EstimatedImpact: 0% 2026-05-30T05:42:12.569 ProcessImageName: updater.exe, Pid: 1508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-30T05:47:16.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T06:02:21.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T06:17:26.467 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T06:32:31.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T06:36:28.738 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4cf6_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #199396, FileId: 0x16d00000002770d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T06:47:36.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T07:02:41.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T07:17:46.471 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T07:32:51.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T07:37:50.933 Job Notification: Process exited from job (3380) 2026-05-30T07:41:16.465 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-30T07:41:16.480 Job Notification: New process added to job (4044) 2026-05-30T07:41:16.496 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-30T07:41:16.496 Job Notification: New process added to job (4364) 2026-05-30T07:41:16.496 Aggressive catchup quick scan threshold: 255145962935 / 25920000000000 2026-05-30T07:41:16.511 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4044] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4364]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-30T07:41:16.621 Job Notification: New process added to job (3420) 2026-05-30T07:41:16.621 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-30T07:41:16.621 Job Notification: New process added to job (6088) 2026-05-30T07:41:16.636 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3420] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:6088]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-30T07:41:17.043 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-30T07:41:17.058 [RTP] Duplicating the current plugin configuration object... 2026-05-30T07:41:17.058 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-30T07:41:17.058 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-30T07:41:17.058 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-30T07:41:17.058 [RTP] No config change detected. Not updating plugin configuration. 2026-05-30T07:41:17.058 [RTP] No config changes found. No configuration switch. 2026-05-30T07:41:17.058 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-30T07:41:17.121 Job Notification: New process added to job (484) 2026-05-30T07:41:17.136 Task(GetDeviceTicket -AccessKey 5577578F-4826-47E9-8519-55B1B6D984E4 ) launched as network service 2026-05-30T07:41:17.568 Job Notification: Process exited from job (484) 2026-05-30T07:41:18.697 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-30T07:41:18.697 [Cloud] Start of cloud request. Passive mode: 0 2026-05-30T07:41:18.697 [Cloud] Queued cloud request. 2026-05-30T07:41:18.697 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-30T07:41:18.697 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-30T07:41:18.697 [Cloud] Start of cloud request. Passive mode: 0 2026-05-30T07:41:18.697 [Cloud] Queued cloud request. 2026-05-30T07:41:18.713 Job Notification: New process added to job (732) 2026-05-30T07:41:18.729 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 02DC0A0F-0C09-984B-C67E-15F92E168AE8) launched 2026-05-30T07:41:18.729 Job Notification: New process added to job (4272) 2026-05-30T07:41:18.729 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:732] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4272]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-30T07:41:18.744 Job Notification: New process added to job (4436) 2026-05-30T07:41:18.760 Job Notification: Process exited from job (732) 2026-05-30T07:41:18.760 Job Notification: Process exited from job (4272) 2026-05-30T07:41:18.760 [Cloud] Dequeued cloud request. 2026-05-30T07:41:18.760 [Cloud] Dequeued cloud request. 2026-05-30T07:41:18.760 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-30T07:41:18.760 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-30T07:41:19.042 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-30T07:41:19.042 [Cloud] End of cloud request. 2026-05-30T07:41:19.076 [Cloud] End of cloud request. 2026-05-30T07:41:19.201 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-30T07:42:12.584 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 50467, Count: 6848, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 135, Count: 43, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4ba0_1.MAI, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 122, Count: 9, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 1592, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 5656, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\189bb2b7-3549-47ba-8579-2a9771b90611.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 400, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7b2489e-9ac2-4453-8fd1-0345156ee7fd.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 4068, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92de7399-78b7-4604-b53e-488602b96641.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 5204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f844eb04-fd46-422e-b8de-efba18a99438.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 5180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a6ec83-88d0-4737-8c47-61f0e378e0e9.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e89d9fc9-6ff0-4d78-b682-4da9371bf8a9.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 5816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2d6e3519-12e0-4ea8-a976-98be75cdc647.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 5096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\04906318-0e28-49ed-80d3-713a12b3c7fd.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 1244, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4bd9f4fe-a025-4525-a554-ed982eb0cc9c.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 5696, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe3c7872-736c-42b2-b9f4-02e600707139.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d8f2ae20-775d-4a43-92d6-b25bf65bf47b.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 1132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cefca629-c64a-4384-b17f-17b261aa0dc4.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\59c430d2-8a26-4097-a169-be9b70a5c7d1.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 5564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2789b17-ac89-4743-a395-c40faa24ee80.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 4748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\037c0303-dd1a-4eff-b865-1aba700acfb2.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8755d0b-749a-41cd-b8f5-84f01669c30a.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 3820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\008a9afc-8dd2-47d2-bddf-15497ad203ef.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 3708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\85e5e1ef-6bee-4a0d-80f8-11f473069f1e.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 3136, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\979a2a54-bd9a-4f8e-a2e3-953140e2a658.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 2748, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bccedb0d-a4c2-4d09-ad65-ee5c6e17a7d8.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 2488, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e3145374-4c53-4563-b9d6-68baef4183d4.tmp, EstimatedImpact: 0% 2026-05-30T07:42:12.584 ProcessImageName: updater.exe, Pid: 1508, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-30T07:42:13.745 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\E0ED03B2-39C5-403C-8A71-FFE8EBD1F02917a8.1dcf007d3a686c2 2026-05-30T07:42:13.811 Verifying engine and signature files (source: 0) ... 2026-05-30T07:42:13.811 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5638EC0D-56BE-4B77-8D30-F8BD9CED78EE}\mpengine.dll] due to PPL. 2026-05-30T07:42:13.811 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5638EC0D-56BE-4B77-8D30-F8BD9CED78EE}\mpasbase.vdm] (file in cache) 2026-05-30T07:42:13.811 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5638EC0D-56BE-4B77-8D30-F8BD9CED78EE}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-30T07:42:13.826 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5638EC0D-56BE-4B77-8D30-F8BD9CED78EE}\mpasdlta.vdm] 2026-05-30T07:42:13.826 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5638EC0D-56BE-4B77-8D30-F8BD9CED78EE}\mpavbase.vdm] (file in cache) 2026-05-30T07:42:13.826 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5638EC0D-56BE-4B77-8D30-F8BD9CED78EE}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-30T07:42:13.842 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5638EC0D-56BE-4B77-8D30-F8BD9CED78EE}\mpavdlta.vdm] 2026-05-30T07:42:14.029 [Engine] IsHybridMode: 0 2026-05-30T07:42:14.029 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-05-30T07:42:14.139 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-6D20306BABF55F360A713D45C050657AC128220F.bin): 0x00000002 2026-05-30T07:42:14.139 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-6D20306BABF55F360A713D45C050657AC128220F.bin) 2026-05-30T07:42:14.139 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-30T07:42:14.139 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-30T07:42:14.139 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-30T07:42:14.139 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-30T07:42:22.686 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-30T07:42:22.686 [AutoExclusion] Applied roles from cache. 2026-05-30T07:42:22.686 [AutoExclusion] Started roles monitoring. 2026-05-30T07:42:22.686 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB1FFA5810, lRefCount: 5, hr=0 2026-05-30T07:42:22.686 [Engine] New active engine 00007FFB12AE5810 replacing engine 00007FFB1FFA5810. Number of active engines: 2 2026-05-30T07:42:22.733 EngineInit:Global ASOC is enabled 2026-05-30T07:42:22.733 EngineInit:ASOO is enabled for developer volumes 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-30T07:42:22.764 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-30T07:42:22.764 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-30T07:42:22.780 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-30T07:42:22.780 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-30T07:42:22.780 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-30T07:42:22.780 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-30T07:42:22.780 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-30T07:42:22.780 [Plugin] Initializing RTP plugin state... 2026-05-30T07:42:22.780 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-30T07:42:22.780 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎29‎-‎2026 09:42:12 Last Perf:‎05‎-‎29‎-‎2026 09:42:12 First RTP Scan:‎05‎-‎29‎-‎2026 09:42:13 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:498 Misses:2243 BM Queue:0,81,0 Proc:0,41,0 File:0,62,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:199613 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-467796116 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:69009 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:192635 TotalHits:6151776 InstanceCacheInserts:27488 InstanceCacheUpdates:0 InstanceCacheDeletes:12553 InstanceCacheHits:749 InstanceCacheMisses:165847 InstanceCacheOverflows:13936 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:1ms (261/218) Success: 218, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-05-30T07:42:22.780 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5638EC0D-56BE-4B77-8D30-F8BD9CED78EE} 2026-05-30T07:42:22.780 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{15D58CBF-A44A-4F52-9D1D-4FBE7CD7F8E2}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{15D58CBF-A44A-4F52-9D1D-4FBE7CD7F8E2}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-30T07:42:22.780 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7C30A396-2DA3-482A-8383-B407A9BE3217} removed 2026-05-30T07:42:22.780 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-30T07:42:22.780 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-30T07:42:22.780 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-30T07:42:22.780 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-30T07:42:22.780 MdCoreSvc is supported in this platform and OS 2026-05-30T07:42:22.780 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-30-2026 07:42:22 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-30-2026 07:42:22 2026-05-30T07:42:22.796 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-30T07:42:22.796 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-30T07:42:22.796 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-30T07:42:22.796 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-30T07:42:22.796 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-30T07:42:22.796 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-30T07:42:22.796 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-30T07:42:22.796 MdCoreSvc is supported in this platform and OS 2026-05-30T07:42:22.796 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-30T07:42:22.796 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 05-30-2026 07:42:22 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.177.0 AV Signature Version: 1.451.177.0 ************************************************************ 2026-05-30T07:42:22.796 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-30T07:42:22.796 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\E0ED03B2-39C5-403C-8A71-FFE8EBD1F02917a8.1dcf007d3a686c2 2026-05-30T07:42:22.858 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-30T07:42:22.858 Process scan (postsignatureupdatescan) started. 2026-05-30T07:42:22.858 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 05-30-2026 07:42:22 ************************************************************ 2026-05-30T07:42:22.999 Job Notification: Process exited from job (4044) 2026-05-30T07:42:23.077 Job Notification: Process exited from job (4364) 2026-05-30T07:42:23.077 Job Notification: Process exited from job (3420) 2026-05-30T07:42:23.092 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-30T07:42:23.092 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-30T07:42:23.092 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-30T07:42:23.092 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-30T07:42:23.092 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-30T07:42:23.092 Job Notification: Process exited from job (6088) 2026-05-30T07:42:23.092 [Engine] Engine 00007FFB1FFA5810 no longer in use. Number of active engines: 1 2026-05-30T07:42:23.092 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-30T07:42:23.092 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-30T07:42:23.280 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-30T07:42:23.280 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-30T07:42:23.280 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-30T07:42:24.254 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 50467, Count: 6848, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-05-30T07:42:24.254 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 135, Count: 43, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4ba0_1.MAI, EstimatedImpact: 0% 2026-05-30T07:42:24.254 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 122, Count: 9, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-30T07:42:24.254 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-30T07:42:24.254 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-30T07:42:24.254 ProcessImageName: updater.exe, Pid: 1592, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-30T07:42:24.254 ProcessImageName: updater.exe, Pid: 5656, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\189bb2b7-3549-47ba-8579-2a9771b90611.tmp, EstimatedImpact: 0% 2026-05-30T07:42:24.254 ProcessImageName: updater.exe, Pid: 400, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7b2489e-9ac2-4453-8fd1-0345156ee7fd.tmp, EstimatedImpact: 0% 2026-05-30T07:42:24.254 ProcessImageName: updater.exe, Pid: 4068, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92de7399-78b7-4604-b53e-488602b96641.tmp, EstimatedImpact: 0% 2026-05-30T07:42:24.254 ProcessImageName: updater.exe, Pid: 5204, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f844eb04-fd46-422e-b8de-efba18a99438.tmp, EstimatedImpact: 0% 2026-05-30T07:42:24.254 ProcessImageName: updater.exe, Pid: 5180, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e9a6ec83-88d0-4737-8c47-61f0e378e0e9.tmp, EstimatedImpact: 0% 2026-05-30T07:42:24.254 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e89d9fc9-6ff0-4d78-b682-4da9371bf8a9.tmp, EstimatedImpact: 0% 2026-05-30T07:42:24.316 [Engine] RSIG_UNLOADENGINE, 00007FFB1FFA5810, err=0x0 2026-05-30T07:42:24.332 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{15D58CBF-A44A-4F52-9D1D-4FBE7CD7F8E2} removed 2026-05-30T07:42:28.754 Process scan (postsignatureupdatescan) completed. 2026-05-30T07:47:22.723 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-30T07:47:56.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-05-30T07:50:42.371 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-30T07:50:42.371 [Cloud] Start of cloud request. Passive mode: 0 2026-05-30T07:50:42.371 [Cloud] Queued cloud request. 2026-05-30T07:50:42.371 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-30T07:50:42.371 [Cloud] Dequeued cloud request. 2026-05-30T07:50:42.371 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-30T07:50:42.696 [Cloud] End of cloud request. 2026-05-30T07:50:42.696 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-05-30T07:50:42.711 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-30T07:50:42.727 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE BEGIN BM telemetry GUID:{6F18ACBD-1566-1FB6-B646-36E443CC9E4F} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:4276 ProcessCreationTime:134246010423597169 SessionID:0 CreationTime:05-30-2026 07:50:42 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-05-30T07:50:42.758 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-30T07:50:42.758 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-30T07:50:43.243 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-30T07:50:43.383 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-30T07:50:43.383 [Cloud] Start of cloud request. Passive mode: 0 2026-05-30T07:50:43.383 [Cloud] Queued cloud request. 2026-05-30T07:50:43.383 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-30T07:50:43.415 [Cloud] Dequeued cloud request. 2026-05-30T07:50:43.415 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-30T07:50:43.665 [Cloud] End of cloud request. 2026-05-30T07:50:44.165 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-30T07:50:44.993 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-30T07:50:44.993 [Cloud] Start of cloud request. Passive mode: 0 2026-05-30T07:50:44.993 [Cloud] Queued cloud request. 2026-05-30T07:50:44.993 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-30T07:50:44.993 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-05-30T07:50:44.993 [Cloud] Dequeued cloud request. 2026-05-30T07:50:44.993 [Cloud] Start of cloud request. Passive mode: 0 2026-05-30T07:50:44.993 [Cloud] Queued cloud request. 2026-05-30T07:50:44.993 [Cloud] Dequeued cloud request. 2026-05-30T07:50:44.993 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-30T07:50:45.008 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-30T07:50:45.196 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-30T07:50:45.196 [Cloud] End of cloud request. 2026-05-30T07:50:45.700 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-30T07:50:55.053 [Cloud] End of cloud request. 2026-05-30T07:50:55.562 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-30T08:03:01.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T08:15:34.138 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #199812, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T08:15:34.153 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #199814, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T08:15:44.145 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #199818, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T08:15:44.161 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #199820, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T08:15:44.161 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #199823, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T08:18:06.474 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T08:33:11.469 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T08:48:16.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T09:03:21.473 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T09:15:34.349 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #200045, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T09:15:34.365 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #200047, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T09:15:44.358 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #200052, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T09:15:44.358 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #200054, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T09:15:44.509 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #200058, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T09:15:44.509 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #200060, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T09:18:26.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T09:33:31.466 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T09:36:09.143 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1a_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #201302, FileId: 0x1f000000027a77, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T09:36:09.143 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1c_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #201301, FileId: 0xfb000000027a00, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T09:36:09.158 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #201303, FileId: 0xbf0000000276dd, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T09:36:21.033 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1c_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #201759, FileId: 0x20000000027a77, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T09:36:21.033 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1d_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #201758, FileId: 0xc30000000276dd, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T09:36:21.033 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1a_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #201760, FileId: 0x69000000027a53, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T09:36:21.065 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #201762, FileId: 0xc40000000276dd, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T09:42:22.701 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 44885, Count: 6348, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-05-30T09:42:22.701 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-30T09:42:22.701 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 75, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1c_1.MAI, EstimatedImpact: 0% 2026-05-30T09:42:22.701 ProcessImageName: wacs.exe, Pid: 4276, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-30T09:42:22.701 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-30T09:42:22.701 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c107e109-475d-46b9-995e-a2f3bda91fb9.tmp, EstimatedImpact: 0% 2026-05-30T09:42:22.701 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-30T09:48:36.467 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T10:03:41.471 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T10:15:33.880 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #201816, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T10:15:33.896 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #201818, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T10:15:43.894 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #201822, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T10:15:43.909 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #201825, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T10:18:46.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T10:33:51.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T10:48:56.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T11:04:01.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T11:15:34.233 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #201996, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T11:15:34.249 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #201998, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T11:15:44.247 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202002, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T11:15:44.247 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202003, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T11:15:44.247 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202004, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T11:19:06.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T11:34:11.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T11:42:22.707 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 47328, Count: 6513, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-30T11:42:22.707 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-30T11:42:22.707 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 75, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1c_1.MAI, EstimatedImpact: 0% 2026-05-30T11:42:22.707 ProcessImageName: wacs.exe, Pid: 4276, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-30T11:42:22.707 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-30T11:42:22.707 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c107e109-475d-46b9-995e-a2f3bda91fb9.tmp, EstimatedImpact: 0% 2026-05-30T11:42:22.707 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-30T11:42:22.707 ProcessImageName: updater.exe, Pid: 5556, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8a0159a-1015-4060-ac5a-648e79d01456.tmp, EstimatedImpact: 0% 2026-05-30T11:42:22.707 ProcessImageName: updater.exe, Pid: 3524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\807243f8-d98a-47e7-9280-907a74120e74.tmp, EstimatedImpact: 0% 2026-05-30T11:48:44.453 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\xampp\tmp\#sqla80_4e2b_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202061, FileId: 0xa2000000027b15, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T11:49:16.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T12:04:21.464 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T12:15:34.896 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202098, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T12:15:34.896 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202100, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T12:15:44.920 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202104, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T12:15:44.920 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202107, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T12:19:26.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T12:34:31.469 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T12:49:36.468 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T13:04:41.472 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T13:14:36.396 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\xampp\tmp\php5103.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #202205, FileId: 0x24000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T13:15:32.780 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202213, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T13:15:32.796 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202215, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T13:15:42.794 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202219, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T13:15:42.810 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202221, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T13:16:45.450 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\xampp\tmp\php491B.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #202225, FileId: 0xa5000000027b15, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T13:18:13.857 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\xampp\tmp\phpA282.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #202237, FileId: 0x93ff00000000a048, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T13:19:46.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T13:22:03.962 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\xampp\tmp\php2551.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #202241, FileId: 0x940100000000a048, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T13:34:51.467 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T13:42:22.717 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 47466, Count: 6535, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-30T13:42:22.717 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 105, Count: 25, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1c_1.MAI, EstimatedImpact: 0% 2026-05-30T13:42:22.717 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-30T13:42:22.717 ProcessImageName: wacs.exe, Pid: 4276, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-30T13:42:22.717 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-30T13:42:22.717 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c107e109-475d-46b9-995e-a2f3bda91fb9.tmp, EstimatedImpact: 0% 2026-05-30T13:42:22.717 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-30T13:42:22.717 ProcessImageName: updater.exe, Pid: 5556, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8a0159a-1015-4060-ac5a-648e79d01456.tmp, EstimatedImpact: 0% 2026-05-30T13:42:22.717 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd5cadf0-17ea-4a94-bad0-35867a30bd44.tmp, EstimatedImpact: 0% 2026-05-30T13:42:22.717 ProcessImageName: updater.exe, Pid: 3524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\807243f8-d98a-47e7-9280-907a74120e74.tmp, EstimatedImpact: 0% 2026-05-30T13:42:22.717 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15393f74-c903-4f17-b446-076775708242.tmp, EstimatedImpact: 0% 2026-05-30T13:49:56.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T14:05:01.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T14:15:34.287 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202326, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T14:15:34.303 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202328, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T14:15:44.301 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202332, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T14:15:44.317 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202334, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T14:15:44.463 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202338, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T14:15:44.463 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202340, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T14:20:06.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T14:23:17.056 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sqla80_50bd_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202356, FileId: 0x2b000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T14:35:11.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T14:50:16.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T15:05:21.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T15:15:34.205 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202419, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T15:15:34.220 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202421, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T15:15:44.209 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202425, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T15:15:44.225 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202427, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T15:15:44.225 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202429, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T15:15:44.225 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202431, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T15:20:26.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T15:35:31.468 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T15:42:22.721 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 47603, Count: 6562, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-30T15:42:22.721 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 30, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1c_1.MAI, EstimatedImpact: 0% 2026-05-30T15:42:22.721 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-30T15:42:22.721 ProcessImageName: wacs.exe, Pid: 4276, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-30T15:42:22.721 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-30T15:42:22.721 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdcf93fd-1738-464a-a22d-3477c67fa142.tmp, EstimatedImpact: 0% 2026-05-30T15:42:22.721 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c107e109-475d-46b9-995e-a2f3bda91fb9.tmp, EstimatedImpact: 0% 2026-05-30T15:42:22.721 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-30T15:42:22.721 ProcessImageName: updater.exe, Pid: 5556, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8a0159a-1015-4060-ac5a-648e79d01456.tmp, EstimatedImpact: 0% 2026-05-30T15:42:22.721 ProcessImageName: updater.exe, Pid: 4964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f37cbfb-e62b-48ab-816c-ba25f73079e5.tmp, EstimatedImpact: 0% 2026-05-30T15:42:22.721 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd5cadf0-17ea-4a94-bad0-35867a30bd44.tmp, EstimatedImpact: 0% 2026-05-30T15:42:22.721 ProcessImageName: updater.exe, Pid: 3524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\807243f8-d98a-47e7-9280-907a74120e74.tmp, EstimatedImpact: 0% 2026-05-30T15:42:22.721 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15393f74-c903-4f17-b446-076775708242.tmp, EstimatedImpact: 0% 2026-05-30T15:49:16.369 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sqla80_50d0_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202493, FileId: 0x940b00000000a048, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T15:50:36.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T16:05:41.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T16:15:35.126 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202531, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T16:15:35.143 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202533, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T16:15:45.141 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202537, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T16:15:45.141 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202540, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T16:20:46.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T16:35:51.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T16:50:56.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T17:06:01.466 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T17:14:28.397 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sqla80_50e4_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202611, FileId: 0x31000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T17:15:33.717 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202619, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T17:15:33.735 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202621, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T17:15:43.731 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202625, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T17:15:43.747 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202627, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T17:15:43.747 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202629, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T17:21:06.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T17:36:11.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T17:42:22.720 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51018, Count: 6791, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-30T17:42:22.720 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 195, Count: 40, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1c_1.MAI, EstimatedImpact: 0% 2026-05-30T17:42:22.720 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-30T17:42:22.720 ProcessImageName: wacs.exe, Pid: 4276, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-30T17:42:22.720 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-30T17:42:22.720 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdcf93fd-1738-464a-a22d-3477c67fa142.tmp, EstimatedImpact: 0% 2026-05-30T17:42:22.720 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c107e109-475d-46b9-995e-a2f3bda91fb9.tmp, EstimatedImpact: 0% 2026-05-30T17:42:22.720 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-30T17:42:22.720 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93096b97-4d7e-475b-aab5-621813fcfc3f.tmp, EstimatedImpact: 0% 2026-05-30T17:42:22.720 ProcessImageName: updater.exe, Pid: 5556, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8a0159a-1015-4060-ac5a-648e79d01456.tmp, EstimatedImpact: 0% 2026-05-30T17:42:22.720 ProcessImageName: updater.exe, Pid: 3524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\807243f8-d98a-47e7-9280-907a74120e74.tmp, EstimatedImpact: 0% 2026-05-30T17:42:22.720 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd5cadf0-17ea-4a94-bad0-35867a30bd44.tmp, EstimatedImpact: 0% 2026-05-30T17:42:22.720 ProcessImageName: updater.exe, Pid: 4964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f37cbfb-e62b-48ab-816c-ba25f73079e5.tmp, EstimatedImpact: 0% 2026-05-30T17:42:22.720 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c440b2b-0761-4614-8a58-5b6e49b7101d.tmp, EstimatedImpact: 0% 2026-05-30T17:42:22.720 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15393f74-c903-4f17-b446-076775708242.tmp, EstimatedImpact: 0% 2026-05-30T17:51:16.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T18:06:21.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T18:15:33.846 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202700, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T18:15:33.846 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202702, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T18:15:43.859 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202706, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T18:15:43.875 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202708, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T18:21:26.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T18:36:31.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T18:51:36.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T19:06:41.464 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T19:15:33.989 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202816, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T19:15:34.005 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202818, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T19:15:44.008 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202822, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T19:15:44.024 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202825, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T19:15:44.180 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202829, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T19:15:44.180 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #202831, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T19:21:46.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T19:36:51.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T19:42:22.735 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51094, Count: 6800, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 195, Count: 40, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1c_1.MAI, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: php-cgi.exe, Pid: 1768, TotalTime: 183, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-30T19:42:22.735 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: wacs.exe, Pid: 4276, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-30T19:42:22.735 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdcf93fd-1738-464a-a22d-3477c67fa142.tmp, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c107e109-475d-46b9-995e-a2f3bda91fb9.tmp, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb6a995e-cd6e-4fc2-9568-c7b371c746cf.tmp, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd5cadf0-17ea-4a94-bad0-35867a30bd44.tmp, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: updater.exe, Pid: 5556, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8a0159a-1015-4060-ac5a-648e79d01456.tmp, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93096b97-4d7e-475b-aab5-621813fcfc3f.tmp, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c440b2b-0761-4614-8a58-5b6e49b7101d.tmp, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: updater.exe, Pid: 4000, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a986327-0619-43cd-9b67-b5a78cb6eeeb.tmp, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: updater.exe, Pid: 4964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f37cbfb-e62b-48ab-816c-ba25f73079e5.tmp, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: updater.exe, Pid: 3524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\807243f8-d98a-47e7-9280-907a74120e74.tmp, EstimatedImpact: 0% 2026-05-30T19:42:22.735 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15393f74-c903-4f17-b446-076775708242.tmp, EstimatedImpact: 0% 2026-05-30T19:45:01.416 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sqla80_50f2_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202903, FileId: 0x941300000000a048, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T19:51:56.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T20:05:53.427 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5124_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202934, FileId: 0x2ae000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:05:53.442 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5124_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202940, FileId: 0x2b0000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:05:53.442 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5124_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202937, FileId: 0x2af000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:05:53.442 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5124_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202943, FileId: 0x2b1000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:05:53.442 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5124_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202946, FileId: 0x2b2000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:05:54.936 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5125_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202949, FileId: 0x2b3000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:05:54.952 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5125_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202952, FileId: 0x2b4000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:05:54.952 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5125_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202955, FileId: 0x2b5000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:05:54.968 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5125_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202961, FileId: 0x2b7000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:06:03.882 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqla80_512b_0.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202964, FileId: 0x232000000027bc5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:06:03.882 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqla80_512b_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202965, FileId: 0x2b8000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:06:03.897 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sqla80_512b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202968, FileId: 0x2b9000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:06:03.897 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sqla80_512b_1.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202969, FileId: 0x233000000027bc5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:06:03.897 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sqla80_512b_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202973, FileId: 0x2ba000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:06:03.897 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sqla80_512b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202977, FileId: 0x2bb000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:06:03.897 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sqla80_512b_3.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202976, FileId: 0x235000000027bc5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:06:03.897 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sqla80_512b_2.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202972, FileId: 0x234000000027bc5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:06:03.913 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sqla80_512b_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202981, FileId: 0x2bc000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:06:03.913 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sqla80_512b_4.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202980, FileId: 0x236000000027bc5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:06:12.730 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5131_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202984, FileId: 0x2bd000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:06:12.730 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5131_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202987, FileId: 0x2be000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:06:12.746 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5131_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202993, FileId: 0x2c0000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:06:12.746 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5131_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #202996, FileId: 0x2c1000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:07:01.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T20:13:00.159 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\xampp\tmp\#sqla80_51a1_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203315, FileId: 0x370000000297eb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:13:00.222 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sqla80_51a1_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203314, FileId: 0x360000000297eb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:13:16.268 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sqla80_51a8_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203345, FileId: 0x400000000297eb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:13:33.253 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\xampp\tmp\#sqla80_51ae_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203367, FileId: 0x470000000297eb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:17:58.472 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sqla80_521e_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203402, FileId: 0x37000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:18:16.940 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5225_1.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203433, FileId: 0x55000000029925, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:18:27.456 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sqla80_522b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203453, FileId: 0x46000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:21:38.800 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5281_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203488, FileId: 0x50000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:21:49.143 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5287_3.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203508, FileId: 0x6b000000029925, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:22:06.581 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T20:23:54.018 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sqla80_52ba_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203551, FileId: 0x65000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:23:56.909 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sqla80_52bb_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203581, FileId: 0x6f000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:23:58.784 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sqla80_52bf_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203610, FileId: 0x78000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:24:00.425 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sqla80_52c0_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203634, FileId: 0x82000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:24:02.472 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sqla80_52c2_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203670, FileId: 0x8c000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:36:14.940 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\xampp\tmp\#sqla80_52fc_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203714, FileId: 0x97000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:36:24.659 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5302_3.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203734, FileId: 0xb1000000029925, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:37:11.597 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T20:40:48.518 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\xampp\tmp\#sqla80_535f_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203768, FileId: 0xa5000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:41:05.940 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5366_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203798, FileId: 0xae000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:41:22.034 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\xampp\tmp\#sqla80_536c_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203820, FileId: 0xb5000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:43:42.081 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5397_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203862, FileId: 0xc4000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:43:45.815 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5399_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203899, FileId: 0xcd000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:43:47.065 [RTP] [Mini-filter] Unsuccessful scan status(#300): \Device\HarddiskVolume2\xampp\tmp\#sqla80_539b_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203922, FileId: 0xd4000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:47:48.690 [RTP] [Mini-filter] Unsuccessful scan status(#310): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5429_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203958, FileId: 0xde000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:48:06.018 [RTP] [Mini-filter] Unsuccessful scan status(#320): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5430_1.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #203989, FileId: 0x29e000000027c31, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:48:21.065 [RTP] [Mini-filter] Unsuccessful scan status(#330): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5436_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204008, FileId: 0xed000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:52:16.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T20:52:31.659 [RTP] [Mini-filter] Unsuccessful scan status(#340): \Device\HarddiskVolume2\xampp\tmp\#sqla80_548c_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204044, FileId: 0xf8000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:52:45.706 [RTP] [Mini-filter] Unsuccessful scan status(#350): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5492_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204064, FileId: 0xfe000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:53:41.378 [RTP] [Mini-filter] Unsuccessful scan status(#360): \Device\HarddiskVolume2\xampp\tmp\#sqla80_514f_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204085, FileId: 0x128000000027ff5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:54:40.883 [RTP] [Mini-filter] Unsuccessful scan status(#370): \Device\HarddiskVolume2\xampp\tmp\#sqla80_54c0_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204123, FileId: 0x111000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:54:42.434 [RTP] [Mini-filter] Unsuccessful scan status(#380): \Device\HarddiskVolume2\xampp\tmp\#sqla80_54c2_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204159, FileId: 0x11d000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:54:44.090 [RTP] [Mini-filter] Unsuccessful scan status(#390): \Device\HarddiskVolume2\xampp\tmp\#sqla80_54c5_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204192, FileId: 0x128000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:56:55.855 [RTP] [Mini-filter] Unsuccessful scan status(#400): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5538_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204233, FileId: 0x135000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T20:57:04.929 [RTP] [Mini-filter] Unsuccessful scan status(#410): \Device\HarddiskVolume2\xampp\tmp\#sqla80_553e_4.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204256, FileId: 0x2f9000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T21:00:20.364 [RTP] [Mini-filter] Unsuccessful scan status(#420): \Device\HarddiskVolume2\xampp\tmp\#sqla80_559b_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204289, FileId: 0x144000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T21:00:30.939 [RTP] [Mini-filter] Unsuccessful scan status(#430): \Device\HarddiskVolume2\xampp\tmp\#sqla80_55a2_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204316, FileId: 0x14c000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T21:00:40.177 [RTP] [Mini-filter] Unsuccessful scan status(#440): \Device\HarddiskVolume2\xampp\tmp\#sqla80_55a8_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204340, FileId: 0x153000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T21:02:12.504 [RTP] [Mini-filter] Unsuccessful scan status(#450): \Device\HarddiskVolume2\xampp\tmp\#sqla80_55d4_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204388, FileId: 0x164000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T21:02:14.029 [RTP] [Mini-filter] Unsuccessful scan status(#460): \Device\HarddiskVolume2\xampp\tmp\#sqla80_55d6_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204427, FileId: 0x171000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T21:03:39.950 [RTP] [Mini-filter] Unsuccessful scan status(#470): \Device\HarddiskVolume2\xampp\tmp\#sqla80_560b_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204465, FileId: 0x17d000000027a7a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T21:03:49.041 [RTP] [Mini-filter] Unsuccessful scan status(#480): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5611_2.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204488, FileId: 0x342000000027ba1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T21:07:21.639 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T21:17:05.530 [RTP] [Mini-filter] Unsuccessful scan status(#490): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #204682, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T21:22:26.467 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T21:37:31.467 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T21:42:22.748 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51306, Count: 6834, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 1200, Count: 1120, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1c_1.MAI, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: php-cgi.exe, Pid: 1768, TotalTime: 183, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-30T21:42:22.748 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: wacs.exe, Pid: 4276, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-30T21:42:22.748 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c107e109-475d-46b9-995e-a2f3bda91fb9.tmp, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdcf93fd-1738-464a-a22d-3477c67fa142.tmp, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb6a995e-cd6e-4fc2-9568-c7b371c746cf.tmp, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: updater.exe, Pid: 5536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3c01e43-e50c-4bf2-8615-4211372a7eec.tmp, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93096b97-4d7e-475b-aab5-621813fcfc3f.tmp, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: updater.exe, Pid: 3524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\807243f8-d98a-47e7-9280-907a74120e74.tmp, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: updater.exe, Pid: 5556, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8a0159a-1015-4060-ac5a-648e79d01456.tmp, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c440b2b-0761-4614-8a58-5b6e49b7101d.tmp, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15393f74-c903-4f17-b446-076775708242.tmp, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: updater.exe, Pid: 856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b3c7647-6058-4251-80e5-745e4bf7ff30.tmp, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: updater.exe, Pid: 4964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f37cbfb-e62b-48ab-816c-ba25f73079e5.tmp, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: updater.exe, Pid: 4000, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a986327-0619-43cd-9b67-b5a78cb6eeeb.tmp, EstimatedImpact: 0% 2026-05-30T21:42:22.748 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd5cadf0-17ea-4a94-bad0-35867a30bd44.tmp, EstimatedImpact: 0% 2026-05-30T21:51:47.873 [RTP] [Mini-filter] Unsuccessful scan status(#500): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5635_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #204741, FileId: 0x52000000027ed7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T21:52:36.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T22:07:41.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T22:22:46.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T22:37:51.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T22:52:56.470 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T23:08:01.464 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T23:15:34.575 [RTP] [Mini-filter] Unsuccessful scan status(#510): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #204914, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-30T23:23:06.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T23:38:11.464 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-30T23:42:22.748 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51321, Count: 6855, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 1230, Count: 1124, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1c_1.MAI, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: php-cgi.exe, Pid: 1768, TotalTime: 183, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-30T23:42:22.748 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: wacs.exe, Pid: 4276, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-30T23:42:22.748 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdcf93fd-1738-464a-a22d-3477c67fa142.tmp, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c107e109-475d-46b9-995e-a2f3bda91fb9.tmp, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb6a995e-cd6e-4fc2-9568-c7b371c746cf.tmp, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 5984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e28c43df-144a-4b24-8ced-852cd32a3940.tmp, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 4964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f37cbfb-e62b-48ab-816c-ba25f73079e5.tmp, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd5cadf0-17ea-4a94-bad0-35867a30bd44.tmp, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 5556, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8a0159a-1015-4060-ac5a-648e79d01456.tmp, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93096b97-4d7e-475b-aab5-621813fcfc3f.tmp, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 5536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3c01e43-e50c-4bf2-8615-4211372a7eec.tmp, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 4000, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a986327-0619-43cd-9b67-b5a78cb6eeeb.tmp, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 5344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5858df81-387c-479f-ad4b-327805544cc1.tmp, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c440b2b-0761-4614-8a58-5b6e49b7101d.tmp, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 3524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\807243f8-d98a-47e7-9280-907a74120e74.tmp, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15393f74-c903-4f17-b446-076775708242.tmp, EstimatedImpact: 0% 2026-05-30T23:42:22.748 ProcessImageName: updater.exe, Pid: 856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b3c7647-6058-4251-80e5-745e4bf7ff30.tmp, EstimatedImpact: 0% 2026-05-30T23:53:16.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T00:08:21.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T00:23:26.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T00:36:01.899 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:D249F654-8C12-4AA4-8BF7-B5E26FAF4C03, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-05-31T00:36:01.899 Scheduled scan with Id D249F654-8C12-4AA4-8BF7-B5E26FAF4C03 configured CPU priority: normal (LowCpuPriority: 0) 2026-05-31T00:36:01.899 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-31T00:36:01.899 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-05-31T00:36:01.899 [SFC] System file cache build is not needed (already completed) 2026-05-31T00:36:16.046 Engine:Triggered AR EMS scan 2026-05-31T00:36:16.046 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.061 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.092 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.092 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.124 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.139 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.155 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.174 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.190 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.205 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.221 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.237 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.252 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.268 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.284 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.299 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.315 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.330 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:16.346 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-05-31T00:36:30.159 QuickScan:ScanID:D249F654-8C12-4AA4-8BF7-B5E26FAF4C03: Quick scan finished with error 0 2026-05-31T00:36:30.174 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-05-31T00:36:30.680 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-31T00:36:30.680 [RTP] Duplicating the current plugin configuration object... 2026-05-31T00:36:30.680 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-31T00:36:30.680 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-31T00:36:30.680 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-31T00:36:30.680 [RTP] No config change detected. Not updating plugin configuration. 2026-05-31T00:36:30.680 [RTP] No config changes found. No configuration switch. 2026-05-31T00:36:30.680 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-31T00:38:31.467 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T00:53:36.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T01:08:41.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T01:15:33.358 [RTP] [Mini-filter] Unsuccessful scan status(#520): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #205233, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T01:23:46.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T01:38:51.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T01:42:22.759 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51351, Count: 6860, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 1230, Count: 1124, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1c_1.MAI, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: php-cgi.exe, Pid: 1768, TotalTime: 183, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-31T01:42:22.759 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: wacs.exe, Pid: 4276, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-31T01:42:22.759 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 5152, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\63d2a37f-5608-4593-a03e-58a4805b862b.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdcf93fd-1738-464a-a22d-3477c67fa142.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c107e109-475d-46b9-995e-a2f3bda91fb9.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb6a995e-cd6e-4fc2-9568-c7b371c746cf.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 5984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e28c43df-144a-4b24-8ced-852cd32a3940.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd5cadf0-17ea-4a94-bad0-35867a30bd44.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93096b97-4d7e-475b-aab5-621813fcfc3f.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c440b2b-0761-4614-8a58-5b6e49b7101d.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 5556, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8a0159a-1015-4060-ac5a-648e79d01456.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 3524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\807243f8-d98a-47e7-9280-907a74120e74.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 5536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3c01e43-e50c-4bf2-8615-4211372a7eec.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 5344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5858df81-387c-479f-ad4b-327805544cc1.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15393f74-c903-4f17-b446-076775708242.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 1276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8a3ba367-9dce-49db-9c9f-11b3a574e9d2.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b3c7647-6058-4251-80e5-745e4bf7ff30.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 4964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f37cbfb-e62b-48ab-816c-ba25f73079e5.tmp, EstimatedImpact: 0% 2026-05-31T01:42:22.759 ProcessImageName: updater.exe, Pid: 4000, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a986327-0619-43cd-9b67-b5a78cb6eeeb.tmp, EstimatedImpact: 0% 2026-05-31T01:53:56.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T02:09:01.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T02:15:46.184 [RTP] [Mini-filter] Unsuccessful scan status(#530): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #205372, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T02:24:06.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T02:39:11.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T02:54:16.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T03:09:21.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T03:24:26.468 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T03:39:31.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T03:42:22.763 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51351, Count: 6861, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 1230, Count: 1124, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1c_1.MAI, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: php-cgi.exe, Pid: 1768, TotalTime: 183, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-31T03:42:22.763 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: wacs.exe, Pid: 4276, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-31T03:42:22.763 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 5152, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\63d2a37f-5608-4593-a03e-58a4805b862b.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdcf93fd-1738-464a-a22d-3477c67fa142.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c107e109-475d-46b9-995e-a2f3bda91fb9.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb6a995e-cd6e-4fc2-9568-c7b371c746cf.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd5cadf0-17ea-4a94-bad0-35867a30bd44.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 5984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e28c43df-144a-4b24-8ced-852cd32a3940.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 4964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f37cbfb-e62b-48ab-816c-ba25f73079e5.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 4000, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a986327-0619-43cd-9b67-b5a78cb6eeeb.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 5556, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8a0159a-1015-4060-ac5a-648e79d01456.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93096b97-4d7e-475b-aab5-621813fcfc3f.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 5536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3c01e43-e50c-4bf2-8615-4211372a7eec.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 5344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5858df81-387c-479f-ad4b-327805544cc1.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c440b2b-0761-4614-8a58-5b6e49b7101d.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 3524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\807243f8-d98a-47e7-9280-907a74120e74.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 3364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db34a695-40fd-4e29-9a2c-b2269b510c43.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15393f74-c903-4f17-b446-076775708242.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 1276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8a3ba367-9dce-49db-9c9f-11b3a574e9d2.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b3c7647-6058-4251-80e5-745e4bf7ff30.tmp, EstimatedImpact: 0% 2026-05-31T03:42:22.763 ProcessImageName: updater.exe, Pid: 484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c308344d-42ee-4c4d-b46a-ffadff3e6522.tmp, EstimatedImpact: 0% 2026-05-31T03:54:36.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T04:09:41.468 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T04:15:44.642 [RTP] [Mini-filter] Unsuccessful scan status(#540): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #205547, FileId: 0xce0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T04:24:46.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T04:39:51.466 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T04:54:56.467 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T05:10:01.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T05:25:06.466 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T05:40:11.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T05:42:22.768 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51351, Count: 6862, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 1260, Count: 1128, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1c_1.MAI, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: php-cgi.exe, Pid: 1768, TotalTime: 183, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-31T05:42:22.768 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 92, Count: 6, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 3000, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: wacs.exe, Pid: 4276, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-31T05:42:22.768 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 5152, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\63d2a37f-5608-4593-a03e-58a4805b862b.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdcf93fd-1738-464a-a22d-3477c67fa142.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c107e109-475d-46b9-995e-a2f3bda91fb9.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb6a995e-cd6e-4fc2-9568-c7b371c746cf.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 4000, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a986327-0619-43cd-9b67-b5a78cb6eeeb.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 5344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5858df81-387c-479f-ad4b-327805544cc1.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 3548, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8c440b2b-0761-4614-8a58-5b6e49b7101d.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 3524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\807243f8-d98a-47e7-9280-907a74120e74.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 3364, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db34a695-40fd-4e29-9a2c-b2269b510c43.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 2556, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8a6e3c1-8e0f-485a-b3e7-795ae4b70496.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 5984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e28c43df-144a-4b24-8ced-852cd32a3940.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 1844, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15393f74-c903-4f17-b446-076775708242.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 3940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd5cadf0-17ea-4a94-bad0-35867a30bd44.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 5556, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8a0159a-1015-4060-ac5a-648e79d01456.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 1276, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8a3ba367-9dce-49db-9c9f-11b3a574e9d2.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 5536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b3c01e43-e50c-4bf2-8615-4211372a7eec.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 4964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7f37cbfb-e62b-48ab-816c-ba25f73079e5.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b3c7647-6058-4251-80e5-745e4bf7ff30.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c308344d-42ee-4c4d-b46a-ffadff3e6522.tmp, EstimatedImpact: 0% 2026-05-31T05:42:22.768 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\93096b97-4d7e-475b-aab5-621813fcfc3f.tmp, EstimatedImpact: 0% 2026-05-31T05:55:16.466 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T06:01:06.208 [RTP] [Mini-filter] Unsuccessful scan status(#550): \Device\HarddiskVolume2\xampp\tmp\#sqla80_56f2_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #205712, FileId: 0xa5000000027c26, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T06:10:21.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T06:25:26.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T06:40:31.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T06:55:36.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T07:10:41.464 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T07:15:44.623 [RTP] [Mini-filter] Unsuccessful scan status(#560): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #205838, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T07:25:46.464 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T07:40:51.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T07:41:16.454 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-05-31T07:41:16.485 Job Notification: New process added to job (6120) 2026-05-31T07:41:16.485 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-05-31T07:41:16.485 Aggressive catchup quick scan threshold: 255145926601 / 25920000000000 2026-05-31T07:41:16.485 Job Notification: New process added to job (4864) 2026-05-31T07:41:16.501 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:6120] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4864]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-31T07:41:16.595 Job Notification: New process added to job (4356) 2026-05-31T07:41:16.595 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-05-31T07:41:16.610 Job Notification: New process added to job (5660) 2026-05-31T07:41:16.610 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4356] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5660]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-31T07:41:16.751 Job Notification: New process added to job (5252) 2026-05-31T07:41:16.782 Task(GetDeviceTicket -AccessKey 92C36386-EAA0-C2A4-9E5C-9F50BD021044 ) launched as network service 2026-05-31T07:41:16.798 Job Notification: Process exited from job (5252) 2026-05-31T07:41:17.001 [RTP] [RtpConfig] Config change detected, type: 32 2026-05-31T07:41:17.001 [RTP] Duplicating the current plugin configuration object... 2026-05-31T07:41:17.001 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-05-31T07:41:17.001 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-05-31T07:41:17.001 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-31T07:41:17.001 [RTP] No config change detected. Not updating plugin configuration. 2026-05-31T07:41:17.001 [RTP] No config changes found. No configuration switch. 2026-05-31T07:41:17.001 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-05-31T07:41:17.933 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-31T07:41:17.933 [Cloud] Start of cloud request. Passive mode: 0 2026-05-31T07:41:17.933 [Cloud] Queued cloud request. 2026-05-31T07:41:17.933 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-31T07:41:17.933 [Cloud] Dequeued cloud request. 2026-05-31T07:41:17.933 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-05-31T07:41:17.933 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-31T07:41:17.933 [Cloud] Start of cloud request. Passive mode: 0 2026-05-31T07:41:17.933 [Cloud] Queued cloud request. 2026-05-31T07:41:17.933 [Cloud] Dequeued cloud request. 2026-05-31T07:41:17.933 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-31T07:41:18.152 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-31T07:41:18.152 [Cloud] End of cloud request. 2026-05-31T07:41:18.167 [Cloud] End of cloud request. 2026-05-31T07:41:18.433 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-31T07:41:41.045 Job Notification: Process exited from job (4436) 2026-05-31T07:42:06.094 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\1B8C84D9-9BA2-487B-9113-995B6CB24A4F1480.1dcf0d0f97ea4a9 2026-05-31T07:42:06.157 Verifying engine and signature files (source: 0) ... 2026-05-31T07:42:06.157 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5A20D531-F936-4D17-856B-96978A54BFD7}\mpengine.dll] due to PPL. 2026-05-31T07:42:06.157 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5A20D531-F936-4D17-856B-96978A54BFD7}\mpasbase.vdm] (file in cache) 2026-05-31T07:42:06.157 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5A20D531-F936-4D17-856B-96978A54BFD7}\mpasdlta.vdm]. File not in cache (0x1) 2026-05-31T07:42:06.173 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5A20D531-F936-4D17-856B-96978A54BFD7}\mpasdlta.vdm] 2026-05-31T07:42:06.173 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5A20D531-F936-4D17-856B-96978A54BFD7}\mpavbase.vdm] (file in cache) 2026-05-31T07:42:06.173 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5A20D531-F936-4D17-856B-96978A54BFD7}\mpavdlta.vdm]. File not in cache (0x1) 2026-05-31T07:42:06.188 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5A20D531-F936-4D17-856B-96978A54BFD7}\mpavdlta.vdm] 2026-05-31T07:42:06.391 [Engine] IsHybridMode: 0 2026-05-31T07:42:06.391 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-05-31T07:42:06.516 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-5AF93AA2BE5C4E7A5F54BAA4BED198A7D94B9093.bin): 0x00000002 2026-05-31T07:42:06.516 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-5AF93AA2BE5C4E7A5F54BAA4BED198A7D94B9093.bin) 2026-05-31T07:42:06.516 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-05-31T07:42:06.516 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-05-31T07:42:06.516 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-05-31T07:42:06.516 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-05-31T07:42:15.065 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-05-31T07:42:15.065 [AutoExclusion] Applied roles from cache. 2026-05-31T07:42:15.065 [AutoExclusion] Started roles monitoring. 2026-05-31T07:42:15.065 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB12AE5810, lRefCount: 5, hr=0 2026-05-31T07:42:15.065 [Engine] New active engine 00007FFB1FFA5810 replacing engine 00007FFB12AE5810. Number of active engines: 2 2026-05-31T07:42:15.112 EngineInit:Global ASOC is enabled 2026-05-31T07:42:15.112 EngineInit:ASOO is enabled for developer volumes 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-31T07:42:15.143 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-05-31T07:42:15.143 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\7d5ba7b4cbdabb1a65b56496908dce2c5fc13f81 Dynamic Signature Compilation Timestamp:05-20-2026 08:55:09 Persistence Type:Duration Time remaining:50065408 2026-05-31T07:42:15.143 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\22f1bc862368c5b16337adde081110a8f795f7cb Dynamic Signature Compilation Timestamp:05-20-2026 08:55:36 Persistence Type:Duration Time remaining:50065408 2026-05-31T07:42:15.143 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\b960d21ddcf278ee3a8bfd4da20a8df1a03a64c0 Dynamic Signature Compilation Timestamp:05-20-2026 22:22:31 Persistence Type:Duration Time remaining:50065408 2026-05-31T07:42:15.143 Dynamic signature dropped Dynamic Signature has been dropped Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\2df9dacb62b123431484bab6a8cb57d33f8fb96f Dynamic Signature Compilation Timestamp:05-21-2026 00:46:33 Persistence Type:Duration Time remaining:50065408 2026-05-31T07:42:15.158 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-05-31T07:42:15.158 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-05-31T07:42:15.158 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-05-31T07:42:15.158 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-05-31T07:42:15.158 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-05-31T07:42:15.158 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-05-31T07:42:15.158 [Plugin] Initializing RTP plugin state... 2026-05-31T07:42:15.158 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-05-31T07:42:15.174 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎30‎-‎2026 09:42:23 Last Perf:‎05‎-‎30‎-‎2026 09:42:22 First RTP Scan:‎05‎-‎30‎-‎2026 09:43:10 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:520 Misses:3327 BM Queue:0,80,0 Proc:0,42,0 File:0,63,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:205977 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-454397064 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:69157 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:199464 TotalHits:6240892 InstanceCacheInserts:28443 InstanceCacheUpdates:0 InstanceCacheDeletes:12804 InstanceCacheHits:797 InstanceCacheMisses:167529 InstanceCacheOverflows:13936 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:50ms (10621/210) Success: 208, failures: 0 (last code: 0x0), timeouts: 2, baddata: 0 **************************END RTP Perf Log************************* 2026-05-31T07:42:15.174 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5A20D531-F936-4D17-856B-96978A54BFD7} 2026-05-31T07:42:15.174 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5638EC0D-56BE-4B77-8D30-F8BD9CED78EE}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5638EC0D-56BE-4B77-8D30-F8BD9CED78EE}\mpengine.dll cannot be deleted, hr=0x80070005 2026-05-31T07:42:15.174 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{684B9439-C257-4C15-B68E-5C3EDA5F43FA} removed 2026-05-31T07:42:15.174 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-31T07:42:15.174 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-31T07:42:15.174 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-31T07:42:15.174 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-31T07:42:15.174 MdCoreSvc is supported in this platform and OS 2026-05-31T07:42:15.174 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:05-31-2026 07:42:15 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:05-31-2026 07:42:15 2026-05-31T07:42:15.174 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-05-31T07:42:15.174 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-05-31T07:42:15.174 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-31T07:42:15.174 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-31T07:42:15.174 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-31T07:42:15.174 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-05-31T07:42:15.174 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-05-31T07:42:15.174 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-05-31T07:42:15.174 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-05-31T07:42:15.174 MdCoreSvc is supported in this platform and OS BmLoggingDisabled:MpDisableBmLogging not set. Signature updated on 05-31-2026 07:42:15 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.192.0 AV Signature Version: 1.451.192.0 ************************************************************ 2026-05-31T07:42:15.174 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-05-31T07:42:15.174 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\1B8C84D9-9BA2-487B-9113-995B6CB24A4F1480.1dcf0d0f97ea4a9 2026-05-31T07:42:15.190 Process scan (postsignatureupdatescan) started. 2026-05-31T07:42:15.237 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-05-31T07:42:15.237 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 05-31-2026 07:42:15 ************************************************************ 2026-05-31T07:42:15.252 Job Notification: Process exited from job (4356) 2026-05-31T07:42:15.268 Job Notification: Process exited from job (5660) 2026-05-31T07:42:15.268 Job Notification: Process exited from job (6120) 2026-05-31T07:42:15.283 Job Notification: Process exited from job (4864) 2026-05-31T07:42:15.471 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-05-31T07:42:15.471 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-05-31T07:42:15.471 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-05-31T07:42:15.471 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-05-31T07:42:15.471 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-05-31T07:42:15.471 [Engine] Engine 00007FFB12AE5810 no longer in use. Number of active engines: 1 2026-05-31T07:42:15.471 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-05-31T07:42:15.471 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-05-31T07:42:15.674 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-05-31T07:42:15.674 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-05-31T07:42:15.674 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-05-31T07:42:16.643 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51381, Count: 6866, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-05-31T07:42:16.643 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 1260, Count: 1132, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_4d1c_1.MAI, EstimatedImpact: 0% 2026-05-31T07:42:16.643 ProcessImageName: php-cgi.exe, Pid: 1768, TotalTime: 183, Count: 6, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\php\libssh2.dll, EstimatedImpact: 100% 2026-05-31T07:42:16.643 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 107, Count: 9, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-31T07:42:16.643 ProcessImageName: updater.exe, Pid: 3000, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-05-31T07:42:16.643 ProcessImageName: wacs.exe, Pid: 4276, TotalTime: 61, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-05-31T07:42:16.643 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-05-31T07:42:16.643 ProcessImageName: updater.exe, Pid: 5152, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\63d2a37f-5608-4593-a03e-58a4805b862b.tmp, EstimatedImpact: 0% 2026-05-31T07:42:16.643 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cdcf93fd-1738-464a-a22d-3477c67fa142.tmp, EstimatedImpact: 0% 2026-05-31T07:42:16.643 ProcessImageName: updater.exe, Pid: 1644, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c107e109-475d-46b9-995e-a2f3bda91fb9.tmp, EstimatedImpact: 0% 2026-05-31T07:42:16.643 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb6a995e-cd6e-4fc2-9568-c7b371c746cf.tmp, EstimatedImpact: 0% 2026-05-31T07:42:16.643 ProcessImageName: updater.exe, Pid: 1888, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-31T07:42:16.643 ProcessImageName: updater.exe, Pid: 4012, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3de00683-c172-49d2-8c3a-5d2f6758b7d8.tmp, EstimatedImpact: 0% 2026-05-31T07:42:16.643 ProcessImageName: updater.exe, Pid: 5344, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5858df81-387c-479f-ad4b-327805544cc1.tmp, EstimatedImpact: 0% 2026-05-31T07:42:16.737 [Engine] RSIG_UNLOADENGINE, 00007FFB12AE5810, err=0x0 2026-05-31T07:42:16.752 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5638EC0D-56BE-4B77-8D30-F8BD9CED78EE} removed 2026-05-31T07:42:21.387 Process scan (postsignatureupdatescan) completed. 2026-05-31T07:47:15.090 [RbM] Setting Last known good engine candidate. hr = 0 2026-05-31T07:55:56.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T08:11:01.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T08:15:35.586 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206440, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T08:15:35.602 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206442, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T08:15:45.590 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206446, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T08:15:45.590 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206448, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T08:15:45.605 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206450, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T08:15:45.605 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206452, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T08:26:06.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T08:40:14.031 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\xampp\tmp\php7B00.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #206507, FileId: 0x5cf000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T08:41:11.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T08:43:19.825 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\xampp\tmp\php50B7.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #206517, FileId: 0x5d1000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T08:45:29.904 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\xampp\tmp\php4CD6.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #206524, FileId: 0x5d2000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T08:47:23.454 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\xampp\tmp\php881.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #206527, FileId: 0x5d3000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T08:51:07.597 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\xampp\tmp\php73EF.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #206532, FileId: 0x5d4000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T08:56:16.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T08:56:30.370 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\xampp\tmp\php60C0.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #206552, FileId: 0x5d7000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T08:59:44.876 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\xampp\tmp\php58A4.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #206558, FileId: 0x5d8000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T09:00:53.312 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\xampp\tmp\php63FB.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #206560, FileId: 0x5d9000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T09:03:35.222 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\xampp\tmp\phpDC7E.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #206564, FileId: 0x5da000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T09:05:09.562 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\xampp\tmp\php4D06.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #206566, FileId: 0x5db000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T09:11:21.466 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T09:15:34.865 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206595, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T09:15:34.881 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206597, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T09:15:44.874 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206602, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T09:15:44.890 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206604, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T09:15:44.890 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206606, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T09:26:26.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T09:41:31.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T09:42:15.071 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 2231, Count: 242, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-05-31T09:42:15.071 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 123, Count: 5, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-31T09:42:15.071 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-31T09:42:15.071 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-31T09:42:15.071 ProcessImageName: updater.exe, Pid: 5756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7ce1eea3-7528-4ae9-ab9c-834c0a1b8daa.tmp, EstimatedImpact: 0% 2026-05-31T09:56:36.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-05-31T10:04:09.387 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-31T10:04:09.387 [Cloud] Start of cloud request. Passive mode: 0 2026-05-31T10:04:09.387 [Cloud] Queued cloud request. 2026-05-31T10:04:09.387 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-31T10:04:09.418 Job Notification: New process added to job (5128) 2026-05-31T10:04:09.418 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 8DEA88B6-B2A2-CF0E-0C5C-0973DD25334D) launched 2026-05-31T10:04:09.434 Job Notification: New process added to job (2720) 2026-05-31T10:04:09.434 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:5128] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2720]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-05-31T10:04:09.449 Job Notification: New process added to job (5856) 2026-05-31T10:04:09.449 Job Notification: Process exited from job (5128) 2026-05-31T10:04:09.465 Job Notification: Process exited from job (2720) 2026-05-31T10:04:09.465 [Cloud] Dequeued cloud request. 2026-05-31T10:04:09.465 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-31T10:04:09.817 [Cloud] End of cloud request. 2026-05-31T10:04:09.817 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-05-31T10:04:09.817 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-31T10:04:09.832 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE BEGIN BM telemetry GUID:{E7D18738-9E12-FAFE-9DF5-6F350B45C098} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:2200 ProcessCreationTime:134246954493601749 SessionID:0 CreationTime:05-31-2026 10:04:09 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-05-31T10:04:09.895 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-31T10:04:09.895 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-05-31T10:04:10.348 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-31T10:04:10.364 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-31T10:04:10.364 [Cloud] Start of cloud request. Passive mode: 0 2026-05-31T10:04:10.364 [Cloud] Queued cloud request. 2026-05-31T10:04:10.364 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-31T10:04:10.364 [Cloud] Dequeued cloud request. 2026-05-31T10:04:10.410 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-31T10:04:10.504 [Cloud] End of cloud request. 2026-05-31T10:04:11.020 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-31T10:04:12.098 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-05-31T10:04:12.098 [Cloud] Start of cloud request. Passive mode: 0 2026-05-31T10:04:12.098 [Cloud] Queued cloud request. 2026-05-31T10:04:12.098 [Cloud] MpEngineCloudRequest(). hr = 0 2026-05-31T10:04:12.098 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-05-31T10:04:12.098 [Cloud] Start of cloud request. Passive mode: 0 2026-05-31T10:04:12.098 [Cloud] Queued cloud request. 2026-05-31T10:04:12.098 [Cloud] Dequeued cloud request. 2026-05-31T10:04:12.098 [Cloud] Dequeued cloud request. 2026-05-31T10:04:12.098 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-31T10:04:12.114 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-05-31T10:04:12.254 [Cloud] End of cloud request. 2026-05-31T10:04:12.270 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-05-31T10:04:12.270 [Cloud] End of cloud request. 2026-05-31T10:04:12.763 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-05-31T10:11:41.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T10:15:35.670 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206756, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T10:15:35.685 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206758, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T10:15:45.689 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206762, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T10:15:45.689 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206764, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T10:15:45.845 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206768, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T10:15:45.860 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #206770, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T10:26:46.464 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T10:41:51.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T10:51:35.030 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5dd6_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #208018, FileId: 0x5e1000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T10:51:45.971 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5dd6_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #208467, FileId: 0x5e2000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T10:56:56.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T11:12:01.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T11:15:33.354 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208523, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T11:15:33.354 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208525, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T11:15:43.359 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208531, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T11:15:43.359 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208530, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T11:15:43.375 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208533, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T11:27:06.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T11:42:11.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T11:42:15.074 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 49958, Count: 6550, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-31T11:42:15.074 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-31T11:42:15.074 ProcessImageName: wacs.exe, Pid: 2200, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260531.txt, EstimatedImpact: 2% 2026-05-31T11:42:15.074 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-31T11:42:15.074 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30374d9f-301a-45ca-b3bd-1a350ef34abf.tmp, EstimatedImpact: 0% 2026-05-31T11:42:15.074 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_5dd6_1.MAI, EstimatedImpact: 0% 2026-05-31T11:42:15.074 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-31T11:42:15.074 ProcessImageName: updater.exe, Pid: 5756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7ce1eea3-7528-4ae9-ab9c-834c0a1b8daa.tmp, EstimatedImpact: 0% 2026-05-31T11:42:15.074 ProcessImageName: updater.exe, Pid: 4408, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69afda65-b7f7-4c6d-a14b-aafd0ab4f936.tmp, EstimatedImpact: 0% 2026-05-31T11:53:47.496 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5f77_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #208580, FileId: 0x58000000027ed7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T11:53:48.106 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\xampp\tmp\#sqla80_5f77_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #208584, FileId: 0x59000000027ed7, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T11:57:16.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T12:12:21.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T12:15:36.093 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208712, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:15:36.108 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208714, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:15:46.102 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208719, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:15:46.102 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208722, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:17:50.358 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\phpB464.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #208725, FileId: 0x5e4000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:27:26.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T12:36:37.383 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\phpE6BF.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #208774, FileId: 0x5e7000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:37:24.150 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\php9D6E.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #208775, FileId: 0x5e8000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:37:53.677 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\php10BA.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #208777, FileId: 0x5e9000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:38:15.604 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\xampp\tmp\php666D.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #208778, FileId: 0x5ea000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:39:34.634 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\php9B25.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #208780, FileId: 0x5eb000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:40:00.409 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\phpFFEB.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #208782, FileId: 0x5ec000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:41:38.949 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\php80CF.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #208789, FileId: 0x5ed000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:42:17.631 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\php17D1.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #208790, FileId: 0x5ee000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:42:31.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T12:42:38.968 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\php6B41.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #208792, FileId: 0x5ef000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:42:53.370 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\phpA379.tmp. Process: \Device\HarddiskVolume2\xampp\apache\bin\httpd.exe, Status: 0xc0000001, State: 0, ScanRequest #208793, FileId: 0x5f0000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T12:57:36.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T13:12:41.465 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T13:15:33.841 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208846, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T13:15:33.857 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208848, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T13:15:43.855 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208853, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T13:15:43.855 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208854, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T13:15:43.871 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208855, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T13:27:46.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T13:42:15.074 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 52334, Count: 6745, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-31T13:42:15.074 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-31T13:42:15.074 ProcessImageName: wacs.exe, Pid: 2200, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260531.txt, EstimatedImpact: 2% 2026-05-31T13:42:15.074 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-31T13:42:15.074 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 45, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_5dd6_1.MAI, EstimatedImpact: 0% 2026-05-31T13:42:15.074 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30374d9f-301a-45ca-b3bd-1a350ef34abf.tmp, EstimatedImpact: 0% 2026-05-31T13:42:15.074 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-31T13:42:15.074 ProcessImageName: updater.exe, Pid: 5964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99146362-eed9-4e7e-b734-fa2790a77852.tmp, EstimatedImpact: 0% 2026-05-31T13:42:15.074 ProcessImageName: updater.exe, Pid: 5756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7ce1eea3-7528-4ae9-ab9c-834c0a1b8daa.tmp, EstimatedImpact: 0% 2026-05-31T13:42:15.074 ProcessImageName: updater.exe, Pid: 4408, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69afda65-b7f7-4c6d-a14b-aafd0ab4f936.tmp, EstimatedImpact: 0% 2026-05-31T13:42:15.074 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db1477c1-4c69-4969-842e-0f5d60e4c21c.tmp, EstimatedImpact: 0% 2026-05-31T13:42:51.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T13:57:56.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T14:13:01.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T14:15:33.796 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208925, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T14:15:33.812 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208927, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T14:15:43.805 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208932, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T14:15:43.820 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208934, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T14:15:43.820 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #208936, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T14:28:06.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T14:43:11.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T14:58:16.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T14:59:58.443 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6211_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #208990, FileId: 0x5f7000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T15:00:04.181 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6212_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #208995, FileId: 0x5fb000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T15:00:24.120 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6213_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #209000, FileId: 0x5ff000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T15:10:27.032 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6214_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #209014, FileId: 0x603000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T15:10:27.610 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6214_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #209018, FileId: 0x604000000013c47, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T15:13:21.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T15:15:34.763 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209033, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T15:15:34.779 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209035, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T15:15:44.777 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209040, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T15:15:44.777 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209042, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T15:15:44.934 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209046, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T15:15:44.934 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209048, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T15:28:26.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T15:42:15.073 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 54626, Count: 6879, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-31T15:42:15.073 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-31T15:42:15.073 ProcessImageName: wacs.exe, Pid: 2200, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260531.txt, EstimatedImpact: 2% 2026-05-31T15:42:15.073 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 75, Count: 21, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_5dd6_1.MAI, EstimatedImpact: 0% 2026-05-31T15:42:15.073 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-31T15:42:15.073 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30374d9f-301a-45ca-b3bd-1a350ef34abf.tmp, EstimatedImpact: 0% 2026-05-31T15:42:15.073 ProcessImageName: updater.exe, Pid: 3144, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b591881-4d1f-4132-b520-4f41cf6c202e.tmp, EstimatedImpact: 0% 2026-05-31T15:42:15.073 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-31T15:42:15.073 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db1477c1-4c69-4969-842e-0f5d60e4c21c.tmp, EstimatedImpact: 0% 2026-05-31T15:42:15.073 ProcessImageName: updater.exe, Pid: 5964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99146362-eed9-4e7e-b734-fa2790a77852.tmp, EstimatedImpact: 0% 2026-05-31T15:42:15.073 ProcessImageName: updater.exe, Pid: 5756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7ce1eea3-7528-4ae9-ab9c-834c0a1b8daa.tmp, EstimatedImpact: 0% 2026-05-31T15:42:15.073 ProcessImageName: updater.exe, Pid: 5584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2af4c0a-6956-4ba3-8bb3-162eee9452e7.tmp, EstimatedImpact: 0% 2026-05-31T15:42:15.073 ProcessImageName: updater.exe, Pid: 4408, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69afda65-b7f7-4c6d-a14b-aafd0ab4f936.tmp, EstimatedImpact: 0% 2026-05-31T15:43:31.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T15:58:36.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T16:13:41.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T16:15:34.330 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209161, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T16:15:34.346 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209163, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T16:15:44.351 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209168, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T16:15:44.351 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209170, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T16:15:44.351 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209172, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T16:28:46.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T16:43:51.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T16:58:56.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T17:14:01.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T17:15:34.574 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209241, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T17:15:34.583 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209243, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T17:15:44.588 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209248, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T17:15:44.603 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209250, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T17:29:06.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T17:42:15.078 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 54626, Count: 6886, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-31T17:42:15.078 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-31T17:42:15.078 ProcessImageName: wacs.exe, Pid: 2200, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260531.txt, EstimatedImpact: 2% 2026-05-31T17:42:15.078 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 75, Count: 21, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_5dd6_1.MAI, EstimatedImpact: 0% 2026-05-31T17:42:15.078 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-31T17:42:15.078 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30374d9f-301a-45ca-b3bd-1a350ef34abf.tmp, EstimatedImpact: 0% 2026-05-31T17:42:15.078 ProcessImageName: updater.exe, Pid: 3144, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b591881-4d1f-4132-b520-4f41cf6c202e.tmp, EstimatedImpact: 0% 2026-05-31T17:42:15.078 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-31T17:42:15.078 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db1477c1-4c69-4969-842e-0f5d60e4c21c.tmp, EstimatedImpact: 0% 2026-05-31T17:42:15.078 ProcessImageName: updater.exe, Pid: 5964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99146362-eed9-4e7e-b734-fa2790a77852.tmp, EstimatedImpact: 0% 2026-05-31T17:42:15.078 ProcessImageName: updater.exe, Pid: 5756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7ce1eea3-7528-4ae9-ab9c-834c0a1b8daa.tmp, EstimatedImpact: 0% 2026-05-31T17:42:15.078 ProcessImageName: updater.exe, Pid: 3984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b36b1f9f-b3ee-438a-857b-15dea5035e13.tmp, EstimatedImpact: 0% 2026-05-31T17:42:15.078 ProcessImageName: updater.exe, Pid: 5584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2af4c0a-6956-4ba3-8bb3-162eee9452e7.tmp, EstimatedImpact: 0% 2026-05-31T17:42:15.078 ProcessImageName: updater.exe, Pid: 4408, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69afda65-b7f7-4c6d-a14b-aafd0ab4f936.tmp, EstimatedImpact: 0% 2026-05-31T17:42:15.078 ProcessImageName: updater.exe, Pid: 1524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\849fd74a-99d7-4dc3-a249-f096fe89aa4e.tmp, EstimatedImpact: 0% 2026-05-31T17:44:11.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T17:59:16.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T18:14:21.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T18:15:35.011 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209324, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T18:15:35.027 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209326, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T18:15:45.025 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209331, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T18:15:45.040 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209334, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T18:29:26.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T18:44:31.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T18:59:36.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T19:14:41.463 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T19:15:34.741 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209403, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T19:15:34.758 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209405, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T19:15:44.761 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209410, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T19:15:44.761 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209413, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T19:29:46.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T19:42:15.077 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 54626, Count: 6892, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: wacs.exe, Pid: 2200, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260531.txt, EstimatedImpact: 2% 2026-05-31T19:42:15.077 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 75, Count: 21, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_5dd6_1.MAI, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30374d9f-301a-45ca-b3bd-1a350ef34abf.tmp, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: updater.exe, Pid: 3144, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b591881-4d1f-4132-b520-4f41cf6c202e.tmp, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: updater.exe, Pid: 5964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99146362-eed9-4e7e-b734-fa2790a77852.tmp, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84e2fd5d-82d9-4d87-8fd7-8273967646bf.tmp, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: updater.exe, Pid: 5756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7ce1eea3-7528-4ae9-ab9c-834c0a1b8daa.tmp, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: updater.exe, Pid: 3984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b36b1f9f-b3ee-438a-857b-15dea5035e13.tmp, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: updater.exe, Pid: 5584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2af4c0a-6956-4ba3-8bb3-162eee9452e7.tmp, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: updater.exe, Pid: 4408, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69afda65-b7f7-4c6d-a14b-aafd0ab4f936.tmp, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: updater.exe, Pid: 1816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b072e823-3a93-4e17-9248-4e52ea86efc2.tmp, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db1477c1-4c69-4969-842e-0f5d60e4c21c.tmp, EstimatedImpact: 0% 2026-05-31T19:42:15.077 ProcessImageName: updater.exe, Pid: 1524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\849fd74a-99d7-4dc3-a249-f096fe89aa4e.tmp, EstimatedImpact: 0% 2026-05-31T19:44:51.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T19:59:56.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T20:15:01.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T20:15:34.009 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209540, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T20:15:34.025 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209542, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T20:15:44.018 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209547, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T20:15:44.033 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209550, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T20:30:06.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T20:45:11.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T21:00:16.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T21:15:21.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T21:15:33.990 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209632, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T21:15:33.990 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209634, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T21:15:43.999 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209639, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T21:15:43.999 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209641, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T21:15:44.155 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209645, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T21:15:44.155 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209647, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T21:30:26.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T21:42:15.087 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 54656, Count: 6899, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 105, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_5dd6_1.MAI, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: wacs.exe, Pid: 2200, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260531.txt, EstimatedImpact: 2% 2026-05-31T21:42:15.087 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30374d9f-301a-45ca-b3bd-1a350ef34abf.tmp, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: updater.exe, Pid: 3144, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b591881-4d1f-4132-b520-4f41cf6c202e.tmp, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: updater.exe, Pid: 5152, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abc172cc-ab1f-4987-b929-d482ae6bb9b1.tmp, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: updater.exe, Pid: 5584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2af4c0a-6956-4ba3-8bb3-162eee9452e7.tmp, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: updater.exe, Pid: 5964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99146362-eed9-4e7e-b734-fa2790a77852.tmp, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84e2fd5d-82d9-4d87-8fd7-8273967646bf.tmp, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: updater.exe, Pid: 5756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7ce1eea3-7528-4ae9-ab9c-834c0a1b8daa.tmp, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: updater.exe, Pid: 3984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b36b1f9f-b3ee-438a-857b-15dea5035e13.tmp, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: updater.exe, Pid: 4408, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69afda65-b7f7-4c6d-a14b-aafd0ab4f936.tmp, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: updater.exe, Pid: 1816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b072e823-3a93-4e17-9248-4e52ea86efc2.tmp, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db1477c1-4c69-4969-842e-0f5d60e4c21c.tmp, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: updater.exe, Pid: 1524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\849fd74a-99d7-4dc3-a249-f096fe89aa4e.tmp, EstimatedImpact: 0% 2026-05-31T21:42:15.087 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57819b6d-c42b-4fcc-9b71-393c498f0d5b.tmp, EstimatedImpact: 0% 2026-05-31T21:45:31.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T22:00:36.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T22:15:35.523 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209736, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-05-31T22:15:41.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T22:30:46.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T22:45:51.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T23:00:56.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T23:16:01.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T23:31:06.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-05-31T23:42:15.097 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 54656, Count: 6914, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 105, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_5dd6_1.MAI, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: wacs.exe, Pid: 2200, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260531.txt, EstimatedImpact: 2% 2026-05-31T23:42:15.097 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30374d9f-301a-45ca-b3bd-1a350ef34abf.tmp, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 3144, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b591881-4d1f-4132-b520-4f41cf6c202e.tmp, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 5152, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abc172cc-ab1f-4987-b929-d482ae6bb9b1.tmp, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 5584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2af4c0a-6956-4ba3-8bb3-162eee9452e7.tmp, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 3984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b36b1f9f-b3ee-438a-857b-15dea5035e13.tmp, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 5964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99146362-eed9-4e7e-b734-fa2790a77852.tmp, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84e2fd5d-82d9-4d87-8fd7-8273967646bf.tmp, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 5756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7ce1eea3-7528-4ae9-ab9c-834c0a1b8daa.tmp, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 4408, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69afda65-b7f7-4c6d-a14b-aafd0ab4f936.tmp, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\932939f8-756b-4752-8d8c-f81224a0d9b7.tmp, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db1477c1-4c69-4969-842e-0f5d60e4c21c.tmp, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 1816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b072e823-3a93-4e17-9248-4e52ea86efc2.tmp, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 1524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\849fd74a-99d7-4dc3-a249-f096fe89aa4e.tmp, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57819b6d-c42b-4fcc-9b71-393c498f0d5b.tmp, EstimatedImpact: 0% 2026-05-31T23:42:15.097 ProcessImageName: updater.exe, Pid: 4352, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-05-31T23:46:11.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T00:01:16.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T00:15:32.917 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #209914, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T00:16:21.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T00:31:26.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T00:36:01.900 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:5952B4FE-032E-43D3-9C4F-D19F5AFAA115, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-06-01T00:36:01.900 Scheduled scan with Id 5952B4FE-032E-43D3-9C4F-D19F5AFAA115 configured CPU priority: normal (LowCpuPriority: 0) 2026-06-01T00:36:01.900 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-01T00:36:01.900 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-06-01T00:36:01.900 [SFC] System file cache build is not needed (already completed) 2026-06-01T00:36:16.151 Engine:Triggered AR EMS scan 2026-06-01T00:36:16.151 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.166 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.182 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.197 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.213 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.229 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.244 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.276 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.291 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.291 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.307 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.338 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.354 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.354 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.369 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.385 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.401 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.416 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:16.447 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-01T00:36:30.325 QuickScan:ScanID:5952B4FE-032E-43D3-9C4F-D19F5AFAA115: Quick scan finished with error 0 2026-06-01T00:36:30.341 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-01T00:36:30.841 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-01T00:36:30.841 [RTP] Duplicating the current plugin configuration object... 2026-06-01T00:36:30.841 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-01T00:36:30.841 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-01T00:36:30.841 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-01T00:36:30.841 [RTP] No config change detected. Not updating plugin configuration. 2026-06-01T00:36:30.841 [RTP] No config changes found. No configuration switch. 2026-06-01T00:36:30.841 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-01T00:46:31.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T01:01:36.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T01:16:41.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T01:31:46.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T01:42:15.111 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 54898, Count: 6949, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 138, Count: 7, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 120, Count: 29, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_5dd6_1.MAI, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: wacs.exe, Pid: 2200, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260531.txt, EstimatedImpact: 2% 2026-06-01T01:42:15.111 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30374d9f-301a-45ca-b3bd-1a350ef34abf.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 3144, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b591881-4d1f-4132-b520-4f41cf6c202e.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 5152, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abc172cc-ab1f-4987-b929-d482ae6bb9b1.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 4008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49c85f47-3e91-4704-8f76-296644ff701d.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 5964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99146362-eed9-4e7e-b734-fa2790a77852.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84e2fd5d-82d9-4d87-8fd7-8273967646bf.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 5756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7ce1eea3-7528-4ae9-ab9c-834c0a1b8daa.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 3984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b36b1f9f-b3ee-438a-857b-15dea5035e13.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db1477c1-4c69-4969-842e-0f5d60e4c21c.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 5584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2af4c0a-6956-4ba3-8bb3-162eee9452e7.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57819b6d-c42b-4fcc-9b71-393c498f0d5b.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\065384b0-b39a-4429-a076-597188094ffe.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 1524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\849fd74a-99d7-4dc3-a249-f096fe89aa4e.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 1816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b072e823-3a93-4e17-9248-4e52ea86efc2.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 4408, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69afda65-b7f7-4c6d-a14b-aafd0ab4f936.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\932939f8-756b-4752-8d8c-f81224a0d9b7.tmp, EstimatedImpact: 0% 2026-06-01T01:42:15.111 ProcessImageName: updater.exe, Pid: 4352, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-01T01:46:51.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T01:55:53.914 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\xampp\tmp\#sqla80_635a_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #210258, FileId: 0x98000000027d7f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T02:01:56.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T02:17:01.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T02:32:06.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T02:47:11.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T03:02:16.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T03:15:44.469 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #210437, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T03:17:21.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T03:32:26.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T03:42:15.115 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 54898, Count: 6952, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 168, Count: 11, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 165, Count: 34, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_5dd6_1.MAI, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: wacs.exe, Pid: 2200, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260531.txt, EstimatedImpact: 2% 2026-06-01T03:42:15.115 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 3888, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 3144, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b591881-4d1f-4132-b520-4f41cf6c202e.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30374d9f-301a-45ca-b3bd-1a350ef34abf.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 5152, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abc172cc-ab1f-4987-b929-d482ae6bb9b1.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 1524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\849fd74a-99d7-4dc3-a249-f096fe89aa4e.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\065384b0-b39a-4429-a076-597188094ffe.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57819b6d-c42b-4fcc-9b71-393c498f0d5b.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 5964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99146362-eed9-4e7e-b734-fa2790a77852.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84e2fd5d-82d9-4d87-8fd7-8273967646bf.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 5756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7ce1eea3-7528-4ae9-ab9c-834c0a1b8daa.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db1477c1-4c69-4969-842e-0f5d60e4c21c.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 4408, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69afda65-b7f7-4c6d-a14b-aafd0ab4f936.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 5584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2af4c0a-6956-4ba3-8bb3-162eee9452e7.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 5536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a0c0c1e-2cf8-4b37-8921-b37491323f19.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 4008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49c85f47-3e91-4704-8f76-296644ff701d.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 3984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b36b1f9f-b3ee-438a-857b-15dea5035e13.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\932939f8-756b-4752-8d8c-f81224a0d9b7.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 1816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b072e823-3a93-4e17-9248-4e52ea86efc2.tmp, EstimatedImpact: 0% 2026-06-01T03:42:15.115 ProcessImageName: updater.exe, Pid: 4352, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-01T03:47:31.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T04:02:36.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T04:17:41.460 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T04:32:46.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T04:47:51.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T05:02:56.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T05:18:01.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T05:33:06.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T05:42:15.115 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 54929, Count: 6955, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 168, Count: 11, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 165, Count: 34, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_5dd6_1.MAI, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: wacs.exe, Pid: 2200, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260531.txt, EstimatedImpact: 2% 2026-06-01T05:42:15.115 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 3888, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30374d9f-301a-45ca-b3bd-1a350ef34abf.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 3144, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b591881-4d1f-4132-b520-4f41cf6c202e.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 5152, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abc172cc-ab1f-4987-b929-d482ae6bb9b1.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 6108, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\886ade9e-97fe-4843-9d25-34f545d48826.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 1816, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b072e823-3a93-4e17-9248-4e52ea86efc2.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 1524, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\849fd74a-99d7-4dc3-a249-f096fe89aa4e.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\065384b0-b39a-4429-a076-597188094ffe.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 5964, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\99146362-eed9-4e7e-b734-fa2790a77852.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\57819b6d-c42b-4fcc-9b71-393c498f0d5b.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 5764, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84e2fd5d-82d9-4d87-8fd7-8273967646bf.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 5756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7ce1eea3-7528-4ae9-ab9c-834c0a1b8daa.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 176, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db1477c1-4c69-4969-842e-0f5d60e4c21c.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 5584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2af4c0a-6956-4ba3-8bb3-162eee9452e7.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 4008, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\49c85f47-3e91-4704-8f76-296644ff701d.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 5536, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a0c0c1e-2cf8-4b37-8921-b37491323f19.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 3984, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b36b1f9f-b3ee-438a-857b-15dea5035e13.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 3932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ea246b66-5a9f-4f8e-adc3-000aa213ec39.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\932939f8-756b-4752-8d8c-f81224a0d9b7.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 4408, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\69afda65-b7f7-4c6d-a14b-aafd0ab4f936.tmp, EstimatedImpact: 0% 2026-06-01T05:42:15.115 ProcessImageName: updater.exe, Pid: 4352, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-01T05:48:11.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T06:03:16.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T06:15:34.188 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #210699, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T06:18:21.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T06:33:26.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T06:46:56.524 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sqla80_63ff_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #210763, FileId: 0x722000000015d55, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T06:47:07.330 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6405_4.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #210791, FileId: 0x52000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T06:48:31.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T06:50:45.769 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sqla80_646c_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #210826, FileId: 0x734000000015d55, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T06:50:57.224 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6473_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #210854, FileId: 0x73c000000015d55, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T06:54:32.340 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sqla80_64ea_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #210883, FileId: 0x744000000015d55, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T06:54:44.131 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sqla80_64f1_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #210914, FileId: 0x74e000000015d55, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T06:54:54.313 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sqla80_64f7_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #210943, FileId: 0x756000000015d55, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T06:58:09.007 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6554_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #210983, FileId: 0x762000000015d55, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T06:58:18.539 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\xampp\tmp\#sqla80_655a_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211005, FileId: 0x768000000015d55, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:00:00.581 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6583_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211053, FileId: 0x779000000015d55, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:00:02.248 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6585_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211083, FileId: 0x783000000015d55, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:00:05.792 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6588_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211122, FileId: 0x790000000015d55, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:00:07.428 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\xampp\tmp\#sqla80_658a_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211152, FileId: 0x79a000000015d55, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:03:36.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T07:14:37.630 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\xampp\tmp\#sqla80_65c2_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211323, FileId: 0x1ae000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:14:48.394 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\xampp\tmp\#sqla80_65c8_4.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211349, FileId: 0xda000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:15:45.023 [RTP] [Mini-filter] Unsuccessful scan status(#300): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #211381, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:18:17.521 [RTP] [Mini-filter] Unsuccessful scan status(#310): \Device\HarddiskVolume2\xampp\tmp\#sqla80_662f_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211430, FileId: 0x1837000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:18:27.892 [RTP] [Mini-filter] Unsuccessful scan status(#320): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6635_4.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211452, FileId: 0x15a000000027ff5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:18:41.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T07:20:21.501 [RTP] [Mini-filter] Unsuccessful scan status(#330): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6664_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211499, FileId: 0x184d000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:20:23.408 [RTP] [Mini-filter] Unsuccessful scan status(#340): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6666_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211536, FileId: 0x1859000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:20:25.107 [RTP] [Mini-filter] Unsuccessful scan status(#350): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6668_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211565, FileId: 0xe6000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:23:20.828 [RTP] [Mini-filter] Unsuccessful scan status(#360): \Device\HarddiskVolume2\xampp\tmp\#sqla80_66f9_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211621, FileId: 0x1869000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:23:32.572 [RTP] [Mini-filter] Unsuccessful scan status(#370): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6700_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211653, FileId: 0x1873000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:23:41.999 [RTP] [Mini-filter] Unsuccessful scan status(#380): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6706_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211677, FileId: 0x187a000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:26:55.503 [RTP] [Mini-filter] Unsuccessful scan status(#390): \Device\HarddiskVolume2\xampp\tmp\#sqla80_675f_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211711, FileId: 0x1884000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:27:08.028 [RTP] [Mini-filter] Unsuccessful scan status(#400): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6765_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211726, FileId: 0x1888000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:29:00.044 [RTP] [Mini-filter] Unsuccessful scan status(#410): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6796_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211776, FileId: 0x1899000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:29:01.946 [RTP] [Mini-filter] Unsuccessful scan status(#420): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6799_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211821, FileId: 0x18a8000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:29:03.576 [RTP] [Mini-filter] Unsuccessful scan status(#430): \Device\HarddiskVolume2\xampp\tmp\#sqla80_679b_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211854, FileId: 0x18b3000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:31:32.972 [RTP] [Mini-filter] Unsuccessful scan status(#440): \Device\HarddiskVolume2\xampp\tmp\#sqla80_680e_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211894, FileId: 0x18bf000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:31:42.650 [RTP] [Mini-filter] Unsuccessful scan status(#450): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6814_4.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211917, FileId: 0x1e1000000027ff5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:33:46.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T07:35:24.188 [RTP] [Mini-filter] Unsuccessful scan status(#460): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6870_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211966, FileId: 0x18d4000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:35:34.265 [RTP] [Mini-filter] Unsuccessful scan status(#470): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6876_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #211986, FileId: 0x18d9000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:37:25.140 [RTP] [Mini-filter] Unsuccessful scan status(#480): \Device\HarddiskVolume2\xampp\tmp\#sqla80_68a5_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212031, FileId: 0x18e9000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:37:26.803 [RTP] [Mini-filter] Unsuccessful scan status(#490): \Device\HarddiskVolume2\xampp\tmp\#sqla80_68a7_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212061, FileId: 0x18f3000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:39:18.792 [RTP] [Mini-filter] Unsuccessful scan status(#500): \Device\HarddiskVolume2\xampp\tmp\#sqla80_68dc_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212108, FileId: 0x1902000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:39:30.430 [RTP] [Mini-filter] Unsuccessful scan status(#510): \Device\HarddiskVolume2\xampp\tmp\#sqla80_68e3_1.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212142, FileId: 0x229000000027ff5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:39:39.962 [RTP] [Mini-filter] Unsuccessful scan status(#520): \Device\HarddiskVolume2\xampp\tmp\#sqla80_68e9_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212170, FileId: 0x1915000000008f4a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:41:16.458 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-06-01T07:41:16.473 Job Notification: New process added to job (5272) 2026-06-01T07:41:16.489 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-06-01T07:41:16.489 Job Notification: New process added to job (3700) 2026-06-01T07:41:16.489 Aggressive catchup quick scan threshold: 255145909007 / 25920000000000 2026-06-01T07:41:16.504 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:5272] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3700]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-01T07:41:16.598 Job Notification: New process added to job (360) 2026-06-01T07:41:16.598 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-06-01T07:41:16.598 Job Notification: New process added to job (1888) 2026-06-01T07:41:16.629 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:360] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:1888]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-01T07:41:16.989 Job Notification: New process added to job (400) 2026-06-01T07:41:17.004 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-01T07:41:17.036 [RTP] Duplicating the current plugin configuration object... 2026-06-01T07:41:17.036 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-01T07:41:17.036 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-01T07:41:17.036 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-01T07:41:17.036 [RTP] No config change detected. Not updating plugin configuration. 2026-06-01T07:41:17.036 [RTP] No config changes found. No configuration switch. 2026-06-01T07:41:17.036 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-01T07:41:17.098 Task(GetDeviceTicket -AccessKey 0744ED84-AD79-AB4E-DCEF-2F1C00C4D630 ) launched as network service 2026-06-01T07:41:17.653 Job Notification: Process exited from job (400) 2026-06-01T07:41:18.928 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-01T07:41:18.928 [Cloud] Start of cloud request. Passive mode: 0 2026-06-01T07:41:18.928 [Cloud] Queued cloud request. 2026-06-01T07:41:18.928 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-01T07:41:18.928 [Cloud] Dequeued cloud request. 2026-06-01T07:41:18.928 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-01T07:41:18.928 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-06-01T07:41:18.928 [Cloud] Start of cloud request. Passive mode: 0 2026-06-01T07:41:18.944 [Cloud] Queued cloud request. 2026-06-01T07:41:18.944 [Cloud] Dequeued cloud request. 2026-06-01T07:41:18.944 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-01T07:41:19.225 [Cloud] End of cloud request. 2026-06-01T07:41:19.225 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-01T07:41:19.225 [Cloud] End of cloud request. 2026-06-01T07:41:19.444 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-01T07:41:20.612 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\B2128ADD-D9F8-4878-9E1B-C21605A0BB711480.1dcf19a08bbe7da 2026-06-01T07:41:20.659 Verifying engine and signature files (source: 0) ... 2026-06-01T07:41:20.659 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2BA4DD24-2DBE-4E5E-BA18-525F2443EA6D}\mpengine.dll] due to PPL. 2026-06-01T07:41:20.659 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2BA4DD24-2DBE-4E5E-BA18-525F2443EA6D}\mpasbase.vdm] (file in cache) 2026-06-01T07:41:20.659 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2BA4DD24-2DBE-4E5E-BA18-525F2443EA6D}\mpasdlta.vdm]. File not in cache (0x1) 2026-06-01T07:41:20.675 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2BA4DD24-2DBE-4E5E-BA18-525F2443EA6D}\mpasdlta.vdm] 2026-06-01T07:41:20.675 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2BA4DD24-2DBE-4E5E-BA18-525F2443EA6D}\mpavbase.vdm] (file in cache) 2026-06-01T07:41:20.675 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2BA4DD24-2DBE-4E5E-BA18-525F2443EA6D}\mpavdlta.vdm]. File not in cache (0x1) 2026-06-01T07:41:20.691 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2BA4DD24-2DBE-4E5E-BA18-525F2443EA6D}\mpavdlta.vdm] 2026-06-01T07:41:20.862 [Engine] IsHybridMode: 0 2026-06-01T07:41:20.862 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-06-01T07:41:20.988 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-5840C089F82FAACF7CAB7AE328170D6C11ED7E0B.bin): 0x00000002 2026-06-01T07:41:20.988 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-5840C089F82FAACF7CAB7AE328170D6C11ED7E0B.bin) 2026-06-01T07:41:20.988 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-06-01T07:41:20.988 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-06-01T07:41:20.988 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-06-01T07:41:20.988 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-06-01T07:41:29.908 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-06-01T07:41:29.908 [AutoExclusion] Applied roles from cache. 2026-06-01T07:41:29.908 [AutoExclusion] Started roles monitoring. 2026-06-01T07:41:29.908 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB1FFA5810, lRefCount: 5, hr=0 2026-06-01T07:41:29.908 [Engine] New active engine 00007FFB12AE5810 replacing engine 00007FFB1FFA5810. Number of active engines: 2 2026-06-01T07:41:31.982 EngineInit:Global ASOC is enabled 2026-06-01T07:41:31.982 EngineInit:ASOO is enabled for developer volumes 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-01T07:41:32.536 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-01T07:41:32.599 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-06-01T07:41:32.615 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-06-01T07:41:32.615 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-06-01T07:41:32.615 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-06-01T07:41:32.615 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-06-01T07:41:32.615 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-06-01T07:41:32.615 [Plugin] Initializing RTP plugin state... 2026-06-01T07:41:32.615 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-06-01T07:41:32.615 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎05‎-‎31‎-‎2026 09:42:15 Last Perf:‎05‎-‎31‎-‎2026 09:42:15 First RTP Scan:‎05‎-‎31‎-‎2026 09:42:16 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:589 Misses:2933 BM Queue:0,70,0 Proc:0,40,0 File:0,63,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:212242 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-435110546 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:68772 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:204276 TotalHits:6359767 InstanceCacheInserts:29126 InstanceCacheUpdates:0 InstanceCacheDeletes:13711 InstanceCacheHits:835 InstanceCacheMisses:168959 InstanceCacheOverflows:13936 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:3ms (784/227) Success: 227, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-06-01T07:41:32.615 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2BA4DD24-2DBE-4E5E-BA18-525F2443EA6D} 2026-06-01T07:41:32.630 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{10C523E7-FF05-491C-98AF-D6B31E42EE69} removed 2026-06-01T07:41:32.630 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5A20D531-F936-4D17-856B-96978A54BFD7}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5A20D531-F936-4D17-856B-96978A54BFD7}\mpengine.dll cannot be deleted, hr=0x80070005 2026-06-01T07:41:32.630 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-01T07:41:32.630 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-01T07:41:32.630 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-01T07:41:32.630 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-01T07:41:32.630 MdCoreSvc is supported in this platform and OS 2026-06-01T07:41:32.630 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:06-01-2026 07:41:32 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:06-01-2026 07:41:32 2026-06-01T07:41:32.820 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-01T07:41:32.820 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-06-01T07:41:32.820 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-06-01T07:41:32.820 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-06-01T07:41:32.820 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-01T07:41:32.820 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-01T07:41:32.820 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-01T07:41:32.820 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-01T07:41:32.820 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-01T07:41:32.820 MdCoreSvc is supported in this platform and OS Signature updated on 06-01-2026 07:41:32 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.207.0 AV Signature Version: 1.451.207.0 ************************************************************ 2026-06-01T07:41:32.820 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-06-01T07:41:32.820 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\B2128ADD-D9F8-4878-9E1B-C21605A0BB711480.1dcf19a08bbe7da 2026-06-01T07:41:32.835 Process scan (postsignatureupdatescan) started. BmLoggingDisabled:MpDisableBmLogging not set. 2026-06-01T07:41:32.898 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-06-01T07:41:32.898 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 06-01-2026 07:41:32 ************************************************************ 2026-06-01T07:41:33.039 Job Notification: Process exited from job (360) 2026-06-01T07:41:33.101 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-06-01T07:41:33.101 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-06-01T07:41:33.101 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-01T07:41:33.148 Job Notification: Process exited from job (1888) 2026-06-01T07:41:33.164 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-06-01T07:41:33.164 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-06-01T07:41:33.164 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-06-01T07:41:33.164 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-06-01T07:41:33.164 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-06-01T07:41:33.164 Job Notification: Process exited from job (5272) 2026-06-01T07:41:33.164 Job Notification: Process exited from job (3700) 2026-06-01T07:41:33.179 [Engine] Engine 00007FFB1FFA5810 no longer in use. Number of active engines: 1 2026-06-01T07:41:33.179 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-01T07:41:33.179 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-06-01T07:41:34.773 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 54944, Count: 6956, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-06-01T07:41:34.773 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 1006, Count: 853, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_65c8_0.MAI, EstimatedImpact: 0% 2026-06-01T07:41:34.773 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 198, Count: 15, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpClient.dll, EstimatedImpact: 0% 2026-06-01T07:41:34.773 ProcessImageName: wacs.exe, Pid: 2200, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260531.txt, EstimatedImpact: 2% 2026-06-01T07:41:34.773 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WinMgmtR.dll, EstimatedImpact: 0% 2026-06-01T07:41:34.773 ProcessImageName: updater.exe, Pid: 3888, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 0% 2026-06-01T07:41:34.773 ProcessImageName: updater.exe, Pid: 3144, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b591881-4d1f-4132-b520-4f41cf6c202e.tmp, EstimatedImpact: 0% 2026-06-01T07:41:34.773 ProcessImageName: updater.exe, Pid: 3292, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30374d9f-301a-45ca-b3bd-1a350ef34abf.tmp, EstimatedImpact: 0% 2026-06-01T07:41:34.773 ProcessImageName: updater.exe, Pid: 476, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\15972927-e8ef-4cdc-97b0-8802807e9fb3.tmp, EstimatedImpact: 0% 2026-06-01T07:41:34.773 ProcessImageName: updater.exe, Pid: 5152, TotalTime: 30, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\abc172cc-ab1f-4987-b929-d482ae6bb9b1.tmp, EstimatedImpact: 0% 2026-06-01T07:41:34.773 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T07:41:34.773 ProcessImageName: updater.exe, Pid: 5756, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7ce1eea3-7528-4ae9-ab9c-834c0a1b8daa.tmp, EstimatedImpact: 0% 2026-06-01T07:41:34.773 ProcessImageName: updater.exe, Pid: 5584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2af4c0a-6956-4ba3-8bb3-162eee9452e7.tmp, EstimatedImpact: 0% 2026-06-01T07:41:34.851 [Engine] RSIG_UNLOADENGINE, 00007FFB1FFA5810, err=0x0 2026-06-01T07:41:34.898 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5A20D531-F936-4D17-856B-96978A54BFD7} removed 2026-06-01T07:41:39.598 Process scan (postsignatureupdatescan) completed. 2026-06-01T07:42:49.372 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\xampp\tmp\#sqla80_693f_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212273, FileId: 0xe9000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:42:49.387 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\xampp\tmp\#sqla80_693f_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212276, FileId: 0xea000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:42:49.403 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\xampp\tmp\#sqla80_693f_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212282, FileId: 0xec000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:42:49.403 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\xampp\tmp\#sqla80_693f_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212285, FileId: 0xed000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:42:50.981 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6940_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212288, FileId: 0xee000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:42:50.997 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6940_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212294, FileId: 0xf0000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:42:50.997 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6940_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212297, FileId: 0xf1000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:43:01.060 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6946_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212304, FileId: 0xf3000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:43:01.076 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6946_1.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212307, FileId: 0x29000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:43:01.076 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6946_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212308, FileId: 0xf4000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:43:01.076 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6946_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212311, FileId: 0xf5000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:43:01.076 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6946_3.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212315, FileId: 0x2b000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:43:01.076 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6946_2.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212312, FileId: 0x2a000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:43:01.076 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6946_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212316, FileId: 0xf6000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:43:01.091 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6946_4.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212319, FileId: 0x2c000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:43:01.091 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6946_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212320, FileId: 0xf7000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:43:11.260 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\xampp\tmp\#sqla80_694c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212323, FileId: 0xf8000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:43:11.276 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\xampp\tmp\#sqla80_694c_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212326, FileId: 0xf9000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:43:11.276 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\xampp\tmp\#sqla80_694c_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212332, FileId: 0xfb000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:43:11.292 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\xampp\tmp\#sqla80_694c_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212335, FileId: 0xfc000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:51.557 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6973_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212350, FileId: 0x102000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:51.573 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6973_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212353, FileId: 0x103000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:51.573 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6973_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212356, FileId: 0x104000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:51.573 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6973_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212359, FileId: 0x105000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:51.588 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6973_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212362, FileId: 0x106000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:53.292 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6974_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212365, FileId: 0x107000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:53.307 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6974_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212368, FileId: 0x108000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:53.307 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6974_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212371, FileId: 0x109000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:53.323 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6974_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212377, FileId: 0x10b000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:53.549 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6975_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212380, FileId: 0x10c000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:53.549 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6975_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212383, FileId: 0x10d000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:53.549 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6975_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212389, FileId: 0x10f000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:53.549 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6975_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212386, FileId: 0x10e000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:53.565 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6975_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212392, FileId: 0x110000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:54.923 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6976_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212395, FileId: 0x111000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:54.939 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6976_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212398, FileId: 0x112000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:54.939 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6976_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212401, FileId: 0x113000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:44:54.954 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6976_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212404, FileId: 0x114000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:29.939 [RbM] Setting Last known good engine candidate. hr = 0 2026-06-01T07:46:42.470 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69b9_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212411, FileId: 0x116000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:42.485 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69b9_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212417, FileId: 0x118000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:42.501 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69b9_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212420, FileId: 0x119000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:42.501 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69b9_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212423, FileId: 0x11a000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:44.148 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69ba_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212426, FileId: 0x11b000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:44.148 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69ba_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212429, FileId: 0x11c000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:44.148 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69ba_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212432, FileId: 0x11d000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:44.163 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69ba_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212435, FileId: 0x11e000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:44.163 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69ba_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212438, FileId: 0x11f000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:53.894 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69c0_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212443, FileId: 0x120000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:53.894 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69c0_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212447, FileId: 0x121000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:53.894 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69c0_1.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212446, FileId: 0x56000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:53.894 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69c0_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212450, FileId: 0x122000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:53.909 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69c0_2.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212451, FileId: 0x57000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:53.909 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69c0_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212457, FileId: 0x123000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:53.909 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69c0_3.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212454, FileId: 0x58000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:53.909 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69c0_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212459, FileId: 0x124000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:46:53.909 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69c0_4.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212458, FileId: 0x59000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:47:04.255 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69c6_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212462, FileId: 0x125000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:47:04.270 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69c6_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212465, FileId: 0x126000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:47:04.286 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69c6_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212474, FileId: 0x129000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:47:04.286 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sqla80_69c6_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212471, FileId: 0x128000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:48:51.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T07:50:16.032 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a1f_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212482, FileId: 0x12a000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:16.048 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a1f_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212485, FileId: 0x12b000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:16.048 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a1f_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212488, FileId: 0x12c000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:16.048 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a1f_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212491, FileId: 0x12d000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:16.048 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a1f_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212494, FileId: 0x12e000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:17.671 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a20_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212497, FileId: 0x12f000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:17.671 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a20_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212500, FileId: 0x130000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:17.687 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a20_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212509, FileId: 0x133000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:17.687 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a20_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212508, FileId: 0x132000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:28.711 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a26_0.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212512, FileId: 0x69000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:28.711 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a26_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212513, FileId: 0x134000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:28.726 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a26_1.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212516, FileId: 0x6a000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:28.726 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a26_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212520, FileId: 0x136000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:28.726 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a26_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212518, FileId: 0x135000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:28.726 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a26_2.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212521, FileId: 0x6b000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:28.726 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a26_3.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212526, FileId: 0x6c000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:28.726 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a26_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212524, FileId: 0x137000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:28.726 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a26_4.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212528, FileId: 0x6d000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:28.726 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a26_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212529, FileId: 0x138000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:38.389 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a2c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212532, FileId: 0x139000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:38.405 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a2c_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212535, FileId: 0x13a000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:38.405 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a2c_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212538, FileId: 0x13b000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:50:38.421 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a2c_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212544, FileId: 0x13d000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:52:17.170 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a53_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212559, FileId: 0x143000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:52:17.186 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a53_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212562, FileId: 0x144000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:52:17.186 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a53_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212565, FileId: 0x145000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:52:17.201 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a53_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212571, FileId: 0x147000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:52:18.937 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a54_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212574, FileId: 0x148000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:52:18.953 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a54_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212577, FileId: 0x149000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:52:18.953 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a54_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212580, FileId: 0x14a000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:52:18.968 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a54_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212586, FileId: 0x14c000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:52:19.230 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a55_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212589, FileId: 0x14d000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:52:19.246 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a55_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212595, FileId: 0x14f000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:52:19.246 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a55_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212598, FileId: 0x150000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:52:19.246 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6a55_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212601, FileId: 0x151000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:54:29.291 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6aa6_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212621, FileId: 0x153000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:54:29.291 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6aa6_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212624, FileId: 0x154000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:54:29.291 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6aa6_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212627, FileId: 0x155000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:54:29.306 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6aa6_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212630, FileId: 0x156000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:54:30.895 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6aa7_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212636, FileId: 0x158000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:54:40.804 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6aad_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212664, FileId: 0x160000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:58:02.812 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6b08_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212701, FileId: 0x169000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:58:16.890 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6b0f_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212729, FileId: 0x172000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T07:58:27.526 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6b15_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212757, FileId: 0x17a000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:00:09.369 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6b3d_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212805, FileId: 0x18b000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:00:11.016 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6b3f_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212838, FileId: 0x196000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:00:12.653 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6b41_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212871, FileId: 0x1a1000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:03:10.548 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6bd3_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212915, FileId: 0x1ab000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:03:20.488 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6bd9_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212938, FileId: 0x1b1000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:03:56.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T08:06:36.840 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6c36_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #212972, FileId: 0x1bb000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:06:48.353 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6c3d_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213000, FileId: 0x1c3000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:08:43.775 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6c6e_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213044, FileId: 0x1d2000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:08:46.538 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6c70_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213080, FileId: 0x1de000000028749, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-06-01T08:09:26.379 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-01T08:09:26.379 [Cloud] Start of cloud request. Passive mode: 0 2026-06-01T08:09:26.379 [Cloud] Queued cloud request. 2026-06-01T08:09:26.379 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-01T08:09:26.379 [Cloud] Dequeued cloud request. 2026-06-01T08:09:26.379 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-01T08:09:26.731 [Cloud] End of cloud request. 2026-06-01T08:09:26.731 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-06-01T08:09:26.746 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe BEGIN BM telemetry GUID:{BE174A1F-81A4-AD78-9032-E959A77B2249} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:6076 ProcessCreationTime:134247749663684059 SessionID:0 CreationTime:06-01-2026 08:09:26 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-06-01T08:09:26.762 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE 2026-06-01T08:09:26.809 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-01T08:09:26.809 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-01T08:09:27.277 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-01T08:09:27.496 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-01T08:09:27.496 [Cloud] Start of cloud request. Passive mode: 0 2026-06-01T08:09:27.496 [Cloud] Queued cloud request. 2026-06-01T08:09:27.496 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-01T08:09:27.496 [Cloud] Dequeued cloud request. 2026-06-01T08:09:27.527 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-01T08:09:27.652 [Cloud] End of cloud request. 2026-06-01T08:09:28.309 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-01T08:09:29.121 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-01T08:09:29.121 [Cloud] Start of cloud request. Passive mode: 0 2026-06-01T08:09:29.121 [Cloud] Queued cloud request. 2026-06-01T08:09:29.121 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-01T08:09:29.121 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-06-01T08:09:29.121 [Cloud] Dequeued cloud request. 2026-06-01T08:09:29.121 [Cloud] Start of cloud request. Passive mode: 0 2026-06-01T08:09:29.121 [Cloud] Queued cloud request. 2026-06-01T08:09:29.121 [Cloud] Dequeued cloud request. 2026-06-01T08:09:29.121 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-01T08:09:29.137 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-01T08:09:29.277 [Cloud] End of cloud request. 2026-06-01T08:09:29.293 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-01T08:09:29.293 [Cloud] End of cloud request. 2026-06-01T08:09:29.786 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-01T08:10:43.486 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6caf_0.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213164, FileId: 0x22000000029b91, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:10:52.873 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6cb5_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213185, FileId: 0x96000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:14:10.737 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6d0c_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213219, FileId: 0xa0000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:14:20.583 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6d12_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213242, FileId: 0xa7000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:15:35.515 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #213298, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:16:08.429 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6d40_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213329, FileId: 0x1c3000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:16:10.101 [RTP] [Mini-filter] Unsuccessful scan status(#300): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6d42_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213365, FileId: 0x1cf000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:16:11.775 [RTP] [Mini-filter] Unsuccessful scan status(#310): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6d44_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213398, FileId: 0x1da000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:18:01.938 [RTP] [Mini-filter] Unsuccessful scan status(#320): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6d7f_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213439, FileId: 0x1e7000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:18:11.495 [RTP] [Mini-filter] Unsuccessful scan status(#330): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6d85_3.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213461, FileId: 0x71000000029b91, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:19:01.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T08:21:31.034 [RTP] [Mini-filter] Unsuccessful scan status(#340): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6de3_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213493, FileId: 0x1f6000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:21:42.504 [RTP] [Mini-filter] Unsuccessful scan status(#350): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6dea_1.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213521, FileId: 0x83000000029b91, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:21:52.299 [RTP] [Mini-filter] Unsuccessful scan status(#360): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6df0_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213550, FileId: 0x207000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:23:28.548 [RTP] [Mini-filter] Unsuccessful scan status(#370): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6e18_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213597, FileId: 0x218000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:23:32.129 [RTP] [Mini-filter] Unsuccessful scan status(#380): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6e1b_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213639, FileId: 0x221000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:23:33.775 [RTP] [Mini-filter] Unsuccessful scan status(#390): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6e1d_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213678, FileId: 0x22e000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:25:46.477 [RTP] [Mini-filter] Unsuccessful scan status(#400): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6e70_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213754, FileId: 0x23a000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:25:55.946 [RTP] [Mini-filter] Unsuccessful scan status(#410): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6e76_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213777, FileId: 0x240000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:29:03.042 [RTP] [Mini-filter] Unsuccessful scan status(#420): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6ed0_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213820, FileId: 0x24c000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:29:15.448 [RTP] [Mini-filter] Unsuccessful scan status(#430): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6ed6_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213843, FileId: 0x252000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:31:04.369 [RTP] [Mini-filter] Unsuccessful scan status(#440): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6f03_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213888, FileId: 0x262000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:32:39.774 [RTP] [Mini-filter] Unsuccessful scan status(#450): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6f39_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213925, FileId: 0x26e000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:32:51.413 [RTP] [Mini-filter] Unsuccessful scan status(#460): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6f40_1.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213954, FileId: 0xfb000000029b91, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:33:03.115 [RTP] [Mini-filter] Unsuccessful scan status(#470): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6f46_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #213979, FileId: 0x27e000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:34:06.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T08:36:12.157 [RTP] [Mini-filter] Unsuccessful scan status(#480): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6f9e_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214015, FileId: 0x289000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:36:21.825 [RTP] [Mini-filter] Unsuccessful scan status(#490): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6fa4_4.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214035, FileId: 0x112000000029b91, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:38:07.218 [RTP] [Mini-filter] Unsuccessful scan status(#500): \Device\HarddiskVolume2\xampp\tmp\#sqla80_6fd2_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214086, FileId: 0x2a0000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:39:51.703 [RTP] [Mini-filter] Unsuccessful scan status(#510): \Device\HarddiskVolume2\xampp\tmp\#sqla80_700f_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214145, FileId: 0x2b3000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:40:11.684 [RTP] [Mini-filter] Unsuccessful scan status(#520): \Device\HarddiskVolume2\xampp\tmp\#sqla80_701b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214182, FileId: 0x2bd000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:43:23.033 [RTP] [Mini-filter] Unsuccessful scan status(#530): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7075_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214220, FileId: 0x2c9000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:43:33.047 [RTP] [Mini-filter] Unsuccessful scan status(#540): \Device\HarddiskVolume2\xampp\tmp\#sqla80_707b_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214243, FileId: 0x2cf000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:45:13.611 [RTP] [Mini-filter] Unsuccessful scan status(#550): \Device\HarddiskVolume2\xampp\tmp\#sqla80_70a7_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214278, FileId: 0x2da000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:46:59.883 [RTP] [Mini-filter] Unsuccessful scan status(#560): \Device\HarddiskVolume2\xampp\tmp\#sqla80_70e6_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214331, FileId: 0x2ea000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:47:11.313 [RTP] [Mini-filter] Unsuccessful scan status(#570): \Device\HarddiskVolume2\xampp\tmp\#sqla80_70ed_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214363, FileId: 0x2f4000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:47:23.839 [RTP] [Mini-filter] Unsuccessful scan status(#580): \Device\HarddiskVolume2\xampp\tmp\#sqla80_70f5_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214387, FileId: 0x2fb000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:49:11.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T08:50:35.615 [RTP] [Mini-filter] Unsuccessful scan status(#590): \Device\HarddiskVolume2\xampp\tmp\#sqla80_714d_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214425, FileId: 0x305000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:50:45.459 [RTP] [Mini-filter] Unsuccessful scan status(#600): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7153_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214448, FileId: 0x30b000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:52:30.116 [RTP] [Mini-filter] Unsuccessful scan status(#610): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7180_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214493, FileId: 0x31b000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:54:12.760 [RTP] [Mini-filter] Unsuccessful scan status(#620): \Device\HarddiskVolume2\xampp\tmp\#sqla80_71bf_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214537, FileId: 0x329000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:54:23.919 [RTP] [Mini-filter] Unsuccessful scan status(#630): \Device\HarddiskVolume2\xampp\tmp\#sqla80_71c6_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214559, FileId: 0x330000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:58:55.206 [RTP] [Mini-filter] Unsuccessful scan status(#640): \Device\HarddiskVolume2\xampp\tmp\#sqla80_722d_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214599, FileId: 0x339000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:59:06.515 [RTP] [Mini-filter] Unsuccessful scan status(#650): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7234_1.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214634, FileId: 0x1c8000000029b91, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T08:59:16.089 [RTP] [Mini-filter] Unsuccessful scan status(#660): \Device\HarddiskVolume2\xampp\tmp\#sqla80_723a_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214655, FileId: 0x34a000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:01:26.705 [RTP] [Mini-filter] Unsuccessful scan status(#670): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7266_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214697, FileId: 0x359000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:01:29.274 [RTP] [Mini-filter] Unsuccessful scan status(#680): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7268_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214730, FileId: 0x364000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:03:58.412 [RTP] [Mini-filter] Unsuccessful scan status(#690): \Device\HarddiskVolume2\xampp\tmp\#sqla80_72d6_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214766, FileId: 0x36f000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:04:16.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T09:04:17.754 [RTP] [Mini-filter] Unsuccessful scan status(#700): \Device\HarddiskVolume2\xampp\tmp\#sqla80_72e2_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214789, FileId: 0x375000000027947, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:09:40.144 [RTP] [Mini-filter] Unsuccessful scan status(#710): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7349_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214853, FileId: 0x5400000002930c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:09:49.958 [RTP] [Mini-filter] Unsuccessful scan status(#720): \Device\HarddiskVolume2\xampp\tmp\#sqla80_734f_4.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214882, FileId: 0x2c000000029926, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:11:35.540 [RTP] [Mini-filter] Unsuccessful scan status(#730): \Device\HarddiskVolume2\xampp\tmp\#sqla80_737b_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214918, FileId: 0x6900000002930c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:11:38.990 [RTP] [Mini-filter] Unsuccessful scan status(#740): \Device\HarddiskVolume2\xampp\tmp\#sqla80_737e_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214957, FileId: 0x7600000002930c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:11:40.626 [RTP] [Mini-filter] Unsuccessful scan status(#750): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7380_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #214987, FileId: 0x8000000002930c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:11:42.266 [RTP] [Mini-filter] Unsuccessful scan status(#760): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7382_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215021, FileId: 0x8b00000002930c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:11:43.944 [RTP] [Mini-filter] Unsuccessful scan status(#770): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7384_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215060, FileId: 0x9800000002930c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:13:56.479 [RTP] [Mini-filter] Unsuccessful scan status(#780): \Device\HarddiskVolume2\xampp\tmp\#sqla80_73cb_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215097, FileId: 0xa300000002930c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:14:05.979 [RTP] [Mini-filter] Unsuccessful scan status(#790): \Device\HarddiskVolume2\xampp\tmp\#sqla80_73d1_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215119, FileId: 0xa900000002930c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:17:27.552 [RTP] [Mini-filter] Unsuccessful scan status(#800): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7428_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215169, FileId: 0xb2000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:17:39.190 [RTP] [Mini-filter] Unsuccessful scan status(#810): \Device\HarddiskVolume2\xampp\tmp\#sqla80_742f_2.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215201, FileId: 0x20a000000029b91, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:17:48.570 [RTP] [Mini-filter] Unsuccessful scan status(#820): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7435_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215226, FileId: 0xc3000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:19:21.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T09:19:33.982 [RTP] [Mini-filter] Unsuccessful scan status(#830): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7461_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215273, FileId: 0xd4000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:21:27.590 [RTP] [Mini-filter] Unsuccessful scan status(#840): \Device\HarddiskVolume2\xampp\tmp\#sqla80_749e_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215308, FileId: 0xdf000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:21:39.495 [RTP] [Mini-filter] Unsuccessful scan status(#850): \Device\HarddiskVolume2\xampp\tmp\#sqla80_74a5_1.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215339, FileId: 0x236000000029b91, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:21:49.003 [RTP] [Mini-filter] Unsuccessful scan status(#860): \Device\HarddiskVolume2\xampp\tmp\#sqla80_74ab_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215359, FileId: 0xee000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:25:11.704 [RTP] [Mini-filter] Unsuccessful scan status(#870): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7504_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215396, FileId: 0xf9000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:25:21.309 [RTP] [Mini-filter] Unsuccessful scan status(#880): \Device\HarddiskVolume2\xampp\tmp\#sqla80_750a_4.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215419, FileId: 0x24d000000029b91, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:27:01.275 [RTP] [Mini-filter] Unsuccessful scan status(#890): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7535_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215451, FileId: 0x109000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:27:04.687 [RTP] [Mini-filter] Unsuccessful scan status(#900): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7538_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215484, FileId: 0x114000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:28:50.038 [RTP] [Mini-filter] Unsuccessful scan status(#910): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7576_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215523, FileId: 0x120000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:28:59.774 [RTP] [Mini-filter] Unsuccessful scan status(#920): \Device\HarddiskVolume2\xampp\tmp\#sqla80_757c_4.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215548, FileId: 0x275000000029b91, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:32:19.633 [RTP] [Mini-filter] Unsuccessful scan status(#930): \Device\HarddiskVolume2\xampp\tmp\#sqla80_75df_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215582, FileId: 0x131000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:32:31.021 [RTP] [Mini-filter] Unsuccessful scan status(#940): \Device\HarddiskVolume2\xampp\tmp\#sqla80_75e6_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215608, FileId: 0x139000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:34:14.080 [RTP] [Mini-filter] Unsuccessful scan status(#950): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7612_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215646, FileId: 0x144000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:34:16.104 [RTP] [Mini-filter] Unsuccessful scan status(#960): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7614_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215679, FileId: 0x14f000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:34:20.743 [RTP] [Mini-filter] Unsuccessful scan status(#970): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7619_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215748, FileId: 0x166000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:34:26.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T09:37:15.662 [RTP] [Mini-filter] Unsuccessful scan status(#980): \Device\HarddiskVolume2\xampp\tmp\#sqla80_76b0_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215803, FileId: 0x177000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:37:25.371 [RTP] [Mini-filter] Unsuccessful scan status(#990): \Device\HarddiskVolume2\xampp\tmp\#sqla80_76b6_4.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215823, FileId: 0x2ca000000029b91, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:39:13.154 [RTP] [Mini-filter] Unsuccessful scan status(#1000): \Device\HarddiskVolume2\xampp\tmp\#sqla80_76e5_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #215869, FileId: 0x18c000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:41:29.926 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 2266, Count: 2337, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\headlines.ibd, EstimatedImpact: 0% 2026-06-01T09:41:29.926 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1117, Count: 126, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\header.tpl.php, EstimatedImpact: 0% 2026-06-01T09:41:29.926 ProcessImageName: wacs.exe, Pid: 6076, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-01T09:41:29.926 ProcessImageName: updater.exe, Pid: 1300, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T09:41:29.926 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-01T09:41:29.926 ProcessImageName: updater.exe, Pid: 4340, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc1596bc-3317-42cb-9a83-822da3c9462a.tmp, EstimatedImpact: 0% 2026-06-01T09:49:28.143 [RTP] [Mini-filter] Unsuccessful scan status(#1100): \Device\HarddiskVolume2\xampp\tmp\#sqla80_78a4_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #216197, FileId: 0x1e0000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T09:49:31.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T09:57:46.428 [RTP] [Mini-filter] Unsuccessful scan status(#1200): \Device\HarddiskVolume2\xampp\tmp\#sqla80_79db_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #216550, FileId: 0x24e000000029a79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T10:04:22.992 Job Notification: Process exited from job (5856) 2026-06-01T10:04:36.617 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T10:11:35.554 [RTP] [Mini-filter] Unsuccessful scan status(#1300): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7afe_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #217029, FileId: 0x7000000002be4e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T10:19:41.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T10:24:59.148 [RTP] [Mini-filter] Unsuccessful scan status(#1400): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7bda_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #217327, FileId: 0xd300000002930c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T10:34:46.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T10:41:59.961 [RTP] [Mini-filter] Unsuccessful scan status(#1500): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7cfa_0.MAD. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #217627, FileId: 0x1f500000002c267, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T10:49:51.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T10:55:45.240 [RTP] [Mini-filter] Unsuccessful scan status(#1600): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7e4a_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #217919, FileId: 0x18600000002930c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T11:04:56.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T11:20:01.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T11:26:48.710 [RTP] [Mini-filter] Unsuccessful scan status(#1700): \Device\HarddiskVolume2\xampp\tmp\#sqla80_7f22_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #219909, FileId: 0x129000000029797, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T11:35:06.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T11:39:25.229 [RTP] [Mini-filter] Unsuccessful scan status(#1800): \Device\HarddiskVolume2\xampp\tmp\#sqla80_80cb_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #220243, FileId: 0x18f000000029797, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T11:41:29.939 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 45854, Count: 6423, MaxTime: 203, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-06-01T11:41:29.939 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 3872, Count: 4126, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\headlines.ibd, EstimatedImpact: 0% 2026-06-01T11:41:29.939 ProcessImageName: wacs.exe, Pid: 6076, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-01T11:41:29.939 ProcessImageName: updater.exe, Pid: 1300, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T11:41:29.939 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-01T11:41:29.939 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd85b8fd-4325-4643-9f3b-70c558da4b84.tmp, EstimatedImpact: 0% 2026-06-01T11:41:29.939 ProcessImageName: updater.exe, Pid: 4340, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc1596bc-3317-42cb-9a83-822da3c9462a.tmp, EstimatedImpact: 0% 2026-06-01T11:41:29.939 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cad0a9c5-f956-40bf-8315-b6e8e3ce1663.tmp, EstimatedImpact: 0% 2026-06-01T11:50:11.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T11:50:22.522 [RTP] [Mini-filter] Unsuccessful scan status(#1900): \Device\HarddiskVolume2\xampp\tmp\#sqla80_820d_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #220596, FileId: 0x1ff000000029797, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T12:05:16.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T12:05:23.716 [RTP] [Mini-filter] Unsuccessful scan status(#2000): \Device\HarddiskVolume2\xampp\tmp\#sqla80_838a_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #220927, FileId: 0x260000000029797, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T12:16:57.465 [RTP] [Mini-filter] Unsuccessful scan status(#2100): \Device\HarddiskVolume2\xampp\tmp\#sqla80_84b0_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #221260, FileId: 0x1f10000000297eb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T12:20:21.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T12:30:44.198 [RTP] [Mini-filter] Unsuccessful scan status(#2200): \Device\HarddiskVolume2\xampp\tmp\#sqla80_862f_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #221585, FileId: 0x24c0000000297eb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T12:35:26.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T12:48:27.837 [RTP] [Mini-filter] Unsuccessful scan status(#2300): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8799_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #221932, FileId: 0x2b10000000297eb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T12:50:31.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T13:03:58.097 [RTP] [Mini-filter] Unsuccessful scan status(#2400): \Device\HarddiskVolume2\xampp\tmp\#sqla80_88c4_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #222289, FileId: 0x31b0000000297eb, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T13:05:36.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T13:20:41.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T13:20:48.169 [RTP] [Mini-filter] Unsuccessful scan status(#2500): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8a05_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #222616, FileId: 0x2c0000000029797, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T13:35:46.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T13:39:39.247 [RTP] [Mini-filter] Unsuccessful scan status(#2600): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8b48_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #222939, FileId: 0x317000000029797, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T13:41:29.945 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 45914, Count: 6433, MaxTime: 203, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-06-01T13:41:29.945 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 5687, Count: 5745, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\headlines.ibd, EstimatedImpact: 0% 2026-06-01T13:41:29.945 ProcessImageName: wacs.exe, Pid: 6076, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-01T13:41:29.945 ProcessImageName: updater.exe, Pid: 6108, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a8b4a3c-719a-4df9-8b13-330378d96015.tmp, EstimatedImpact: 0% 2026-06-01T13:41:29.945 ProcessImageName: updater.exe, Pid: 1300, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T13:41:29.945 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-01T13:41:29.945 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd85b8fd-4325-4643-9f3b-70c558da4b84.tmp, EstimatedImpact: 0% 2026-06-01T13:41:29.945 ProcessImageName: updater.exe, Pid: 4340, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc1596bc-3317-42cb-9a83-822da3c9462a.tmp, EstimatedImpact: 0% 2026-06-01T13:41:29.945 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cad0a9c5-f956-40bf-8315-b6e8e3ce1663.tmp, EstimatedImpact: 0% 2026-06-01T13:41:29.945 ProcessImageName: updater.exe, Pid: 1708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce955469-b18c-458c-a575-24a2f3856cf1.tmp, EstimatedImpact: 0% 2026-06-01T13:50:51.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T14:05:56.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T14:11:48.070 [RTP] [Mini-filter] Unsuccessful scan status(#2700): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8d07_0.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #223494, FileId: 0x5300000002c3dc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T14:21:01.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T14:36:06.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T14:51:11.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T15:06:16.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T15:21:21.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T15:36:26.820 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T15:41:29.945 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 45929, Count: 6436, MaxTime: 203, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-06-01T15:41:29.945 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 6497, Count: 6322, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\headlines.ibd, EstimatedImpact: 0% 2026-06-01T15:41:29.945 ProcessImageName: wacs.exe, Pid: 6076, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-01T15:41:29.945 ProcessImageName: updater.exe, Pid: 6108, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a8b4a3c-719a-4df9-8b13-330378d96015.tmp, EstimatedImpact: 0% 2026-06-01T15:41:29.945 ProcessImageName: updater.exe, Pid: 1300, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T15:41:29.945 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-01T15:41:29.945 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd85b8fd-4325-4643-9f3b-70c558da4b84.tmp, EstimatedImpact: 0% 2026-06-01T15:41:29.945 ProcessImageName: updater.exe, Pid: 4340, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc1596bc-3317-42cb-9a83-822da3c9462a.tmp, EstimatedImpact: 0% 2026-06-01T15:41:29.945 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cad0a9c5-f956-40bf-8315-b6e8e3ce1663.tmp, EstimatedImpact: 0% 2026-06-01T15:41:29.945 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3b6a21-2f0b-4e2f-b0ff-70376ac2ec90.tmp, EstimatedImpact: 0% 2026-06-01T15:41:29.945 ProcessImageName: updater.exe, Pid: 1708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce955469-b18c-458c-a575-24a2f3856cf1.tmp, EstimatedImpact: 0% 2026-06-01T15:41:29.945 ProcessImageName: updater.exe, Pid: 1632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8daf385a-7eab-4bb5-9b97-08ae88abca09.tmp, EstimatedImpact: 0% 2026-06-01T15:51:31.570 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T16:06:36.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T16:14:44.169 [AutoPurge] Verification Routine tasks have started.ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-06-01T16:14:44.481 EnsureProtectedFolderAcls(), hr = 0x0 2026-06-01T16:14:44.481 [AutoPurge] MpReinforceServiceAcls: 0 2026-06-01T16:14:44.497 [AutoPurge] Readded platform files to MOAC after ACL enforcement. hr=0 2026-06-01T16:14:44.560 [AutoPurge] Removing expired default signature package ... 2026-06-01T16:14:44.763 [AutoPurge] Routine task for Cache Maintenance has started. 2026-06-01T16:14:44.763 [AutoPurge] Routine task for Cache Maintenance ... 2026-06-01T16:14:44.763 [AutoPurge] Routine task for MpSFCBuild ... 2026-06-01T16:14:44.763 [AutoPurge] MpCmIsBuildCompleted() - S_OK 2026-06-01T16:14:44.763 [AutoPurge] MpSignalMaintenanceMode ... 2026-06-01T16:14:44.763 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:44.794 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:44.810 [AutoPurge] Cleanup Routine tasks have started. 2026-06-01T16:14:44.825 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:44.841 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:44.856 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:44.872 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:44.903 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:44.919 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:44.935 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:44.950 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:44.966 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:45.013 Detection State: Finished(0) Failed(0) CriticalFailed(0) Additional Actions(0) 2026-06-01T16:14:45.013 [AutoPurge] Purged 0 expired detection item(s) from a total of 0. 2026-06-01T16:14:45.013 [AutoPurge] 0 expired file(s) deleted under C:\ProgramData\Microsoft\Windows Defender\Scans\History\Store (total: 0, expiration in 86400 seconds) Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:65538 Start time:06-01-2026 16:14:45 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:06-01-2026 16:14:45 2026-06-01T16:14:45.028 [PlatUpd] Purging orphaned platform update directories under C:\ProgramData\Microsoft\Windows Defender\Platform ... 2026-06-01T16:14:45.028 [PlatUpd] Not purging current location C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0 ... 2026-06-01T16:14:45.028 [PlatUpd] Not purging backup location C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0 ... 2026-06-01T16:14:45.028 [PlatUpd] Deleting orphaned platform update directory C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0 ... 2026-06-01T16:14:45.044 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:45.060 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:45.075 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:45.106 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:45.106 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-06-01T16:14:45.122 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:45.122 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-01T16:14:45.122 [RTP] [RtpConfig] Config change detected, type: 2 2026-06-01T16:14:45.122 [RTP] [RtpConfig] Config change detected, type: 4096 2026-06-01T16:14:45.122 [RTP] [RtpConfig] Config change detected, type: 4 2026-06-01T16:14:45.122 [RTP] [RtpConfig] Config change detected, type: 8 2026-06-01T16:14:45.122 [RTP] [RtpConfig] Config change detected, type: 16 2026-06-01T16:14:45.122 [RTP] [RtpConfig] Config change detected, type: 1024 2026-06-01T16:14:45.122 [RTP] [RtpConfig] Config change detected, type: 2048 2026-06-01T16:14:45.122 [RTP] Setting DisableAsyncScanOnClose to 0 (hr=0). 2026-06-01T16:14:45.122 [RTP] Setting DisableAsyncScanOnOpen to 0 in wdfilter (hr=0). 2026-06-01T16:14:45.122 [RTP] Setting FilterExperimentMode to 0 (hr=0). 2026-06-01T16:14:45.122 [RTP] Setting DisableDriverUnload to 1 (hr=0). 2026-06-01T16:14:45.122 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-06-01T16:14:45.122 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-06-01T16:14:45.122 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-06-01T16:14:45.122 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-06-01T16:14:45.122 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-06-01T16:14:45.122 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-06-01T16:14:45.122 [RTP] [RTP] LastAccessTimeSuppression for network files is enabled by configuration. 2026-06-01T16:14:45.122 [RTP] [RtpConfig] Config change detected, type: 64 2026-06-01T16:14:45.138 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:45.153 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:45.169 [PlatUpd] Deleting orphaned platform update directory C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0 ... 2026-06-01T16:14:45.185 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:45.200 Engine:EMS scan for process: svchost pid: 2820, sigseq: 0x0, sendMemoryScanReport: 0, source: 18 2026-06-01T16:14:45.231 QuickScan:ScanID:8B68DBB1-F2E1-D1AC-FD10-CFA291AF8FFB: Quick scan finished with error 0 2026-06-01T16:14:45.247 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-01T16:14:45.247 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-01T16:14:45.263 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-01T16:14:45.263 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-01T16:14:45.263 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-01T16:14:45.747 [PlatUpd] Purging orphaned platform update directories under C:\Program Files\Windows Defender\Platform ... 2026-06-01T16:14:45.747 [AutoPurge] Cleanup Routine tasks have ended. 2026-06-01T16:14:46.778 [AutoPurge] Verification Routine tasks have ended. 2026-06-01T16:14:47.731 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hu-hu_de9904eb1acc35ce\bootmgr.efi.mui", hr=0x0 2026-06-01T16:14:48.185 [RTP] Duplicating the current plugin configuration object... 2026-06-01T16:14:48.185 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-01T16:14:48.185 [RTP] Updating plugin configuration due to recent config changes (0x43e) ... 2026-06-01T16:14:48.185 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-01T16:14:48.185 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-06-01T16:14:48.185 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x43e, Changed: 0x218 2026-06-01T16:14:50.060 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-gb_ed1cf6a2484aaae6\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:14:50.513 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\ko-kr\memtest.efi.mui", hr=0x0 2026-06-01T16:14:50.638 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_es-es_f4710ea4439a5050\bootmgr.efi.mui", hr=0x0 2026-06-01T16:14:53.325 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_et-ee_ee30da3447a02cdf\bootmgr.efi.mui", hr=0x0 2026-06-01T16:14:53.872 Engine:Setting original file name "spwizres.dll" for "c:\windows\winsxs\x86_microsoft-windows-s..on-wizard-framework_31bf3856ad364e35_10.0.14393.4169_none_cff66023f3ab495c\spwizimg.dll", hr=0x0 2026-06-01T16:14:53.888 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_et-ee_ee30da3447a02cdf\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:14:54.560 Engine:Setting original file name "RRASUPG.DLL" for "c:\windows\system32\setup\rasmigplugin.dll", hr=0x0 2026-06-01T16:14:56.528 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_es-es_3685e97c1a581602\memtest.exe.mui", hr=0x0 2026-06-01T16:14:56.700 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-gb_ed1cf6a2484aaae6\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:14:56.997 Engine:Setting original file name "Windows.Security.Credentials.UI.CredentialPicker.exe" for "c:\windows\system32\windows.security.credentials.ui.credentialpicker.dll", hr=0x0 2026-06-01T16:14:57.403 Engine:Setting original file name "kernel32" for "c:\windows\system32\kernel32.dll", hr=0x0 2026-06-01T16:14:58.294 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\zh-tw\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:14:59.466 Engine:Setting original file name "extractr.exe" for "c:\windows\system32\wimserv.exe", hr=0x0 2026-06-01T16:14:59.747 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_nl-nl_efc67df6a3392064\memtest.exe.mui", hr=0x0 2026-06-01T16:15:00.544 Engine:Setting original file name "AM_Delta_Patch_1.449.551.0.exe" for "c:\windows\softwaredistribution\download\837f614923c1f563437d3937e80b4981c8b6906b", hr=0x0 2026-06-01T16:15:00.716 Engine:Setting original file name "BCP47Lang.dll" for "c:\windows\system32\bcp47langs.dll", hr=0x0 2026-06-01T16:15:01.482 Engine:Setting original file name "rundll32.exe" for "c:\windows\syswow64\rundll32.exe", hr=0x0 2026-06-01T16:15:01.935 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\lt-lt\bootmgr.efi.mui", hr=0x0 2026-06-01T16:15:02.278 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\lt-lt\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:02.278 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_pl-pl_3602d878885b8e18\memtest.exe.mui", hr=0x0 2026-06-01T16:15:02.669 Engine:Setting original file name "mavinject32.exe" for "c:\windows\winsxs\wow64_microsoft-windows-appmanagement-appvwow_31bf3856ad364e35_10.0.14393.9140_none_334f62fd8157e09d\mavinject.exe", hr=0x0 2026-06-01T16:15:03.388 Engine:Setting original file name "MSCORLIB.DLL" for "c:\windows\microsoft.net\framework\v4.0.30319\mscorlib.tlb", hr=0x0 2026-06-01T16:15:03.419 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\pl-pl\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:03.841 Engine:Setting original file name "PRINTUI.DLL.MUI" for "c:\windows\winsxs\x86_microsoft-windows-p..i-ntprint.resources_31bf3856ad364e35_10.0.14393.1715_en-us_8c5be0c3586518d8\ntprint.dll.mui", hr=0x0 2026-06-01T16:15:04.044 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_bg-bg_0645efc96ef12622\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:04.357 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rd8f0uq.dll", hr=0x0 2026-06-01T16:15:04.575 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_es-es_e73f22168808f16f\msprivs.dll.mui", hr=0x0 2026-06-01T16:15:04.747 Engine:Setting original file name "MSCOREE.DLL" for "c:\windows\microsoft.net\framework\v4.0.30319\mscoree.tlb", hr=0x0 2026-06-01T16:15:04.903 Engine:Setting original file name "WinSetupUI.exe" for "c:\windows\system32\winsetupui.dll", hr=0x0 2026-06-01T16:15:05.388 Engine:Setting original file name "AM_Delta_Patch_1.449.593.0.exe" for "c:\windows\softwaredistribution\download\aad199b8153120bc1097deafb315fbc7345d091a", hr=0x0 2026-06-01T16:15:05.419 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\zh-hk\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:06.638 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-file-l2-1-0.dll", hr=0x0 2026-06-01T16:15:07.372 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\el-gr\memtest.efi.mui", hr=0x0 2026-06-01T16:15:07.575 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\es-mx\bootmgr.efi.mui", hr=0x0 2026-06-01T16:15:07.935 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_es-es_f4710ea4439a5050\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:07.935 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_ko-kr_08f4b183c9e7ead3\memtest.exe.mui", hr=0x0 2026-06-01T16:15:08.107 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\amd64_netfx4-scripting_engine_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_414026caf1235658\microsoft.jscript.tlb", hr=0x0 2026-06-01T16:15:08.216 Engine:Setting original file name "bootres" for "c:\windows\winsxs\amd64_microsoft-windows-bootres.resources_31bf3856ad364e35_10.0.14393.479_en-us_1b80fad7f4a09a1e\bootres.dll.mui", hr=0x0 2026-06-01T16:15:08.263 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_pl-pl_386c667c364e4c99\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:09.560 Engine:Setting original file name "msvcr100_clr0400.dll" for "c:\xampp\apache\bin\msvcr100.dll", hr=0x0 2026-06-01T16:15:09.747 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_ru-ru_824532501928de85\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:10.044 Engine:Setting original file name "Placeholder.dll" for "c:\windows\microsoft.net\framework64\v4.0.30319\wpf\penimc_v0400.dll", hr=0x0 2026-06-01T16:15:10.075 Engine:Setting original file name "dnsapi" for "c:\windows\system32\dnsapi.dll", hr=0x0 2026-06-01T16:15:10.138 Engine:Setting original file name "AM_Engine_Patch_1.1.26030.3008.exe" for "c:\windows\softwaredistribution\download\914a38a224d99aca1925d800c009cce2bf8c3e07", hr=0x0 2026-06-01T16:15:10.591 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\de-de\msprivs.dll.mui", hr=0x0 2026-06-01T16:15:10.778 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sl-si_dbf3efd98a2c5f5f\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:10.857 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\cs-cz\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:10.888 Engine:Setting original file name "Vulkan Runtime" for "c:\program files (x86)\google\chrome\application\148.0.7778.179\vulkan-1.dll", hr=0x0 2026-06-01T16:15:11.450 Engine:Setting original file name "dnsapi" for "c:\windows\winsxs\wow64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.14393.7693_none_156ff427b23b125d\dnsapi.dll", hr=0x0 2026-06-01T16:15:11.622 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_hu-hu_20addfc2f189fb80\memtest.exe.mui", hr=0x0 2026-06-01T16:15:11.653 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sk-sk_dce1ce2189924c7c\bootmgr.efi.mui", hr=0x0 2026-06-01T16:15:11.700 Engine:Setting original file name "xpprof32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\xpprof64.dll", hr=0x0 2026-06-01T16:15:12.013 Engine:Setting original file name "audioadg.exe" for "c:\windows\system32\audiodg.exe", hr=0x0 2026-06-01T16:15:12.013 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\pl-pl\msprivs.dll.mui", hr=0x0 2026-06-01T16:15:12.107 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\da-dk\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:12.325 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_sr-..-rs_c6a2c0f983ee8ac3\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:12.482 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\pt-pt\memtest.efi.mui", hr=0x0 2026-06-01T16:15:12.903 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-processthreads-l1-1-0.dll", hr=0x0 2026-06-01T16:15:13.044 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nb-no_af7257e0cb4f50dd\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:13.685 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\syswow64\mp43decd.dll", hr=0x0 2026-06-01T16:15:14.044 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nl-nl_adb1a31ecc7b5ab2\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:14.200 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-utility-l1-1-0.dll", hr=0x0 2026-06-01T16:15:14.466 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rhp5zg2.dll", hr=0x0 2026-06-01T16:15:14.528 Engine:Setting original file name "System.Runtime" for "c:\windows\microsoft.net\assembly\gac_msil\system.runtime\v4.0_4.0.0.0__b03f5f7f11d50a3a\system.runtime.dll", hr=0x0 2026-06-01T16:15:14.575 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_lt-lt_6aab02ace551f0be\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:14.653 Engine:Setting original file name "AM_Delta_Patch_1.449.644.0.exe" for "c:\windows\softwaredistribution\download\d2d3847cd0413c8f1a1e7d2ac29b101392378d47", hr=0x0 2026-06-01T16:15:15.013 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-filesystem-l1-1-0.dll", hr=0x0 2026-06-01T16:15:15.247 Engine:Setting original file name "ISOLMIG.DLL" for "c:\windows\system32\migisol.dll", hr=0x0 2026-06-01T16:15:15.653 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\pl-pl\memtest.efi.mui", hr=0x0 2026-06-01T16:15:16.075 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-sysinfo-l1-1-0.dll", hr=0x0 2026-06-01T16:15:16.075 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\zh-hk\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:16.482 Engine:Setting original file name "AM_Delta_Patch_1.449.534.0.exe" for "c:\windows\softwaredistribution\download\9dda15f4fb743a5d108e327cb780b51974448aca", hr=0x0 2026-06-01T16:15:16.685 Engine:Setting original file name "WindowsCodecs" for "c:\windows\winsxs\wow64_microsoft-windows-windowscodec_31bf3856ad364e35_10.0.14393.9060_none_16a41eb030055032\windowscodecs.dll", hr=0x0 2026-06-01T16:15:16.794 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\pcat\qps-ploc\memtest.exe.mui", hr=0x0 2026-06-01T16:15:16.903 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_zh-tw_9a3d345bfec3dadf\memtest.exe.mui", hr=0x0 2026-06-01T16:15:17.028 Engine:Setting original file name "AM_Delta_Patch_1.449.676.0.exe" for "c:\windows\softwaredistribution\download\72254fd91756656688824d7fbc19b062cfb623e0", hr=0x0 2026-06-01T16:15:17.122 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\lv-lv\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:17.263 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hu-hu_de9904eb1acc35ce\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:17.669 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnhupnp.dll", hr=0x0 2026-06-01T16:15:18.685 Engine:Setting original file name "MicrosoftRawCodec" for "c:\windows\winsxs\wow64_microsoft-windows-windowscodecraw_31bf3856ad364e35_10.0.14393.5501_none_14dba92e46d1ced2\windowscodecsraw.dll", hr=0x0 2026-06-01T16:15:18.732 Engine:Setting original file name "WerMgr" for "c:\windows\syswow64\wermgr.exe", hr=0x0 2026-06-01T16:15:19.247 Engine:Setting original file name "vsce-sign.dll" for "c:\program files\microsoft vs code\resources\app\node_modules.asar.unpacked\node-vsce-sign\bin\vsce-sign.exe", hr=0x0 2026-06-01T16:15:19.778 Engine:Setting original file name "k5sprt32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\k5sprt64.dll", hr=0x0 2026-06-01T16:15:19.825 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sl-si_dbf3efd98a2c5f5f\bootmgr.efi.mui", hr=0x0 2026-06-01T16:15:19.950 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hr-hr_dd64df251b8ed466\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:20.138 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\da-dk\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:20.388 Engine:Setting original file name "krbcc32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\krbcc64.dll", hr=0x0 2026-06-01T16:15:21.028 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\da-dk\memtest.efi.mui", hr=0x0 2026-06-01T16:15:21.138 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_nb-no_a2406b530fbdf1fc\msprivs.dll.mui", hr=0x0 2026-06-01T16:15:21.497 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnhupnp.dll", hr=0x0 2026-06-01T16:15:21.575 Engine:Setting original file name "AM_Base_Patch1.exe" for "c:\windows\softwaredistribution\download\1d0e0fc4b85982d882c2ebba9838396fcd4b99db", hr=0x0 2026-06-01T16:15:21.622 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ko-kr_c6dfd6abf32a2521\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:21.653 Engine:Setting original file name "imm32" for "c:\windows\system32\imm32.dll", hr=0x0 2026-06-01T16:15:21.685 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-console-l1-1-0.dll", hr=0x0 2026-06-01T16:15:22.591 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_it-it_81507aea0d9e4c30\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:22.653 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_ro-ro_7fdce6c41aae1bb5\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:22.794 Engine:Setting original file name "System.Windows.Forms.dll" for "c:\windows\winsxs\amd64_netfx4-sys_windows_forms_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_66f5a950fbd66177\system.windows.forms.tlb", hr=0x0 2026-06-01T16:15:23.388 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\zh-cn\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:23.435 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\es-es\memtest.efi.mui", hr=0x0 2026-06-01T16:15:23.622 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_nb-no_f18732b8a20d168f\memtest.exe.mui", hr=0x0 2026-06-01T16:15:23.778 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\zh-tw\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:23.982 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\de-de\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:24.653 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\cs-cz\memtest.efi.mui", hr=0x0 2026-06-01T16:15:25.216 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnsvr.exe", hr=0x0 2026-06-01T16:15:25.232 Engine:Setting original file name "AuditPolicyGP.DLL.MUI" for "c:\windows\winsxs\wow64_microsoft-windows-a..in-native.resources_31bf3856ad364e35_10.0.14393.8688_en-us_9eb35eb78ae63ec8\auditpolicygpinterop.dll.mui", hr=0x0 2026-06-01T16:15:25.232 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_uk-ua_1eaee0d7718e8cea\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:26.044 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\tr-tr\bootmgr.efi.mui", hr=0x0 2026-06-01T16:15:26.153 Engine:Setting original file name "rdvgogl32.dll" for "c:\windows\syswow64\en-us\rdvgogl32.dll.mui", hr=0x0 2026-06-01T16:15:26.185 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\pt-pt\msprivs.dll.mui", hr=0x0 2026-06-01T16:15:26.622 Engine:Setting original file name "WindowsCodecs" for "c:\windows\system32\windowscodecs.dll", hr=0x0 2026-06-01T16:15:26.841 Engine:Setting original file name "PSAPI" for "c:\windows\system32\psapi.dll", hr=0x0 2026-06-01T16:15:27.232 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_uk-ua_1eaee0d7718e8cea\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:27.325 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_et-ee_ee30da3447a02cdf\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:27.794 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ko-kr_c6dfd6abf32a2521\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:28.122 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sk-sk_dce1ce2189924c7c\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:28.169 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_da-dk_415759fd972d9f6b\msprivs.dll.mui", hr=0x0 2026-06-01T16:15:28.591 Engine:Setting original file name "AppVEntSubsystems.dll" for "c:\windows\winsxs\wow64_microsoft-windows-appmanagement-appvwow_31bf3856ad364e35_10.0.14393.9140_none_334f62fd8157e09d\appventsubsystems32.dll", hr=0x0 2026-06-01T16:15:28.591 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rrpyj42.dll", hr=0x0 2026-06-01T16:15:28.622 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\zh-tw\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:28.997 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-processenvironment-l1-1-0.dll", hr=0x0 2026-06-01T16:15:28.997 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\es-mx\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:29.122 Engine:Setting original file name "user32" for "c:\windows\winsxs\wow64_microsoft-windows-user32_31bf3856ad364e35_10.0.14393.9140_none_4d4e02f6fc4d9aac\user32.dll", hr=0x0 2026-06-01T16:15:30.310 Engine:Setting original file name "CMMIGR.DLL" for "c:\windows\syswow64\setup\pbkmigr.dll", hr=0x0 2026-06-01T16:15:30.935 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\sv-se\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:31.278 Engine:Setting original file name "MSDIA90.DLL" for "c:\windows\installer\$patchcache$\managed\6f9e66ff7e38e3a3fa41d89e8a906a4a\9.0.21022\fl_msdia71_dll_2_60035_x86_ln.3643236f_fc70_11d3_a536_0090278a1bb8", hr=0x0 2026-06-01T16:15:31.403 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sl-si_dbf3efd98a2c5f5f\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:31.419 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_bg-bg_0645efc96ef12622\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:32.013 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\memtest.efi", hr=0x0 2026-06-01T16:15:32.091 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ru-ru_3dc6c97494785a52\bootmgr.efi.mui", hr=0x0 2026-06-01T16:15:32.263 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ro-ro_3b5e7de895fd9782\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:32.560 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rdpjm0d.dll", hr=0x0 2026-06-01T16:15:32.700 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..ore-bootmanager-efi_31bf3856ad364e35_10.0.14393.9060_none_fd4ea5baf6e64b54\bootmgfw.efi", hr=0x0 2026-06-01T16:15:32.747 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\sr-latn-rs\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:32.810 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..ore-bootmanager-efi_31bf3856ad364e35_10.0.14393.9060_none_fd4ea5baf6e64b54\bootmgr_ex.efi", hr=0x0 2026-06-01T16:15:33.528 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\lv-lv\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:34.028 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_zh-hk_97557d97b0212f80\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:34.247 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\fi-fi\memtest.efi.mui", hr=0x0 2026-06-01T16:15:34.466 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\system32\mp43decd.dll", hr=0x0 2026-06-01T16:15:34.482 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_el-gr_365fe4321a688126\memtest.exe.mui", hr=0x0 2026-06-01T16:15:34.732 Engine:Setting original file name "System.dll" for "c:\windows\winsxs\x86_netfx4-system_ni_b03f5f7f11d50a3a_4.0.14305.0_none_3f7dfb0ca6ab2808\system.ni.dll", hr=0x0 2026-06-01T16:15:35.153 Engine:Setting original file name " " for "c:\program files\microsoft vs code\unins000.exe", hr=0x0 2026-06-01T16:15:35.544 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #224355, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T16:15:35.544 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #224357, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T16:15:35.607 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\fr-fr\memtest.efi.mui", hr=0x0 2026-06-01T16:15:35.716 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\uk-ua\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:36.294 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_it-it_c36555c1e45c11e2\memtest.exe.mui", hr=0x0 2026-06-01T16:15:36.638 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_lt-lt_6aab02ace551f0be\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:36.747 Engine:Setting original file name "apisetschema" for "c:\windows\system32\apisetschema.dll", hr=0x0 2026-06-01T16:15:37.450 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_zh-tw_9ca6c25facb69960\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:37.528 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-profile-l1-1-0.dll", hr=0x0 2026-06-01T16:15:37.638 Engine:Setting original file name "Notepad++" for "c:\users\administrator.extern\appdata\local\temp\npp.8.9.3.installer.x64.exe", hr=0x0 2026-06-01T16:15:37.778 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\zh-cn\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:37.794 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-memory-l1-1-0.dll", hr=0x0 2026-06-01T16:15:37.857 Engine:Setting original file name "ISOLMIG.DLL" for "c:\windows\syswow64\migisol.dll", hr=0x0 2026-06-01T16:15:38.216 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hu-hu_de9904eb1acc35ce\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:38.857 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\lv-lv\bootmgr.efi.mui", hr=0x0 2026-06-01T16:15:39.060 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-runtime-l1-1-0.dll", hr=0x0 2026-06-01T16:15:39.372 Engine:Setting original file name "SCardSvr.exe.mui" for "c:\windows\winsxs\wow64_microsoft-windows-s..subsystem.resources_31bf3856ad364e35_10.0.14393.7876_en-us_73922ddead93580d\scardsvr.dll.mui", hr=0x0 2026-06-01T16:15:39.372 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-libraryloader-l1-1-0.dll", hr=0x0 2026-06-01T16:15:39.700 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-heap-l1-1-0.dll", hr=0x0 2026-06-01T16:15:40.153 Engine:Setting original file name "mf.dll" for "c:\windows\syswow64\mfpmp.exe", hr=0x0 2026-06-01T16:15:40.325 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\it-it\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:40.607 Engine:Setting original file name "Placeholder.dll" for "c:\windows\winsxs\x86_netfx4-penimc_v0400_b03f5f7f11d50a3a_4.0.15552.18271_none_96e1140275a4e3b6\penimc_v0400.dll", hr=0x0 2026-06-01T16:15:40.763 Engine:Setting original file name "setup" for "c:\program files (x86)\google\chrome\application\148.0.7778.179\installer\chrmstp.exe", hr=0x0 2026-06-01T16:15:40.778 Engine:Setting original file name "gdi32" for "c:\windows\system32\gdi32full.dll", hr=0x0 2026-06-01T16:15:41.044 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sl-si_dbf3efd98a2c5f5f\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:41.528 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_bg-bg_4ac458a4f3a1aa55\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:41.544 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\pt-pt\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:41.825 Engine:Setting original file name " " for "c:\program files (x86)\google\chrome\application\148.0.7778.179\dxcompiler.dll", hr=0x0 2026-06-01T16:15:41.872 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\sv-se\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:42.153 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\zh-hk\msprivs.dll.mui", hr=0x0 2026-06-01T16:15:42.310 Engine:Setting original file name "devinfoset.DLL" for "c:\windows\system32\devobj.dll", hr=0x0 2026-06-01T16:15:42.747 Engine:Setting original file name "System.Core.dll" for "c:\windows\microsoft.net\framework64\v4.0.30319\nativeimages\system.core.ni.dll", hr=0x0 2026-06-01T16:15:42.857 Engine:Setting original file name "msdxm.ocx" for "c:\windows\system32\dxmasf.dll", hr=0x0 2026-06-01T16:15:43.372 Engine:Setting original file name "AM_Delta_Patch_1.449.416.0.exe" for "c:\windows\softwaredistribution\download\0ef9dab22c70e8734fbc03415223b02596683c86", hr=0x0 2026-06-01T16:15:43.450 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\es-mx\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:43.685 Engine:Setting original file name "System.Drawing.dll" for "c:\windows\winsxs\x86_netfx4-system_drawing_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_6c370d8116a1eb32\system.drawing.tlb", hr=0x0 2026-06-01T16:15:43.732 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_nl-nl_f2300bfa512bdee5\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:44.263 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_bg-bg_0645efc96ef12622\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:44.279 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-stdio-l1-1-0.dll", hr=0x0 2026-06-01T16:15:44.419 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\en-us\memtest.efi.mui", hr=0x0 2026-06-01T16:15:44.622 Engine:Setting original file name "mf.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-m..oundation.resources_31bf3856ad364e35_10.0.14393.953_en-us_d2c8fd7f8e3f6c23\mfpmp.exe.mui", hr=0x0 2026-06-01T16:15:44.950 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_fr-fr_972884a3366c66b2\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:45.528 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\it-it\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:45.560 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #224360, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T16:15:45.560 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #224362, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T16:15:45.575 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #224364, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T16:15:46.075 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\de-de\memtest.efi.mui", hr=0x0 2026-06-01T16:15:46.263 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_qps-ploc_f7c0124d0b6ecedd\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:46.263 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_fi-fi_d5a0ee290f72082c\memtest.exe.mui", hr=0x0 2026-06-01T16:15:46.403 Engine:Setting original file name "MrmCore.dll" for "c:\windows\system32\mrmcorer.dll", hr=0x0 2026-06-01T16:15:46.450 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_sl-si_207258b50edce392\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:46.513 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rkcbalz.dll", hr=0x0 2026-06-01T16:15:46.622 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnet.dll", hr=0x0 2026-06-01T16:15:46.653 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnlobby.dll", hr=0x0 2026-06-01T16:15:46.981 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_es-es_38ef777fc84ad483\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:47.013 Engine:Setting original file name "krb5_32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\krb5_64.dll", hr=0x0 2026-06-01T16:15:47.153 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_ja-jp_16440d694527ff2a\msprivs.dll.mui", hr=0x0 2026-06-01T16:15:47.294 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nl-nl_adb1a31ecc7b5ab2\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:48.028 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\et-ee\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:48.263 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\nb-no\memtest.efi.mui", hr=0x0 2026-06-01T16:15:48.294 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ro-ro_3b5e7de895fd9782\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:48.419 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\ko-kr\msprivs.dll.mui", hr=0x0 2026-06-01T16:15:48.638 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\ko-kr\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:48.966 Engine:Setting original file name "user32" for "c:\windows\system32\user32.dll", hr=0x0 2026-06-01T16:15:49.872 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_hu-hu_d167185d5f3ad6ed\msprivs.dll.mui", hr=0x0 2026-06-01T16:15:49.950 Engine:Setting original file name "System.EnterpriseServices.dll" for "c:\windows\winsxs\x86_netfx4-system_enterpriseservices_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_78cda70ae5417545\system.enterpriseservices.tlb", hr=0x0 2026-06-01T16:15:50.653 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sk-sk_dce1ce2189924c7c\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:50.888 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\it-it\memtest.efi.mui", hr=0x0 2026-06-01T16:15:50.966 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpmodemx.dll", hr=0x0 2026-06-01T16:15:51.310 Engine:Setting original file name "Install.exe" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rziiii6.exe", hr=0x0 2026-06-01T16:15:51.794 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\ja-jp\bootmgr.efi.mui", hr=0x0 2026-06-01T16:15:51.919 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\el-gr\bootmgr.efi.mui", hr=0x0 2026-06-01T16:15:51.935 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\system32\mpg4decd.dll", hr=0x0 2026-06-01T16:15:52.013 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\fr-ca\bootmgr.efi.mui", hr=0x0 2026-06-01T16:15:52.106 Engine:Setting original file name "comerr32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\comerr64.dll", hr=0x0 2026-06-01T16:15:52.122 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnhpast.dll", hr=0x0 2026-06-01T16:15:52.653 Engine:Setting original file name "CertAdm" for "c:\windows\winsxs\x86_microsoft-windows-c..rtadm-dll.resources_31bf3856ad364e35_10.0.14393.2368_en-us_807c5030739180ba\certadm.dll.mui", hr=0x0 2026-06-01T16:15:53.106 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\da-dk\bootmgr.efi.mui", hr=0x0 2026-06-01T16:15:53.153 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnet.dll", hr=0x0 2026-06-01T16:15:53.169 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\tr-tr\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:53.356 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dplayx.dll", hr=0x0 2026-06-01T16:15:53.935 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..ore-bootmanager-efi_31bf3856ad364e35_10.0.14393.9060_none_fd4ea5baf6e64b54\bootmgr.efi", hr=0x0 2026-06-01T16:15:54.122 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_pt-pt_39389288865491d8\memtest.exe.mui", hr=0x0 2026-06-01T16:15:54.153 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nb-no_af7257e0cb4f50dd\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:15:54.153 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-localization-l1-2-0.dll", hr=0x0 2026-06-01T16:15:54.153 Engine:Setting original file name "PSAPI" for "c:\windows\syswow64\psapi.dll", hr=0x0 2026-06-01T16:15:54.169 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_nl-nl_a07fb69110e9fbd1\msprivs.dll.mui", hr=0x0 2026-06-01T16:15:54.185 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-timezone-l1-1-0.dll", hr=0x0 2026-06-01T16:15:54.950 Engine:Setting original file name "updater.exe" for "c:\program files (x86)\google\update\googleupdate.exe", hr=0x0 2026-06-01T16:15:55.450 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\cs-cz\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:55.513 Engine:Setting original file name "rundll32.exe" for "c:\windows\system32\rundll32.exe", hr=0x0 2026-06-01T16:15:55.716 Engine:Setting original file name "System.Drawing.dll" for "c:\windows\winsxs\amd64_netfx4-system_drawing_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_2489d6aa0225c22c\system.drawing.tlb", hr=0x0 2026-06-01T16:15:56.216 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_pt-br_f641e844b0275c4a\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:15:56.294 Engine:Setting original file name "CloudStorageWizard.dll" for "c:\windows\winsxs\x86_microsoft-windows-cloudstoragewizard_31bf3856ad364e35_10.0.14393.4169_none_0e1140222fc9b7ce\cloudstoragewizard.exe", hr=0x0 2026-06-01T16:15:56.294 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\x86_netfx4-scripting_engine_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_88ed5da2059f7f5e\microsoft.jscript.tlb", hr=0x0 2026-06-01T16:15:56.731 Engine:Setting original file name "mscorlib.dll" for "c:\windows\assembly\nativeimages_v4.0.30319_64\mscorlib\62f204ac0ba259da374905c1b6c11fb0\mscorlib.ni.dll", hr=0x0 2026-06-01T16:15:57.231 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_et-ee_ee30da3447a02cdf\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:15:57.700 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\sv-se\bootmgr.efi.mui", hr=0x0 2026-06-01T16:15:57.810 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-namedpipe-l1-1-0.dll", hr=0x0 2026-06-01T16:15:57.966 Engine:Setting original file name "MrmCore.dll" for "c:\windows\syswow64\mrmcorer.dll", hr=0x0 2026-06-01T16:15:58.528 Engine:Setting original file name "setup" for "c:\programdata\package cache\{c649ede4-f16a-4486-a117-dcc2f2a35165}\vc_redist.x64.exe", hr=0x0 2026-06-01T16:15:58.778 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-processthreads-l1-1-1.dll", hr=0x0 2026-06-01T16:15:58.794 Engine:Setting original file name "CMMIGR.DLL" for "c:\windows\system32\setup\pbkmigr.dll", hr=0x0 2026-06-01T16:15:58.841 Engine:Setting original file name "mavinject64.exe" for "c:\windows\system32\mavinject.exe", hr=0x0 2026-06-01T16:15:59.044 Engine:Setting original file name "AM_Delta_Patch_1.449.488.0.exe" for "c:\windows\softwaredistribution\download\4b57c8a8c54cb6dffa4ce91347e58330f2447b48", hr=0x0 2026-06-01T16:15:59.091 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_sk-sk_216036fd0e42d0af\bootmgr.exe.mui", hr=0x0 2026-06-01T16:15:59.263 Engine:Setting original file name "aadtb.dll" for "c:\windows\winsxs\x86_microsoft-windows-s..ity-aadtb.resources_31bf3856ad364e35_10.0.14393.2368_en-us_c661af39b93a2882\aadtb.dll.mui", hr=0x0 2026-06-01T16:15:59.513 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_ru-ru_7fdba44c6b362004\memtest.exe.mui", hr=0x0 2026-06-01T16:15:59.950 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_es-es_f4710ea4439a5050\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:00.247 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nb-no_af7257e0cb4f50dd\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:00.263 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_ru-ru_3094dce6d8e6fb71\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:00.278 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-gb_ed1cf6a2484aaae6\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:00.403 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\fi-fi\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:00.794 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\cs-cz\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:00.794 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rprsqob.dll", hr=0x0 2026-06-01T16:16:01.075 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_fi-fi_d80a7c2cbd64c6ad\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:01.122 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-handle-l1-1-0.dll", hr=0x0 2026-06-01T16:16:01.138 Engine:Setting original file name "winsqlite3" for "c:\windows\system32\winsqlite3.dll", hr=0x0 2026-06-01T16:16:01.419 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\fr-ca\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:01.435 Engine:Setting original file name "msdxm.ocx" for "c:\windows\syswow64\dxmasf.dll", hr=0x0 2026-06-01T16:16:01.560 Engine:Setting original file name "winsqlite3" for "c:\windows\winsxs\wow64_microsoft-windows-winsqlite3_31bf3856ad364e35_10.0.14393.8781_none_9635b512b88eb01b\winsqlite3.dll", hr=0x0 2026-06-01T16:16:01.622 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\es-mx\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:01.872 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_sv-se_1bd68ec1625f2a5f\memtest.exe.mui", hr=0x0 2026-06-01T16:16:02.450 Engine:Setting original file name "System.dll" for "c:\windows\microsoft.net\framework64\v4.0.30319\nativeimages\system.ni.dll", hr=0x0 2026-06-01T16:16:02.450 Engine:Setting original file name "gssapi32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\gssapi64.dll", hr=0x0 2026-06-01T16:16:02.560 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_pt-br_3856c31c86e521fc\memtest.exe.mui", hr=0x0 2026-06-01T16:16:02.638 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\zh-cn\memtest.efi.mui", hr=0x0 2026-06-01T16:16:03.341 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_lt-lt_af296b886a0274f1\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:03.419 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-gb_ed1cf6a2484aaae6\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:03.466 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\sv-se\memtest.efi.mui", hr=0x0 2026-06-01T16:16:04.278 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\sr-latn-rs\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:04.403 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ko-kr_c6dfd6abf32a2521\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:05.107 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\el-gr\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:05.482 Engine:Setting original file name "gdi32" for "c:\windows\syswow64\gdi32full.dll", hr=0x0 2026-06-01T16:16:05.732 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_it-it_741e8e5c520ced4f\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:05.888 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_pt-br_f641e844b0275c4a\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:06.732 Engine:Setting original file name "MSCOREE.DLL" for "c:\windows\winsxs\amd64_netfx4-mscoree_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_a40ab9cb7925b9cc\mscoree.tlb", hr=0x0 2026-06-01T16:16:06.857 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$r44dcag.dll", hr=0x0 2026-06-01T16:16:07.044 Engine:Setting original file name "security.dll" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-minwin_31bf3856ad364e35_10.0.14393.9060_none_bd8e08d321359956\sspicli.dll", hr=0x0 2026-06-01T16:16:07.435 Engine:Setting original file name "AM_Delta_Patch_1.449.466.0.exe" for "c:\windows\softwaredistribution\download\11487b7ce8baccbc2c0e1ffd6de22e5d7a953716", hr=0x0 2026-06-01T16:16:07.622 Engine:Setting original file name "Notepad++" for "c:\program files\notepad++\uninstall.exe", hr=0x0 2026-06-01T16:16:07.872 Engine:Setting original file name "AM_Delta_Patch_1.449.391.0.exe" for "c:\windows\softwaredistribution\download\c90d25370608c14564a95c22587abe17d33802c5", hr=0x0 2026-06-01T16:16:08.044 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\el-gr\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:08.060 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-us_f4a5b1c043735eab\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:08.372 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\fi-fi\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:08.482 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-util-l1-1-0.dll", hr=0x0 2026-06-01T16:16:08.544 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_sr-..-cs_6e4b7fde47f363c6\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:08.763 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-file-l1-2-0.dll", hr=0x0 2026-06-01T16:16:08.841 Engine:Setting original file name "bootres" for "c:\windows\winsxs\amd64_microsoft-windows-bootres_31bf3856ad364e35_10.0.14393.2485_none_b4c0bfb8dc967b66\bootres.dll", hr=0x0 2026-06-01T16:16:09.075 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..re-memorydiagnostic_31bf3856ad364e35_10.0.14393.9140_none_584ae51f938e7638\memtest.exe", hr=0x0 2026-06-01T16:16:10.044 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\lv-lv\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:10.325 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_zh-cn_98aa8509af45bcf0\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:10.638 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_tr-tr_759d11a2becc07bd\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:10.966 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_nb-no_f3f0c0bc4fffd510\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:11.294 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_tr-tr_c74d670bff0dead1\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:11.513 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hu-hu_de9904eb1acc35ce\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:11.653 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\de-de\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:12.028 Engine:Setting original file name "MapsMigrationPlugin.dll" for "c:\windows\syswow64\migration\mapsmigplugin.dll", hr=0x0 2026-06-01T16:16:12.107 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_fr-fr_972884a3366c66b2\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:12.169 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\pt-br\memtest.efi.mui", hr=0x0 2026-06-01T16:16:12.607 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_cs-cz_f364413c3336c7ff\memtest.exe.mui", hr=0x0 2026-06-01T16:16:12.810 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-synch-l1-2-0.dll", hr=0x0 2026-06-01T16:16:12.935 Engine:Setting original file name "CloudStorageWizard.dll" for "c:\windows\system32\cloudstoragewizard.exe", hr=0x0 2026-06-01T16:16:13.575 Engine:Setting original file name "gdi32" for "c:\windows\winsxs\wow64_microsoft-windows-gdi32_31bf3856ad364e35_10.0.14393.9060_none_d9a11131d838bda2\gdi32.dll", hr=0x0 2026-06-01T16:16:13.622 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_tr-tr_c4e3d908511b2c50\memtest.exe.mui", hr=0x0 2026-06-01T16:16:13.888 Engine:Setting original file name "System.EnterpriseServices.dll" for "c:\windows\winsxs\amd64_netfx4-system_enterpriseservices_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_31207033d0c54c3f\system.enterpriseservices.tlb", hr=0x0 2026-06-01T16:16:14.825 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_uk-ua_1eaee0d7718e8cea\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:14.841 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ru-ru_3dc6c97494785a52\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:15.028 Engine:Setting original file name "gdi32" for "c:\windows\system32\gdi32.dll", hr=0x0 2026-06-01T16:16:15.060 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\pl-pl\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:15.138 Engine:Setting original file name "hiberrsm.exe" for "c:\windows\system32\winresume.exe", hr=0x0 2026-06-01T16:16:16.107 Engine:Setting original file name "mscorlib.dll" for "c:\windows\microsoft.net\framework64\v4.0.30319\nativeimages\mscorlib.ni.dll", hr=0x0 2026-06-01T16:16:16.560 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnaddr.dll", hr=0x0 2026-06-01T16:16:17.232 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_fi-fi_865a26c37d22e399\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:17.310 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_sr-..-cs_bffbd547883546da\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:17.841 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ko-kr_c6dfd6abf32a2521\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:17.872 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_el-gr_e7191ccc88195c93\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:18.028 Engine:Setting original file name "MBXMAINT.EXE" for "c:\xampp\mercurymail\mbxmaint_ui.exe", hr=0x0 2026-06-01T16:16:18.107 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_bg-bg_0645efc96ef12622\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:18.935 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\sr-latn-rs\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:18.997 Engine:Setting original file name "AM_Delta_Patch_1.449.446.0.exe" for "c:\windows\softwaredistribution\download\864caa895cd9cb35a3874803a3ef7ccb350c638d", hr=0x0 2026-06-01T16:16:18.997 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\da-dk\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:19.169 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\pt-pt\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:19.247 Engine:Setting original file name "Microsoft® Windows® Operating System" for "c:\windows\system32\pcasvc.dll", hr=0x0 2026-06-01T16:16:19.294 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\nl-nl\memtest.efi.mui", hr=0x0 2026-06-01T16:16:19.341 Engine:Setting original file name "kernel32" for "c:\windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_10.0.14393.9140_none_13d37bf6e53ca428\kernel32.dll", hr=0x0 2026-06-01T16:16:19.685 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ru-ru_3dc6c97494785a52\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:19.810 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..ore-bootmanager-efi_31bf3856ad364e35_10.0.14393.9060_none_fd4ea5baf6e64b54\bootmgfw_ex.efi", hr=0x0 2026-06-01T16:16:19.982 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_fr-fr_d93d5f7b0d2a2c64\memtest.exe.mui", hr=0x0 2026-06-01T16:16:19.997 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\pcat\sr-latn-cs\memtest.exe.mui", hr=0x0 2026-06-01T16:16:20.372 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sk-sk_dce1ce2189924c7c\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:20.419 Engine:Setting original file name "AppVEntSubsystemContoller.dll" for "c:\windows\system32\appventsubsystemcontroller.dll", hr=0x0 2026-06-01T16:16:20.888 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\pl-pl\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:20.950 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-errorhandling-l1-1-0.dll", hr=0x0 2026-06-01T16:16:21.841 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\zh-cn\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:22.216 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_fr-fr_972884a3366c66b2\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:22.450 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hr-hr_dd64df251b8ed466\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:22.482 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-us_f4a5b1c043735eab\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:22.716 Engine:Setting original file name "imm32" for "c:\windows\syswow64\imm32.dll", hr=0x0 2026-06-01T16:16:22.794 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-interlocked-l1-1-0.dll", hr=0x0 2026-06-01T16:16:22.903 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnsvr.exe", hr=0x0 2026-06-01T16:16:23.497 Engine:Setting original file name "WerMgr" for "c:\windows\system32\wermgr.exe", hr=0x0 2026-06-01T16:16:23.575 Engine:Setting original file name "TAPISRV.EXE.MUI" for "c:\windows\syswow64\en-us\tapisrv.dll.mui", hr=0x0 2026-06-01T16:16:23.872 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\fi-fi\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:24.044 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-debug-l1-1-0.dll", hr=0x0 2026-06-01T16:16:24.107 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_it-it_81507aea0d9e4c30\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:24.169 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\fr-ca\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:24.403 Engine:Setting original file name "spwizres.dll" for "c:\windows\system32\spwizimg.dll", hr=0x0 2026-06-01T16:16:24.794 Engine:Setting original file name "auditgp.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-a..in-native.resources_31bf3856ad364e35_10.0.14393.8688_en-us_9eb35eb78ae63ec8\auditnativesnapin.dll.mui", hr=0x0 2026-06-01T16:16:24.794 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\el-gr\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:25.419 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\fr-fr\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:25.419 Engine:Setting original file name "system.data.entity.dll" for "c:\windows\winsxs\msil_system.data.datasetextensions_b77a5c561934e089_4.0.14305.0_none_19a8b72a1c5b343b\system.data.datasetextensions.dll", hr=0x0 2026-06-01T16:16:25.997 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_en-us_39241a9bc823e2de\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:26.060 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ro-ro_3b5e7de895fd9782\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:26.357 Engine:Setting original file name "WLRMNDR.EXE" for "c:\windows\system32\wlrmdr.exe", hr=0x0 2026-06-01T16:16:26.450 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-math-l1-1-0.dll", hr=0x0 2026-06-01T16:16:26.622 Engine:Setting original file name "mp4sdmod.dll" for "c:\windows\system32\mp4sdecd.dll", hr=0x0 2026-06-01T16:16:26.872 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\zh-hk\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:26.982 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\zh-tw\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:27.544 Engine:Setting original file name "Microsoft® Windows® Operating System" for "c:\windows\system32\aitstatic.exe", hr=0x0 2026-06-01T16:16:27.544 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\ru-ru\memtest.efi.mui", hr=0x0 2026-06-01T16:16:27.575 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$ri9nkvj.dll", hr=0x0 2026-06-01T16:16:27.653 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_en-us_e773c53287e1ffca\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:28.216 Engine:Setting original file name "AM_Delta_Patch_1.449.434.0.exe" for "c:\windows\softwaredistribution\download\b94a6ea7ac46eef777012b37c2833b116a4c920c", hr=0x0 2026-06-01T16:16:28.622 Engine:Setting original file name "ntkrnlmp.exe" for "c:\windows\system32\ntoskrnl.exe", hr=0x0 2026-06-01T16:16:28.700 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_uk-ua_1eaee0d7718e8cea\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:29.075 Engine:Setting original file name "DismProvPS.DLL" for "c:\windows\system32\dism\dismcoreps.dll", hr=0x0 2026-06-01T16:16:29.107 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hr-hr_dd64df251b8ed466\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:29.122 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_es-es_f4710ea4439a5050\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:29.310 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\zh-hk\memtest.efi.mui", hr=0x0 2026-06-01T16:16:29.341 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_pt-pt_3ba2208c34475059\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:29.341 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\pl-pl\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:29.935 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\fr-ca\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:30.388 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hr-hr_dd64df251b8ed466\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:30.450 Engine:Setting original file name "wcp.dll" for "c:\windows\system32\ssshim.dll", hr=0x0 2026-06-01T16:16:30.841 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\ja-jp\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:31.028 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-us_f4a5b1c043735eab\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:31.185 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_sv-se_1e401cc51051e8e0\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:31.513 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\ar-sa\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:31.950 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\zh-cn\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:32.075 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_ja-jp_658ad4ced77723bd\memtest.exe.mui", hr=0x0 2026-06-01T16:16:32.091 Engine:Setting original file name "AM_Delta_Patch_1.449.503.0.exe" for "c:\windows\softwaredistribution\download\955a0264ea628138c3ea2753579e1d3144b7f707", hr=0x0 2026-06-01T16:16:32.169 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_cs-cz_a41d79d6a0e7a36c\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:32.325 Engine:Setting original file name "nlsbres.dll.mui" for "c:\windows\system32\en-us\winnlsres.dll.mui", hr=0x0 2026-06-01T16:16:32.653 Engine:Setting original file name "mscorlib.dll" for "c:\windows\winsxs\x86_netfx4-mscorlib_ni_b03f5f7f11d50a3a_4.0.15552.18265_none_8b075f02f7b8caaf\mscorlib.ni.dll", hr=0x0 2026-06-01T16:16:32.950 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\syswow64\mpg4decd.dll", hr=0x0 2026-06-01T16:16:33.935 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-string-l1-1-0.dll", hr=0x0 2026-06-01T16:16:34.091 Engine:Setting original file name "Microsoft(r) DirectX for Windows(r) - Out Of Band" for "c:\program files (x86)\google\chrome\application\148.0.7778.179\dxil.dll", hr=0x0 2026-06-01T16:16:34.247 Engine:Setting original file name "AM_Delta_Patch_1.449.577.0.exe" for "c:\windows\softwaredistribution\download\d7a0b990c530b319a2eb42e0849589b64bc29763", hr=0x0 2026-06-01T16:16:34.372 Engine:Setting original file name "BCP47Lang.dll" for "c:\windows\winsxs\wow64_microsoft-windows-bcp47languages_31bf3856ad364e35_10.0.14393.2457_none_1a5fc83a65dd036f\bcp47langs.dll", hr=0x0 2026-06-01T16:16:34.388 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_qps-ploc_eb01d9f7291b4e61\memtest.efi.mui", hr=0x0 2026-06-01T16:16:34.466 Engine:Setting original file name "scecli" for "c:\windows\winsxs\wow64_microsoft-windows-s..ineclient.resources_31bf3856ad364e35_10.0.14393.6250_en-us_ccc66d656c12563a\scecli.dll.mui", hr=0x0 2026-06-01T16:16:34.482 Engine:Setting original file name "nlsbres.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-i..ocale-nls.resources_31bf3856ad364e35_10.0.14393.7155_en-us_5d1af2004d30f690\winnlsres.dll.mui", hr=0x0 2026-06-01T16:16:34.638 Engine:Setting original file name "powershell.exe" for "c:\windows\syswow64\windowspowershell\v1.0\powershell.exe", hr=0x0 2026-06-01T16:16:34.700 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnhpast.dll", hr=0x0 2026-06-01T16:16:35.294 Engine:Setting original file name "MicrosoftRawCodec" for "c:\windows\system32\windowscodecsraw.dll", hr=0x0 2026-06-01T16:16:35.747 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\hr-hr\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:35.841 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nl-nl_adb1a31ecc7b5ab2\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:35.888 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\amd64_netfx4-system_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_1c2deb8b76e95843\system.tlb", hr=0x0 2026-06-01T16:16:36.028 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\tr-tr\memtest.efi.mui", hr=0x0 2026-06-01T16:16:36.247 Engine:Setting original file name "mf.dll" for "c:\windows\system32\mfpmp.exe", hr=0x0 2026-06-01T16:16:36.341 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\de-de\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:36.388 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\microsoft.net\assembly\gac_msil\accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\accessibility.dll", hr=0x0 2026-06-01T16:16:36.450 Engine:Setting original file name "RRASUPG.DLL" for "c:\windows\syswow64\setup\rasmigplugin.dll", hr=0x0 2026-06-01T16:16:36.716 Engine:Setting original file name "kernel32" for "c:\windows\winsxs\wow64_microsoft-windows-kernel32.resources_31bf3856ad364e35_10.0.14393.8781_en-us_bcf36325b462be8d\kernel32.dll.mui", hr=0x0 2026-06-01T16:16:36.732 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_da-dk_909e2163297cc3fe\memtest.exe.mui", hr=0x0 2026-06-01T16:16:36.810 Engine:Setting original file name "wow64lg2.dll" for "c:\windows\system32\wow64win.dll", hr=0x0 2026-06-01T16:16:36.857 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\cs-cz\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:36.903 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rigs9x9.dll", hr=0x0 2026-06-01T16:16:36.950 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnathlp.dll", hr=0x0 2026-06-01T16:16:37.013 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-string-l1-1-0.dll", hr=0x0 2026-06-01T16:16:37.138 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnathlp.dll", hr=0x0 2026-06-01T16:16:37.357 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\pt-br\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:37.747 Engine:Setting original file name "AppVEntSubsystems.dll" for "c:\windows\system32\appventsubsystems64.dll", hr=0x0 2026-06-01T16:16:37.857 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\zh-tw\memtest.efi.mui", hr=0x0 2026-06-01T16:16:37.903 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\lv-lv\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:38.403 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_de-de_8dc9b69f2b531898\memtest.exe.mui", hr=0x0 2026-06-01T16:16:38.528 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_hu-hu_23176dc69f7cba01\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:39.794 Engine:Setting original file name "nltestrk.exe.mui" for "c:\windows\syswow64\en-us\nltest.exe.mui", hr=0x0 2026-06-01T16:16:40.028 Engine:Setting original file name "Windows.Security.Credentials.UI.CredentialPicker.exe" for "c:\windows\winsxs\wow64_microsoft-windows-s..y-credential-picker_31bf3856ad364e35_10.0.14393.9060_none_30aa6e7dca8d6a1a\windows.security.credentials.ui.credentialpicker.dll", hr=0x0 2026-06-01T16:16:40.107 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-datetime-l1-1-0.dll", hr=0x0 2026-06-01T16:16:40.263 Engine:Setting original file name "EmbeddedAppLauncherConfig.exe" for "c:\windows\system32\embeddedapplauncherconfig.dll", hr=0x0 2026-06-01T16:16:41.013 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\de-de\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:41.138 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-heap-l1-1-0.dll", hr=0x0 2026-06-01T16:16:41.341 Engine:Setting original file name "VsVersion.dll" for "c:\windows\winsxs\x86_netfx4-penimc_b03f5f7f11d50a3a_4.0.15552.18271_none_e9b48dc128e20eab\penimc.dll", hr=0x0 2026-06-01T16:16:41.403 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ru-ru_3dc6c97494785a52\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:41.653 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-rtlsupport-l1-1-0.dll", hr=0x0 2026-06-01T16:16:41.700 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nb-no_af7257e0cb4f50dd\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:41.700 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ro-ro_3b5e7de895fd9782\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:41.716 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\hu-hu\memtest.efi.mui", hr=0x0 2026-06-01T16:16:41.732 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\tr-tr\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:42.247 Engine:Setting original file name "CLEANMGR.DLL.MUI" for "c:\windows\winsxs\x86_microsoft-windows-cleanmgr.resources_31bf3856ad364e35_10.0.14393.8592_en-us_775253193af5d297\cleanmgr.exe.mui", hr=0x0 2026-06-01T16:16:42.857 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_pt-br_f641e844b0275c4a\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:43.185 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\ja-jp\memtest.efi.mui", hr=0x0 2026-06-01T16:16:43.638 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\zh-hk\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:43.653 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-convert-l1-1-0.dll", hr=0x0 2026-06-01T16:16:43.903 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_zh-hk_94ebef94022e70ff\memtest.exe.mui", hr=0x0 2026-06-01T16:16:43.935 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_fr-fr_972884a3366c66b2\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:44.435 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-file-l1-1-0.dll", hr=0x0 2026-06-01T16:16:44.575 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_zh-cn_9640f7060152fe6f\memtest.exe.mui", hr=0x0 2026-06-01T16:16:44.700 Engine:Setting original file name "System.Core.dll" for "c:\windows\winsxs\x86_netfx4-system_core_ni_b03f5f7f11d50a3a_4.0.14305.0_none_96307a7a2f4c6676\system.core.ni.dll", hr=0x0 2026-06-01T16:16:45.466 Engine:Setting original file name "mscorlib.dll" for "c:\windows\assembly\nativeimages_v4.0.30319_32\mscorlib\5b7dfbb6f62799b6979729f5dc677903\mscorlib.ni.dll", hr=0x0 2026-06-01T16:16:45.560 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_pt-br_f641e844b0275c4a\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:45.575 Engine:Setting original file name "DismProvPS.DLL" for "c:\windows\winsxs\amd64_microsoft-windows-d..ing-management-core_31bf3856ad364e35_10.0.14393.0_none_58a891804171bf9b\dismcoreps.dll", hr=0x0 2026-06-01T16:16:45.872 Engine:Setting original file name "System.Windows.Forms.dll" for "c:\windows\winsxs\x86_netfx4-sys_windows_forms_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_aea2e02810528a7d\system.windows.forms.tlb", hr=0x0 2026-06-01T16:16:46.278 Engine:Setting original file name "setup" for "c:\users\administrator\downloads\vc_redist.x64.exe", hr=0x0 2026-06-01T16:16:46.372 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\sr-latn-rs\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:46.435 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\pt-pt\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:46.482 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\pt-pt\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:46.528 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_ja-jp_67f462d28569e23e\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:46.716 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\de-de\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:46.825 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_sr-..-cs_b33d9cf1a5e1c65e\memtest.efi.mui", hr=0x0 2026-06-01T16:16:47.091 Engine:Setting original file name "wcp.dll" for "c:\windows\winsxs\x86_microsoft-windows-packagemanager_31bf3856ad364e35_10.0.14393.2457_none_0659f8bf958f6270\ssshim.dll", hr=0x0 2026-06-01T16:16:47.341 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nl-nl_adb1a31ecc7b5ab2\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:47.372 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\da-dk\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:47.575 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\ja-jp\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:47.778 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\pt-br\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:47.872 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-us_f4a5b1c043735eab\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:48.466 Engine:Setting original file name "osloader.exe" for "c:\windows\system32\winload.exe", hr=0x0 2026-06-01T16:16:48.528 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\sv-se\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:48.716 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-time-l1-1-0.dll", hr=0x0 2026-06-01T16:16:49.357 Engine:Setting original file name "Vulkan Runtime" for "c:\program files\microsoft vs code\vulkan-1.dll", hr=0x0 2026-06-01T16:16:49.560 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\es-mx\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:49.794 Engine:Setting original file name "VsVersion.dll" for "c:\windows\microsoft.net\framework64\v4.0.30319\wpf\penimc.dll", hr=0x0 2026-06-01T16:16:49.794 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_en-gb_319b5f7dccfb2f19\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:50.075 Engine:Setting original file name "DismProvPS.DLL" for "c:\windows\winsxs\x86_microsoft-windows-d..ing-management-core_31bf3856ad364e35_10.0.14393.7426_none_44b37a10cd0cc41a\dismcoreps.dll", hr=0x0 2026-06-01T16:16:50.466 Engine:Setting original file name "setup" for "c:\program files (x86)\google\chrome\application\148.0.7778.179\installer\setup.exe", hr=0x0 2026-06-01T16:16:50.591 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\sv-se\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:50.778 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\x86_netfx4-system_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_63db22628b658149\system.tlb", hr=0x0 2026-06-01T16:16:50.841 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dplaysvr.exe", hr=0x0 2026-06-01T16:16:51.747 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-synch-l1-1-0.dll", hr=0x0 2026-06-01T16:16:51.841 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\fi-fi\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:52.325 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\it-it\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:52.341 Engine:Setting original file name "powershell.exe" for "c:\windows\winsxs\amd64_microsoft-windows-powershell-exe_31bf3856ad364e35_10.0.14393.206_none_a31a3bc69ffbbdcf\powershell.exe", hr=0x0 2026-06-01T16:16:52.669 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\fr-ca\bootmgfw_ex.efi.mui", hr=0x0 2026-06-01T16:16:53.825 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\tr-tr\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:53.982 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\ja-jp\bootmgfw.efi.mui", hr=0x0 2026-06-01T16:16:54.310 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnlobby.dll", hr=0x0 2026-06-01T16:16:54.763 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_he-il_ce163fb7614a08bf\msprivs.dll.mui", hr=0x0 2026-06-01T16:16:54.856 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\el-gr\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:54.888 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_en-us_36ba8c981a31245d\memtest.exe.mui", hr=0x0 2026-06-01T16:16:55.107 Engine:Setting original file name "mpengine.dll" for "c:\programdata\microsoft\windows defender\definition updates\stableengineetwlocation\mpengine_etw.dll", hr=0x0 2026-06-01T16:16:55.153 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\zh-cn\bootmgr_ex.efi.mui", hr=0x0 2026-06-01T16:16:55.200 Engine:Setting original file name "mp4sdmod.dll" for "c:\windows\winsxs\wow64_microsoft-windows-mp4sdecd_31bf3856ad364e35_10.0.14393.8519_none_8eceefcdfc3e5a71\mp4sdecd.dll", hr=0x0 2026-06-01T16:16:55.638 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_fr-fr_dba6ed7ebb1ceae5\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:55.685 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_cs-cz_f5cdcf3fe1298680\bootmgr.exe.mui", hr=0x0 2026-06-01T16:16:56.028 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\zh-tw\bootmgr.efi.mui", hr=0x0 2026-06-01T16:16:56.388 OriginalFileName Maintenance::29176 files in Moac, 0 skipped (cached), 484 filename set 2026-06-01T16:16:56.388 [AutoPurge] Routine task for Cache Maintenance has ended. 2026-06-01T16:21:41.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T16:36:46.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T16:51:51.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T17:06:56.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T17:15:32.945 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #225123, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T17:15:32.945 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #225125, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T17:15:42.960 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #225129, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T17:15:42.960 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #225131, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T17:15:43.148 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #225134, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T17:15:43.148 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #225136, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T17:16:46.601 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE\IDR_XML_DEFAULT_TRANSFORM[1]. Process: \Device\HarddiskVolume2\Windows\System32\taskhostw.exe, Status: 0xc0000001, State: 0, ScanRequest #225178, FileId: 0xf6000000029ba7, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x2020, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T17:19:38.868 [NRI] Successfully updated NIS service with platform settings for enforcement level Log IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-06-01T17:19:38.899 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-06-01T17:19:38.899 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-06-01T17:19:38.899 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-06-01T17:19:38.899 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-01T17:19:38.899 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-01T17:19:38.899 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-01T17:19:38.899 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-01T17:19:38.899 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-01T17:19:38.899 MdCoreSvc is supported in this platform and OS 2026-06-01T17:19:39.399 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-06-01T17:19:39.399 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-06-01T17:19:39.399 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-01T17:22:01.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T17:37:06.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T17:41:29.949 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 49908, Count: 6736, MaxTime: 203, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-06-01T17:41:29.949 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 6512, Count: 6326, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\headlines.ibd, EstimatedImpact: 0% 2026-06-01T17:41:29.949 ProcessImageName: sdiagnhost.exe, Pid: 2196, TotalTime: 786, Count: 47, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 6% 2026-06-01T17:41:29.949 ProcessImageName: powershell.exe, Pid: 1244, TotalTime: 607, Count: 80, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W2ded559f#\23b67e15083051b8a1bc635d635ba116\Microsoft.WindowsAuthenticationProtocols.Commands.ni.dll, EstimatedImpact: 21% 2026-06-01T17:41:29.949 ProcessImageName: powershell.exe, Pid: 4952, TotalTime: 231, Count: 18, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 3% 2026-06-01T17:41:29.949 ProcessImageName: taskhostw.exe, Pid: 4240, TotalTime: 152, Count: 15, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\SDIAG_e058f99b-5eb9-4746-930b-64fa2faa209b\DiagPackage.diagpkg, EstimatedImpact: 69% 2026-06-01T17:41:29.949 ProcessImageName: ngentask.exe, Pid: 5084, TotalTime: 135, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 1% 2026-06-01T17:41:29.949 ProcessImageName: WmiPrvSE.exe, Pid: 3128, TotalTime: 123, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 60% 2026-06-01T17:41:29.949 ProcessImageName: ngentask.exe, Pid: 5080, TotalTime: 90, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log->(UTF-8), EstimatedImpact: 1% 2026-06-01T17:41:29.949 ProcessImageName: wacs.exe, Pid: 6076, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-01T17:41:29.949 ProcessImageName: taskhostw.exe, Pid: 5132, TotalTime: 61, Count: 7, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\RegBack\SAM, EstimatedImpact: 0% 2026-06-01T17:41:29.949 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-06-01T17:41:29.949 ProcessImageName: updater.exe, Pid: 1220, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a29bab3-eae8-40bb-a828-1271e65351cd.tmp, EstimatedImpact: 0% 2026-06-01T17:41:29.949 ProcessImageName: updater.exe, Pid: 6108, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a8b4a3c-719a-4df9-8b13-330378d96015.tmp, EstimatedImpact: 0% 2026-06-01T17:41:29.949 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-01T17:41:29.949 ProcessImageName: updater.exe, Pid: 1332, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T17:41:29.949 ProcessImageName: updater.exe, Pid: 1300, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T17:41:29.949 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd85b8fd-4325-4643-9f3b-70c558da4b84.tmp, EstimatedImpact: 0% 2026-06-01T17:41:29.949 ProcessImageName: updater.exe, Pid: 4340, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc1596bc-3317-42cb-9a83-822da3c9462a.tmp, EstimatedImpact: 0% 2026-06-01T17:41:29.949 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3b6a21-2f0b-4e2f-b0ff-70376ac2ec90.tmp, EstimatedImpact: 0% 2026-06-01T17:41:29.949 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cad0a9c5-f956-40bf-8315-b6e8e3ce1663.tmp, EstimatedImpact: 0% 2026-06-01T17:41:29.949 ProcessImageName: updater.exe, Pid: 1632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8daf385a-7eab-4bb5-9b97-08ae88abca09.tmp, EstimatedImpact: 0% 2026-06-01T17:41:29.949 ProcessImageName: updater.exe, Pid: 1708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce955469-b18c-458c-a575-24a2f3856cf1.tmp, EstimatedImpact: 0% 2026-06-01T17:52:11.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T18:05:42.313 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dd8_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #226487, FileId: 0x12e000000009dda, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T18:05:48.798 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dd8_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #226933, FileId: 0x12f000000009dda, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T18:07:16.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T18:15:35.888 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #226968, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T18:15:35.897 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #226970, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T18:15:45.903 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #226975, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T18:15:45.903 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #226974, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T18:15:45.918 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #226976, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T18:22:21.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T18:37:26.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T18:52:31.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T19:07:36.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T19:15:34.134 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #227052, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T19:15:34.150 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #227054, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T19:15:44.143 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #227059, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T19:15:44.143 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #227061, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T19:15:44.159 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #227063, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T19:22:41.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T19:37:46.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T19:41:29.949 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 83351, Count: 11966, MaxTime: 203, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 6512, Count: 6330, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\headlines.ibd, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: sdiagnhost.exe, Pid: 2196, TotalTime: 786, Count: 47, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 6% 2026-06-01T19:41:29.949 ProcessImageName: powershell.exe, Pid: 1244, TotalTime: 607, Count: 80, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W2ded559f#\23b67e15083051b8a1bc635d635ba116\Microsoft.WindowsAuthenticationProtocols.Commands.ni.dll, EstimatedImpact: 21% 2026-06-01T19:41:29.949 ProcessImageName: powershell.exe, Pid: 4952, TotalTime: 231, Count: 18, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 3% 2026-06-01T19:41:29.949 ProcessImageName: taskhostw.exe, Pid: 4240, TotalTime: 152, Count: 15, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\SDIAG_e058f99b-5eb9-4746-930b-64fa2faa209b\DiagPackage.diagpkg, EstimatedImpact: 69% 2026-06-01T19:41:29.949 ProcessImageName: ngentask.exe, Pid: 5084, TotalTime: 135, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 1% 2026-06-01T19:41:29.949 ProcessImageName: WmiPrvSE.exe, Pid: 3128, TotalTime: 123, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 60% 2026-06-01T19:41:29.949 ProcessImageName: ngentask.exe, Pid: 5080, TotalTime: 90, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log->(UTF-8), EstimatedImpact: 1% 2026-06-01T19:41:29.949 ProcessImageName: wacs.exe, Pid: 6076, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-01T19:41:29.949 ProcessImageName: taskhostw.exe, Pid: 5132, TotalTime: 61, Count: 7, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\RegBack\SAM, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: updater.exe, Pid: 1220, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a29bab3-eae8-40bb-a828-1271e65351cd.tmp, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dba4d7cc-f652-48ec-b67c-c9ce1dc34716.tmp, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: updater.exe, Pid: 6108, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a8b4a3c-719a-4df9-8b13-330378d96015.tmp, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: WmiPrvSE.exe, Pid: 1276, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 13% 2026-06-01T19:41:29.949 ProcessImageName: updater.exe, Pid: 1300, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: updater.exe, Pid: 1332, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: updater.exe, Pid: 5200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f204f104-53c1-4362-937c-53a6b08e5d68.tmp, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: updater.exe, Pid: 4340, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc1596bc-3317-42cb-9a83-822da3c9462a.tmp, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: updater.exe, Pid: 1708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce955469-b18c-458c-a575-24a2f3856cf1.tmp, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cad0a9c5-f956-40bf-8315-b6e8e3ce1663.tmp, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3b6a21-2f0b-4e2f-b0ff-70376ac2ec90.tmp, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: updater.exe, Pid: 1632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8daf385a-7eab-4bb5-9b97-08ae88abca09.tmp, EstimatedImpact: 0% 2026-06-01T19:41:29.949 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd85b8fd-4325-4643-9f3b-70c558da4b84.tmp, EstimatedImpact: 0% 2026-06-01T19:52:51.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T20:07:56.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T20:15:35.516 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #227708, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T20:15:35.531 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #227710, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T20:15:45.530 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #227714, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T20:15:45.545 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #227716, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T20:15:45.545 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #227717, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T20:23:01.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T20:38:06.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T20:53:11.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T21:08:16.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T21:15:34.107 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #227838, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:15:34.123 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #227840, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:15:44.137 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #227845, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:15:44.152 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #227848, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:23:21.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T21:38:26.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T21:41:29.964 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 83471, Count: 11994, MaxTime: 203, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 6512, Count: 6330, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\headlines.ibd, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: sdiagnhost.exe, Pid: 2196, TotalTime: 786, Count: 47, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 6% 2026-06-01T21:41:29.964 ProcessImageName: powershell.exe, Pid: 1244, TotalTime: 607, Count: 80, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W2ded559f#\23b67e15083051b8a1bc635d635ba116\Microsoft.WindowsAuthenticationProtocols.Commands.ni.dll, EstimatedImpact: 21% 2026-06-01T21:41:29.964 ProcessImageName: powershell.exe, Pid: 4952, TotalTime: 231, Count: 18, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 3% 2026-06-01T21:41:29.964 ProcessImageName: taskhostw.exe, Pid: 4240, TotalTime: 152, Count: 15, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\SDIAG_e058f99b-5eb9-4746-930b-64fa2faa209b\DiagPackage.diagpkg, EstimatedImpact: 69% 2026-06-01T21:41:29.964 ProcessImageName: ngentask.exe, Pid: 5084, TotalTime: 135, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 1% 2026-06-01T21:41:29.964 ProcessImageName: WmiPrvSE.exe, Pid: 3128, TotalTime: 123, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 60% 2026-06-01T21:41:29.964 ProcessImageName: ngentask.exe, Pid: 5080, TotalTime: 90, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log->(UTF-8), EstimatedImpact: 1% 2026-06-01T21:41:29.964 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: wacs.exe, Pid: 6076, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-01T21:41:29.964 ProcessImageName: taskhostw.exe, Pid: 5132, TotalTime: 61, Count: 7, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\RegBack\SAM, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: updater.exe, Pid: 1220, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a29bab3-eae8-40bb-a828-1271e65351cd.tmp, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dba4d7cc-f652-48ec-b67c-c9ce1dc34716.tmp, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: updater.exe, Pid: 6108, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a8b4a3c-719a-4df9-8b13-330378d96015.tmp, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: updater.exe, Pid: 1332, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: updater.exe, Pid: 1300, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: WmiPrvSE.exe, Pid: 1276, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 13% 2026-06-01T21:41:29.964 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cad0a9c5-f956-40bf-8315-b6e8e3ce1663.tmp, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: updater.exe, Pid: 1708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce955469-b18c-458c-a575-24a2f3856cf1.tmp, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: updater.exe, Pid: 1632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8daf385a-7eab-4bb5-9b97-08ae88abca09.tmp, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3b6a21-2f0b-4e2f-b0ff-70376ac2ec90.tmp, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: updater.exe, Pid: 4640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c128864-b7fc-4fc4-a712-fda267bc44b2.tmp, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: updater.exe, Pid: 5200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f204f104-53c1-4362-937c-53a6b08e5d68.tmp, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd85b8fd-4325-4643-9f3b-70c558da4b84.tmp, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: updater.exe, Pid: 4340, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc1596bc-3317-42cb-9a83-822da3c9462a.tmp, EstimatedImpact: 0% 2026-06-01T21:41:29.964 ProcessImageName: updater.exe, Pid: 4484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9640e59-5d8a-4b2e-a502-060bf94457a4.tmp, EstimatedImpact: 0% 2026-06-01T21:48:37.132 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8deb_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227890, FileId: 0x3ad000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:05.170 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227896, FileId: 0x3b4000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:07.686 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227958, FileId: 0x3b6000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:07.748 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227961, FileId: 0x3b7000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:07.811 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227965, FileId: 0x3b8000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:07.842 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227968, FileId: 0x3b9000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:07.873 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227971, FileId: 0x3ba000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:07.904 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227974, FileId: 0x3bb000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:07.951 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227977, FileId: 0x3bc000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:07.983 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227980, FileId: 0x3bd000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:08.014 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227983, FileId: 0x3be000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:08.045 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227986, FileId: 0x3bf000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:08.076 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227989, FileId: 0x3c0000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:08.755 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227993, FileId: 0x3c1000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:09.275 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227996, FileId: 0x3c2000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:09.784 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #227999, FileId: 0x3c3000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:09.816 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228002, FileId: 0x3c4000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:09.847 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228005, FileId: 0x3c5000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:09.863 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228008, FileId: 0x3c6000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:09.878 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228011, FileId: 0x3c7000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:09.909 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228014, FileId: 0x3c8000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:09.941 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228017, FileId: 0x3c9000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:09.956 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228020, FileId: 0x3ca000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:10.019 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228023, FileId: 0x3cb000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:10.050 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228026, FileId: 0x3cc000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:10.081 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228029, FileId: 0x3cd000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:10.097 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228032, FileId: 0x3ce000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:10.144 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228035, FileId: 0x3cf000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:10.175 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228038, FileId: 0x3d0000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:10.206 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228041, FileId: 0x3d1000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:10.691 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228054, FileId: 0x3d2000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:11.097 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8ded_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228063, FileId: 0x3d3000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:25.664 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_4.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228109, FileId: 0x3db000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:25.711 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228112, FileId: 0x3dc000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:25.726 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228115, FileId: 0x3dd000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:25.757 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228118, FileId: 0x3de000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:25.789 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228121, FileId: 0x3df000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:25.820 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228124, FileId: 0x3e0000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:25.867 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_10.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228127, FileId: 0x3e1000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:25.898 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_12.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228130, FileId: 0x3e2000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:25.914 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_14.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228133, FileId: 0x3e3000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:25.945 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_16.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228136, FileId: 0x3e4000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:26.429 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_18.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228139, FileId: 0x3e5000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.236 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_1c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228145, FileId: 0x3e7000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.267 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_1e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228148, FileId: 0x3e8000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.314 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_20.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228151, FileId: 0x3e9000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.329 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_22.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228154, FileId: 0x3ea000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.345 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_24.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228157, FileId: 0x3eb000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.376 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_26.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228160, FileId: 0x3ec000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.408 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_28.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228163, FileId: 0x3ed000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.439 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_2a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228166, FileId: 0x3ee000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.486 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_2d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228169, FileId: 0x3ef000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.517 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_30.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228172, FileId: 0x3f0000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.533 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_34.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228175, FileId: 0x3f1000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.564 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_36.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228178, FileId: 0x3f2000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.611 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_38.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228181, FileId: 0x3f3000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.626 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_3a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228184, FileId: 0x3f4000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.658 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_3c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228187, FileId: 0x3f5000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.720 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_3e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228190, FileId: 0x3f6000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:27.908 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_40.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228193, FileId: 0x3f7000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:50:28.189 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8dee_44.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228200, FileId: 0x3fa000000000fe5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T21:53:31.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T22:08:36.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T22:15:35.001 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #228250, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T22:15:35.016 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #228252, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T22:15:45.008 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #228257, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T22:15:45.024 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #228259, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T22:15:45.165 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #228263, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T22:15:45.165 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #228265, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-01T22:23:41.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T22:38:46.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T22:53:51.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T23:08:56.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T23:24:01.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T23:39:06.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-01T23:41:29.973 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 86857, Count: 12358, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 6587, Count: 6466, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\headlines.ibd, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: sdiagnhost.exe, Pid: 2196, TotalTime: 786, Count: 47, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 6% 2026-06-01T23:41:29.973 ProcessImageName: powershell.exe, Pid: 1244, TotalTime: 607, Count: 80, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W2ded559f#\23b67e15083051b8a1bc635d635ba116\Microsoft.WindowsAuthenticationProtocols.Commands.ni.dll, EstimatedImpact: 21% 2026-06-01T23:41:29.973 ProcessImageName: powershell.exe, Pid: 4952, TotalTime: 231, Count: 18, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 3% 2026-06-01T23:41:29.973 ProcessImageName: taskhostw.exe, Pid: 4240, TotalTime: 152, Count: 15, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\SDIAG_e058f99b-5eb9-4746-930b-64fa2faa209b\DiagPackage.diagpkg, EstimatedImpact: 69% 2026-06-01T23:41:29.973 ProcessImageName: ngentask.exe, Pid: 5084, TotalTime: 135, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 1% 2026-06-01T23:41:29.973 ProcessImageName: WmiPrvSE.exe, Pid: 3128, TotalTime: 123, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 60% 2026-06-01T23:41:29.973 ProcessImageName: ngentask.exe, Pid: 5080, TotalTime: 90, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log->(UTF-8), EstimatedImpact: 1% 2026-06-01T23:41:29.973 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: wacs.exe, Pid: 6076, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-01T23:41:29.973 ProcessImageName: taskhostw.exe, Pid: 5132, TotalTime: 61, Count: 7, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\RegBack\SAM, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 1220, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a29bab3-eae8-40bb-a828-1271e65351cd.tmp, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d47a415-a582-4708-aaee-ed58169e1eff.tmp, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dba4d7cc-f652-48ec-b67c-c9ce1dc34716.tmp, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 6108, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a8b4a3c-719a-4df9-8b13-330378d96015.tmp, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 1300, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: WmiPrvSE.exe, Pid: 1276, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 13% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 1332, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 4640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c128864-b7fc-4fc4-a712-fda267bc44b2.tmp, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 4484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9640e59-5d8a-4b2e-a502-060bf94457a4.tmp, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 4340, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc1596bc-3317-42cb-9a83-822da3c9462a.tmp, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 5200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f204f104-53c1-4362-937c-53a6b08e5d68.tmp, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 1708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce955469-b18c-458c-a575-24a2f3856cf1.tmp, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd85b8fd-4325-4643-9f3b-70c558da4b84.tmp, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6173fac-7c5b-4aea-923f-37afb859b183.tmp, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3b6a21-2f0b-4e2f-b0ff-70376ac2ec90.tmp, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cad0a9c5-f956-40bf-8315-b6e8e3ce1663.tmp, EstimatedImpact: 0% 2026-06-01T23:41:29.973 ProcessImageName: updater.exe, Pid: 1632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8daf385a-7eab-4bb5-9b97-08ae88abca09.tmp, EstimatedImpact: 0% 2026-06-01T23:54:11.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T00:09:16.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T00:18:58.861 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8e04_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #228455, FileId: 0x1c000000009ac0, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T00:24:21.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T00:36:01.923 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:F91B58D2-BB3D-44EB-9DC8-D7D30CB4DE1D, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-06-02T00:36:01.923 Scheduled scan with Id F91B58D2-BB3D-44EB-9DC8-D7D30CB4DE1D configured CPU priority: normal (LowCpuPriority: 0) 2026-06-02T00:36:01.923 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-02T00:36:01.923 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-06-02T00:36:01.923 [SFC] System file cache build is not needed (already completed) 2026-06-02T00:36:19.996 Engine:Triggered AR EMS scan 2026-06-02T00:36:19.996 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.012 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.027 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.043 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.074 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.090 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.090 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.121 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.137 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.152 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.168 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.183 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.199 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.199 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.215 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.230 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.246 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.262 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.293 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:36:20.308 Engine:EMS scan for process: svchost pid: 2820, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-02T00:37:06.565 QuickScan:ScanID:F91B58D2-BB3D-44EB-9DC8-D7D30CB4DE1D: Quick scan finished with error 0 2026-06-02T00:37:06.565 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-02T00:37:07.076 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-02T00:37:07.076 [RTP] Duplicating the current plugin configuration object... 2026-06-02T00:37:07.076 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-02T00:37:07.076 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-02T00:37:07.076 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-02T00:37:07.076 [RTP] No config change detected. Not updating plugin configuration. 2026-06-02T00:37:07.076 [RTP] No config changes found. No configuration switch. 2026-06-02T00:37:07.076 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-02T00:39:26.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T00:54:31.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T01:09:36.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T01:24:41.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T01:39:46.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T01:41:29.973 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 87627, Count: 12438, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 6632, Count: 6471, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\headlines.ibd, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: sdiagnhost.exe, Pid: 2196, TotalTime: 786, Count: 47, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 6% 2026-06-02T01:41:29.973 ProcessImageName: powershell.exe, Pid: 1244, TotalTime: 607, Count: 80, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W2ded559f#\23b67e15083051b8a1bc635d635ba116\Microsoft.WindowsAuthenticationProtocols.Commands.ni.dll, EstimatedImpact: 21% 2026-06-02T01:41:29.973 ProcessImageName: powershell.exe, Pid: 4952, TotalTime: 231, Count: 18, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 3% 2026-06-02T01:41:29.973 ProcessImageName: taskhostw.exe, Pid: 4240, TotalTime: 152, Count: 15, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\SDIAG_e058f99b-5eb9-4746-930b-64fa2faa209b\DiagPackage.diagpkg, EstimatedImpact: 69% 2026-06-02T01:41:29.973 ProcessImageName: ngentask.exe, Pid: 5084, TotalTime: 135, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 1% 2026-06-02T01:41:29.973 ProcessImageName: WmiPrvSE.exe, Pid: 3128, TotalTime: 123, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 60% 2026-06-02T01:41:29.973 ProcessImageName: ngentask.exe, Pid: 5080, TotalTime: 90, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log->(UTF-8), EstimatedImpact: 1% 2026-06-02T01:41:29.973 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: wacs.exe, Pid: 6076, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-02T01:41:29.973 ProcessImageName: taskhostw.exe, Pid: 5132, TotalTime: 61, Count: 7, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\RegBack\SAM, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 1220, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a29bab3-eae8-40bb-a828-1271e65351cd.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d47a415-a582-4708-aaee-ed58169e1eff.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dba4d7cc-f652-48ec-b67c-c9ce1dc34716.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 6108, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a8b4a3c-719a-4df9-8b13-330378d96015.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 1332, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 1300, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: WmiPrvSE.exe, Pid: 1276, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 13% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed978774-6a8e-468b-b13d-5f0b1c537196.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cad0a9c5-f956-40bf-8315-b6e8e3ce1663.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3b6a21-2f0b-4e2f-b0ff-70376ac2ec90.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 4640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c128864-b7fc-4fc4-a712-fda267bc44b2.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 4484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9640e59-5d8a-4b2e-a502-060bf94457a4.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 5200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f204f104-53c1-4362-937c-53a6b08e5d68.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 4340, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc1596bc-3317-42cb-9a83-822da3c9462a.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd85b8fd-4325-4643-9f3b-70c558da4b84.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6173fac-7c5b-4aea-923f-37afb859b183.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 1632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8daf385a-7eab-4bb5-9b97-08ae88abca09.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 1708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce955469-b18c-458c-a575-24a2f3856cf1.tmp, EstimatedImpact: 0% 2026-06-02T01:41:29.973 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a3e51fa-aa01-49fa-b573-2ce0c042b3b4.tmp, EstimatedImpact: 0% 2026-06-02T01:54:51.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T02:09:56.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T02:25:01.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T02:40:06.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T02:55:11.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T03:10:16.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T03:15:33.615 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #228909, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T03:16:08.105 ReportLowfi(c:\program files (x86)\google\chrome\application\148.0.7778.217\installer\chrmstp.exe, 0x437a0835) from 0x0006b6bd6566d2d9 Internal signature match:subtype=Lowfi, sigseq=0x000005550240CBF2, sigsha=e39a25e9b19899abbd79ec872fd8aeabe27e140d, cached=false, source=0, resourceid=0xe4fa9e5e 2026-06-02T03:16:20.246 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #229233, FileId: 0x566000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T03:25:21.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T03:40:26.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T03:41:29.987 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 87868, Count: 12470, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 5548, TotalTime: 7510, Count: 15, MaxTime: 4906, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping5548_618675858\148.0.7778.217_chrome_installer_uncompressed.exe, EstimatedImpact: 15% 2026-06-02T03:41:29.987 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 6632, Count: 6471, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\headlines.ibd, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: sdiagnhost.exe, Pid: 2196, TotalTime: 786, Count: 47, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 6% 2026-06-02T03:41:29.987 ProcessImageName: powershell.exe, Pid: 1244, TotalTime: 607, Count: 80, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W2ded559f#\23b67e15083051b8a1bc635d635ba116\Microsoft.WindowsAuthenticationProtocols.Commands.ni.dll, EstimatedImpact: 21% 2026-06-02T03:41:29.987 ProcessImageName: powershell.exe, Pid: 4952, TotalTime: 231, Count: 18, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 3% 2026-06-02T03:41:29.987 ProcessImageName: 148.0.7778.217_chrome_installer_uncompressed.exe, Pid: 5316, TotalTime: 186, Count: 3, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping5548_618675858\CR_5DFF5.tmp\setup.exe, EstimatedImpact: 91% 2026-06-02T03:41:29.987 ProcessImageName: taskhostw.exe, Pid: 4240, TotalTime: 152, Count: 15, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\SDIAG_e058f99b-5eb9-4746-930b-64fa2faa209b\DiagPackage.diagpkg, EstimatedImpact: 69% 2026-06-02T03:41:29.987 ProcessImageName: setup.exe, Pid: 4956, TotalTime: 138, Count: 10, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 63% 2026-06-02T03:41:29.987 ProcessImageName: ngentask.exe, Pid: 5084, TotalTime: 135, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 1% 2026-06-02T03:41:29.987 ProcessImageName: WmiPrvSE.exe, Pid: 3128, TotalTime: 123, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 60% 2026-06-02T03:41:29.987 ProcessImageName: ngentask.exe, Pid: 5080, TotalTime: 90, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log->(UTF-8), EstimatedImpact: 1% 2026-06-02T03:41:29.987 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: wacs.exe, Pid: 6076, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-02T03:41:29.987 ProcessImageName: taskhostw.exe, Pid: 5132, TotalTime: 61, Count: 7, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\RegBack\SAM, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 1220, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a29bab3-eae8-40bb-a828-1271e65351cd.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d47a415-a582-4708-aaee-ed58169e1eff.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dba4d7cc-f652-48ec-b67c-c9ce1dc34716.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 4280, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\22a2fa46-16de-47bc-8536-b6257f0385c9.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 6108, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a8b4a3c-719a-4df9-8b13-330378d96015.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 1300, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 1332, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: WmiPrvSE.exe, Pid: 1276, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 13% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6173fac-7c5b-4aea-923f-37afb859b183.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 4340, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc1596bc-3317-42cb-9a83-822da3c9462a.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed978774-6a8e-468b-b13d-5f0b1c537196.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 1632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8daf385a-7eab-4bb5-9b97-08ae88abca09.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 4484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9640e59-5d8a-4b2e-a502-060bf94457a4.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 4640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c128864-b7fc-4fc4-a712-fda267bc44b2.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 1708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce955469-b18c-458c-a575-24a2f3856cf1.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 5200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f204f104-53c1-4362-937c-53a6b08e5d68.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_5548_444515815\decoded_xz, EstimatedImpact: 2% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3b6a21-2f0b-4e2f-b0ff-70376ac2ec90.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cad0a9c5-f956-40bf-8315-b6e8e3ce1663.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd85b8fd-4325-4643-9f3b-70c558da4b84.tmp, EstimatedImpact: 0% 2026-06-02T03:41:29.987 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a3e51fa-aa01-49fa-b573-2ce0c042b3b4.tmp, EstimatedImpact: 0% 2026-06-02T03:55:31.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T04:10:36.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b 2026-06-02T04:19:45.488 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-02T04:19:45.503 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-06-02T04:19:45.503 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-06-02T04:19:45.503 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-06-02T04:19:45.503 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-02T04:19:45.503 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-02T04:19:45.503 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-02T04:19:45.503 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-02T04:19:45.503 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-02T04:19:45.503 MdCoreSvc is supported in this platform and OS 2026-06-02T04:19:45.991 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-06-02T04:19:45.991 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-06-02T04:19:45.991 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-02T04:25:41.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T04:40:46.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T04:55:51.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T05:10:56.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T05:15:33.402 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #229403, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T05:26:01.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T05:41:06.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T05:41:29.992 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 87960, Count: 12481, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 5548, TotalTime: 7510, Count: 15, MaxTime: 4906, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping5548_618675858\148.0.7778.217_chrome_installer_uncompressed.exe, EstimatedImpact: 15% 2026-06-02T05:41:29.992 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 6647, Count: 6477, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\headlines.ibd, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: sdiagnhost.exe, Pid: 2196, TotalTime: 786, Count: 47, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 6% 2026-06-02T05:41:29.992 ProcessImageName: powershell.exe, Pid: 1244, TotalTime: 607, Count: 80, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W2ded559f#\23b67e15083051b8a1bc635d635ba116\Microsoft.WindowsAuthenticationProtocols.Commands.ni.dll, EstimatedImpact: 21% 2026-06-02T05:41:29.992 ProcessImageName: powershell.exe, Pid: 4952, TotalTime: 231, Count: 18, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 3% 2026-06-02T05:41:29.992 ProcessImageName: 148.0.7778.217_chrome_installer_uncompressed.exe, Pid: 5316, TotalTime: 186, Count: 3, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping5548_618675858\CR_5DFF5.tmp\setup.exe, EstimatedImpact: 91% 2026-06-02T05:41:29.992 ProcessImageName: taskhostw.exe, Pid: 4240, TotalTime: 152, Count: 15, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\SDIAG_e058f99b-5eb9-4746-930b-64fa2faa209b\DiagPackage.diagpkg, EstimatedImpact: 69% 2026-06-02T05:41:29.992 ProcessImageName: setup.exe, Pid: 4956, TotalTime: 138, Count: 10, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 63% 2026-06-02T05:41:29.992 ProcessImageName: ngentask.exe, Pid: 5084, TotalTime: 135, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 1% 2026-06-02T05:41:29.992 ProcessImageName: WmiPrvSE.exe, Pid: 3128, TotalTime: 123, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 60% 2026-06-02T05:41:29.992 ProcessImageName: ngentask.exe, Pid: 5080, TotalTime: 90, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log->(UTF-8), EstimatedImpact: 1% 2026-06-02T05:41:29.992 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 8, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: wacs.exe, Pid: 6076, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-02T05:41:29.992 ProcessImageName: taskhostw.exe, Pid: 5132, TotalTime: 61, Count: 7, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\RegBack\SAM, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 1220, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a29bab3-eae8-40bb-a828-1271e65351cd.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d47a415-a582-4708-aaee-ed58169e1eff.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 4280, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\22a2fa46-16de-47bc-8536-b6257f0385c9.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dba4d7cc-f652-48ec-b67c-c9ce1dc34716.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 6108, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a8b4a3c-719a-4df9-8b13-330378d96015.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 1300, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 1332, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: WmiPrvSE.exe, Pid: 1276, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 13% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 4484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9640e59-5d8a-4b2e-a502-060bf94457a4.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 5888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d2a2cd3-5a8b-4351-81d5-2c59e608de22.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 4640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c128864-b7fc-4fc4-a712-fda267bc44b2.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cad0a9c5-f956-40bf-8315-b6e8e3ce1663.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3b6a21-2f0b-4e2f-b0ff-70376ac2ec90.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 5200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f204f104-53c1-4362-937c-53a6b08e5d68.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 4340, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc1596bc-3317-42cb-9a83-822da3c9462a.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6173fac-7c5b-4aea-923f-37afb859b183.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 5596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14a8f708-52de-4ba6-b35c-1a5fd3259df9.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 1708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce955469-b18c-458c-a575-24a2f3856cf1.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 1632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8daf385a-7eab-4bb5-9b97-08ae88abca09.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd85b8fd-4325-4643-9f3b-70c558da4b84.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_5548_444515815\decoded_xz, EstimatedImpact: 2% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed978774-6a8e-468b-b13d-5f0b1c537196.tmp, EstimatedImpact: 0% 2026-06-02T05:41:29.992 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a3e51fa-aa01-49fa-b573-2ce0c042b3b4.tmp, EstimatedImpact: 0% 2026-06-02T05:56:11.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T06:11:16.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T06:26:21.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T06:41:26.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T06:56:31.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T07:11:36.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T07:15:35.346 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #229775, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T07:26:41.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T07:41:16.443 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-06-02T07:41:16.459 Job Notification: New process added to job (4288) 2026-06-02T07:41:16.475 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-06-02T07:41:16.475 Job Notification: New process added to job (4520) 2026-06-02T07:41:16.475 Aggressive catchup quick scan threshold: 255145582963 / 25920000000000 2026-06-02T07:41:16.475 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4288] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4520]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-02T07:41:16.615 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-06-02T07:41:16.615 Job Notification: New process added to job (4084) 2026-06-02T07:41:16.615 Job Notification: New process added to job (5324) 2026-06-02T07:41:16.631 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4084] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5324]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-02T07:41:16.990 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-02T07:41:17.006 [RTP] Duplicating the current plugin configuration object... 2026-06-02T07:41:17.006 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-02T07:41:17.006 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-02T07:41:17.006 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-02T07:41:17.006 [RTP] No config change detected. Not updating plugin configuration. 2026-06-02T07:41:17.006 [RTP] No config changes found. No configuration switch. 2026-06-02T07:41:17.006 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-02T07:41:17.178 Job Notification: New process added to job (3292) 2026-06-02T07:41:17.178 Task(GetDeviceTicket -AccessKey 6E6E048F-DCA9-A758-209D-9A6077CAD910 ) launched as network service 2026-06-02T07:41:17.193 Job Notification: Process exited from job (3292) 2026-06-02T07:41:18.335 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-02T07:41:18.335 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T07:41:18.335 [Cloud] Queued cloud request. 2026-06-02T07:41:18.335 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-02T07:41:18.335 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-06-02T07:41:18.335 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T07:41:18.335 [Cloud] Queued cloud request. 2026-06-02T07:41:18.366 Job Notification: New process added to job (3604) 2026-06-02T07:41:18.366 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey A7D549D1-16F2-999A-FD93-59D777AEA3A9) launched 2026-06-02T07:41:18.366 Job Notification: New process added to job (5152) 2026-06-02T07:41:18.382 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3604] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5152]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-02T07:41:18.397 Job Notification: New process added to job (5764) 2026-06-02T07:41:18.397 Job Notification: Process exited from job (3604) 2026-06-02T07:41:18.397 Job Notification: Process exited from job (5152) 2026-06-02T07:41:18.413 [Cloud] Dequeued cloud request. 2026-06-02T07:41:18.413 [Cloud] Dequeued cloud request. 2026-06-02T07:41:18.413 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-02T07:41:18.413 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-02T07:41:18.647 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-02T07:41:18.647 [Cloud] End of cloud request. 2026-06-02T07:41:18.835 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-02T07:41:19.718 [Cloud] End of cloud request. 2026-06-02T07:41:20.234 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-02T07:41:30.002 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 88005, Count: 12491, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 5548, TotalTime: 7510, Count: 15, MaxTime: 4906, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping5548_618675858\148.0.7778.217_chrome_installer_uncompressed.exe, EstimatedImpact: 15% 2026-06-02T07:41:30.002 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 6647, Count: 6477, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\headlines.ibd, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: sdiagnhost.exe, Pid: 2196, TotalTime: 786, Count: 47, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 6% 2026-06-02T07:41:30.002 ProcessImageName: powershell.exe, Pid: 1244, TotalTime: 607, Count: 80, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W2ded559f#\23b67e15083051b8a1bc635d635ba116\Microsoft.WindowsAuthenticationProtocols.Commands.ni.dll, EstimatedImpact: 21% 2026-06-02T07:41:30.002 ProcessImageName: powershell.exe, Pid: 4952, TotalTime: 231, Count: 18, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 3% 2026-06-02T07:41:30.002 ProcessImageName: 148.0.7778.217_chrome_installer_uncompressed.exe, Pid: 5316, TotalTime: 186, Count: 3, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping5548_618675858\CR_5DFF5.tmp\setup.exe, EstimatedImpact: 91% 2026-06-02T07:41:30.002 ProcessImageName: taskhostw.exe, Pid: 4240, TotalTime: 152, Count: 15, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\SDIAG_e058f99b-5eb9-4746-930b-64fa2faa209b\DiagPackage.diagpkg, EstimatedImpact: 69% 2026-06-02T07:41:30.002 ProcessImageName: setup.exe, Pid: 4956, TotalTime: 138, Count: 10, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 63% 2026-06-02T07:41:30.002 ProcessImageName: ngentask.exe, Pid: 5084, TotalTime: 135, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 1% 2026-06-02T07:41:30.002 ProcessImageName: WmiPrvSE.exe, Pid: 3128, TotalTime: 123, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 60% 2026-06-02T07:41:30.002 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 105, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: ngentask.exe, Pid: 5080, TotalTime: 90, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log->(UTF-8), EstimatedImpact: 1% 2026-06-02T07:41:30.002 ProcessImageName: wacs.exe, Pid: 6076, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-02T07:41:30.002 ProcessImageName: taskhostw.exe, Pid: 5132, TotalTime: 61, Count: 7, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\RegBack\SAM, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: svchost.exe, Pid: 900, TotalTime: 46, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpEvMsg.dll, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 1220, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5a29bab3-eae8-40bb-a828-1271e65351cd.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 4240, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d47a415-a582-4708-aaee-ed58169e1eff.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 4280, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\22a2fa46-16de-47bc-8536-b6257f0385c9.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 4736, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dba4d7cc-f652-48ec-b67c-c9ce1dc34716.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 6108, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3a8b4a3c-719a-4df9-8b13-330378d96015.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: WmiPrvSE.exe, Pid: 1276, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\rescache\rc0027\ResCache.hit, EstimatedImpact: 13% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 1300, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 1332, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 1328, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_5548_444515815\decoded_xz, EstimatedImpact: 2% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 5888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d2a2cd3-5a8b-4351-81d5-2c59e608de22.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 3300, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cad0a9c5-f956-40bf-8315-b6e8e3ce1663.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc3b6a21-2f0b-4e2f-b0ff-70376ac2ec90.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 2784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75834043-4ce5-42e3-adc5-8e2973e49c2e.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 5596, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\14a8f708-52de-4ba6-b35c-1a5fd3259df9.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c6173fac-7c5b-4aea-923f-37afb859b183.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 5580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dd85b8fd-4325-4643-9f3b-70c558da4b84.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 1708, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ce955469-b18c-458c-a575-24a2f3856cf1.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 1632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8daf385a-7eab-4bb5-9b97-08ae88abca09.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 376, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4a3e51fa-aa01-49fa-b573-2ce0c042b3b4.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 5200, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f204f104-53c1-4362-937c-53a6b08e5d68.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 4948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\616b83d7-a13d-42fd-a29d-ef8e5b8ee635.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 4640, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3c128864-b7fc-4fc4-a712-fda267bc44b2.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 4484, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9640e59-5d8a-4b2e-a502-060bf94457a4.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ed978774-6a8e-468b-b13d-5f0b1c537196.tmp, EstimatedImpact: 0% 2026-06-02T07:41:30.002 ProcessImageName: updater.exe, Pid: 4340, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dc1596bc-3317-42cb-9a83-822da3c9462a.tmp, EstimatedImpact: 0% 2026-06-02T07:41:46.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T07:42:14.884 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\56CE8A64-0308-40CD-9CD0-41241406D8E11674.1dcf263538aa3a0 2026-06-02T07:42:14.950 Verifying engine and signature files (source: 0) ... 2026-06-02T07:42:14.950 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EA99060C-3A64-4029-B0DF-11EA55E7F4CD}\mpengine.dll] due to PPL. 2026-06-02T07:42:14.950 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EA99060C-3A64-4029-B0DF-11EA55E7F4CD}\mpasbase.vdm]. File not in cache (0x1) 2026-06-02T07:42:15.700 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EA99060C-3A64-4029-B0DF-11EA55E7F4CD}\mpasbase.vdm] 2026-06-02T07:42:15.700 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EA99060C-3A64-4029-B0DF-11EA55E7F4CD}\mpasdlta.vdm]. File not in cache (0x1) 2026-06-02T07:42:15.716 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EA99060C-3A64-4029-B0DF-11EA55E7F4CD}\mpasdlta.vdm] 2026-06-02T07:42:15.716 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EA99060C-3A64-4029-B0DF-11EA55E7F4CD}\mpavbase.vdm]. File not in cache (0x1) 2026-06-02T07:42:16.012 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EA99060C-3A64-4029-B0DF-11EA55E7F4CD}\mpavbase.vdm] 2026-06-02T07:42:16.012 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EA99060C-3A64-4029-B0DF-11EA55E7F4CD}\mpavdlta.vdm]. File not in cache (0x1) 2026-06-02T07:42:16.028 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EA99060C-3A64-4029-B0DF-11EA55E7F4CD}\mpavdlta.vdm] 2026-06-02T07:42:16.153 [Engine] IsHybridMode: 0 2026-06-02T07:42:16.153 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-06-02T07:42:16.216 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-931C6EE5944F74E31BBFD6048F27D659C1A32108.bin): 0x00000002 2026-06-02T07:42:16.216 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-931C6EE5944F74E31BBFD6048F27D659C1A32108.bin) 2026-06-02T07:42:16.216 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-06-02T07:42:16.216 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-06-02T07:42:16.216 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-06-02T07:42:16.216 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-06-02T07:42:24.544 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-06-02T07:42:24.544 [AutoExclusion] Applied roles from cache. 2026-06-02T07:42:24.544 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-06-02T07:42:24.559 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB12AE5810, lRefCount: 5, hr=0 2026-06-02T07:42:24.559 [Engine] New active engine 00007FFB1FE95810 replacing engine 00007FFB12AE5810. Number of active engines: 2 2026-06-02T07:42:24.559 EngineInit:Global ASOC is enabled 2026-06-02T07:42:24.559 EngineInit:ASOO is enabled for developer volumes 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-02T07:42:24.575 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-02T07:42:24.590 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-02T07:42:24.590 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-02T07:42:24.590 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-02T07:42:24.590 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-06-02T07:42:24.590 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-06-02T07:42:24.590 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-06-02T07:42:24.590 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-06-02T07:42:24.590 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-06-02T07:42:24.606 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-06-02T07:42:24.606 [Plugin] Initializing RTP plugin state... 2026-06-02T07:42:24.606 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-06-02T07:42:24.606 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎06‎-‎01‎-‎2026 09:41:33 Last Perf:‎06‎-‎01‎-‎2026 09:41:32 First RTP Scan:‎06‎-‎01‎-‎2026 09:41:33 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:1040 Misses:9020 BM Queue:0,163,0 Proc:0,96,0 File:0,161,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:229926 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-413800589 AsyncQCurrent:0 BMFlags:40095 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:26489 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:341347 TotalHits:6558419 InstanceCacheInserts:33011 InstanceCacheUpdates:0 InstanceCacheDeletes:17739 InstanceCacheHits:909 InstanceCacheMisses:215332 InstanceCacheOverflows:13936 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:57ms (16650/289) Success: 286, failures: 0 (last code: 0x0), timeouts: 3, baddata: 0 **************************END RTP Perf Log************************* 2026-06-02T07:42:24.606 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EA99060C-3A64-4029-B0DF-11EA55E7F4CD} 2026-06-02T07:42:24.606 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2BA4DD24-2DBE-4E5E-BA18-525F2443EA6D}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2BA4DD24-2DBE-4E5E-BA18-525F2443EA6D}\mpengine.dll cannot be deleted, hr=0x80070005 2026-06-02T07:42:24.606 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-06-02T07:42:24.606 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3E845C92-ED39-44DA-94AB-743265884DFF} removed 2026-06-02T07:42:24.606 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-02T07:42:24.606 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-02T07:42:24.606 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-02T07:42:24.606 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-02T07:42:24.606 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:06-02-2026 07:42:24 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:06-02-2026 07:42:24 2026-06-02T07:42:24.606 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-06-02T07:42:24.606 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-06-02T07:42:24.606 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-02T07:42:24.606 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-06-02T07:42:24.606 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-02T07:42:24.606 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-02T07:42:24.606 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-02T07:42:24.606 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-02T07:42:24.606 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-02T07:42:24.606 MdCoreSvc is supported in this platform and OS Signature updated on 06-02-2026 07:42:24 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.226.0 AV Signature Version: 1.451.226.0 ************************************************************ 2026-06-02T07:42:24.606 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-06-02T07:42:24.606 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\56CE8A64-0308-40CD-9CD0-41241406D8E11674.1dcf263538aa3a0 2026-06-02T07:42:24.622 Process scan (postsignatureupdatescan) started. Signature updated via MicrosoftUpdateServer on 06-02-2026 07:42:24 ************************************************************ 2026-06-02T07:42:24.684 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-06-02T07:42:24.684 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-06-02T07:42:24.700 Job Notification: Process exited from job (4084) 2026-06-02T07:42:24.700 Job Notification: Process exited from job (5324) 2026-06-02T07:42:24.700 Job Notification: Process exited from job (4288) 2026-06-02T07:42:24.700 Job Notification: Process exited from job (4520) 2026-06-02T07:42:24.903 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-06-02T07:42:24.903 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-06-02T07:42:24.903 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-06-02T07:42:24.903 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-06-02T07:42:24.903 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-06-02T07:42:24.903 [Engine] Engine 00007FFB12AE5810 no longer in use. Number of active engines: 1 2026-06-02T07:42:24.903 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-02T07:42:24.903 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-06-02T07:42:25.106 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-06-02T07:42:25.106 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-06-02T07:42:25.106 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-02T07:42:25.637 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 88005, Count: 12491, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-02T07:42:25.637 ProcessImageName: updater.exe, Pid: 5548, TotalTime: 7510, Count: 15, MaxTime: 4906, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping5548_618675858\148.0.7778.217_chrome_installer_uncompressed.exe, EstimatedImpact: 15% 2026-06-02T07:42:25.637 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 6647, Count: 6477, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\mysql\data\kptv_site\headlines.ibd, EstimatedImpact: 0% 2026-06-02T07:42:25.637 ProcessImageName: sdiagnhost.exe, Pid: 2196, TotalTime: 786, Count: 47, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 6% 2026-06-02T07:42:25.637 ProcessImageName: powershell.exe, Pid: 1244, TotalTime: 607, Count: 80, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W2ded559f#\23b67e15083051b8a1bc635d635ba116\Microsoft.WindowsAuthenticationProtocols.Commands.ni.dll, EstimatedImpact: 21% 2026-06-02T07:42:25.637 ProcessImageName: powershell.exe, Pid: 4952, TotalTime: 231, Count: 18, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 3% 2026-06-02T07:42:25.637 ProcessImageName: 148.0.7778.217_chrome_installer_uncompressed.exe, Pid: 5316, TotalTime: 186, Count: 3, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping5548_618675858\CR_5DFF5.tmp\setup.exe, EstimatedImpact: 91% 2026-06-02T07:42:25.637 ProcessImageName: taskhostw.exe, Pid: 4240, TotalTime: 152, Count: 15, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\SDIAG_e058f99b-5eb9-4746-930b-64fa2faa209b\DiagPackage.diagpkg, EstimatedImpact: 69% 2026-06-02T07:42:25.637 ProcessImageName: setup.exe, Pid: 4956, TotalTime: 138, Count: 10, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 63% 2026-06-02T07:42:25.637 ProcessImageName: ngentask.exe, Pid: 5084, TotalTime: 135, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 1% 2026-06-02T07:42:25.637 ProcessImageName: WmiPrvSE.exe, Pid: 3128, TotalTime: 123, Count: 4, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\acpi.sys, EstimatedImpact: 60% 2026-06-02T07:42:25.637 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 105, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-02T07:42:25.637 ProcessImageName: ngentask.exe, Pid: 5080, TotalTime: 90, Count: 13, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log->(UTF-8), EstimatedImpact: 1% 2026-06-02T07:42:25.637 ProcessImageName: wacs.exe, Pid: 6076, TotalTime: 75, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-02T07:42:25.637 ProcessImageName: taskhostw.exe, Pid: 5132, TotalTime: 61, Count: 7, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\RegBack\SAM, EstimatedImpact: 0% 2026-06-02T07:42:25.684 [Engine] RSIG_UNLOADENGINE, 00007FFB12AE5810, err=0x0 2026-06-02T07:42:25.700 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2BA4DD24-2DBE-4E5E-BA18-525F2443EA6D} removed 2026-06-02T07:42:30.742 Process scan (postsignatureupdatescan) completed. 2026-06-02T07:47:24.567 [RbM] Setting Last known good engine candidate. hr = 0 2026-06-02T07:56:51.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T08:11:56.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T08:15:35.951 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230194, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T08:15:35.951 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230196, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T08:15:45.965 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230201, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T08:15:45.965 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230203, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T08:15:46.168 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230207, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T08:15:46.184 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230209, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T08:27:01.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T08:42:06.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T08:57:11.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T09:12:16.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T09:15:35.089 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230297, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T09:15:35.089 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230299, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T09:15:45.104 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230304, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T09:15:45.104 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #230306, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T09:27:21.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T09:42:24.563 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 1520, Count: 168, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-06-02T09:42:24.563 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T09:42:24.563 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-02T09:42:24.563 ProcessImageName: updater.exe, Pid: 5392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7583eedd-b77f-4cc1-b61e-3ed23e639f87.tmp, EstimatedImpact: 0% 2026-06-02T09:42:26.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T09:57:31.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-06-02T10:10:29.394 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-02T10:10:29.394 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T10:10:29.394 [Cloud] Queued cloud request. 2026-06-02T10:10:29.394 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-02T10:10:29.394 [Cloud] Dequeued cloud request. 2026-06-02T10:10:29.394 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-02T10:10:29.834 [Cloud] End of cloud request. 2026-06-02T10:10:29.834 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-06-02T10:10:29.840 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe BEGIN BM telemetry GUID:{E35F5CCB-59E0-BA05-027E-91AC1D136719} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:3940 ProcessCreationTime:134248686293905949 SessionID:0 CreationTime:06-02-2026 10:10:29 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-06-02T10:10:29.856 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE 2026-06-02T10:10:29.872 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-02T10:10:29.872 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-02T10:10:30.466 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-02T10:10:30.482 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-02T10:10:30.482 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T10:10:30.482 [Cloud] Queued cloud request. 2026-06-02T10:10:30.482 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-02T10:10:30.482 [Cloud] Dequeued cloud request. 2026-06-02T10:10:30.482 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-02T10:10:30.560 [Cloud] End of cloud request. 2026-06-02T10:10:31.060 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-02T10:10:32.029 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-02T10:10:32.029 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T10:10:32.029 [Cloud] Queued cloud request. 2026-06-02T10:10:32.029 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-02T10:10:32.029 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-06-02T10:10:32.029 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T10:10:32.029 [Cloud] Queued cloud request. 2026-06-02T10:10:32.029 [Cloud] Dequeued cloud request. 2026-06-02T10:10:32.029 [Cloud] Dequeued cloud request. 2026-06-02T10:10:32.029 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-02T10:10:32.029 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-02T10:10:32.156 [Cloud] End of cloud request. 2026-06-02T10:10:32.187 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-02T10:10:32.187 [Cloud] End of cloud request. 2026-06-02T10:10:32.671 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-02T10:12:36.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T10:14:01.568 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f16_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #231602, FileId: 0xd6f00000000a081, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T10:14:13.303 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f17_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #232052, FileId: 0x1a2f000000013a1f, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T10:14:13.318 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f16_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #232051, FileId: 0xd7300000000a081, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T10:15:36.056 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232066, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T10:15:36.056 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232068, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T10:15:46.064 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232073, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T10:15:46.080 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232076, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T10:27:41.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T10:42:46.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T10:57:51.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T11:12:56.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T11:15:34.318 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232163, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T11:15:34.318 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232165, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T11:15:44.321 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232170, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T11:15:44.321 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232171, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T11:15:44.336 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232172, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T11:28:01.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T11:42:24.574 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 48420, Count: 6590, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-02T11:42:24.574 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-02T11:42:24.574 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T11:42:24.574 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-02T11:42:24.574 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 15, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f17_2.MAD, EstimatedImpact: 0% 2026-06-02T11:42:24.574 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a7b0708-66a7-4906-a7f3-a6c566c6da6b.tmp, EstimatedImpact: 0% 2026-06-02T11:42:24.574 ProcessImageName: updater.exe, Pid: 5392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7583eedd-b77f-4cc1-b61e-3ed23e639f87.tmp, EstimatedImpact: 0% 2026-06-02T11:42:24.574 ProcessImageName: updater.exe, Pid: 3092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68c78d3a-ac25-474a-ba21-1f73909539ac.tmp, EstimatedImpact: 0% 2026-06-02T11:43:06.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T11:58:11.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T12:13:16.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T12:15:35.546 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232247, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T12:15:35.562 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232249, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T12:15:45.561 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232255, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T12:15:45.561 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232254, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T12:15:45.576 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232256, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T12:28:21.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T12:43:26.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T12:47:09.830 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f47_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #232307, FileId: 0x4698000000005744, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T12:47:10.408 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f47_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #232311, FileId: 0x4699000000005744, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T12:58:31.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T13:13:36.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T13:14:43.260 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f77_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #232367, FileId: 0x46a2000000005744, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T13:15:35.680 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232380, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T13:15:35.695 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232382, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T13:15:45.688 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232387, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T13:15:45.688 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232389, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T13:15:45.859 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232393, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T13:15:45.859 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #232395, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T13:17:51.622 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f80_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #232401, FileId: 0xd7a00000000a081, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 BEGIN BM telemetry GUID:{89229C35-0930-8443-F03D-41F0C91B5599} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:4672 ProcessCreationTime:134248799050249997 SessionID:2 CreationTime:06-02-2026 13:18:25 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\winlogon.exe:5048:1, Operations:None END BM telemetry 2026-06-02T13:18:25.186 Bm signature throttled:0x00003fb37eb842dc 2026-06-02T13:18:25.732 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-02T13:18:25.732 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T13:18:25.732 [Cloud] Queued cloud request. 2026-06-02T13:18:25.732 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-02T13:18:25.732 [Cloud] Dequeued cloud request. 2026-06-02T13:18:25.795 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-02T13:18:26.248 [Cloud] End of cloud request. 2026-06-02T13:18:26.779 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-02T13:18:30.245 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\PrsF67B.tmp. Process: \Device\HarddiskVolume2\Windows\System32\rdpclip.exe, Status: 0xc0000001, State: 0, ScanRequest #233109, FileId: 0xf00000001b9a0, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T13:18:31.362 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-02T13:18:31.362 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T13:18:31.362 [Cloud] Queued cloud request. 2026-06-02T13:18:31.362 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-02T13:18:31.362 [Cloud] Dequeued cloud request. 2026-06-02T13:18:31.362 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 BEGIN BM telemetry GUID:{AF4655BD-A1C1-AD06-C032-3E15C10F383A} SignatureID:55744863128705 SigSha:c539180aa086d9d13dc4b68983fe5c1ea447dc45 ThreatLevel:0 ProcessID:0 ProcessCreationTime:42949672960 SessionID:4294967295 CreationTime:06-02-2026 13:18:35 Taint Info:Friendly: N; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-06-02T13:18:35.882 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-06-02T13:18:35.882 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T13:18:35.882 [Cloud] Queued cloud request. 2026-06-02T13:18:35.882 [Cloud] Dequeued cloud request. 2026-06-02T13:18:35.882 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-02T13:18:36.038 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-02T13:18:36.038 [Cloud] End of cloud request. 2026-06-02T13:18:36.538 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-02T13:18:41.403 [Cloud] End of cloud request. 2026-06-02T13:18:41.919 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-02T13:28:41.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) BEGIN BM telemetry GUID:{F2BAFAD1-2B45-6687-B72C-0B8143D52E51} SignatureID:340520518878414 SigSha:e1735ced290d41223a12e50689d7c8ade6f705e0 ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:06-02-2026 13:33:18 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry BEGIN BM telemetry GUID:{3FA66119-CFDF-0AC2-1660-7052CFF0225C} SignatureID:78837358435448 SigSha:6da27748eeb3b2acd6c4fe05296111f3149aca0e ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:06-02-2026 13:33:18 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-06-02T13:33:19.801 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-02T13:33:19.801 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T13:33:19.801 [Cloud] Queued cloud request. 2026-06-02T13:33:19.801 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-02T13:33:19.801 [Cloud] Dequeued cloud request. 2026-06-02T13:33:19.801 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-02T13:33:19.801 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-06-02T13:33:19.816 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T13:33:19.816 [Cloud] Queued cloud request. 2026-06-02T13:33:19.816 [Cloud] Dequeued cloud request. 2026-06-02T13:33:19.816 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-02T13:33:19.816 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-02T13:33:19.816 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T13:33:19.816 [Cloud] Queued cloud request. 2026-06-02T13:33:19.816 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-02T13:33:19.816 [Cloud] Dequeued cloud request. 2026-06-02T13:33:19.816 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-06-02T13:33:19.816 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T13:33:19.816 [Cloud] Queued cloud request. 2026-06-02T13:33:19.816 [Cloud] Dequeued cloud request. 2026-06-02T13:33:19.848 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-02T13:33:20.046 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-02T13:33:20.046 [Cloud] End of cloud request. 2026-06-02T13:33:20.046 [Cloud] End of cloud request. 2026-06-02T13:33:20.046 [Cloud] End of cloud request. 2026-06-02T13:33:20.046 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-02T13:33:20.124 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-02T13:33:20.124 [Cloud] End of cloud request. 2026-06-02T13:33:20.550 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-02T13:33:47.957 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\PrsF753.tmp. Process: \Device\HarddiskVolume2\Windows\System32\rdpclip.exe, Status: 0xc0000001, State: 0, ScanRequest #233444, FileId: 0x1bd90000000289d3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 BEGIN BM telemetry GUID:{2831CA9B-A7FE-66EC-C4AA-52BB6A476B9A} SignatureID:241562583045193 SigSha:7145aabc8ddde0009e71af5be973eaa5802da41a ThreatLevel:0 ProcessID:4936 ProcessCreationTime:134237410999639581 SessionID:0 CreationTime:06-02-2026 13:34:41 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-06-02T13:34:41.945 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-02T13:34:41.945 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T13:34:41.945 [Cloud] Queued cloud request. 2026-06-02T13:34:41.945 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-02T13:34:41.945 [Cloud] Dequeued cloud request. 2026-06-02T13:34:41.945 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-02T13:34:41.945 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-06-02T13:34:41.945 [Cloud] Start of cloud request. Passive mode: 0 2026-06-02T13:34:41.945 [Cloud] Queued cloud request. 2026-06-02T13:34:41.945 [Cloud] Dequeued cloud request. 2026-06-02T13:34:41.945 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-02T13:34:42.135 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-02T13:34:42.135 [Cloud] End of cloud request. 2026-06-02T13:34:42.151 [Cloud] End of cloud request. 2026-06-02T13:34:42.636 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-02T13:35:46.086 Bm signature throttled:0x00003cb3151b0abf 2026-06-02T13:37:00.237 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3i3xagtq.gi4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #233727, FileId: 0x5900000002c1cb, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T13:38:00.246 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_cny2kcyc.o2r.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #233732, FileId: 0x154600000002c140, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T13:42:06.297 Bm signature throttled:0x000042b32d5b4573 2026-06-02T13:42:24.578 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 49594, Count: 6691, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-02T13:42:24.578 ProcessImageName: powershell.exe, Pid: 1340, TotalTime: 1502, Count: 105, MaxTime: 453, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-06-02T13:42:24.578 ProcessImageName: powershell.exe, Pid: 4284, TotalTime: 640, Count: 69, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.P521220ea#\c2c2c8c9be878b2bd1fe6042b9993e5c\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 33% 2026-06-02T13:42:24.578 ProcessImageName: explorer.exe, Pid: 5448, TotalTime: 489, Count: 27, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 0% 2026-06-02T13:42:24.578 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 75, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f17_2.MAD, EstimatedImpact: 0% 2026-06-02T13:42:24.578 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-02T13:42:24.578 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\B4C58A33-0675-4746-9A8F-9888C978C66D\pdc.xml, EstimatedImpact: 0% 2026-06-02T13:42:24.578 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-02T13:42:24.578 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T13:42:24.578 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc63389c-8d0d-464f-88da-9a52a29ba9f8.tmp, EstimatedImpact: 0% 2026-06-02T13:42:24.578 ProcessImageName: powershell.exe, Pid: 1592, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\PowerShell\ModuleAnalysisCache, EstimatedImpact: 21% 2026-06-02T13:42:24.578 ProcessImageName: updater.exe, Pid: 3092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68c78d3a-ac25-474a-ba21-1f73909539ac.tmp, EstimatedImpact: 0% 2026-06-02T13:42:24.578 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\prn0011.tmp, EstimatedImpact: 0% 2026-06-02T13:42:24.578 ProcessImageName: updater.exe, Pid: 5492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9e4fbf7-b33e-4713-98c1-ac83dc8420ff.tmp, EstimatedImpact: 0% 2026-06-02T13:42:24.578 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a7b0708-66a7-4906-a7f3-a6c566c6da6b.tmp, EstimatedImpact: 0% 2026-06-02T13:42:24.578 ProcessImageName: updater.exe, Pid: 5392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7583eedd-b77f-4cc1-b61e-3ed23e639f87.tmp, EstimatedImpact: 0% 2026-06-02T13:42:24.578 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\FileMaps\$$_system32_windowspowershell_v1.0_3f102d555ee05d33.cdf-ms, EstimatedImpact: 0% 2026-06-02T13:43:46.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T13:45:25.869 Bm signature throttled:0x00003fb37eb842dc 2026-06-02T13:55:00.391 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_g23dd2t1.diq.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234168, FileId: 0x1be60000000289d3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T13:58:51.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T14:08:00.489 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_w1k4sesa.wkf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234240, FileId: 0x1c00000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:13:56.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T14:15:35.286 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #234301, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:15:35.302 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #234303, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:15:45.299 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #234307, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:15:45.299 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #234309, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:24:00.592 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_5dneizim.zd4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234370, FileId: 0x2d00000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:26:00.622 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3ohxqzdv.mjb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234384, FileId: 0x2f00000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:29:01.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T14:33:00.675 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_cutzdg5e.svz.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234433, FileId: 0x3600000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:36:00.691 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ryc1dlgd.wpa.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234455, FileId: 0x3900000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:39:00.721 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_m1l5tpvw.r5u.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234476, FileId: 0x3c00000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:42:00.731 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vu0hsszu.kic.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234497, FileId: 0x3f00000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:44:06.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T14:48:00.805 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_hfghqj0t.3bb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234539, FileId: 0x4500000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:49:00.814 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0zs3zdov.k0c.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234546, FileId: 0x4600000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:50:00.819 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_1updzn4f.hqp.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234553, FileId: 0x4700000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:54:00.855 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_kegcj4z3.vfh.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234584, FileId: 0x4b00000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:55:00.844 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xpejxcld.rxe.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234591, FileId: 0x4c00000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T14:59:11.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T15:02:00.882 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ev5yh3pe.3wy.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234641, FileId: 0x5300000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:04:00.903 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bwz25gu5.uhn.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234656, FileId: 0x5500000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:06:00.923 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_pykjwyog.y11.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234670, FileId: 0x5700000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:09:00.932 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_f1ttzyqt.b4a.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234692, FileId: 0x5a00000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:14:16.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T15:15:35.459 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #234746, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:15:35.459 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #234748, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:15:45.462 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #234753, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:15:45.462 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #234752, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:15:45.478 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #234754, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:20:01.011 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xehmgvf5.qit.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234787, FileId: 0xef0000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:23:01.045 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_skxdmwww.dz2.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234808, FileId: 0xef3000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:29:00.114 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0gkffvnb.jbv.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234851, FileId: 0xef9000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:29:21.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T15:34:00.148 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_mykklrvq.1mm.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234886, FileId: 0xefe000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:42:24.587 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 49700, Count: 6703, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: powershell.exe, Pid: 1340, TotalTime: 1517, Count: 106, MaxTime: 453, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: powershell.exe, Pid: 4284, TotalTime: 640, Count: 69, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.P521220ea#\c2c2c8c9be878b2bd1fe6042b9993e5c\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 33% 2026-06-02T15:42:24.587 ProcessImageName: explorer.exe, Pid: 5448, TotalTime: 489, Count: 27, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 75, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f17_2.MAD, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\B4C58A33-0675-4746-9A8F-9888C978C66D\pdc.xml, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-02T15:42:24.587 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc63389c-8d0d-464f-88da-9a52a29ba9f8.tmp, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: powershell.exe, Pid: 1592, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\PowerShell\ModuleAnalysisCache, EstimatedImpact: 21% 2026-06-02T15:42:24.587 ProcessImageName: powershell.exe, Pid: 5888, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\kptv_inslastfive.ps1, EstimatedImpact: 8% 2026-06-02T15:42:24.587 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a7b0708-66a7-4906-a7f3-a6c566c6da6b.tmp, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: updater.exe, Pid: 5392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7583eedd-b77f-4cc1-b61e-3ed23e639f87.tmp, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c0ef07b-5b33-40bc-9c80-becff84a707c.tmp, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\prn0011.tmp, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\FileMaps\$$_system32_windowspowershell_v1.0_3f102d555ee05d33.cdf-ms, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: updater.exe, Pid: 3092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68c78d3a-ac25-474a-ba21-1f73909539ac.tmp, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: updater.exe, Pid: 2884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ece135-5528-42d5-9d4f-f6752ef50d82.tmp, EstimatedImpact: 0% 2026-06-02T15:42:24.587 ProcessImageName: updater.exe, Pid: 5492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9e4fbf7-b33e-4713-98c1-ac83dc8420ff.tmp, EstimatedImpact: 0% 2026-06-02T15:44:26.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T15:49:00.288 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_f3tmne1z.s03.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #234991, FileId: 0xf0d000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:56:00.322 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_wbqourpn.feb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235043, FileId: 0xf14000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T15:59:31.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T16:02:00.376 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vf4a1vgc.v0g.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235097, FileId: 0xf1a000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T16:08:00.447 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_owh5hypw.of2.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235141, FileId: 0xf20000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T16:14:36.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T16:15:35.708 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #235202, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T16:15:35.723 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #235204, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T16:15:45.711 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #235207, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T16:15:45.711 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #235209, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T16:15:45.727 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #235211, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T16:15:45.727 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #235213, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T16:18:00.505 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_x2siybad.bza.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235231, FileId: 0xf2b000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T16:25:00.616 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_l0swziqy.t03.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235281, FileId: 0xf32000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T16:29:41.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T16:44:46.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T16:47:00.816 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_gdxljg1z.2rr.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235435, FileId: 0xf48000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T16:58:00.925 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_jm552vhz.tko.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235515, FileId: 0xf53000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T16:59:51.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T17:04:00.943 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_oci501f0.nzp.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235557, FileId: 0xf59000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T17:14:56.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T17:15:34.194 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #235645, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T17:15:34.209 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #235647, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T17:15:44.208 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #235651, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T17:15:44.224 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #235654, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T17:24:00.132 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3f2gbdxm.adu.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235714, FileId: 0xf6e000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T17:26:00.139 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_hyfdd53y.dac.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235728, FileId: 0xf70000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T17:29:00.138 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_q2yd3e04.eyw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235749, FileId: 0xf73000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T17:30:00.166 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_gxg5y5jt.5qp.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235756, FileId: 0xf74000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T17:30:01.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T17:37:00.225 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_jigz2wtd.0i0.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235809, FileId: 0xf7b000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T17:38:00.239 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ozknyxo5.mdv.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235816, FileId: 0xf7c000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T17:42:24.592 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 49806, Count: 6719, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: powershell.exe, Pid: 1340, TotalTime: 1517, Count: 106, MaxTime: 453, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: powershell.exe, Pid: 4284, TotalTime: 640, Count: 69, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.P521220ea#\c2c2c8c9be878b2bd1fe6042b9993e5c\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 33% 2026-06-02T17:42:24.592 ProcessImageName: explorer.exe, Pid: 5448, TotalTime: 489, Count: 27, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 75, Count: 20, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f17_2.MAD, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\B4C58A33-0675-4746-9A8F-9888C978C66D\pdc.xml, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-02T17:42:24.592 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc63389c-8d0d-464f-88da-9a52a29ba9f8.tmp, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: powershell.exe, Pid: 5888, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\kptv_inslastfive.ps1, EstimatedImpact: 8% 2026-06-02T17:42:24.592 ProcessImageName: powershell.exe, Pid: 1592, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\PowerShell\ModuleAnalysisCache, EstimatedImpact: 21% 2026-06-02T17:42:24.592 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\FileMaps\$$_system32_windowspowershell_v1.0_3f102d555ee05d33.cdf-ms, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: updater.exe, Pid: 5492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9e4fbf7-b33e-4713-98c1-ac83dc8420ff.tmp, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: updater.exe, Pid: 5392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7583eedd-b77f-4cc1-b61e-3ed23e639f87.tmp, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: updater.exe, Pid: 3092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68c78d3a-ac25-474a-ba21-1f73909539ac.tmp, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: updater.exe, Pid: 2884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ece135-5528-42d5-9d4f-f6752ef50d82.tmp, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: updater.exe, Pid: 228, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5877cc15-d5eb-4c0d-b9ad-ad3c5553660c.tmp, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a68ca3-3034-4628-98a9-82debcc2d667.tmp, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a7b0708-66a7-4906-a7f3-a6c566c6da6b.tmp, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c0ef07b-5b33-40bc-9c80-becff84a707c.tmp, EstimatedImpact: 0% 2026-06-02T17:42:24.592 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\prn0011.tmp, EstimatedImpact: 0% 2026-06-02T17:45:06.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T17:48:00.283 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_23hjonmz.b0d.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235887, FileId: 0xf86000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T17:49:00.292 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_r214j4um.yte.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235894, FileId: 0xf87000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T17:52:00.302 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_w3kaw1le.dci.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #235915, FileId: 0xf8a000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T18:00:11.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T18:08:00.424 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_diqpdm1j.fus.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #236039, FileId: 0xf9c000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T18:15:16.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T18:30:21.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T18:32:00.592 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bmuwcxeb.k2y.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #236232, FileId: 0xfb7000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T18:45:26.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T19:00:31.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T19:15:36.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T19:15:45.791 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #236584, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T19:30:41.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T19:42:24.596 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51599, Count: 6839, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: powershell.exe, Pid: 1340, TotalTime: 1517, Count: 106, MaxTime: 453, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: powershell.exe, Pid: 4284, TotalTime: 640, Count: 69, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.P521220ea#\c2c2c8c9be878b2bd1fe6042b9993e5c\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 33% 2026-06-02T19:42:24.596 ProcessImageName: explorer.exe, Pid: 5448, TotalTime: 489, Count: 27, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 135, Count: 31, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f17_2.MAD, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\B4C58A33-0675-4746-9A8F-9888C978C66D\pdc.xml, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-02T19:42:24.596 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc63389c-8d0d-464f-88da-9a52a29ba9f8.tmp, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: updater.exe, Pid: 4928, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95dd461e-f8c1-40fd-8297-c554e4e61d03.tmp, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: powershell.exe, Pid: 1592, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\PowerShell\ModuleAnalysisCache, EstimatedImpact: 21% 2026-06-02T19:42:24.596 ProcessImageName: powershell.exe, Pid: 5888, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\kptv_inslastfive.ps1, EstimatedImpact: 8% 2026-06-02T19:42:24.596 ProcessImageName: updater.exe, Pid: 228, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5877cc15-d5eb-4c0d-b9ad-ad3c5553660c.tmp, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a68ca3-3034-4628-98a9-82debcc2d667.tmp, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: updater.exe, Pid: 564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b78ef6e6-a81c-4198-90f2-02e85db13f3b.tmp, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a7b0708-66a7-4906-a7f3-a6c566c6da6b.tmp, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: updater.exe, Pid: 3092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68c78d3a-ac25-474a-ba21-1f73909539ac.tmp, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: updater.exe, Pid: 5392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7583eedd-b77f-4cc1-b61e-3ed23e639f87.tmp, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\FileMaps\$$_system32_windowspowershell_v1.0_3f102d555ee05d33.cdf-ms, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: updater.exe, Pid: 2884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ece135-5528-42d5-9d4f-f6752ef50d82.tmp, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: updater.exe, Pid: 5492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9e4fbf7-b33e-4713-98c1-ac83dc8420ff.tmp, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\prn0011.tmp, EstimatedImpact: 0% 2026-06-02T19:42:24.596 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c0ef07b-5b33-40bc-9c80-becff84a707c.tmp, EstimatedImpact: 0% 2026-06-02T19:45:46.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T20:00:51.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T20:15:35.769 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #237100, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T20:15:56.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T20:31:01.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T20:46:06.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T21:01:11.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T21:15:44.862 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #237550, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T21:16:16.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T21:31:21.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T21:42:24.611 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51599, Count: 6844, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: powershell.exe, Pid: 1340, TotalTime: 1517, Count: 106, MaxTime: 453, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: powershell.exe, Pid: 4284, TotalTime: 640, Count: 69, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.P521220ea#\c2c2c8c9be878b2bd1fe6042b9993e5c\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 33% 2026-06-02T21:42:24.611 ProcessImageName: explorer.exe, Pid: 5448, TotalTime: 489, Count: 27, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 135, Count: 31, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f17_2.MAD, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\B4C58A33-0675-4746-9A8F-9888C978C66D\pdc.xml, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-02T21:42:24.611 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc63389c-8d0d-464f-88da-9a52a29ba9f8.tmp, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: updater.exe, Pid: 4928, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95dd461e-f8c1-40fd-8297-c554e4e61d03.tmp, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: powershell.exe, Pid: 5888, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\kptv_inslastfive.ps1, EstimatedImpact: 8% 2026-06-02T21:42:24.611 ProcessImageName: powershell.exe, Pid: 1592, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\PowerShell\ModuleAnalysisCache, EstimatedImpact: 21% 2026-06-02T21:42:24.611 ProcessImageName: updater.exe, Pid: 2884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ece135-5528-42d5-9d4f-f6752ef50d82.tmp, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\345f6b50-7c5f-471e-98bb-06b4e31afd12.tmp, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: updater.exe, Pid: 228, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5877cc15-d5eb-4c0d-b9ad-ad3c5553660c.tmp, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: updater.exe, Pid: 5492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9e4fbf7-b33e-4713-98c1-ac83dc8420ff.tmp, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: updater.exe, Pid: 564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b78ef6e6-a81c-4198-90f2-02e85db13f3b.tmp, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a68ca3-3034-4628-98a9-82debcc2d667.tmp, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a7b0708-66a7-4906-a7f3-a6c566c6da6b.tmp, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: updater.exe, Pid: 3092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68c78d3a-ac25-474a-ba21-1f73909539ac.tmp, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\FileMaps\$$_system32_windowspowershell_v1.0_3f102d555ee05d33.cdf-ms, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: updater.exe, Pid: 5392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7583eedd-b77f-4cc1-b61e-3ed23e639f87.tmp, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: updater.exe, Pid: 4568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4439a7e8-d7fc-4001-a04b-fa6fa8c1264a.tmp, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c0ef07b-5b33-40bc-9c80-becff84a707c.tmp, EstimatedImpact: 0% 2026-06-02T21:42:24.611 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\prn0011.tmp, EstimatedImpact: 0% 2026-06-02T21:46:00.207 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3tkbrfsx.tr3.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #237770, FileId: 0xe900000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T21:46:26.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T22:01:31.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T22:14:09.837 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sqla80_929f_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #238065, FileId: 0xe400000001b72e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T22:14:11.405 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sqla80_929f_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #238095, FileId: 0xee00000001b72e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T22:14:11.686 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sqla80_929f_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #238128, FileId: 0xf900000001b72e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T22:16:36.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T22:24:00.515 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_hxfeeocx.zwt.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #238277, FileId: 0x13700000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T22:31:41.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T22:46:46.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T23:01:51.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T23:15:44.337 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #238666, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-02T23:16:56.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T23:32:01.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-02T23:42:24.616 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 55801, Count: 7258, MaxTime: 484, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: powershell.exe, Pid: 1340, TotalTime: 1517, Count: 106, MaxTime: 453, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: powershell.exe, Pid: 4284, TotalTime: 640, Count: 69, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.P521220ea#\c2c2c8c9be878b2bd1fe6042b9993e5c\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 33% 2026-06-02T23:42:24.616 ProcessImageName: explorer.exe, Pid: 5448, TotalTime: 489, Count: 27, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 210, Count: 106, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f17_2.MAD, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\B4C58A33-0675-4746-9A8F-9888C978C66D\pdc.xml, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc63389c-8d0d-464f-88da-9a52a29ba9f8.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 4928, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95dd461e-f8c1-40fd-8297-c554e4e61d03.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: powershell.exe, Pid: 1592, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\PowerShell\ModuleAnalysisCache, EstimatedImpact: 21% 2026-06-02T23:42:24.616 ProcessImageName: powershell.exe, Pid: 5888, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\kptv_inslastfive.ps1, EstimatedImpact: 8% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c0ef07b-5b33-40bc-9c80-becff84a707c.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\prn0011.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 5492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9e4fbf7-b33e-4713-98c1-ac83dc8420ff.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 228, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5877cc15-d5eb-4c0d-b9ad-ad3c5553660c.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 2884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ece135-5528-42d5-9d4f-f6752ef50d82.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\345f6b50-7c5f-471e-98bb-06b4e31afd12.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a68ca3-3034-4628-98a9-82debcc2d667.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a7b0708-66a7-4906-a7f3-a6c566c6da6b.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 4568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4439a7e8-d7fc-4001-a04b-fa6fa8c1264a.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b78ef6e6-a81c-4198-90f2-02e85db13f3b.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 4940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0965c168-fdc0-43fe-af86-d3d34ba5977e.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 3092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68c78d3a-ac25-474a-ba21-1f73909539ac.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 5392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7583eedd-b77f-4cc1-b61e-3ed23e639f87.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: updater.exe, Pid: 5356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ea2d5b4-692c-4c42-85f8-7151c1151478.tmp, EstimatedImpact: 0% 2026-06-02T23:42:24.616 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\FileMaps\$$_system32_windowspowershell_v1.0_3f102d555ee05d33.cdf-ms, EstimatedImpact: 0% 2026-06-02T23:47:06.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T00:01:00.337 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_2t2dvibo.sp4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #238996, FileId: 0x19900000002be22, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T00:02:11.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T00:17:16.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T00:32:21.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T00:35:09.242 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sqla80_936e_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #239281, FileId: 0x107d000000019c79, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T00:36:01.909 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:188A5C91-6DF2-4CBD-BBD4-1E100688B883, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-06-03T00:36:01.909 Scheduled scan with Id 188A5C91-6DF2-4CBD-BBD4-1E100688B883 configured CPU priority: normal (LowCpuPriority: 0) 2026-06-03T00:36:01.909 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-03T00:36:01.925 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-06-03T00:36:01.925 [SFC] System file cache build is not needed (already completed) 2026-06-03T00:36:21.808 Engine:Triggered AR EMS scan 2026-06-03T00:36:21.808 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:21.839 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:21.854 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:21.854 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:21.886 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:21.901 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:21.917 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:21.917 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:21.933 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:21.948 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:21.964 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:21.995 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:21.995 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:22.011 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:22.026 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:22.042 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:22.058 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:22.073 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:22.089 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:22.104 Engine:EMS scan for process: svchost pid: 2820, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-03T00:36:22.120 Engine:EMS scan for process: explorer pid: 5448, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 BEGIN BM telemetry GUID:{724FF30D-A0F9-E6B6-501C-EC12001BD46D} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5448 ProcessCreationTime:134248799051673024 SessionID:2 CreationTime:06-03-2026 00:36:22 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-06-03T00:36:23.151 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-03T00:36:23.151 [Cloud] Start of cloud request. Passive mode: 0 2026-06-03T00:36:23.151 [Cloud] Queued cloud request. 2026-06-03T00:36:23.151 [Cloud] Dequeued cloud request. 2026-06-03T00:36:23.151 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-03T00:36:23.151 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-03T00:36:23.433 [Cloud] End of cloud request. 2026-06-03T00:36:23.948 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-03T00:36:41.219 QuickScan:ScanID:188A5C91-6DF2-4CBD-BBD4-1E100688B883: Quick scan finished with error 0 2026-06-03T00:36:41.235 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-03T00:36:41.745 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-03T00:36:41.745 [RTP] Duplicating the current plugin configuration object... 2026-06-03T00:36:41.745 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-03T00:36:41.745 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-03T00:36:41.745 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-03T00:36:41.745 [RTP] No config change detected. Not updating plugin configuration. 2026-06-03T00:36:41.745 [RTP] No config changes found. No configuration switch. 2026-06-03T00:36:41.745 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-03T00:47:26.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T01:02:31.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T01:15:45.737 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #239609, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T01:17:36.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T01:32:41.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T01:42:24.615 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 57562, Count: 7371, MaxTime: 484, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: powershell.exe, Pid: 1340, TotalTime: 1517, Count: 106, MaxTime: 453, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: powershell.exe, Pid: 4284, TotalTime: 640, Count: 69, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.P521220ea#\c2c2c8c9be878b2bd1fe6042b9993e5c\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 33% 2026-06-03T01:42:24.615 ProcessImageName: explorer.exe, Pid: 5448, TotalTime: 489, Count: 27, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 270, Count: 116, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f17_2.MAD, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\B4C58A33-0675-4746-9A8F-9888C978C66D\pdc.xml, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 5900, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7922880-b808-45a9-9155-16f1d32f34f5.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc63389c-8d0d-464f-88da-9a52a29ba9f8.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 4928, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95dd461e-f8c1-40fd-8297-c554e4e61d03.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: powershell.exe, Pid: 5888, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\kptv_inslastfive.ps1, EstimatedImpact: 8% 2026-06-03T01:42:24.615 ProcessImageName: powershell.exe, Pid: 1592, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\PowerShell\ModuleAnalysisCache, EstimatedImpact: 21% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c0ef07b-5b33-40bc-9c80-becff84a707c.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 4812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\793494e0-0b2e-470d-a630-c496c60edcf0.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b78ef6e6-a81c-4198-90f2-02e85db13f3b.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\prn0011.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 5492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9e4fbf7-b33e-4713-98c1-ac83dc8420ff.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 2884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ece135-5528-42d5-9d4f-f6752ef50d82.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 4568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4439a7e8-d7fc-4001-a04b-fa6fa8c1264a.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 4940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0965c168-fdc0-43fe-af86-d3d34ba5977e.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 5356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ea2d5b4-692c-4c42-85f8-7151c1151478.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 228, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5877cc15-d5eb-4c0d-b9ad-ad3c5553660c.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a68ca3-3034-4628-98a9-82debcc2d667.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a7b0708-66a7-4906-a7f3-a6c566c6da6b.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\345f6b50-7c5f-471e-98bb-06b4e31afd12.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\FileMaps\$$_system32_windowspowershell_v1.0_3f102d555ee05d33.cdf-ms, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 3092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68c78d3a-ac25-474a-ba21-1f73909539ac.tmp, EstimatedImpact: 0% 2026-06-03T01:42:24.615 ProcessImageName: updater.exe, Pid: 5392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7583eedd-b77f-4cc1-b61e-3ed23e639f87.tmp, EstimatedImpact: 0% 2026-06-03T01:47:46.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T01:58:00.259 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4q5y4xwo.02u.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #239952, FileId: 0x7800000002c1dd, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T02:02:51.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T02:17:56.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T02:18:00.464 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_purig4xy.ae5.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #240115, FileId: 0x8d00000002c1dd, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T02:33:01.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T02:48:06.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T03:03:11.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T03:15:46.632 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #240549, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T03:18:16.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T03:33:21.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T03:42:24.625 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 57562, Count: 7385, MaxTime: 484, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: powershell.exe, Pid: 1340, TotalTime: 1517, Count: 106, MaxTime: 453, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: powershell.exe, Pid: 4284, TotalTime: 640, Count: 69, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.P521220ea#\c2c2c8c9be878b2bd1fe6042b9993e5c\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 33% 2026-06-03T03:42:24.625 ProcessImageName: explorer.exe, Pid: 5448, TotalTime: 489, Count: 27, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 315, Count: 124, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f17_2.MAD, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\B4C58A33-0675-4746-9A8F-9888C978C66D\pdc.xml, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc63389c-8d0d-464f-88da-9a52a29ba9f8.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 5900, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7922880-b808-45a9-9155-16f1d32f34f5.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 4928, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95dd461e-f8c1-40fd-8297-c554e4e61d03.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: powershell.exe, Pid: 1592, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\PowerShell\ModuleAnalysisCache, EstimatedImpact: 21% 2026-06-03T03:42:24.625 ProcessImageName: powershell.exe, Pid: 5888, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\kptv_inslastfive.ps1, EstimatedImpact: 8% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 2816, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\345f6b50-7c5f-471e-98bb-06b4e31afd12.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 2884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ece135-5528-42d5-9d4f-f6752ef50d82.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 4568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4439a7e8-d7fc-4001-a04b-fa6fa8c1264a.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 228, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5877cc15-d5eb-4c0d-b9ad-ad3c5553660c.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 3104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b23c8e1e-8893-4463-824d-63a63f48842b.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b78ef6e6-a81c-4198-90f2-02e85db13f3b.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 5492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9e4fbf7-b33e-4713-98c1-ac83dc8420ff.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\prn0011.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 4940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0965c168-fdc0-43fe-af86-d3d34ba5977e.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a68ca3-3034-4628-98a9-82debcc2d667.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 5356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ea2d5b4-692c-4c42-85f8-7151c1151478.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a7b0708-66a7-4906-a7f3-a6c566c6da6b.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c0ef07b-5b33-40bc-9c80-becff84a707c.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\FileMaps\$$_system32_windowspowershell_v1.0_3f102d555ee05d33.cdf-ms, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 4812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\793494e0-0b2e-470d-a630-c496c60edcf0.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 5392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7583eedd-b77f-4cc1-b61e-3ed23e639f87.tmp, EstimatedImpact: 0% 2026-06-03T03:42:24.625 ProcessImageName: updater.exe, Pid: 3092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68c78d3a-ac25-474a-ba21-1f73909539ac.tmp, EstimatedImpact: 0% 2026-06-03T03:48:26.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T04:03:31.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T04:15:34.943 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #240995, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T04:18:36.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T04:33:41.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T04:43:00.597 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_yz4c2v1z.aso.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #241201, FileId: 0x16a00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T04:48:46.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T05:03:51.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T05:18:56.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T05:22:00.957 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_c5mu0b3t.syu.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #241682, FileId: 0x19900000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T05:34:01.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T05:42:24.625 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 57608, Count: 7392, MaxTime: 484, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: powershell.exe, Pid: 1340, TotalTime: 1517, Count: 106, MaxTime: 453, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: powershell.exe, Pid: 4284, TotalTime: 640, Count: 69, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.P521220ea#\c2c2c8c9be878b2bd1fe6042b9993e5c\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 33% 2026-06-03T05:42:24.625 ProcessImageName: explorer.exe, Pid: 5448, TotalTime: 489, Count: 27, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 315, Count: 124, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f17_2.MAD, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 105, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\B4C58A33-0675-4746-9A8F-9888C978C66D\pdc.xml, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc63389c-8d0d-464f-88da-9a52a29ba9f8.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 4928, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95dd461e-f8c1-40fd-8297-c554e4e61d03.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 5900, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7922880-b808-45a9-9155-16f1d32f34f5.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 2368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe8355ad-ca2a-410c-b894-bb67dd7d2f25.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: FileZillaServer.exe, Pid: 1144, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\inslastfive.php, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: powershell.exe, Pid: 1592, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\PowerShell\ModuleAnalysisCache, EstimatedImpact: 21% 2026-06-03T05:42:24.625 ProcessImageName: powershell.exe, Pid: 5888, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\kptv_inslastfive.ps1, EstimatedImpact: 8% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 2816, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 5392, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7583eedd-b77f-4cc1-b61e-3ed23e639f87.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: RuntimeBroker.exe, Pid: 5688, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\WinSxS\FileMaps\$$_system32_windowspowershell_v1.0_3f102d555ee05d33.cdf-ms, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 5356, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9ea2d5b4-692c-4c42-85f8-7151c1151478.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 5092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c0ef07b-5b33-40bc-9c80-becff84a707c.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 564, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b78ef6e6-a81c-4198-90f2-02e85db13f3b.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 4568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4439a7e8-d7fc-4001-a04b-fa6fa8c1264a.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 2884, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e7ece135-5528-42d5-9d4f-f6752ef50d82.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 4812, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\793494e0-0b2e-470d-a630-c496c60edcf0.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 948, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c80c07d9-de14-47f6-b678-324525c74644.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: svchost.exe, Pid: 976, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\prn0011.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 3092, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68c78d3a-ac25-474a-ba21-1f73909539ac.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 5492, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c9e4fbf7-b33e-4713-98c1-ac83dc8420ff.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 3104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b23c8e1e-8893-4463-824d-63a63f48842b.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 4940, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0965c168-fdc0-43fe-af86-d3d34ba5977e.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 1800, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\345f6b50-7c5f-471e-98bb-06b4e31afd12.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f1a68ca3-3034-4628-98a9-82debcc2d667.tmp, EstimatedImpact: 0% 2026-06-03T05:42:24.625 ProcessImageName: updater.exe, Pid: 5432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7a7b0708-66a7-4906-a7f3-a6c566c6da6b.tmp, EstimatedImpact: 0% 2026-06-03T05:49:06.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T06:04:11.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T06:15:33.961 [RTP] [Mini-filter] Unsuccessful scan status(#300): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #242095, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T06:19:16.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T06:34:21.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T06:37:00.542 [RTP] [Mini-filter] Unsuccessful scan status(#310): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_hpw5doin.erb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #242256, FileId: 0x1e800000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T06:49:26.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T07:04:31.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T07:15:43.861 [RTP] [Mini-filter] Unsuccessful scan status(#320): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #242575, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T07:19:36.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T07:34:41.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T07:41:16.440 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-06-03T07:41:16.456 Job Notification: New process added to job (3796) 2026-06-03T07:41:16.472 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-06-03T07:41:16.472 Job Notification: New process added to job (868) 2026-06-03T07:41:16.472 Aggressive catchup quick scan threshold: 255145494099 / 25920000000000 2026-06-03T07:41:16.503 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3796] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:868]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-03T07:41:16.597 Job Notification: New process added to job (744) 2026-06-03T07:41:16.612 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-06-03T07:41:16.612 Job Notification: New process added to job (5620) 2026-06-03T07:41:16.628 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:744] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5620]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-03T07:41:17.003 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-03T07:41:17.050 [RTP] Duplicating the current plugin configuration object... 2026-06-03T07:41:17.050 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-03T07:41:17.050 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-03T07:41:17.050 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-03T07:41:17.050 [RTP] No config change detected. Not updating plugin configuration. 2026-06-03T07:41:17.050 [RTP] No config changes found. No configuration switch. 2026-06-03T07:41:17.050 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-03T07:41:17.112 Job Notification: New process added to job (4692) 2026-06-03T07:41:17.112 Task(GetDeviceTicket -AccessKey 39C7E2FF-EA4A-5049-94EE-3EDAECD00B8F ) launched as network service 2026-06-03T07:41:17.618 Job Notification: Process exited from job (4692) 2026-06-03T07:41:18.737 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-03T07:41:18.737 [Cloud] Start of cloud request. Passive mode: 0 2026-06-03T07:41:18.737 [Cloud] Queued cloud request. 2026-06-03T07:41:18.737 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-03T07:41:18.737 [Cloud] Dequeued cloud request. 2026-06-03T07:41:18.737 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-06-03T07:41:18.737 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-03T07:41:18.737 [Cloud] Start of cloud request. Passive mode: 0 2026-06-03T07:41:18.737 [Cloud] Queued cloud request. 2026-06-03T07:41:18.737 [Cloud] Dequeued cloud request. 2026-06-03T07:41:18.737 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-03T07:41:19.018 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-03T07:41:19.018 [Cloud] End of cloud request. 2026-06-03T07:41:19.033 [Cloud] End of cloud request. 2026-06-03T07:41:19.237 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-03T07:41:31.556 Job Notification: Process exited from job (5764) 2026-06-03T07:41:48.426 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\C35692F0-146B-462F-BD1D-76449397E0DB714.1dcf32c6e0ca5dc 2026-06-03T07:41:48.731 Verifying engine and signature files (source: 0) ... 2026-06-03T07:41:48.731 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6AA3BA77-5403-40A3-9BB8-9CDFC6D500BC}\mpengine.dll] due to PPL. 2026-06-03T07:41:48.731 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6AA3BA77-5403-40A3-9BB8-9CDFC6D500BC}\mpasbase.vdm] (file in cache) 2026-06-03T07:41:48.731 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6AA3BA77-5403-40A3-9BB8-9CDFC6D500BC}\mpasdlta.vdm]. File not in cache (0x1) 2026-06-03T07:41:48.762 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6AA3BA77-5403-40A3-9BB8-9CDFC6D500BC}\mpasdlta.vdm] 2026-06-03T07:41:48.762 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6AA3BA77-5403-40A3-9BB8-9CDFC6D500BC}\mpavbase.vdm] (file in cache) 2026-06-03T07:41:48.762 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6AA3BA77-5403-40A3-9BB8-9CDFC6D500BC}\mpavdlta.vdm]. File not in cache (0x1) 2026-06-03T07:41:48.778 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6AA3BA77-5403-40A3-9BB8-9CDFC6D500BC}\mpavdlta.vdm] 2026-06-03T07:41:49.012 [Engine] IsHybridMode: 0 2026-06-03T07:41:49.580 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-06-03T07:41:49.658 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-CEAB9397F52DB1D203F667F06FF55B657572613B.bin): 0x00000002 2026-06-03T07:41:49.658 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-CEAB9397F52DB1D203F667F06FF55B657572613B.bin) 2026-06-03T07:41:49.658 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-06-03T07:41:49.658 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-06-03T07:41:49.658 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-06-03T07:41:49.658 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-06-03T07:41:58.582 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-06-03T07:41:58.582 [AutoExclusion] Applied roles from cache. 2026-06-03T07:41:58.582 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-06-03T07:41:58.598 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB1FE95810, lRefCount: 5, hr=0 2026-06-03T07:41:58.598 [Engine] New active engine 00007FFB18225810 replacing engine 00007FFB1FE95810. Number of active engines: 2 2026-06-03T07:41:58.598 EngineInit:Global ASOC is enabled 2026-06-03T07:41:58.598 EngineInit:ASOO is enabled for developer volumes 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-03T07:41:58.613 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-03T07:41:58.629 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-06-03T07:41:58.629 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-06-03T07:41:58.629 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-06-03T07:41:58.629 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-06-03T07:41:58.629 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-06-03T07:41:58.629 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-06-03T07:41:58.629 [Plugin] Initializing RTP plugin state... 2026-06-03T07:41:58.629 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-06-03T07:41:58.629 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎06‎-‎02‎-‎2026 09:42:24 Last Perf:‎06‎-‎02‎-‎2026 09:42:24 First RTP Scan:‎06‎-‎02‎-‎2026 09:42:41 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:1063 Misses:6295 BM Queue:0,101,0 Proc:0,82,0 File:0,100,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:242870 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-338242972 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:27227 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:350678 TotalHits:6799753 InstanceCacheInserts:35624 InstanceCacheUpdates:0 InstanceCacheDeletes:18168 InstanceCacheHits:1073 InstanceCacheMisses:219564 InstanceCacheOverflows:13936 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:2ms (6709/2476) Success: 2476, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-06-03T07:41:58.644 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6AA3BA77-5403-40A3-9BB8-9CDFC6D500BC} 2026-06-03T07:41:58.644 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EA99060C-3A64-4029-B0DF-11EA55E7F4CD}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EA99060C-3A64-4029-B0DF-11EA55E7F4CD}\mpengine.dll cannot be deleted, hr=0x80070005 2026-06-03T07:41:58.644 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-06-03T07:41:58.644 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F2E1A5A3-9E71-4561-ABFB-5968F3B14AB0} removed 2026-06-03T07:41:58.644 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-03T07:41:58.644 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-03T07:41:58.644 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-03T07:41:58.644 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-03T07:41:58.644 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:06-03-2026 07:41:58 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:06-03-2026 07:41:58 2026-06-03T07:41:58.644 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-06-03T07:41:58.644 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-06-03T07:41:58.644 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-03T07:41:58.644 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-06-03T07:41:58.644 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-03T07:41:58.644 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-03T07:41:58.644 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-03T07:41:58.644 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-03T07:41:58.644 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-03T07:41:58.644 MdCoreSvc is supported in this platform and OS Signature updated on 06-03-2026 07:41:58 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.240.0 AV Signature Version: 1.451.240.0 ************************************************************ 2026-06-03T07:41:58.644 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-06-03T07:41:58.644 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\C35692F0-146B-462F-BD1D-76449397E0DB714.1dcf32c6e0ca5dc 2026-06-03T07:41:58.660 Process scan (postsignatureupdatescan) started. 2026-06-03T07:41:58.707 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-06-03T07:41:58.707 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-06-03T07:41:58.926 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-06-03T07:41:58.926 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-06-03T07:41:58.926 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-06-03T07:41:58.926 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-06-03T07:41:58.926 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-06-03T07:41:58.941 [Engine] Engine 00007FFB1FE95810 no longer in use. Number of active engines: 1 2026-06-03T07:41:58.941 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-03T07:41:58.941 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). Signature updated via MicrosoftUpdateServer on 06-03-2026 07:41:58 ************************************************************ 2026-06-03T07:41:58.941 Job Notification: Process exited from job (744) 2026-06-03T07:41:58.941 Job Notification: Process exited from job (5620) 2026-06-03T07:41:58.957 Job Notification: Process exited from job (3796) 2026-06-03T07:41:58.957 Job Notification: Process exited from job (868) 2026-06-03T07:41:59.129 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-06-03T07:41:59.129 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-06-03T07:41:59.129 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-03T07:42:00.448 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 57684, Count: 7404, MaxTime: 484, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-03T07:42:00.448 ProcessImageName: powershell.exe, Pid: 1340, TotalTime: 1517, Count: 106, MaxTime: 453, MaxTimeFile: \Device\HarddiskVolume2\Program Files\WindowsPowerShell\Modules\PSReadline\1.2\Microsoft.PowerShell.PSReadline.dll, EstimatedImpact: 0% 2026-06-03T07:42:00.448 ProcessImageName: powershell.exe, Pid: 4284, TotalTime: 640, Count: 69, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.P521220ea#\c2c2c8c9be878b2bd1fe6042b9993e5c\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 33% 2026-06-03T07:42:00.448 ProcessImageName: explorer.exe, Pid: 5448, TotalTime: 489, Count: 27, MaxTime: 156, MaxTimeFile: \Device\HarddiskVolume2\xampp\FileZillaFTP\FileZilla Server Interface.exe, EstimatedImpact: 0% 2026-06-03T07:42:00.448 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 315, Count: 124, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_8f17_2.MAD, EstimatedImpact: 0% 2026-06-03T07:42:00.448 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 135, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-03T07:42:00.448 ProcessImageName: spoolsv.exe, Pid: 2016, TotalTime: 60, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\spool\V4Dirs\B4C58A33-0675-4746-9A8F-9888C978C66D\pdc.xml, EstimatedImpact: 0% 2026-06-03T07:42:00.448 ProcessImageName: wacs.exe, Pid: 3940, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-03T07:42:00.448 ProcessImageName: updater.exe, Pid: 4912, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-03T07:42:00.448 ProcessImageName: updater.exe, Pid: 4928, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\95dd461e-f8c1-40fd-8297-c554e4e61d03.tmp, EstimatedImpact: 0% 2026-06-03T07:42:00.448 ProcessImageName: updater.exe, Pid: 5660, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cc63389c-8d0d-464f-88da-9a52a29ba9f8.tmp, EstimatedImpact: 0% 2026-06-03T07:42:00.448 ProcessImageName: updater.exe, Pid: 5900, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d7922880-b808-45a9-9155-16f1d32f34f5.tmp, EstimatedImpact: 0% 2026-06-03T07:42:00.448 ProcessImageName: updater.exe, Pid: 2368, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe8355ad-ca2a-410c-b894-bb67dd7d2f25.tmp, EstimatedImpact: 0% 2026-06-03T07:42:00.448 ProcessImageName: powershell.exe, Pid: 5888, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\kptv_inslastfive.ps1, EstimatedImpact: 8% 2026-06-03T07:42:00.511 [Engine] RSIG_UNLOADENGINE, 00007FFB1FE95810, err=0x0 2026-06-03T07:42:00.511 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EA99060C-3A64-4029-B0DF-11EA55E7F4CD} removed 2026-06-03T07:42:05.870 Process scan (postsignatureupdatescan) completed. 2026-06-03T07:43:00.120 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_d1x2guln.2og.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #243002, FileId: 0x8800000002c19c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T07:44:00.116 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xwvobldm.0he.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #243014, FileId: 0x8900000002c19c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T07:46:58.627 [RbM] Setting Last known good engine candidate. hr = 0 2026-06-03T07:49:46.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T07:50:00.172 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_b1kedi13.ipf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #243109, FileId: 0x8f00000002c19c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T08:04:51.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T08:05:00.295 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4tabis2s.zos.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #243271, FileId: 0x9f00000002c198, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T08:07:00.295 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_filgzteh.dxi.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #243289, FileId: 0xa100000002c198, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-06-03T08:10:10.407 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-03T08:10:10.407 [Cloud] Start of cloud request. Passive mode: 0 2026-06-03T08:10:10.407 [Cloud] Queued cloud request. 2026-06-03T08:10:10.407 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-03T08:10:10.439 Job Notification: New process added to job (3120) 2026-06-03T08:10:10.439 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 3103B722-3F63-2C67-24D8-4A5E1FA8BC9D) launched 2026-06-03T08:10:10.439 Job Notification: New process added to job (5204) 2026-06-03T08:10:10.454 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3120] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5204]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-03T08:10:10.462 Job Notification: New process added to job (2520) 2026-06-03T08:10:10.478 Job Notification: Process exited from job (3120) 2026-06-03T08:10:10.478 Job Notification: Process exited from job (5204) 2026-06-03T08:10:10.489 [Cloud] Dequeued cloud request. 2026-06-03T08:10:10.489 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-03T08:10:10.864 [Cloud] End of cloud request. 2026-06-03T08:10:10.864 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-06-03T08:10:10.864 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-03T08:10:10.879 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE BEGIN BM telemetry GUID:{630F8CF3-AA1A-D4D6-D0CF-4ED2FDF731F5} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:3112 ProcessCreationTime:134249478103984999 SessionID:0 CreationTime:06-03-2026 08:10:10 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-06-03T08:10:10.910 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-03T08:10:10.910 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-03T08:10:11.379 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-03T08:10:11.613 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-03T08:10:11.613 [Cloud] Start of cloud request. Passive mode: 0 2026-06-03T08:10:11.613 [Cloud] Queued cloud request. 2026-06-03T08:10:11.613 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-03T08:10:11.613 [Cloud] Dequeued cloud request. 2026-06-03T08:10:11.613 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-03T08:10:11.832 [Cloud] End of cloud request. 2026-06-03T08:10:12.332 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-03T08:10:13.207 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-03T08:10:13.207 [Cloud] Start of cloud request. Passive mode: 0 2026-06-03T08:10:13.207 [Cloud] Queued cloud request. 2026-06-03T08:10:13.207 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-03T08:10:13.207 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-06-03T08:10:13.207 [Cloud] Dequeued cloud request. 2026-06-03T08:10:13.207 [Cloud] Start of cloud request. Passive mode: 0 2026-06-03T08:10:13.207 [Cloud] Queued cloud request. 2026-06-03T08:10:13.207 [Cloud] Dequeued cloud request. 2026-06-03T08:10:13.207 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-03T08:10:13.207 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-03T08:10:13.364 [Cloud] End of cloud request. 2026-06-03T08:10:13.410 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-03T08:10:13.410 [Cloud] End of cloud request. 2026-06-03T08:10:13.878 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-03T08:15:34.254 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #243411, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T08:15:34.270 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #243413, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T08:15:44.258 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #243417, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T08:15:44.274 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #243419, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T08:19:56.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T08:26:00.437 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0ahvwlil.rxk.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #243498, FileId: 0x21d00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T08:35:01.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T08:41:00.555 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_cjlsetnv.znj.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #243604, FileId: 0x22c00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T08:43:57.330 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9607_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #244822, FileId: 0xa700000002c1b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T08:44:00.627 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_5pcsy00z.lzg.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #244987, FileId: 0x23000000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T08:44:08.439 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9607_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #245274, FileId: 0xa900000002c1b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T08:50:06.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T09:00:00.720 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_to1fo345.tia.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245396, FileId: 0x24100000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:01:00.735 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_yijl0lqu.1k4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245405, FileId: 0x24200000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:05:00.785 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_tp31txie.chk.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245433, FileId: 0x24600000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:05:11.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T09:10:00.824 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_sc1mvih0.jtp.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245471, FileId: 0x24b00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:12:00.835 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bwlluxap.ved.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245485, FileId: 0x24d00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:15:32.443 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #245520, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:15:32.459 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #245522, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:15:42.462 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #245526, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:15:42.462 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #245528, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:15:42.462 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #245530, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:15:42.462 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #245532, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:19:00.920 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_5p5ood2v.jib.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245558, FileId: 0x25500000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:20:16.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T09:35:21.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T09:41:58.597 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 46059, Count: 6362, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-06-03T09:41:58.597 ProcessImageName: powershell.exe, Pid: 5388, TotalTime: 462, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 30% 2026-06-03T09:41:58.597 ProcessImageName: wacs.exe, Pid: 3112, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260603.txt, EstimatedImpact: 1% 2026-06-03T09:41:58.597 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9607_1.MAI, EstimatedImpact: 0% 2026-06-03T09:41:58.597 ProcessImageName: updater.exe, Pid: 376, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-03T09:41:58.597 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\048e43df-640b-4ad0-ab0c-53128d5585d6.tmp, EstimatedImpact: 0% 2026-06-03T09:46:00.111 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_oxxniadn.ufp.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245799, FileId: 0x27000000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:47:00.115 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xgivwma0.l5s.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245821, FileId: 0x27100000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:50:00.140 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_uqrjfvr3.vqz.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245842, FileId: 0x27400000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:50:26.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T09:52:00.160 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_kcmu21y2.4oc.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245856, FileId: 0x27600000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:57:00.220 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_iqdq2tin.vkz.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245891, FileId: 0x27b00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:58:00.225 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_pfqza0m3.2i3.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245898, FileId: 0x27c00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T09:59:00.209 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_oqd01kuj.nli.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245905, FileId: 0x27d00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:01:00.239 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_jloeq2ws.jnm.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245920, FileId: 0x27f00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:02:00.225 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3myfpuyl.12i.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245929, FileId: 0x28000000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:05:00.263 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_dmkccy1f.5st.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245950, FileId: 0x28300000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:05:31.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T10:07:00.268 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_jw4svzkv.cdf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #245965, FileId: 0x28500000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:12:00.297 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_myhzjyka.niw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #246000, FileId: 0x28a00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:15:34.107 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246035, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:15:34.123 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246037, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:15:44.121 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246040, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:15:44.121 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246042, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:15:44.293 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246046, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:15:44.293 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246048, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:17:00.319 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_twqwn51d.vee.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #246059, FileId: 0x29200000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:20:36.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) BEGIN BM telemetry GUID:{730AB2F7-0F3F-5304-3ED2-8C377820E36B} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5448 ProcessCreationTime:134248799051673024 SessionID:2 CreationTime:06-03-2026 10:26:57 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-06-03T10:26:58.009 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-03T10:26:58.009 [Cloud] Start of cloud request. Passive mode: 0 2026-06-03T10:26:58.009 [Cloud] Queued cloud request. 2026-06-03T10:26:58.009 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-03T10:26:58.009 [Cloud] Dequeued cloud request. 2026-06-03T10:26:58.009 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-03T10:26:58.259 [Cloud] End of cloud request. 2026-06-03T10:26:58.764 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-03T10:30:00.403 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_gzu2f0xa.r0f.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #246152, FileId: 0x29f00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:33:20.714 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\xampp\tmp\#sqla80_969f_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #246184, FileId: 0xe100000002c1b2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:35:41.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T10:37:00.451 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_1p50gdgl.s5s.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #246209, FileId: 0x2a800000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T10:50:46.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T10:52:00.570 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ugpiugfe.w10.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #246316, FileId: 0x2b700000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T11:05:51.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T11:15:32.384 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246499, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T11:15:32.384 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246501, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T11:15:42.399 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246505, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T11:15:42.414 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246508, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T11:16:00.746 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_5wxwvwo1.pys.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #246512, FileId: 0x2d000000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T11:20:56.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T11:25:00.827 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bglihtlb.i2h.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #246575, FileId: 0x2d900000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T11:36:01.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T11:41:00.934 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_dephiotn.jpf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #246687, FileId: 0x2e900000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T11:41:58.612 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 47567, Count: 6479, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-06-03T11:41:58.612 ProcessImageName: powershell.exe, Pid: 5388, TotalTime: 462, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 30% 2026-06-03T11:41:58.612 ProcessImageName: wacs.exe, Pid: 3112, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260603.txt, EstimatedImpact: 1% 2026-06-03T11:41:58.612 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 75, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9607_1.MAI, EstimatedImpact: 0% 2026-06-03T11:41:58.612 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6148c5c9-cb95-4b1d-a098-21da78b21688.tmp, EstimatedImpact: 0% 2026-06-03T11:41:58.612 ProcessImageName: updater.exe, Pid: 376, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-03T11:41:58.612 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\048e43df-640b-4ad0-ab0c-53128d5585d6.tmp, EstimatedImpact: 0% 2026-06-03T11:41:58.612 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\259637c2-a401-4b66-a1de-c237400b849d.tmp, EstimatedImpact: 0% 2026-06-03T11:51:06.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T12:06:11.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T12:10:00.197 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_1xbfgd4l.xcq.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #246907, FileId: 0x30600000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T12:11:00.207 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_zwn2jh2c.53m.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #246914, FileId: 0x30700000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T12:14:00.243 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_swzuxqfu.k4u.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #246935, FileId: 0x30a00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T12:15:33.488 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246953, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T12:15:33.503 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246955, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T12:15:43.497 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246959, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T12:15:43.497 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246961, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T12:15:43.512 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #246963, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T12:16:00.252 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_frufyebg.okf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #246967, FileId: 0x30d00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T12:21:16.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T12:36:21.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T12:51:26.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T12:52:00.581 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ti3dgv5t.hz2.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #247221, FileId: 0x33100000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T13:01:00.630 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_cixdztfk.vzs.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #247285, FileId: 0x33a00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T13:06:31.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T13:15:34.581 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247398, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T13:15:34.596 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247400, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T13:15:44.594 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247404, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T13:15:44.594 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247405, FileId: 0x4b3c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T13:15:44.610 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247407, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T13:16:00.751 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ppeyqo0u.2lq.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #247411, FileId: 0x34a00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T13:21:36.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T13:24:00.798 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_sctix5pi.bfj.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #247467, FileId: 0x35200000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T13:27:00.820 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_gc0favpl.i0z.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #247489, FileId: 0x35500000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T13:36:41.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T13:37:00.900 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_g02wn2cj.oyg.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #247561, FileId: 0x35f00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T13:41:58.611 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 47704, Count: 6494, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-06-03T13:41:58.611 ProcessImageName: powershell.exe, Pid: 5388, TotalTime: 462, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 30% 2026-06-03T13:41:58.611 ProcessImageName: wacs.exe, Pid: 3112, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260603.txt, EstimatedImpact: 1% 2026-06-03T13:41:58.611 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 75, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9607_1.MAI, EstimatedImpact: 0% 2026-06-03T13:41:58.611 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6148c5c9-cb95-4b1d-a098-21da78b21688.tmp, EstimatedImpact: 0% 2026-06-03T13:41:58.611 ProcessImageName: updater.exe, Pid: 376, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-03T13:41:58.611 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\259637c2-a401-4b66-a1de-c237400b849d.tmp, EstimatedImpact: 0% 2026-06-03T13:41:58.611 ProcessImageName: updater.exe, Pid: 5468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6d285cd-c172-4101-9b11-5580f8394b7d.tmp, EstimatedImpact: 0% 2026-06-03T13:41:58.611 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\048e43df-640b-4ad0-ab0c-53128d5585d6.tmp, EstimatedImpact: 0% 2026-06-03T13:41:58.611 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ff47db9-61e5-499d-b153-84fe7914b6a5.tmp, EstimatedImpact: 0% 2026-06-03T13:42:00.923 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ojumwt55.lkx.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #247596, FileId: 0x36400000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T13:51:46.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T14:00:00.107 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4pl0ouxj.2go.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #247722, FileId: 0x37900000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:04:00.126 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_lnfnkkev.l3e.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #247753, FileId: 0x37d00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:06:51.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T14:10:00.170 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ntmrvvfd.icm.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #247797, FileId: 0x38300000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:15:33.818 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247843, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:15:33.827 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247845, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:15:43.821 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247849, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:15:43.821 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247851, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:15:43.836 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247853, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:15:43.836 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #247855, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:20:00.270 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_cchwkmzy.ayo.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #247887, FileId: 0x38e00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:21:00.301 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_2i3ic3ge.wtm.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #247894, FileId: 0x38f00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:21:56.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T14:29:00.339 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_peyx0b1b.xtz.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #247950, FileId: 0x39700000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:37:00.372 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_22zijogd.puk.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #248006, FileId: 0x39f00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:37:01.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T14:50:00.470 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_km12bodr.omz.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #248097, FileId: 0x3ac00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:51:00.481 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_fagygks5.mas.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #248104, FileId: 0x3ad00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T14:52:06.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T15:07:11.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T15:15:33.316 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #248298, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T15:15:33.332 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #248300, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T15:15:43.320 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #248304, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T15:15:43.320 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #248306, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T15:15:43.335 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #248308, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T15:15:43.335 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #248310, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T15:22:16.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T15:27:00.720 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_hkrrlvpx.p0o.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #248400, FileId: 0x3d200000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T15:37:21.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T15:41:58.611 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 47796, Count: 6506, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-06-03T15:41:58.611 ProcessImageName: powershell.exe, Pid: 5388, TotalTime: 462, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 30% 2026-06-03T15:41:58.611 ProcessImageName: wacs.exe, Pid: 3112, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260603.txt, EstimatedImpact: 1% 2026-06-03T15:41:58.611 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 75, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9607_1.MAI, EstimatedImpact: 0% 2026-06-03T15:41:58.611 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6148c5c9-cb95-4b1d-a098-21da78b21688.tmp, EstimatedImpact: 0% 2026-06-03T15:41:58.611 ProcessImageName: updater.exe, Pid: 376, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-03T15:41:58.611 ProcessImageName: updater.exe, Pid: 5468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6d285cd-c172-4101-9b11-5580f8394b7d.tmp, EstimatedImpact: 0% 2026-06-03T15:41:58.611 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\048e43df-640b-4ad0-ab0c-53128d5585d6.tmp, EstimatedImpact: 0% 2026-06-03T15:41:58.611 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2e6d6a4-eb88-4e57-9ae3-f12d6d3d8a53.tmp, EstimatedImpact: 0% 2026-06-03T15:41:58.611 ProcessImageName: updater.exe, Pid: 3676, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3011f03e-aadb-4e96-beeb-ba3046efd8db.tmp, EstimatedImpact: 0% 2026-06-03T15:41:58.611 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ff47db9-61e5-499d-b153-84fe7914b6a5.tmp, EstimatedImpact: 0% 2026-06-03T15:41:58.611 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\259637c2-a401-4b66-a1de-c237400b849d.tmp, EstimatedImpact: 0% 2026-06-03T15:52:26.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T16:07:31.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T16:11:01.007 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_1g02o5b1.kxk.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #248714, FileId: 0x3fe00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T16:22:36.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T16:25:01.109 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_nowykaa1.02n.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #248836, FileId: 0x41200000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T16:37:41.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T16:51:07.775 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9875_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #249107, FileId: 0x43a00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T16:52:46.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T17:07:51.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T17:11:00.454 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_yejkzvaj.22o.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #249267, FileId: 0xa7d00000002c384, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T17:17:38.748 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sqla80_989d_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #249345, FileId: 0x19700000002c19c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T17:22:56.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T17:38:01.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T17:41:58.610 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 51274, Count: 6736, MaxTime: 140, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-03T17:41:58.610 ProcessImageName: powershell.exe, Pid: 5388, TotalTime: 462, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 30% 2026-06-03T17:41:58.610 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 240, Count: 47, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9607_1.MAI, EstimatedImpact: 0% 2026-06-03T17:41:58.610 ProcessImageName: wacs.exe, Pid: 3112, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260603.txt, EstimatedImpact: 1% 2026-06-03T17:41:58.610 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6148c5c9-cb95-4b1d-a098-21da78b21688.tmp, EstimatedImpact: 0% 2026-06-03T17:41:58.610 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe11b0ca-fbd6-45be-9fc8-c3f807e433b8.tmp, EstimatedImpact: 0% 2026-06-03T17:41:58.610 ProcessImageName: updater.exe, Pid: 376, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-03T17:41:58.610 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2e6d6a4-eb88-4e57-9ae3-f12d6d3d8a53.tmp, EstimatedImpact: 0% 2026-06-03T17:41:58.610 ProcessImageName: updater.exe, Pid: 5468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6d285cd-c172-4101-9b11-5580f8394b7d.tmp, EstimatedImpact: 0% 2026-06-03T17:41:58.610 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\259637c2-a401-4b66-a1de-c237400b849d.tmp, EstimatedImpact: 0% 2026-06-03T17:41:58.610 ProcessImageName: updater.exe, Pid: 3676, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3011f03e-aadb-4e96-beeb-ba3046efd8db.tmp, EstimatedImpact: 0% 2026-06-03T17:41:58.610 ProcessImageName: updater.exe, Pid: 1868, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68d01d4c-2a94-4987-879b-b9ffe54595d6.tmp, EstimatedImpact: 0% 2026-06-03T17:41:58.610 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ff47db9-61e5-499d-b153-84fe7914b6a5.tmp, EstimatedImpact: 0% 2026-06-03T17:41:58.610 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\048e43df-640b-4ad0-ab0c-53128d5585d6.tmp, EstimatedImpact: 0% 2026-06-03T17:53:06.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T18:08:11.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T18:15:42.964 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #249793, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T18:23:16.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T18:38:21.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T18:53:26.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T19:02:00.427 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_jhe0ftgq.aqi.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #250139, FileId: 0x4dd00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T19:08:31.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T19:23:36.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T19:30:07.495 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9939_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #250507, FileId: 0x1fb00000002c19c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T19:30:09.146 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9939_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #250542, FileId: 0x20600000002c19c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T19:30:09.938 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9939_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #250575, FileId: 0x21100000002c19c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T19:38:41.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T19:41:58.620 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 54724, Count: 7077, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-03T19:41:58.620 ProcessImageName: powershell.exe, Pid: 5388, TotalTime: 462, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 30% 2026-06-03T19:41:58.620 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 390, Count: 119, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9607_1.MAI, EstimatedImpact: 0% 2026-06-03T19:41:58.620 ProcessImageName: wacs.exe, Pid: 3112, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260603.txt, EstimatedImpact: 1% 2026-06-03T19:41:58.620 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe11b0ca-fbd6-45be-9fc8-c3f807e433b8.tmp, EstimatedImpact: 0% 2026-06-03T19:41:58.620 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6148c5c9-cb95-4b1d-a098-21da78b21688.tmp, EstimatedImpact: 0% 2026-06-03T19:41:58.620 ProcessImageName: updater.exe, Pid: 376, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-03T19:41:58.620 ProcessImageName: updater.exe, Pid: 784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\254ed541-5c02-4550-8fa5-761efcaf7b0b.tmp, EstimatedImpact: 0% 2026-06-03T19:41:58.620 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\048e43df-640b-4ad0-ab0c-53128d5585d6.tmp, EstimatedImpact: 0% 2026-06-03T19:41:58.620 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ff47db9-61e5-499d-b153-84fe7914b6a5.tmp, EstimatedImpact: 0% 2026-06-03T19:41:58.620 ProcessImageName: updater.exe, Pid: 1868, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68d01d4c-2a94-4987-879b-b9ffe54595d6.tmp, EstimatedImpact: 0% 2026-06-03T19:41:58.620 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2e6d6a4-eb88-4e57-9ae3-f12d6d3d8a53.tmp, EstimatedImpact: 0% 2026-06-03T19:41:58.620 ProcessImageName: updater.exe, Pid: 3676, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3011f03e-aadb-4e96-beeb-ba3046efd8db.tmp, EstimatedImpact: 0% 2026-06-03T19:41:58.620 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77900d93-18ab-458b-8c23-3babf06bde07.tmp, EstimatedImpact: 0% 2026-06-03T19:41:58.620 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\259637c2-a401-4b66-a1de-c237400b849d.tmp, EstimatedImpact: 0% 2026-06-03T19:41:58.620 ProcessImageName: updater.exe, Pid: 5468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6d285cd-c172-4101-9b11-5580f8394b7d.tmp, EstimatedImpact: 0% 2026-06-03T19:53:46.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T19:55:00.793 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_fiomhr0f.mvu.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #250811, FileId: 0x19b000000032c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T20:08:51.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T20:23:56.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T20:33:01.106 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_fqhka0kl.qfx.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #251101, FileId: 0x1c2000000032c79, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T20:39:01.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T20:41:06.084 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9999_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #251193, FileId: 0x51300000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T20:41:07.902 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9999_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #251223, FileId: 0x51d00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T20:41:08.245 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9999_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #251253, FileId: 0x52700000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T20:54:06.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T21:09:11.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T21:15:42.808 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #251513, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T21:24:16.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T21:39:21.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T21:41:58.629 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 54801, Count: 7092, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: powershell.exe, Pid: 5388, TotalTime: 462, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 30% 2026-06-03T21:41:58.629 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 420, Count: 183, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9607_1.MAI, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: wacs.exe, Pid: 3112, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260603.txt, EstimatedImpact: 1% 2026-06-03T21:41:58.629 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9ef2e55-8aa5-476e-8db9-8e5b1e51a636.tmp, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe11b0ca-fbd6-45be-9fc8-c3f807e433b8.tmp, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6148c5c9-cb95-4b1d-a098-21da78b21688.tmp, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: updater.exe, Pid: 376, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\048e43df-640b-4ad0-ab0c-53128d5585d6.tmp, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: updater.exe, Pid: 784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\254ed541-5c02-4550-8fa5-761efcaf7b0b.tmp, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2e6d6a4-eb88-4e57-9ae3-f12d6d3d8a53.tmp, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ff47db9-61e5-499d-b153-84fe7914b6a5.tmp, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: updater.exe, Pid: 1868, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68d01d4c-2a94-4987-879b-b9ffe54595d6.tmp, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77900d93-18ab-458b-8c23-3babf06bde07.tmp, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: updater.exe, Pid: 5468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6d285cd-c172-4101-9b11-5580f8394b7d.tmp, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: updater.exe, Pid: 3676, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3011f03e-aadb-4e96-beeb-ba3046efd8db.tmp, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: updater.exe, Pid: 3508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\532d31e6-8c5d-4896-abdc-0f91861638a4.tmp, EstimatedImpact: 0% 2026-06-03T21:41:58.629 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\259637c2-a401-4b66-a1de-c237400b849d.tmp, EstimatedImpact: 0% 2026-06-03T21:54:26.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T21:58:54.835 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\xampp\tmp\#sqla80_99f2_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #251843, FileId: 0x28100000002c19c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T21:58:59.594 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\xampp\tmp\#sqla80_99f3_14.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #251874, FileId: 0x28f00000002c19c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T21:59:01.091 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\xampp\tmp\#sqla80_99f3_28.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #251910, FileId: 0x29a00000002c19c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T22:09:31.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T22:15:32.850 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #252077, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T22:24:36.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T22:39:41.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T22:54:46.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T23:09:51.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T23:15:34.263 [RTP] [Mini-filter] Unsuccessful scan status(#300): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #252532, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-03T23:24:56.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T23:40:01.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-03T23:41:58.629 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 55013, Count: 7136, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 525, Count: 258, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9607_1.MAI, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: powershell.exe, Pid: 5388, TotalTime: 462, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 30% 2026-06-03T23:41:58.629 ProcessImageName: wacs.exe, Pid: 3112, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260603.txt, EstimatedImpact: 1% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9ef2e55-8aa5-476e-8db9-8e5b1e51a636.tmp, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6148c5c9-cb95-4b1d-a098-21da78b21688.tmp, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe11b0ca-fbd6-45be-9fc8-c3f807e433b8.tmp, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 376, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\crx_cache\metadata.json, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 4668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29c539fc-556f-4a18-9168-e265fb8ed411.tmp, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 3508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\532d31e6-8c5d-4896-abdc-0f91861638a4.tmp, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 6024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4c2bcb9a-bcfe-49ae-8ffb-dcd535a95f0a.tmp, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\254ed541-5c02-4550-8fa5-761efcaf7b0b.tmp, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 3676, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3011f03e-aadb-4e96-beeb-ba3046efd8db.tmp, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2e6d6a4-eb88-4e57-9ae3-f12d6d3d8a53.tmp, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\048e43df-640b-4ad0-ab0c-53128d5585d6.tmp, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\259637c2-a401-4b66-a1de-c237400b849d.tmp, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77900d93-18ab-458b-8c23-3babf06bde07.tmp, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ff47db9-61e5-499d-b153-84fe7914b6a5.tmp, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 5468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6d285cd-c172-4101-9b11-5580f8394b7d.tmp, EstimatedImpact: 0% 2026-06-03T23:41:58.629 ProcessImageName: updater.exe, Pid: 1868, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68d01d4c-2a94-4987-879b-b9ffe54595d6.tmp, EstimatedImpact: 0% 2026-06-03T23:55:06.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T00:10:11.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T00:15:33.788 [RTP] [Mini-filter] Unsuccessful scan status(#310): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #252982, FileId: 0xcf0000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T00:25:16.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T00:36:01.909 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:805623B2-2F22-4754-9C6E-9F173B24F696, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-06-04T00:36:01.909 Scheduled scan with Id 805623B2-2F22-4754-9C6E-9F173B24F696 configured CPU priority: normal (LowCpuPriority: 0) 2026-06-04T00:36:01.909 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-04T00:36:01.909 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-06-04T00:36:01.909 [SFC] System file cache build is not needed (already completed) 2026-06-04T00:36:16.343 Engine:Triggered AR EMS scan 2026-06-04T00:36:16.343 Engine:EMS scan for process: lsass pid: 596, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.359 Engine:EMS scan for process: svchost pid: 692, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.374 Engine:EMS scan for process: svchost pid: 748, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.390 Engine:EMS scan for process: svchost pid: 844, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.405 Engine:EMS scan for process: svchost pid: 888, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.421 Engine:EMS scan for process: svchost pid: 900, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.437 Engine:EMS scan for process: svchost pid: 976, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.452 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.468 Engine:EMS scan for process: svchost pid: 584, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.484 Engine:EMS scan for process: svchost pid: 1148, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.499 Engine:EMS scan for process: svchost pid: 1232, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.515 Engine:EMS scan for process: svchost pid: 1416, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.530 Engine:EMS scan for process: svchost pid: 1252, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.546 Engine:EMS scan for process: svchost pid: 1360, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.562 Engine:EMS scan for process: svchost pid: 2100, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.577 Engine:EMS scan for process: svchost pid: 2648, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.577 Engine:EMS scan for process: svchost pid: 548, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.593 Engine:EMS scan for process: svchost pid: 3196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.624 Engine:EMS scan for process: svchost pid: 6016, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.640 Engine:EMS scan for process: svchost pid: 2820, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-04T00:36:16.640 Engine:EMS scan for process: explorer pid: 5448, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 BEGIN BM telemetry GUID:{3FDECE1E-231F-A983-E32E-9772F39A8363} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5448 ProcessCreationTime:134248799051673024 SessionID:2 CreationTime:06-04-2026 00:36:16 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-06-04T00:36:17.671 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-04T00:36:17.671 [Cloud] Start of cloud request. Passive mode: 0 2026-06-04T00:36:17.671 [Cloud] Queued cloud request. 2026-06-04T00:36:17.671 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-04T00:36:17.671 [Cloud] Dequeued cloud request. 2026-06-04T00:36:17.671 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-04T00:36:17.952 [Cloud] End of cloud request. 2026-06-04T00:36:18.468 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-04T00:36:30.562 QuickScan:ScanID:805623B2-2F22-4754-9C6E-9F173B24F696: Quick scan finished with error 0 2026-06-04T00:36:30.577 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-04T00:36:31.092 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-04T00:36:31.092 [RTP] Duplicating the current plugin configuration object... 2026-06-04T00:36:31.092 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-04T00:36:31.092 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-04T00:36:31.092 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-04T00:36:31.092 [RTP] No config change detected. Not updating plugin configuration. 2026-06-04T00:36:31.092 [RTP] No config changes found. No configuration switch. 2026-06-04T00:36:31.092 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-04T00:40:21.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T00:55:26.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T01:02:00.174 [RTP] [Mini-filter] Unsuccessful scan status(#320): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_wlbh4tzs.ouy.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #253470, FileId: 0xc8000000032c7b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T01:10:31.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T01:25:36.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T01:29:00.369 [RTP] [Mini-filter] Unsuccessful scan status(#330): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_rlo5ygyi.vd5.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #253728, FileId: 0xe4000000032c7b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T01:40:41.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T01:41:58.644 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 55013, Count: 7139, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 525, Count: 258, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9607_1.MAI, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: powershell.exe, Pid: 5388, TotalTime: 462, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 30% 2026-06-04T01:41:58.644 ProcessImageName: wacs.exe, Pid: 3112, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260603.txt, EstimatedImpact: 1% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9ef2e55-8aa5-476e-8db9-8e5b1e51a636.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 1912, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fe11b0ca-fbd6-45be-9fc8-c3f807e433b8.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6148c5c9-cb95-4b1d-a098-21da78b21688.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77900d93-18ab-458b-8c23-3babf06bde07.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 4668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29c539fc-556f-4a18-9168-e265fb8ed411.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 6024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4c2bcb9a-bcfe-49ae-8ffb-dcd535a95f0a.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 1820, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\048e43df-640b-4ad0-ab0c-53128d5585d6.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 1840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4ff47db9-61e5-499d-b153-84fe7914b6a5.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 1868, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68d01d4c-2a94-4987-879b-b9ffe54595d6.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2e6d6a4-eb88-4e57-9ae3-f12d6d3d8a53.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2993074-8ae2-4f7c-bb53-08450b31dddc.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 3508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\532d31e6-8c5d-4896-abdc-0f91861638a4.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 3676, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3011f03e-aadb-4e96-beeb-ba3046efd8db.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\259637c2-a401-4b66-a1de-c237400b849d.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 4556, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5722a9a7-93b1-4a30-83d1-a96e90c8e598.tmp, EstimatedImpact: 0% 2026-06-04T01:41:58.644 ProcessImageName: updater.exe, Pid: 5468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6d285cd-c172-4101-9b11-5580f8394b7d.tmp, EstimatedImpact: 0% 2026-06-04T01:55:46.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T02:10:51.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T02:15:35.448 [RTP] [Mini-filter] Unsuccessful scan status(#340): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #254102, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T02:20:35.823 [RTP] [Mini-filter] Unsuccessful scan status(#350): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #254178, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T02:25:56.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T02:41:01.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T02:55:01.025 [RTP] [Mini-filter] Unsuccessful scan status(#360): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_dyual3tw.cbq.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #254442, FileId: 0x3e000000036c70, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T02:56:06.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T03:11:11.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T03:17:00.170 [RTP] [Mini-filter] Unsuccessful scan status(#370): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_2dptjfpl.pf5.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #254614, FileId: 0x55000000036c70, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T03:26:16.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T03:37:00.428 [RTP] [Mini-filter] Unsuccessful scan status(#380): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_a3lsebjr.jdw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #254777, FileId: 0x6e000000036c70, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T03:41:21.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T03:41:58.654 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 55104, Count: 7156, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 525, Count: 258, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9607_1.MAI, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: powershell.exe, Pid: 5388, TotalTime: 462, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 30% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 2980, TotalTime: 355, Count: 12, MaxTime: 171, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2980_1267857144\UpdaterSetup.exe, EstimatedImpact: 2% 2026-06-04T03:41:58.654 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 249, Count: 3, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\updater.exe, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: UpdaterSetup.exe, Pid: 4204, TotalTime: 231, Count: 6, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\Google4204_908957292\bin\updater.exe, EstimatedImpact: 87% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 105, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_2136_981949056\qualification_win32.crx, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: wacs.exe, Pid: 3112, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260603.txt, EstimatedImpact: 1% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9ef2e55-8aa5-476e-8db9-8e5b1e51a636.tmp, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6148c5c9-cb95-4b1d-a098-21da78b21688.tmp, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2e6d6a4-eb88-4e57-9ae3-f12d6d3d8a53.tmp, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 3676, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3011f03e-aadb-4e96-beeb-ba3046efd8db.tmp, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 5468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6d285cd-c172-4101-9b11-5580f8394b7d.tmp, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\259637c2-a401-4b66-a1de-c237400b849d.tmp, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 6024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4c2bcb9a-bcfe-49ae-8ffb-dcd535a95f0a.tmp, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 3508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\532d31e6-8c5d-4896-abdc-0f91861638a4.tmp, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 2544, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2993074-8ae2-4f7c-bb53-08450b31dddc.tmp, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77900d93-18ab-458b-8c23-3babf06bde07.tmp, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 4668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29c539fc-556f-4a18-9168-e265fb8ed411.tmp, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 4112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\212cf97a-b65c-4042-8b68-26c791f41cc4.tmp, EstimatedImpact: 0% 2026-06-04T03:41:58.654 ProcessImageName: updater.exe, Pid: 4556, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5722a9a7-93b1-4a30-83d1-a96e90c8e598.tmp, EstimatedImpact: 0% BEGIN BM telemetry GUID:{45CDB30C-85DD-8728-213F-709D6F640760} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5448 ProcessCreationTime:134248799051673024 SessionID:2 CreationTime:06-04-2026 03:54:08 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-06-04T03:54:09.092 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-04T03:54:09.092 [Cloud] Start of cloud request. Passive mode: 0 2026-06-04T03:54:09.092 [Cloud] Queued cloud request. 2026-06-04T03:54:09.092 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-04T03:54:09.092 [Cloud] Dequeued cloud request. 2026-06-04T03:54:09.107 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-04T03:54:10.382 [Cloud] End of cloud request. 2026-06-04T03:54:10.896 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-04T03:56:26.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T04:11:31.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T04:15:39.673 [RTP] [Mini-filter] Unsuccessful scan status(#390): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #255071, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T04:25:00.845 [RTP] [Mini-filter] Unsuccessful scan status(#400): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_2uk010wy.c42.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #255166, FileId: 0x9f000000036c70, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T04:26:36.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T04:41:41.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T04:56:46.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T05:11:51.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T05:20:41.823 [RTP] [Mini-filter] Unsuccessful scan status(#410): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #255569, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T05:26:56.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T05:41:58.663 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 55104, Count: 7159, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 525, Count: 258, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9607_1.MAI, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: powershell.exe, Pid: 5388, TotalTime: 462, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 30% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 2980, TotalTime: 355, Count: 12, MaxTime: 171, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2980_1267857144\UpdaterSetup.exe, EstimatedImpact: 2% 2026-06-04T05:41:58.663 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 249, Count: 3, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\updater.exe, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: UpdaterSetup.exe, Pid: 4204, TotalTime: 231, Count: 6, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\Google4204_908957292\bin\updater.exe, EstimatedImpact: 87% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 105, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_2136_981949056\qualification_win32.crx, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: wacs.exe, Pid: 3112, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260603.txt, EstimatedImpact: 1% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9ef2e55-8aa5-476e-8db9-8e5b1e51a636.tmp, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6148c5c9-cb95-4b1d-a098-21da78b21688.tmp, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 3508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\532d31e6-8c5d-4896-abdc-0f91861638a4.tmp, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 3676, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3011f03e-aadb-4e96-beeb-ba3046efd8db.tmp, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 5196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4d124b2e-6764-4ecb-8801-1f0002a61c57.tmp, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 3724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\259637c2-a401-4b66-a1de-c237400b849d.tmp, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 4112, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\212cf97a-b65c-4042-8b68-26c791f41cc4.tmp, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 6024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4c2bcb9a-bcfe-49ae-8ffb-dcd535a95f0a.tmp, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 4668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\29c539fc-556f-4a18-9168-e265fb8ed411.tmp, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e2e6d6a4-eb88-4e57-9ae3-f12d6d3d8a53.tmp, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 5468, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6d285cd-c172-4101-9b11-5580f8394b7d.tmp, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 3028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\77900d93-18ab-458b-8c23-3babf06bde07.tmp, EstimatedImpact: 0% 2026-06-04T05:41:58.663 ProcessImageName: updater.exe, Pid: 4556, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5722a9a7-93b1-4a30-83d1-a96e90c8e598.tmp, EstimatedImpact: 0% 2026-06-04T05:42:01.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T05:57:06.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T06:12:11.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T06:19:00.816 [RTP] [Mini-filter] Unsuccessful scan status(#420): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_tvzsg1ci.se1.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #256196, FileId: 0x116000000036c70, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T06:27:16.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T06:42:21.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T06:53:00.112 [RTP] [Mini-filter] Unsuccessful scan status(#430): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_i0clkpfn.mwa.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #256470, FileId: 0x13a000000036c70, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T06:57:26.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T07:12:31.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T07:20:49.691 [RTP] [Mini-filter] Unsuccessful scan status(#440): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #256690, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T07:27:36.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T07:41:16.421 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-06-04T07:41:16.437 Job Notification: New process added to job (3292) 2026-06-04T07:41:16.452 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-06-04T07:41:16.452 Aggressive catchup quick scan threshold: 255145439798 / 25920000000000 2026-06-04T07:41:16.452 Job Notification: New process added to job (2764) 2026-06-04T07:41:16.468 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3292] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2764]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-04T07:41:16.577 Job Notification: New process added to job (3936) 2026-06-04T07:41:16.577 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-06-04T07:41:16.577 Job Notification: New process added to job (3580) 2026-06-04T07:41:16.593 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3936] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3580]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-04T07:41:16.952 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-04T07:41:16.952 [RTP] Duplicating the current plugin configuration object... 2026-06-04T07:41:16.952 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-04T07:41:16.952 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-04T07:41:16.952 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-04T07:41:16.952 [RTP] No config change detected. Not updating plugin configuration. 2026-06-04T07:41:16.952 [RTP] No config changes found. No configuration switch. 2026-06-04T07:41:16.952 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-04T07:41:16.968 Job Notification: New process added to job (3500) 2026-06-04T07:41:17.030 Task(GetDeviceTicket -AccessKey 8B71F2FE-D984-7C54-E1CA-1C5B696C5785 ) launched as network service 2026-06-04T07:41:17.046 Job Notification: Process exited from job (3500) 2026-06-04T07:41:18.166 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-04T07:41:18.166 [Cloud] Start of cloud request. Passive mode: 0 2026-06-04T07:41:18.166 [Cloud] Queued cloud request. 2026-06-04T07:41:18.166 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-04T07:41:18.166 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-06-04T07:41:18.166 [Cloud] Dequeued cloud request. 2026-06-04T07:41:18.166 [Cloud] Start of cloud request. Passive mode: 0 2026-06-04T07:41:18.166 [Cloud] Queued cloud request. 2026-06-04T07:41:18.166 [Cloud] Dequeued cloud request. 2026-06-04T07:41:18.166 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-04T07:41:18.166 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-04T07:41:18.437 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-04T07:41:18.437 [Cloud] End of cloud request. 2026-06-04T07:41:18.468 [Cloud] End of cloud request. 2026-06-04T07:41:18.687 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-04T07:41:41.763 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\6150582F-B532-49BE-8B8C-83466DD3883C1754.1dcf3f59485dec8 2026-06-04T07:41:42.048 Verifying engine and signature files (source: 0) ... 2026-06-04T07:41:42.048 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299}\mpengine.dll] due to PPL. 2026-06-04T07:41:42.048 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299}\mpasbase.vdm] (file in cache) 2026-06-04T07:41:42.048 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299}\mpasdlta.vdm]. File not in cache (0x1) 2026-06-04T07:41:42.079 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299}\mpasdlta.vdm] 2026-06-04T07:41:42.079 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299}\mpavbase.vdm] (file in cache) 2026-06-04T07:41:42.079 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299}\mpavdlta.vdm]. File not in cache (0x1) 2026-06-04T07:41:42.095 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299}\mpavdlta.vdm] 2026-06-04T07:41:42.282 [Engine] IsHybridMode: 0 2026-06-04T07:41:42.399 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-06-04T07:41:42.803 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-9BA147ED1771D54AF95C0408DD890B32199BD084.bin): 0x00000002 2026-06-04T07:41:42.803 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-9BA147ED1771D54AF95C0408DD890B32199BD084.bin) 2026-06-04T07:41:42.803 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-06-04T07:41:42.803 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-06-04T07:41:42.803 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-06-04T07:41:42.803 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-06-04T07:41:57.686 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-06-04T07:41:57.686 [AutoExclusion] Applied roles from cache. 2026-06-04T07:41:57.686 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-06-04T07:41:57.702 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFB18225810, lRefCount: 5, hr=0 2026-06-04T07:41:57.702 [Engine] New active engine 00007FFB196F5810 replacing engine 00007FFB18225810. Number of active engines: 2 2026-06-04T07:41:57.702 EngineInit:Global ASOC is enabled 2026-06-04T07:41:57.702 EngineInit:ASOO is enabled for developer volumes 2026-06-04T07:41:57.718 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-06-04T07:41:57.718 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-04T07:41:57.733 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-04T07:41:57.733 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-06-04T07:41:57.733 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-06-04T07:41:57.733 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-06-04T07:41:57.733 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-06-04T07:41:57.733 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-06-04T07:41:57.749 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-06-04T07:41:57.749 [Plugin] Initializing RTP plugin state... 2026-06-04T07:41:57.749 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-06-04T07:41:57.749 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎06‎-‎03‎-‎2026 09:41:58 Last Perf:‎06‎-‎03‎-‎2026 09:41:58 First RTP Scan:‎06‎-‎03‎-‎2026 09:42:00 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:532 Misses:6652 BM Queue:0,67,0 Proc:0,40,0 File:0,58,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:256932 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:-244423138 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:27286 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:359340 TotalHits:7092600 InstanceCacheInserts:38795 InstanceCacheUpdates:0 InstanceCacheDeletes:20617 InstanceCacheHits:1137 InstanceCacheMisses:223795 InstanceCacheOverflows:13936 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:2ms (8233/3122) Success: 3122, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-06-04T07:41:57.749 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299} 2026-06-04T07:41:57.749 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6AA3BA77-5403-40A3-9BB8-9CDFC6D500BC}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6AA3BA77-5403-40A3-9BB8-9CDFC6D500BC}\mpengine.dll cannot be deleted, hr=0x80070005 2026-06-04T07:41:57.749 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-06-04T07:41:57.749 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7BD62E16-EDBE-4A35-A627-72154C4E0EDB} removed 2026-06-04T07:41:57.749 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-04T07:41:57.749 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-04T07:41:57.749 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-04T07:41:57.749 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-04T07:41:57.749 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:06-04-2026 07:41:57 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:06-04-2026 07:41:57 2026-06-04T07:41:57.749 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-06-04T07:41:57.749 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-06-04T07:41:57.749 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-04T07:41:57.749 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-06-04T07:41:57.749 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-04T07:41:57.749 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-04T07:41:57.749 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-04T07:41:57.749 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-04T07:41:57.749 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-04T07:41:57.749 MdCoreSvc is supported in this platform and OS Signature updated on 06-04-2026 07:41:57 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.257.0 AV Signature Version: 1.451.257.0 ************************************************************ 2026-06-04T07:41:57.749 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-06-04T07:41:57.749 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\6150582F-B532-49BE-8B8C-83466DD3883C1754.1dcf3f59485dec8 2026-06-04T07:41:57.765 Process scan (postsignatureupdatescan) started. 2026-06-04T07:41:57.811 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-06-04T07:41:57.811 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 06-04-2026 07:41:57 ************************************************************ 2026-06-04T07:41:57.827 Job Notification: Process exited from job (3936) 2026-06-04T07:41:57.843 Job Notification: Process exited from job (3580) 2026-06-04T07:41:57.858 Job Notification: Process exited from job (3292) 2026-06-04T07:41:57.858 Job Notification: Process exited from job (2764) 2026-06-04T07:41:58.046 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-06-04T07:41:58.046 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-06-04T07:41:58.046 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-06-04T07:41:58.061 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-06-04T07:41:58.061 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-06-04T07:41:58.061 [Engine] Engine 00007FFB18225810 no longer in use. Number of active engines: 1 2026-06-04T07:41:58.061 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-04T07:41:58.061 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-06-04T07:41:58.249 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-06-04T07:41:58.249 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-06-04T07:41:58.249 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-04T07:41:59.265 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 55104, Count: 7160, MaxTime: 500, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-04T07:41:59.265 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 540, Count: 260, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9607_1.MAI, EstimatedImpact: 0% 2026-06-04T07:41:59.265 ProcessImageName: powershell.exe, Pid: 5388, TotalTime: 462, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 30% 2026-06-04T07:41:59.265 ProcessImageName: updater.exe, Pid: 2980, TotalTime: 355, Count: 12, MaxTime: 171, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2980_1267857144\UpdaterSetup.exe, EstimatedImpact: 2% 2026-06-04T07:41:59.265 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 294, Count: 8, MaxTime: 234, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\updater.exe, EstimatedImpact: 0% 2026-06-04T07:41:59.265 ProcessImageName: UpdaterSetup.exe, Pid: 4204, TotalTime: 231, Count: 6, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\Google4204_908957292\bin\updater.exe, EstimatedImpact: 87% 2026-06-04T07:41:59.265 ProcessImageName: updater.exe, Pid: 2136, TotalTime: 105, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_2136_981949056\qualification_win32.crx, EstimatedImpact: 0% 2026-06-04T07:41:59.265 ProcessImageName: wacs.exe, Pid: 3112, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260603.txt, EstimatedImpact: 1% 2026-06-04T07:41:59.265 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6148c5c9-cb95-4b1d-a098-21da78b21688.tmp, EstimatedImpact: 0% 2026-06-04T07:41:59.265 ProcessImageName: updater.exe, Pid: 5908, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9ef2e55-8aa5-476e-8db9-8e5b1e51a636.tmp, EstimatedImpact: 0% 2026-06-04T07:41:59.265 ProcessImageName: updater.exe, Pid: 5496, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e656406-e730-483f-8754-cf623bc6ae98.tmp, EstimatedImpact: 0% 2026-06-04T07:41:59.311 [Engine] RSIG_UNLOADENGINE, 00007FFB18225810, err=0x0 2026-06-04T07:41:59.327 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6AA3BA77-5403-40A3-9BB8-9CDFC6D500BC} removed 2026-06-04T07:42:03.780 Process scan (postsignatureupdatescan) completed. 2026-06-04T07:42:41.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T07:43:00.497 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_1rnhxmzz.ovt.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #257070, FileId: 0x10000000036be3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T07:46:00.526 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_qsgi1mau.vqz.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #257100, FileId: 0x13000000036be3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T07:46:57.721 [RbM] Setting Last known good engine candidate. hr = 0 2026-06-04T07:48:00.548 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_pp1h5dt1.2zb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #257118, FileId: 0x15000000036be3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T07:53:00.567 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_zxhyy1ao.seh.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #257176, FileId: 0x1d3000000036b84, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T07:57:46.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T08:10:23.522 Job Notification: Process exited from job (2520) 2026-06-04T08:12:51.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T08:20:00.783 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bb33d23f.ati.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #257488, FileId: 0x58000000033e50, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T08:20:39.979 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #257520, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T08:20:39.994 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #257522, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T08:20:50.008 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #257526, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T08:20:50.008 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #257528, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T08:22:00.777 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_uu1u4vwj.dex.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #257539, FileId: 0x5b000000033e50, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T08:27:56.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T08:43:01.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T08:57:00.115 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3u01q2pg.f01.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #257820, FileId: 0x7e000000033e50, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T08:58:06.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T09:02:59.640 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9d39_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #259059, FileId: 0x67900000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T09:03:00.171 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_wswxscuq.fvw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #259081, FileId: 0x85000000033e50, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T09:03:11.743 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9d39_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #259515, FileId: 0x67e00000002c212, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T09:03:11.743 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9d3b_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #259516, FileId: 0x86000000033e50, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-06-04T09:12:20.398 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-04T09:12:20.398 [Cloud] Start of cloud request. Passive mode: 0 2026-06-04T09:12:20.398 [Cloud] Queued cloud request. 2026-06-04T09:12:20.398 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-04T09:12:20.429 Job Notification: New process added to job (5364) 2026-06-04T09:12:20.429 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey E84AE4D2-51D2-07F4-3461-6914E40985A1) launched 2026-06-04T09:12:20.429 Job Notification: New process added to job (2780) 2026-06-04T09:12:20.445 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:5364] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2780]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-04T09:12:20.454 Job Notification: New process added to job (4124) 2026-06-04T09:12:20.469 Job Notification: Process exited from job (5364) 2026-06-04T09:12:20.469 Job Notification: Process exited from job (2780) 2026-06-04T09:12:20.469 [Cloud] Dequeued cloud request. 2026-06-04T09:12:20.469 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-04T09:12:20.870 [Cloud] End of cloud request. 2026-06-04T09:12:20.870 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-06-04T09:12:20.885 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe BEGIN BM telemetry GUID:{67A16A6D-F685-E62D-8E52-0BECAFB2F0A9} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:4480 ProcessCreationTime:134250379404006396 SessionID:0 CreationTime:06-04-2026 09:12:20 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1232:1, Operations:None END BM telemetry 2026-06-04T09:12:20.901 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE 2026-06-04T09:12:20.932 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-04T09:12:20.932 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-04T09:12:21.698 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-04T09:12:21.745 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-04T09:12:21.745 [Cloud] Start of cloud request. Passive mode: 0 2026-06-04T09:12:21.745 [Cloud] Queued cloud request. 2026-06-04T09:12:21.745 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-04T09:12:21.745 [Cloud] Dequeued cloud request. 2026-06-04T09:12:21.901 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-04T09:12:22.010 [Cloud] End of cloud request. 2026-06-04T09:12:22.510 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-04T09:12:23.167 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-04T09:12:23.167 [Cloud] Start of cloud request. Passive mode: 0 2026-06-04T09:12:23.167 [Cloud] Queued cloud request. 2026-06-04T09:12:23.167 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-04T09:12:23.167 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-06-04T09:12:23.167 [Cloud] Dequeued cloud request. 2026-06-04T09:12:23.167 [Cloud] Start of cloud request. Passive mode: 0 2026-06-04T09:12:23.167 [Cloud] Queued cloud request. 2026-06-04T09:12:23.167 [Cloud] Dequeued cloud request. 2026-06-04T09:12:23.167 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-04T09:12:23.167 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-04T09:12:23.370 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-04T09:12:23.370 [Cloud] End of cloud request. 2026-06-04T09:12:23.558 [Cloud] End of cloud request. 2026-06-04T09:12:23.879 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-04T09:13:11.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T09:20:38.555 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #259679, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T09:20:38.555 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #259681, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T09:20:48.559 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #259685, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T09:20:48.574 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #259687, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T09:28:00.351 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_rysaow4d.oud.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #259752, FileId: 0x37f1000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T09:28:16.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T09:29:00.352 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_pemwd31h.oae.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #259759, FileId: 0x37f2000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T09:32:00.386 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_fts2qsrz.kod.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #259780, FileId: 0x37f5000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T09:41:57.703 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 49806, Count: 6579, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-04T09:41:57.703 ProcessImageName: powershell.exe, Pid: 3524, TotalTime: 479, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 36% 2026-06-04T09:41:57.703 ProcessImageName: wacs.exe, Pid: 4480, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-04T09:41:57.703 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9d39_1.MAI, EstimatedImpact: 0% 2026-06-04T09:41:57.703 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-04T09:41:57.703 ProcessImageName: updater.exe, Pid: 4072, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8fcc8cd-1893-43f3-aa69-5e008bec02c7.tmp, EstimatedImpact: 0% 2026-06-04T09:41:57.703 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67066df1-5fb0-4296-bc2d-ce827e2025a1.tmp, EstimatedImpact: 0% 2026-06-04T09:42:00.470 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_qho4dxi4.biv.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #259866, FileId: 0x37ff000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T09:43:21.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T09:58:26.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T10:05:00.664 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_u1r5pue0.pum.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #260036, FileId: 0x3816000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:13:31.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T10:16:00.762 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_tultbnjm.rxb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #260119, FileId: 0x3821000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:20:40.912 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #260159, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:20:40.928 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #260161, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:20:50.926 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #260165, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:20:50.941 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #260168, FileId: 0x46580000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:21:05.823 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9dad_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #260182, FileId: 0x29f000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:27:00.841 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_1imrxbbv.sfw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #260222, FileId: 0x382f000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:28:36.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T10:29:00.841 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_cz1bvqli.zhw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #260236, FileId: 0x3831000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:43:41.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T10:47:00.973 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ayudn5c4.ofh.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #260363, FileId: 0x3843000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:50:14.661 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9dcb_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #260392, FileId: 0x2c0000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:50:15.146 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9dcb_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #260396, FileId: 0x2c1000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:53:01.023 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_iygadkej.yph.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #260412, FileId: 0x384b000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:57:11.968 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9dd3_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #260448, FileId: 0x2cd000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:57:12.499 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9dd3_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #260452, FileId: 0x2ce000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T10:58:46.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T11:01:01.087 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_au1ip5vl.r0y.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #260475, FileId: 0x3855000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T11:11:00.175 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_x0wvfsrh.mqb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #260545, FileId: 0x385f000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T11:13:51.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T11:18:00.229 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_eayh0twa.ba0.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #260596, FileId: 0x3866000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T11:20:38.985 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #260622, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T11:20:39.000 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #260624, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T11:20:48.999 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #260628, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T11:20:48.999 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #260630, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T11:20:48.999 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #260632, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T11:20:48.999 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #260634, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T11:27:00.319 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_c0frvnrg.40k.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #260680, FileId: 0x3870000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T11:28:56.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T11:31:00.359 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vdrxx20y.tf0.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #260708, FileId: 0x3874000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T11:41:57.717 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 50592, Count: 6651, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-04T11:41:57.717 ProcessImageName: powershell.exe, Pid: 3524, TotalTime: 479, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 36% 2026-06-04T11:41:57.717 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 90, Count: 19, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9d39_1.MAI, EstimatedImpact: 0% 2026-06-04T11:41:57.717 ProcessImageName: wacs.exe, Pid: 4480, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-04T11:41:57.717 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-04T11:41:57.717 ProcessImageName: updater.exe, Pid: 4072, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8fcc8cd-1893-43f3-aa69-5e008bec02c7.tmp, EstimatedImpact: 0% 2026-06-04T11:41:57.717 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67066df1-5fb0-4296-bc2d-ce827e2025a1.tmp, EstimatedImpact: 0% 2026-06-04T11:41:57.717 ProcessImageName: updater.exe, Pid: 4272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cba1ea8c-a655-4d96-b8ee-b8fd9a1872af.tmp, EstimatedImpact: 0% 2026-06-04T11:41:57.717 ProcessImageName: updater.exe, Pid: 5644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84873a59-536a-4ebf-a97c-97164983d2b1.tmp, EstimatedImpact: 0% 2026-06-04T11:44:01.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T11:46:40.560 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e0a_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #260858, FileId: 0x660000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T11:46:41.154 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e0a_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #260862, FileId: 0x670000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T11:59:06.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T12:02:00.591 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_exvykyvz.siq.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #260997, FileId: 0x3895000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:04:00.580 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_gasiwlck.2m2.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #261011, FileId: 0x3897000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:05:00.600 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bb5ztl4r.43g.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #261018, FileId: 0x3898000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:06:00.589 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_c5maep35.set.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #261025, FileId: 0x3899000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:14:11.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T12:15:00.674 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_tog3wcru.2l2.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #261091, FileId: 0x38a2000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:20:40.327 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #261142, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:20:40.343 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #261144, FileId: 0x46580000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:20:50.343 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #261148, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:20:50.343 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #261150, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:20:50.499 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #261154, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:20:50.499 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #261156, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:21:00.718 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_riwuzzx0.lgi.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #261159, FileId: 0x38ab000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:27:00.751 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_h1ip34i4.dk1.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #261202, FileId: 0x38b1000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:29:00.767 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_igupv2is.tar.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #261216, FileId: 0x38b3000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:29:16.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T12:33:00.827 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_uynbzy5u.oht.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #261244, FileId: 0x38b7000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:34:00.832 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_mrxgbiec.nhl.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #261251, FileId: 0x38b8000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:37:47.894 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e55_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261280, FileId: 0x2fc000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:37:48.487 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e55_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261284, FileId: 0x2fd000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:37:48.519 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e55_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261287, FileId: 0x2fe000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:44:00.927 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_hc4wokod.atm.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #261331, FileId: 0x38c5000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:44:21.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T12:45:12.802 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261346, FileId: 0x30a000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:15.218 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261408, FileId: 0x30c000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:15.265 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261411, FileId: 0x30d000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:15.359 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261415, FileId: 0x30e000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:15.390 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261418, FileId: 0x30f000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:15.406 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261421, FileId: 0x310000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:15.437 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261424, FileId: 0x311000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:15.515 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261427, FileId: 0x312000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:15.578 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261430, FileId: 0x313000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:15.593 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261433, FileId: 0x314000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:15.624 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261436, FileId: 0x315000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:15.640 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261439, FileId: 0x316000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:16.378 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261443, FileId: 0x317000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:16.911 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261446, FileId: 0x318000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.421 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261449, FileId: 0x319000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.436 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261452, FileId: 0x31a000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.468 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261455, FileId: 0x31b000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.483 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261458, FileId: 0x31c000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.515 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261461, FileId: 0x31d000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.530 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261464, FileId: 0x31e000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.546 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261467, FileId: 0x31f000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.577 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261470, FileId: 0x320000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.608 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261473, FileId: 0x321000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.655 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261476, FileId: 0x322000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.686 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261479, FileId: 0x323000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.702 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261482, FileId: 0x324000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.733 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261485, FileId: 0x325000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.749 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261488, FileId: 0x326000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:45:17.780 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e5e_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261491, FileId: 0x327000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:49:49.735 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e66_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261607, FileId: 0x343000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:49:51.134 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e66_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261637, FileId: 0x34d000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:49:51.940 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e66_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261668, FileId: 0x357000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:54:36.604 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e6c_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261740, FileId: 0x36c000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:54:37.859 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e6c_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261773, FileId: 0x377000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:54:38.538 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9e6c_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #261803, FileId: 0x381000000033f03, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T12:59:26.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T13:14:31.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T13:17:00.130 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_nimk3wmt.zem.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #261986, FileId: 0x394c000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T13:29:36.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T13:41:57.716 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 58462, Count: 7291, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-04T13:41:57.716 ProcessImageName: powershell.exe, Pid: 3524, TotalTime: 479, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 36% 2026-06-04T13:41:57.716 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 255, Count: 236, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9d39_1.MAI, EstimatedImpact: 0% 2026-06-04T13:41:57.716 ProcessImageName: wacs.exe, Pid: 4480, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-04T13:41:57.716 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-04T13:41:57.716 ProcessImageName: updater.exe, Pid: 3980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f5f00552-32aa-4b5e-9823-d767e3d4eba3.tmp, EstimatedImpact: 0% 2026-06-04T13:41:57.716 ProcessImageName: updater.exe, Pid: 4072, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8fcc8cd-1893-43f3-aa69-5e008bec02c7.tmp, EstimatedImpact: 0% 2026-06-04T13:41:57.716 ProcessImageName: updater.exe, Pid: 4272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cba1ea8c-a655-4d96-b8ee-b8fd9a1872af.tmp, EstimatedImpact: 0% 2026-06-04T13:41:57.716 ProcessImageName: updater.exe, Pid: 5644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84873a59-536a-4ebf-a97c-97164983d2b1.tmp, EstimatedImpact: 0% 2026-06-04T13:41:57.716 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67066df1-5fb0-4296-bc2d-ce827e2025a1.tmp, EstimatedImpact: 0% 2026-06-04T13:41:57.716 ProcessImageName: updater.exe, Pid: 4532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e074c1-2890-4403-b5b6-b67dc5150bd8.tmp, EstimatedImpact: 0% 2026-06-04T13:42:46.264 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9ea9_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #262201, FileId: 0xa80000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T13:42:47.593 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9ea9_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #262234, FileId: 0xb30000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T13:42:48.374 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9ea9_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #262264, FileId: 0xbd0000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T13:44:41.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T13:59:46.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T14:07:25.408 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9ec7_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #262462, FileId: 0xe00000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T14:14:51.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T14:29:56.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T14:30:39.206 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9ee1_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #262663, FileId: 0xc309000000009c0a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T14:30:40.284 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9ee1_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #262694, FileId: 0xc314000000009c0a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T14:30:41.885 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sqla80_9ee1_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #262724, FileId: 0xc31e000000009c0a, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T14:34:00.679 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vdxoujn3.omu.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #262774, FileId: 0x39de000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T14:45:01.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T15:00:06.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T15:15:11.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T15:20:49.721 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #263174, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T15:30:16.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T15:41:57.716 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 65025, Count: 7692, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-04T15:41:57.716 ProcessImageName: powershell.exe, Pid: 3524, TotalTime: 479, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 36% 2026-06-04T15:41:57.716 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 390, Count: 370, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9d39_1.MAI, EstimatedImpact: 0% 2026-06-04T15:41:57.716 ProcessImageName: wacs.exe, Pid: 4480, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-04T15:41:57.716 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-04T15:41:57.716 ProcessImageName: updater.exe, Pid: 3980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f5f00552-32aa-4b5e-9823-d767e3d4eba3.tmp, EstimatedImpact: 0% 2026-06-04T15:41:57.716 ProcessImageName: updater.exe, Pid: 4072, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8fcc8cd-1893-43f3-aa69-5e008bec02c7.tmp, EstimatedImpact: 0% 2026-06-04T15:41:57.716 ProcessImageName: updater.exe, Pid: 4272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cba1ea8c-a655-4d96-b8ee-b8fd9a1872af.tmp, EstimatedImpact: 0% 2026-06-04T15:41:57.716 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67066df1-5fb0-4296-bc2d-ce827e2025a1.tmp, EstimatedImpact: 0% 2026-06-04T15:41:57.716 ProcessImageName: updater.exe, Pid: 4532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e074c1-2890-4403-b5b6-b67dc5150bd8.tmp, EstimatedImpact: 0% 2026-06-04T15:41:57.716 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2a2c80-f615-48b1-b3cf-c61c49e8633c.tmp, EstimatedImpact: 0% 2026-06-04T15:41:57.716 ProcessImageName: updater.exe, Pid: 5644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84873a59-536a-4ebf-a97c-97164983d2b1.tmp, EstimatedImpact: 0% 2026-06-04T15:41:57.716 ProcessImageName: updater.exe, Pid: 5584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbb6f609-40a3-4e84-ae44-88cdd4d53870.tmp, EstimatedImpact: 0% 2026-06-04T15:45:21.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) BEGIN BM telemetry GUID:{CD8C0D2F-ED14-8F63-7E3B-B1A21BEDF7E0} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:5448 ProcessCreationTime:134248799051673024 SessionID:2 CreationTime:06-04-2026 15:55:34 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-06-04T15:55:35.034 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-04T15:55:35.034 [Cloud] Start of cloud request. Passive mode: 0 2026-06-04T15:55:35.034 [Cloud] Queued cloud request. 2026-06-04T15:55:35.034 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-04T15:55:35.034 [Cloud] Dequeued cloud request. 2026-06-04T15:55:35.034 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-04T15:55:35.249 [Cloud] End of cloud request. 2026-06-04T15:55:35.763 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-04T16:00:26.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T16:15:31.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T16:20:00.475 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4yklfzw2.ktz.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #263600, FileId: 0x235000000036b84, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T16:30:36.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T16:45:41.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T16:50:00.696 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_dl5jjdpi.xb3.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #263837, FileId: 0x256000000036b84, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T16:50:02.853 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a217_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #263872, FileId: 0x3a43000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T16:50:04.341 [RTP] [Mini-filter] Unsuccessful scan status(#300): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a217_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #263902, FileId: 0x3a4d000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T16:50:04.716 [RTP] [Mini-filter] Unsuccessful scan status(#310): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a217_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #263932, FileId: 0x3a57000000035f3b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T17:00:46.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T17:11:33.210 [RTP] [Mini-filter] Unsuccessful scan status(#320): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a300_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #264116, FileId: 0x296000000036b84, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T17:11:34.818 [RTP] [Mini-filter] Unsuccessful scan status(#330): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a300_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #264146, FileId: 0x2a0000000036b84, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T17:11:35.474 [RTP] [Mini-filter] Unsuccessful scan status(#340): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a300_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #264179, FileId: 0x2ab000000036b84, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T17:15:51.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T17:20:50.747 [RTP] [Mini-filter] Unsuccessful scan status(#350): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #264310, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T17:30:56.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T17:34:07.587 [RTP] [Mini-filter] Unsuccessful scan status(#360): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a420_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #264443, FileId: 0x14d0000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T17:34:09.116 [RTP] [Mini-filter] Unsuccessful scan status(#370): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a420_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #264473, FileId: 0x1570000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T17:34:09.382 [RTP] [Mini-filter] Unsuccessful scan status(#380): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a420_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #264503, FileId: 0x1610000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T17:41:57.731 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 65145, Count: 7718, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-04T17:41:57.731 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 510, Count: 564, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9d39_1.MAI, EstimatedImpact: 0% 2026-06-04T17:41:57.731 ProcessImageName: powershell.exe, Pid: 3524, TotalTime: 479, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 36% 2026-06-04T17:41:57.731 ProcessImageName: wacs.exe, Pid: 4480, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-04T17:41:57.731 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-04T17:41:57.731 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1823fa9d-614d-48cc-ac0b-dca01ed65df8.tmp, EstimatedImpact: 0% 2026-06-04T17:41:57.731 ProcessImageName: updater.exe, Pid: 3980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f5f00552-32aa-4b5e-9823-d767e3d4eba3.tmp, EstimatedImpact: 0% 2026-06-04T17:41:57.731 ProcessImageName: updater.exe, Pid: 4072, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8fcc8cd-1893-43f3-aa69-5e008bec02c7.tmp, EstimatedImpact: 0% 2026-06-04T17:41:57.731 ProcessImageName: updater.exe, Pid: 5584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbb6f609-40a3-4e84-ae44-88cdd4d53870.tmp, EstimatedImpact: 0% 2026-06-04T17:41:57.731 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e4894fd3-df8a-4381-b562-9876565e5ccd.tmp, EstimatedImpact: 0% 2026-06-04T17:41:57.731 ProcessImageName: updater.exe, Pid: 4272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cba1ea8c-a655-4d96-b8ee-b8fd9a1872af.tmp, EstimatedImpact: 0% 2026-06-04T17:41:57.731 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67066df1-5fb0-4296-bc2d-ce827e2025a1.tmp, EstimatedImpact: 0% 2026-06-04T17:41:57.731 ProcessImageName: updater.exe, Pid: 4532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e074c1-2890-4403-b5b6-b67dc5150bd8.tmp, EstimatedImpact: 0% 2026-06-04T17:41:57.731 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2a2c80-f615-48b1-b3cf-c61c49e8633c.tmp, EstimatedImpact: 0% 2026-06-04T17:41:57.731 ProcessImageName: updater.exe, Pid: 5644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84873a59-536a-4ebf-a97c-97164983d2b1.tmp, EstimatedImpact: 0% 2026-06-04T17:46:01.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T17:58:00.218 [RTP] [Mini-filter] Unsuccessful scan status(#390): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_kzz3l133.ef0.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #264682, FileId: 0x1c1000000036c70, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T18:01:06.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T18:16:11.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T18:31:16.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T18:39:48.533 [RTP] [Mini-filter] Unsuccessful scan status(#400): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a75f_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #265003, FileId: 0x35000000036c0b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T18:40:04.825 [RTP] [Mini-filter] Unsuccessful scan status(#410): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a761_16.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #265043, FileId: 0x45000000036c0b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T18:40:06.677 [RTP] [Mini-filter] Unsuccessful scan status(#420): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a761_2d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #265076, FileId: 0x50000000036c0b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T18:46:21.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T19:01:26.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T19:12:40.148 [RTP] [Mini-filter] Unsuccessful scan status(#430): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a90e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #265327, FileId: 0x7b000000036c0b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T19:16:31.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T19:27:11.338 [RTP] [Mini-filter] Unsuccessful scan status(#440): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a930_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #265530, FileId: 0x1a00000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T19:27:22.289 [RTP] [Mini-filter] Unsuccessful scan status(#450): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a931_12.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #265563, FileId: 0x1ae0000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T19:27:23.852 [RTP] [Mini-filter] Unsuccessful scan status(#460): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a931_26.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #265593, FileId: 0x1b80000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T19:27:24.164 [RTP] [Mini-filter] Unsuccessful scan status(#470): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a931_3e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #265623, FileId: 0x1c20000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T19:31:36.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T19:41:57.731 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 65145, Count: 7735, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-04T19:41:57.731 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 690, Count: 700, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9d39_1.MAI, EstimatedImpact: 0% 2026-06-04T19:41:57.731 ProcessImageName: powershell.exe, Pid: 3524, TotalTime: 479, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 36% 2026-06-04T19:41:57.731 ProcessImageName: wacs.exe, Pid: 4480, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-04T19:41:57.731 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-04T19:41:57.731 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1823fa9d-614d-48cc-ac0b-dca01ed65df8.tmp, EstimatedImpact: 0% 2026-06-04T19:41:57.731 ProcessImageName: updater.exe, Pid: 3980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f5f00552-32aa-4b5e-9823-d767e3d4eba3.tmp, EstimatedImpact: 0% 2026-06-04T19:41:57.731 ProcessImageName: updater.exe, Pid: 4072, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8fcc8cd-1893-43f3-aa69-5e008bec02c7.tmp, EstimatedImpact: 0% 2026-06-04T19:41:57.731 ProcessImageName: updater.exe, Pid: 5644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84873a59-536a-4ebf-a97c-97164983d2b1.tmp, EstimatedImpact: 0% 2026-06-04T19:41:57.731 ProcessImageName: updater.exe, Pid: 1052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc2e88cf-65b1-4b08-9a28-e30827b01244.tmp, EstimatedImpact: 0% 2026-06-04T19:41:57.731 ProcessImageName: updater.exe, Pid: 5584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbb6f609-40a3-4e84-ae44-88cdd4d53870.tmp, EstimatedImpact: 0% 2026-06-04T19:41:57.731 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e4894fd3-df8a-4381-b562-9876565e5ccd.tmp, EstimatedImpact: 0% 2026-06-04T19:41:57.731 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2a2c80-f615-48b1-b3cf-c61c49e8633c.tmp, EstimatedImpact: 0% 2026-06-04T19:41:57.731 ProcessImageName: updater.exe, Pid: 4532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e074c1-2890-4403-b5b6-b67dc5150bd8.tmp, EstimatedImpact: 0% 2026-06-04T19:41:57.731 ProcessImageName: updater.exe, Pid: 5444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\17c034f8-dfc3-4d40-a904-b6e38035704a.tmp, EstimatedImpact: 0% 2026-06-04T19:41:57.731 ProcessImageName: updater.exe, Pid: 4272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cba1ea8c-a655-4d96-b8ee-b8fd9a1872af.tmp, EstimatedImpact: 0% 2026-06-04T19:41:57.731 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67066df1-5fb0-4296-bc2d-ce827e2025a1.tmp, EstimatedImpact: 0% 2026-06-04T19:46:41.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T20:01:46.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T20:16:51.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T20:20:47.100 [RTP] [Mini-filter] Unsuccessful scan status(#480): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #266022, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T20:31:56.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T20:36:38.376 [RTP] [Mini-filter] Unsuccessful scan status(#490): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a990_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #266161, FileId: 0xa2000000036c0b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T20:36:40.162 [RTP] [Mini-filter] Unsuccessful scan status(#500): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a990_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #266191, FileId: 0xac000000036c0b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T20:36:40.475 [RTP] [Mini-filter] Unsuccessful scan status(#510): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a990_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #266221, FileId: 0xb6000000036c0b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T20:47:01.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T20:49:56.486 [RTP] [Mini-filter] Unsuccessful scan status(#520): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a9a5_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #266348, FileId: 0xd5000000036c0b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T20:49:58.136 [RTP] [Mini-filter] Unsuccessful scan status(#530): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a9a5_1c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #266378, FileId: 0xdf000000036c0b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T20:49:58.417 [RTP] [Mini-filter] Unsuccessful scan status(#540): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a9a5_36.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #266411, FileId: 0xea000000036c0b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T21:02:06.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T21:17:11.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T21:20:50.767 [RTP] [Mini-filter] Unsuccessful scan status(#550): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #266656, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T21:32:16.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T21:41:57.745 ProcessImageName: httpd.exe, Pid: 4936, TotalTime: 65206, Count: 7748, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: mysqld.exe, Pid: 2120, TotalTime: 735, Count: 829, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqla80_9d39_1.MAI, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: powershell.exe, Pid: 3524, TotalTime: 479, Count: 33, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 36% 2026-06-04T21:41:57.745 ProcessImageName: wacs.exe, Pid: 4480, TotalTime: 76, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 2% 2026-06-04T21:41:57.745 ProcessImageName: svchost.exe, Pid: 1232, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: updater.exe, Pid: 2372, TotalTime: 61, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1823fa9d-614d-48cc-ac0b-dca01ed65df8.tmp, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: updater.exe, Pid: 3980, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f5f00552-32aa-4b5e-9823-d767e3d4eba3.tmp, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: updater.exe, Pid: 4072, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e8fcc8cd-1893-43f3-aa69-5e008bec02c7.tmp, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: updater.exe, Pid: 4532, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72e074c1-2890-4403-b5b6-b67dc5150bd8.tmp, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: updater.exe, Pid: 5644, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84873a59-536a-4ebf-a97c-97164983d2b1.tmp, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: updater.exe, Pid: 896, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3d6ee92d-7e9e-445f-b269-3fc9ee653159.tmp, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: updater.exe, Pid: 6068, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e4894fd3-df8a-4381-b562-9876565e5ccd.tmp, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: updater.exe, Pid: 5584, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\dbb6f609-40a3-4e84-ae44-88cdd4d53870.tmp, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2bf7e015-73cf-44cc-816c-884047177cfd.tmp, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: updater.exe, Pid: 4272, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cba1ea8c-a655-4d96-b8ee-b8fd9a1872af.tmp, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6b2a2c80-f615-48b1-b3cf-c61c49e8633c.tmp, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: updater.exe, Pid: 5444, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\17c034f8-dfc3-4d40-a904-b6e38035704a.tmp, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: updater.exe, Pid: 1052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bc2e88cf-65b1-4b08-9a28-e30827b01244.tmp, EstimatedImpact: 0% 2026-06-04T21:41:57.745 ProcessImageName: updater.exe, Pid: 3428, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\67066df1-5fb0-4296-bc2d-ce827e2025a1.tmp, EstimatedImpact: 0% 2026-06-04T21:47:21.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T21:56:40.619 [RTP] [Mini-filter] Unsuccessful scan status(#560): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a9fa_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #266938, FileId: 0x22a0000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T21:56:42.092 [RTP] [Mini-filter] Unsuccessful scan status(#570): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a9fa_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #266968, FileId: 0x2340000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T21:56:42.357 [RTP] [Mini-filter] Unsuccessful scan status(#580): \Device\HarddiskVolume2\xampp\tmp\#sqla80_a9fa_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #266998, FileId: 0x23e0000000164d9, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T22:02:26.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T22:09:00.149 [RTP] [Mini-filter] Unsuccessful scan status(#590): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_zsolkpdy.5zr.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #267107, FileId: 0x36a000000036c70, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T22:17:31.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T22:32:36.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T22:42:16.853 [RTP] [Mini-filter] Unsuccessful scan status(#600): \Device\HarddiskVolume2\xampp\tmp\#sqla80_aa39_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #267377, FileId: 0x12b000000036c0b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T22:42:19.262 [RTP] [Mini-filter] Unsuccessful scan status(#610): \Device\HarddiskVolume2\xampp\tmp\#sqla80_aa3a_16.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #267411, FileId: 0x13a000000036c0b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T22:42:21.124 [RTP] [Mini-filter] Unsuccessful scan status(#620): \Device\HarddiskVolume2\xampp\tmp\#sqla80_aa3a_2d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #267444, FileId: 0x145000000036c0b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T22:47:41.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T23:02:46.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-04T23:05:00.541 [RTP] [Mini-filter] Unsuccessful scan status(#630): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_lez1oazo.uuy.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #267622, FileId: 0x3c4000000036c70, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-04T23:17:51.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) -------------------------------------------------------------------------------- Windows Defender (77BDAF73-B396-481F-9042-AD358843EC24) Service Log Started On 06-05-2026 01:05:24 ************************************************************ OS install time: 05/14/2019 05:52:54.0 UTC Current time: 06/05/2026 01:05:24.734305700 UTC (7765 ms since boot) 2026-06-05T01:05:24.797 MpEnsureProcessMitigationPolicy(0x7) returns 0 2026-06-05T01:05:24.876 ProductId: 2, ProductFeature: 0, LaunchedProtected: 3, IsWcos: 0, IsContainerOs: 0, DirtyShutdownDetected: 0, PassiveRemediation: 0, IsHybridModePolicyEnabled: 0, IsVerifiedAndReputableTrustModeEnabled: 0 2026-06-05T01:05:24.907 [WPP] Starting WPP trace with buffersize 4MB, maxfilesize: 16MB, filename: MpWppTracing-20260605-010524-00000003-fffffffeffffffff.bin ... 2026-06-05T01:05:24.922 [WPP] Trace session started - MpWppTracing-20260605-010524-00000003-fffffffeffffffff.bin 2026-06-05T01:05:24.922 [RbM] Rollback manager succesfully initialized. 2026-06-05T01:05:24.922 [RbM] Rollback manager EnableRollbackManager called. 2026-06-05T01:05:24.938 [RbM] Rollback manager EnableRollbackManager completed. 2026-06-05T01:05:24.938 [PlatUpd] Service launched successfully from: C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0 2026-06-05T01:05:24.938 [PlatUpd] Failed to read Misc config regarding new coreservice lifecycle management, using legacy core service lifecycle management anyway. hr = 0x80070002 2026-06-05T01:05:24.938 Failed to retrieve config value from engine or configurations for config key (MdTimerInitalDelay) hr = 0x80004004 2026-06-05T01:05:24.938 Failed to retrieve config value from engine or configurations for config key (MdTimerMonitorInterval) hr = 0x80004004 2026-06-05T01:05:24.938 Failed to retrieve config value from engine or configurations for config key (MdDisableResController) hr = 0x80004004 2026-06-05T01:05:24.938 Failed to retrieve config value from engine or configurations for config key (MdEnableDailySensorChecks) hr = 0x80004004 2026-06-05T01:05:24.938 Failed to retrieve config value from engine or configurations for config key (MdAlertMonitorWindow) hr = 0x80004004 2026-06-05T01:05:24.938 Failed to retrieve config value from engine or configurations for config key (MdAlertMinInterval) hr = 0x80004004 2026-06-05T01:05:24.938 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x80004004 2026-06-05T01:05:24.938 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x80004004 2026-06-05T01:05:24.938 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x80004004 2026-06-05T01:05:24.938 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorEnableLeakDetector) hr = 0x80004004 2026-06-05T01:05:24.938 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x80004004 2026-06-05T01:05:24.954 MdCoreSvc is supported in this platform and OS 2026-06-05T01:05:24.954 MdCoreSvc is supported in this platform and OS 2026-06-05T01:05:24.954 [PlatUpd] MDCoreSvc is supported by the version of the platform we are switching to. Making sure the service is registered with SCM 2026-06-05T01:05:24.954 [PlatUpd] Starting MdCoreSvc service 2026-06-05T01:05:25.313 [PlatUpd] Validating and fixing WMI MOF schema - Running command: "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpCmdRun.exe" -RegisterWmiSchema -Root "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0" 2026-06-05T01:05:27.735 [PlatUpd] MpAddMpUxRegistration succeeded 2026-06-05T01:05:27.735 [PlatUpd] MpManagementUpdateHandler: starting update for install path %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26040.7-0. 2026-06-05T01:05:27.735 [PlatUpd] MpManagementUpdateHandler: calling MpUpdateManagement() 2026-06-05T01:05:27.735 [PlatUpd] MpUpdateManagement: Management platform update started for components (3) 2026-06-05T01:05:27.751 [PlatUpd] Defender MDM CSP platform update not supported on Server SKUs 2026-06-05T01:05:27.751 [PlatUpd] WMI/PS provider platform update started 2026-06-05T01:05:27.751 [PlatUpd] WMI/PS provider platform update not required 2026-06-05T01:05:27.751 [PlatUpd] MpUpdateManagement: Management platform update completed 2026-06-05T01:05:27.751 MdCoreSvc is supported in this platform and OS 2026-06-05T01:05:27.751 [PlatUpd] MDCoreSvc is supported by the version of the platform we are switching to. Making sure the service is registered with SCM 2026-06-05T01:05:27.751 [PlatUpd] Starting MdCoreSvc service 2026-06-05T01:05:27.860 [PlatUpd] Firewall rules updated for %ProgramData%\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MsMpEng.exe 2026-06-05T01:05:27.860 [PlatUpd] MpCheckAndUpdateBinaryLocationTo(%ProgramData%\Microsoft\Windows Defender\Platform\4.18.26040.7-0): 10 items checked, 1 required update. hrMui: 0x1 hrEtw: 0 2026-06-05T01:05:27.860 [TS] Troubleshooting mode is not available! 2026-06-05T01:05:27.860 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0, Scenario: Consumer, Source: Unknown, ConfigChange: Remove 2026-06-05T01:05:27.860 CheckProductDisabled(fWaitWSC: 1, fRemoveConfigs: 0) ... 2026-06-05T01:05:27.860 [Service] Enabling IOAV/IEV/ShellExt/EtwLogger registrations ... 2026-06-05T01:05:27.860 [Service] Enabling AutoLoggers ... 2026-06-05T01:05:27.860 [Service] Enabling AMSI registration ... 2026-06-05T01:05:27.860 [Service] Leaving EnableIOAVWorker(1, 0) with hr = 0 2026-06-05T01:05:27.860 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-05T01:05:27.891 Cache C:\ProgramData\Microsoft\Windows Defender\Scans\History\CacheManager\302F501F-0000-0000-0000-501F00000000-1.bin loaded.**********Cache stats************ No. Of buckets -> 39062 Each Bucket has max capacity of -> 1 entries number of Entries is 29231 Number of invalid entries is 0 Number of inserts issued is 743987 Number of replaces issued is 0 Number of insert failures is 5 Number of inserts with duplicate entries is 14894 Number of lookups is 71645817 Number of lookup misses is 2836468 Number of fast lookup misses is 47318024 Number of false fast lookups is 2836468 Number of invalidations is 470470 Number of maintenance invalidations is 125554 Current File Size is 958464 Journal ID = 1d50a16ac8ba444 Trusted image state = 4 USN = 12f847 Setup boot count = 2 2026-06-05T01:05:27.891 Verifying license file... 2026-06-05T01:05:27.891 Verified [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\msmplics.dll] (file in cache) 2026-06-05T01:05:27.907 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-05T01:05:27.907 SharedSignatureRoot not configured. Disabling remote image load for msmpeng.exe. Once disabled, it can no longer be enabled without a service restart. hr=0 2026-06-05T01:05:27.907 Loaded module#0 MpComServer. 2026-06-05T01:05:27.907 Loaded module#1 StartupPolicies. 2026-06-05T01:05:27.907 COM server initialized successfully. 2026-06-05T01:05:27.907 MpRefreshDefenderCoreConfigs: failed because engine is not ready, we cannot let the process continue because we might start core service while its configuration is not ready. 2026-06-05T01:05:27.922 [Plugin] Verifying C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\mprtp.dll ... 2026-06-05T01:05:27.922 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\mprtp.dll] due to PPL. 2026-06-05T01:05:27.938 [RTP] [RTP] FilterCommunicator object 0x000002A052D77120 initialized (\MicrosoftMalwareProtectionAsyncPortWD, , ), threads: 0 normal, 0 very low, 0 alt, thread pool threads: 4 normal, 0 very low, 0 alt 2026-06-05T01:05:27.938 [RTP] Setting DisableAsyncScanOnClose to 0 (hr=0). 2026-06-05T01:05:27.938 [RTP] Setting DisableAsyncScanOnOpen to 0 in wdfilter (hr=0). 2026-06-05T01:05:27.938 [RTP] Setting FilterExperimentMode to 0 (hr=0). 2026-06-05T01:05:27.938 [RTP] Setting DisableDriverUnload to 1 (hr=0). 2026-06-05T01:05:27.938 [RTP] Setting RegLinkHardeningMode to 0 (hr=0). 2026-06-05T01:05:27.938 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-06-05T01:05:27.938 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-06-05T01:05:27.938 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-06-05T01:05:27.938 [RTP] Setting PreventPagingFileAbuse to 1 (hr=0). 2026-06-05T01:05:27.938 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-06-05T01:05:27.938 [RTP] [RTP] LastAccessTimeSuppression for network files is enabled by configuration. 2026-06-05T01:05:27.938 [RTP] [RTP] FilterCommunicator object 0x000002A052DDF530 initialized (\MicrosoftMalwareProtectionPortWD, \MicrosoftMalwareProtectionVeryLowIoPortWD, \MicrosoftMalwareProtectionRemoteIoPortWD), threads: 6 normal, 2 very low, 0 alt, thread pool threads: 0 normal, 0 very low, 6 alt 2026-06-05T01:05:27.938 [RTP] SyncDssAvailableThreads cap limit initialized by MiscConfig to: 14 2026-06-05T01:05:27.938 [RTP] [RtpCopyAccelerator] Windows19H1 0, WindowsCobalt 0, IsServerSKU 1, IsPassiveOrSideBySidePassiveMode 0, IsDevMode 0, fIsWindowsInhouseBuild 0, BuildLabEx 14393.9140.amd64fre.rs1_release.260506-0518 2026-06-05T01:05:27.954 [RTP] [RTP] StartCommunication 0x000002A052D77120 (\MicrosoftMalwareProtectionAsyncPortWD, ), threads: 0 normal, 0 very low, 0 alt, thread pool threads: 4 normal, 0 very low, 0 alt 2026-06-05T01:05:27.954 [NiPlugin] Skipping the NiPlugin initialization as C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\mpnirtp.dll does not exist. 2026-06-05T01:05:27.954 [init][RTP] RTPPlugin initialization completed 2026-06-05T01:05:27.954 OS boot count = 2 2026-06-05T01:05:27.954 OS Install = 0 2026-06-05T01:05:27.954 [init] MpAddMpUxRegistrationForToast failed (Ignored). hr = 0x8000401a 2026-06-05T01:05:27.954 [KSL] Entering CKSLEngine::Initialize. 2026-06-05T01:05:27.954 [KSL] Leaving CKSLEngine::Initialize(0). 2026-06-05T01:05:27.954 [KSL] Entering CKSLEngine::EnableKSL. State: [1] 2026-06-05T01:05:27.954 [KSL] MpInstallKslD: hr=0x1 2026-06-05T01:05:27.954 [KSL] MpRegisterKslD: hr=0 2026-06-05T01:05:27.954 [KSL] MpStartKslD: hr=0 2026-06-05T01:05:27.954 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-05T01:05:27.954 Loading engine... 2026-06-05T01:05:27.969 Verifying engine and signature files (source: 1) ... 2026-06-05T01:05:27.969 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299}\mpengine.dll] due to PPL. 2026-06-05T01:05:27.969 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299}\mpasbase.vdm] (file in cache) 2026-06-05T01:05:27.969 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299}\mpasdlta.vdm] (file in cache) 2026-06-05T01:05:27.969 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299}\mpavbase.vdm] (file in cache) 2026-06-05T01:05:27.969 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299}\mpavdlta.vdm] (file in cache) 2026-06-05T01:05:28.032 [Engine] IsHybridMode: 0 2026-06-05T01:05:28.032 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-06-05T01:05:28.063 Database:Using offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-9BA147ED1771D54AF95C0408DD890B32199BD084.bin) IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-06-05T01:05:31.302 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-06-05T01:05:31.302 [AutoExclusion] Applied roles from cache. 2026-06-05T01:05:31.302 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-06-05T01:05:31.302 [Engine] New active engine 00007FFABF125810 (no old engine). Number of active engines: 1 2026-06-05T01:05:31.333 EngineInit:Global ASOC is enabled 2026-06-05T01:05:31.333 EngineInit:ASOO is enabled for developer volumes 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:05:31.364 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:05:31.380 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-05T01:05:31.380 [SigStatUpd] CSignatureStatus: back to good 2026-06-05T01:05:31.380 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-06-05T01:05:31.395 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-06-05T01:05:31.395 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-06-05T01:05:31.395 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-06-05T01:05:31.395 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-06-05T01:05:31.395 Opening Sense registry key to get process path failed with hr=0x80070002. Fallback to programfiles. 2026-06-05T01:05:31.416 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-06-05T01:05:31.416 [RTP] ****************************RTP Perf Log*************************** RTP Start:N/A Last Perf:(null) First RTP Scan:N/A Plugin States: AV:2 AS:2 RTP:2 OA:2 BM:2 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:0 System File Cache: Hits:0 Misses:0 BM Queue:0,0,0 Proc:0,0,0 File:0,0,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,1,0 SetEngine:1,1,0 SetState:0,0,0 SetUser:0,0,0 Config:0,0,0 ProcExcl:0,0,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:0 Pending:0 RegSize:2882 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:2102 AsyncQCurrent:0 BMFlags:8 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:1225 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:5107 TotalHits:0 InstanceCacheInserts:17 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:1 InstanceCacheMisses:1688 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:-1ms (0/0) Success: 0, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-06-05T01:05:31.416 [Plugin] Initializing RTP plugin state... 2026-06-05T01:05:31.416 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-06-05T01:05:31.416 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299} 2026-06-05T01:05:31.416 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-05T01:05:31.416 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-05T01:05:31.416 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-05T01:05:31.416 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-05T01:05:31.416 MdCoreSvc is supported in this platform and OS 2026-06-05T01:05:31.431 Engine loaded! 2026-06-05T01:05:31.431 Engine:Failure in process enumeration: Image:, Error:GetImageNameConfigurationEx, 0x80078020, PID: 0 2026-06-05T01:05:31.431 Engine:Failure in process enumeration: Image:, Error:GetImageNameConfigurationEx, 0x80078020, PID: 4 2026-06-05T01:05:31.431 [DLP] Create FeatureControlState instance 2026-06-05T01:05:31.431 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-06-05T01:05:31.431 RegisterSModeChangeListener: hr = 0x1 2026-06-05T01:05:31.431 RegisterHybridModeChangeListener: hr = 0x1 2026-06-05T01:05:31.447 [AutoPurge] Auto purger task is scheduled to run in 600000(ms) from now with period 86400000(ms) 2026-06-05T01:05:31.447 [SigReleaseHb] Initialized with Stage 0 2026-06-05T01:05:31.447 [EmergencySigManager] Emergency sig checks are currently disabled. Timer interval: 15 minutes. 2026-06-05T01:05:31.447 [SCC][CID=14500_2812] Initializing ... 2026-06-05T01:05:31.447 [SCC][CID=14500_2812] SCC Initialize! The feature is OFF on this machine (E5 = 0), hr: 0x80004001 2026-06-05T01:05:31.447 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-06-05T01:05:31.447 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-06-05T01:05:31.463 [NRI] Stopping NIS service ... 2026-06-05T01:05:31.463 [RTP] [RTP] Killbits updated: 0x200000000000000 -> 0x4000000 2026-06-05T01:05:31.463 [RTP] [RTP] LastAccessTimeSuppression is enabled (default behavior). Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.257.0 AV Signature Version: 1.451.257.0 ************************************************************ 2026-06-05T01:05:31.463 Resource usage Monitoring is enabled 2026-06-05T01:05:31.463 Job Notification: New process added to job (2196) 2026-06-05T01:05:31.463 Ci Endpoint Security Policy Installation: Unsupported, hr = 0x00000001 2026-06-05T01:05:31.478 Job Notification: New process added to job (4012) 2026-06-05T01:05:31.478 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-06-05T01:05:31.478 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-06-05T01:05:31.478 Job Notification: New process added to job (4044) 2026-06-05T01:05:31.478 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-06-05T01:05:31.478 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-06-05T01:05:31.478 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-06-05T01:05:31.478 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-06-05T01:05:31.478 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-06-05T01:05:31.478 [RTP] Generating the base plugin configuration ... 2026-06-05T01:05:31.478 [RTP] Path exclusion changed, new size in bytes: 2 2026-06-05T01:05:31.478 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-05T01:05:31.478 [RTP] Calling GenerateEngineConfigStruct (0x3e) ... 2026-06-05T01:05:31.478 [RTP] [RTP] RTPPlugin state has changed as follow: ASStatus:0->1, AVStatus:0->1, RTPStatus:0->1 2026-06-05T01:05:31.478 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-05T01:05:31.478 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-06-05T01:05:31.494 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4012] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4044]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-05T01:05:31.494 [RTP] [RTP] StartCommunication 0x000002A052DDF530 (\MicrosoftMalwareProtectionPortWD, \MicrosoftMalwareProtectionVeryLowIoPortWD), threads: 6 normal, 2 very low, 0 alt, thread pool threads: 0 normal, 0 very low, 6 alt 2026-06-05T01:05:31.494 [RTP] [RTP] RTP worker threads ready [6 threads] 2026-06-05T01:05:31.494 [RTP] [Mini-filter] First scan on a volume: \Device\HarddiskVolume2\Windows\System32\drivers\wd\WdNisDrv.sys 2026-06-05T01:05:31.572 Job Notification: Process exited from job (4012) 2026-06-05T01:05:31.572 Job Notification: Process exited from job (4044) 2026-06-05T01:05:31.572 [PlatUpd] WMI MOF schema validation completed successfully 2026-06-05T01:05:31.815 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-05T01:05:31.884 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-06-05T01:05:31.884 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-06-05T01:05:31.884 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-05T01:05:33.461 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-05T01:05:34.373 [RTP] Duplicating the current plugin configuration object... 2026-06-05T01:05:34.373 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-05T01:05:34.373 [RTP] Updating plugin configuration due to recent config changes (0x600) ... 2026-06-05T01:05:34.373 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-06-05T01:05:34.373 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x600, Changed: 0x218 2026-06-05T01:05:40.549 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #29, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:05:40.565 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #30, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:05:40.565 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #32, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:06:28.415 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-06-05T01:06:28.430 [RTP] [RtpConfig] Config change detected, type: 1024 2026-06-05T01:06:29.340 Process scan (poststartupscan) started. 2026-06-05T01:06:29.340 Process scan (poststartupscan) completed. 2026-06-05T01:06:30.984 [RTP] Duplicating the current plugin configuration object... 2026-06-05T01:06:30.984 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-05T01:06:30.984 [RTP] Updating plugin configuration due to recent config changes (0x400) ... 2026-06-05T01:06:30.984 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-06-05T01:06:30.984 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x400, Changed: 0x218 2026-06-05T01:07:26.856 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #343, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:07:26.871 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #346, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:10:31.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T01:10:31.467 [RbM] Setting Last known good engine candidate. hr = 0 2026-06-05T01:15:26.276 [AutoPurge] Cleanup Routine tasks have started. 2026-06-05T01:15:26.448 [AutoPurge] Routine task for Cache Maintenance has started. 2026-06-05T01:15:26.448 [AutoPurge] Routine task for Cache Maintenance ... 2026-06-05T01:15:26.448 [AutoPurge] Routine task for MpSFCBuild ... 2026-06-05T01:15:26.448 [AutoPurge] MpCmIsBuildCompleted() - S_OK 2026-06-05T01:15:26.448 [AutoPurge] MpSignalMaintenanceMode ... 2026-06-05T01:15:26.464 [AutoPurge] Verification Routine tasks have started.ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-06-05T01:15:31.141 Detection State: Finished(0) Failed(0) CriticalFailed(0) Additional Actions(0) 2026-06-05T01:15:31.141 [AutoPurge] Purged 0 expired detection item(s) from a total of 0. 2026-06-05T01:15:31.141 [AutoPurge] 0 expired file(s) deleted under C:\ProgramData\Microsoft\Windows Defender\Scans\History\Store (total: 0, expiration in 86400 seconds) Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:65538 Start time:06-05-2026 01:15:31 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:06-05-2026 01:15:31 2026-06-05T01:15:31.157 [PlatUpd] Purging orphaned platform update directories under C:\ProgramData\Microsoft\Windows Defender\Platform ... 2026-06-05T01:15:31.157 [PlatUpd] Not purging current location C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0 ... 2026-06-05T01:15:31.157 [PlatUpd] Not purging backup location C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0 ... 2026-06-05T01:15:31.157 [PlatUpd] Purging orphaned platform update directories under C:\Program Files\Windows Defender\Platform ... 2026-06-05T01:15:31.157 [AutoPurge] Cleanup Routine tasks have ended. 2026-06-05T01:15:31.454 Timer callback: Initializating/verifying scheduled tasks ... 2026-06-05T01:15:31.454 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-06-05T01:15:31.516 Job Notification: New process added to job (3872) 2026-06-05T01:15:31.532 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-06-05T01:15:31.532 EnsureProtectedFolderAcls(), hr = 0x0 2026-06-05T01:15:31.532 [AutoPurge] MpReinforceServiceAcls: 0 2026-06-05T01:15:31.548 [AutoPurge] Readded platform files to MOAC after ACL enforcement. hr=0 2026-06-05T01:15:31.548 [AutoPurge] Removing expired default signature package ... 2026-06-05T01:15:31.563 Job Notification: New process added to job (2604) 2026-06-05T01:15:31.579 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3872] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2604]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-05T01:15:31.641 Job Notification: New process added to job (312) 2026-06-05T01:15:31.657 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-06-05T01:15:31.657 Job Notification: New process added to job (3148) 2026-06-05T01:15:31.673 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:312] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3148]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-05T01:15:31.688 Task(Scan -ScheduleJob -RestrictPrivileges -ScanType 2 -ScanTrigger 52) is scheduled to run in 5927181(ms) from now at 04:54 (02:54 UTC) with period 86400000(ms). Daily task start time is randomized to reduce spikes. 2026-06-05T01:15:32.141 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-06-05T01:15:32.157 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-05T01:15:32.157 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-05T01:15:32.157 [RTP] Duplicating the current plugin configuration object... 2026-06-05T01:15:32.157 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-05T01:15:32.157 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-05T01:15:32.157 [RTP] [RtpConfig] Config change detected, type: 2 2026-06-05T01:15:32.157 [RTP] [RtpConfig] Config change detected, type: 4096 2026-06-05T01:15:32.157 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-05T01:15:32.157 [RTP] No config change detected. Not updating plugin configuration. 2026-06-05T01:15:32.157 [RTP] No config changes found. No configuration switch. 2026-06-05T01:15:32.157 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-05T01:15:32.157 [RTP] Duplicating the current plugin configuration object... 2026-06-05T01:15:32.157 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-05T01:15:32.157 [RTP] Updating plugin configuration due to recent config changes (0x2) ... 2026-06-05T01:15:32.157 [RTP] No config change detected. Not updating plugin configuration. 2026-06-05T01:15:32.157 [RTP] No config changes found. No configuration switch. 2026-06-05T01:15:32.157 [RTP] [RtpConfig] Config change detected, type: 4 2026-06-05T01:15:32.157 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x2, Changed: 0 2026-06-05T01:15:32.157 [RTP] [RtpConfig] Config change detected, type: 8 2026-06-05T01:15:32.157 [RTP] [RtpConfig] Config change detected, type: 16 2026-06-05T01:15:32.157 [RTP] [RtpConfig] Config change detected, type: 1024 2026-06-05T01:15:32.157 [RTP] [RtpConfig] Config change detected, type: 2048 2026-06-05T01:15:32.157 [RTP] Setting DisableAsyncScanOnClose to 0 (hr=0). 2026-06-05T01:15:32.157 [RTP] Setting DisableAsyncScanOnOpen to 0 in wdfilter (hr=0). 2026-06-05T01:15:32.157 [RTP] Setting FilterExperimentMode to 0 (hr=0). 2026-06-05T01:15:32.157 [RTP] Setting DisableDriverUnload to 1 (hr=0). 2026-06-05T01:15:32.157 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-06-05T01:15:32.157 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-06-05T01:15:32.157 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-06-05T01:15:32.157 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-06-05T01:15:32.157 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-06-05T01:15:32.157 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-06-05T01:15:32.157 [RTP] [RTP] LastAccessTimeSuppression for network files is enabled by configuration. 2026-06-05T01:15:32.157 [RTP] [RtpConfig] Config change detected, type: 64 2026-06-05T01:15:32.157 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-05T01:15:32.157 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-05T01:15:32.157 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-05T01:15:32.157 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-05T01:15:33.516 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hu-hu_de9904eb1acc35ce\bootmgr.efi.mui", hr=0x0 2026-06-05T01:15:34.204 [AutoPurge] Verification Routine tasks have ended. 2026-06-05T01:15:34.731 [RTP] Duplicating the current plugin configuration object... 2026-06-05T01:15:34.731 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-05T01:15:34.731 [RTP] Updating plugin configuration due to recent config changes (0x41c) ... 2026-06-05T01:15:34.731 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-06-05T01:15:34.731 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x41c, Changed: 0x218 2026-06-05T01:15:45.186 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-gb_ed1cf6a2484aaae6\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:15:48.112 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\ko-kr\memtest.efi.mui", hr=0x0 2026-06-05T01:15:48.128 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_es-es_f4710ea4439a5050\bootmgr.efi.mui", hr=0x0 2026-06-05T01:15:58.460 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_et-ee_ee30da3447a02cdf\bootmgr.efi.mui", hr=0x0 2026-06-05T01:15:59.179 Engine:Setting original file name "spwizres.dll" for "c:\windows\winsxs\x86_microsoft-windows-s..on-wizard-framework_31bf3856ad364e35_10.0.14393.4169_none_cff66023f3ab495c\spwizimg.dll", hr=0x0 2026-06-05T01:15:59.304 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_et-ee_ee30da3447a02cdf\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:15:59.960 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\D1AC6CCF-6163-474B-AC19-5B8742290B71108c.1dcf488cf67b044 2026-06-05T01:16:00.007 Verifying engine and signature files (source: 0) ... 2026-06-05T01:16:00.007 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C0FEAF2-8666-4D31-AB71-283F721204AC}\mpengine.dll] due to PPL. 2026-06-05T01:16:00.007 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C0FEAF2-8666-4D31-AB71-283F721204AC}\mpasbase.vdm]. File not in cache (0x1) 2026-06-05T01:16:00.726 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C0FEAF2-8666-4D31-AB71-283F721204AC}\mpasbase.vdm] 2026-06-05T01:16:00.726 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C0FEAF2-8666-4D31-AB71-283F721204AC}\mpasdlta.vdm]. File not in cache (0x1) 2026-06-05T01:16:00.742 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C0FEAF2-8666-4D31-AB71-283F721204AC}\mpasdlta.vdm] 2026-06-05T01:16:00.742 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C0FEAF2-8666-4D31-AB71-283F721204AC}\mpavbase.vdm]. File not in cache (0x1) 2026-06-05T01:16:01.085 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C0FEAF2-8666-4D31-AB71-283F721204AC}\mpavbase.vdm] 2026-06-05T01:16:01.085 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C0FEAF2-8666-4D31-AB71-283F721204AC}\mpavdlta.vdm]. File not in cache (0x1) 2026-06-05T01:16:01.101 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C0FEAF2-8666-4D31-AB71-283F721204AC}\mpavdlta.vdm] 2026-06-05T01:16:02.154 Engine:Setting original file name "RRASUPG.DLL" for "c:\windows\system32\setup\rasmigplugin.dll", hr=0x0 2026-06-05T01:16:08.175 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_es-es_3685e97c1a581602\memtest.exe.mui", hr=0x0 2026-06-05T01:16:08.960 [Engine] IsHybridMode: 0 2026-06-05T01:16:08.960 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-06-05T01:16:08.960 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-B7C7D62B5B9E253365C01C6622C2C5CF79DF2DF5.bin): 0x00000002 2026-06-05T01:16:08.975 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-B7C7D62B5B9E253365C01C6622C2C5CF79DF2DF5.bin) 2026-06-05T01:16:08.975 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-06-05T01:16:08.975 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-06-05T01:16:08.975 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-06-05T01:16:08.975 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-06-05T01:16:09.598 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-gb_ed1cf6a2484aaae6\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:16:12.162 Engine:Setting original file name "Windows.Security.Credentials.UI.CredentialPicker.exe" for "c:\windows\system32\windows.security.credentials.ui.credentialpicker.dll", hr=0x0 2026-06-05T01:16:14.631 Engine:Setting original file name "kernel32" for "c:\windows\system32\kernel32.dll", hr=0x0 2026-06-05T01:16:19.214 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\zh-tw\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:16:22.878 Engine:Setting original file name "extractr.exe" for "c:\windows\system32\wimserv.exe", hr=0x0 2026-06-05T01:16:25.626 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_nl-nl_efc67df6a3392064\memtest.exe.mui", hr=0x0 2026-06-05T01:16:28.690 Engine:Setting original file name "AM_Delta_Patch_1.449.551.0.exe" for "c:\windows\softwaredistribution\download\837f614923c1f563437d3937e80b4981c8b6906b", hr=0x0 2026-06-05T01:16:29.666 Engine:Setting original file name "BCP47Lang.dll" for "c:\windows\system32\bcp47langs.dll", hr=0x0 2026-06-05T01:16:35.140 Engine:Setting original file name "rundll32.exe" for "c:\windows\syswow64\rundll32.exe", hr=0x0 2026-06-05T01:16:40.858 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\lt-lt\bootmgr.efi.mui", hr=0x0 2026-06-05T01:16:43.092 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\lt-lt\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:16:43.092 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_pl-pl_3602d878885b8e18\memtest.exe.mui", hr=0x0 2026-06-05T01:16:46.609 Engine:Setting original file name "mavinject32.exe" for "c:\windows\winsxs\wow64_microsoft-windows-appmanagement-appvwow_31bf3856ad364e35_10.0.14393.9140_none_334f62fd8157e09d\mavinject.exe", hr=0x0 2026-06-05T01:16:53.942 Engine:Setting original file name "MSCORLIB.DLL" for "c:\windows\microsoft.net\framework\v4.0.30319\mscorlib.tlb", hr=0x0 2026-06-05T01:16:54.744 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\pl-pl\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:16:58.121 Engine:Setting original file name "PRINTUI.DLL.MUI" for "c:\windows\winsxs\x86_microsoft-windows-p..i-ntprint.resources_31bf3856ad364e35_10.0.14393.1715_en-us_8c5be0c3586518d8\ntprint.dll.mui", hr=0x0 2026-06-05T01:16:59.500 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_bg-bg_0645efc96ef12622\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:17:02.809 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rd8f0uq.dll", hr=0x0 2026-06-05T01:17:05.473 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_es-es_e73f22168808f16f\msprivs.dll.mui", hr=0x0 2026-06-05T01:17:07.690 Engine:Setting original file name "MSCOREE.DLL" for "c:\windows\microsoft.net\framework\v4.0.30319\mscoree.tlb", hr=0x0 2026-06-05T01:17:09.709 Engine:Setting original file name "WinSetupUI.exe" for "c:\windows\system32\winsetupui.dll", hr=0x0 2026-06-05T01:17:14.414 Engine:Setting original file name "AM_Delta_Patch_1.449.593.0.exe" for "c:\windows\softwaredistribution\download\aad199b8153120bc1097deafb315fbc7345d091a", hr=0x0 2026-06-05T01:17:14.943 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\zh-hk\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:17:31.212 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-file-l2-1-0.dll", hr=0x0 2026-06-05T01:17:32.571 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\el-gr\memtest.efi.mui", hr=0x0 2026-06-05T01:17:33.118 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\es-mx\bootmgr.efi.mui", hr=0x0 2026-06-05T01:17:36.182 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_es-es_f4710ea4439a5050\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:17:36.197 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_ko-kr_08f4b183c9e7ead3\memtest.exe.mui", hr=0x0 2026-06-05T01:17:38.480 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\amd64_netfx4-scripting_engine_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_414026caf1235658\microsoft.jscript.tlb", hr=0x0 2026-06-05T01:17:39.143 Engine:Setting original file name "bootres" for "c:\windows\winsxs\amd64_microsoft-windows-bootres.resources_31bf3856ad364e35_10.0.14393.479_en-us_1b80fad7f4a09a1e\bootres.dll.mui", hr=0x0 2026-06-05T01:17:39.503 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_pl-pl_386c667c364e4c99\bootmgr.exe.mui", hr=0x0 2026-06-05T01:17:50.185 Engine:Setting original file name "msvcr100_clr0400.dll" for "c:\xampp\apache\bin\msvcr100.dll", hr=0x0 2026-06-05T01:17:51.435 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_ru-ru_824532501928de85\bootmgr.exe.mui", hr=0x0 2026-06-05T01:17:54.032 Engine:Setting original file name "Placeholder.dll" for "c:\windows\microsoft.net\framework64\v4.0.30319\wpf\penimc_v0400.dll", hr=0x0 2026-06-05T01:17:54.535 Engine:Setting original file name "dnsapi" for "c:\windows\system32\dnsapi.dll", hr=0x0 2026-06-05T01:17:55.258 Engine:Setting original file name "AM_Engine_Patch_1.1.26030.3008.exe" for "c:\windows\softwaredistribution\download\914a38a224d99aca1925d800c009cce2bf8c3e07", hr=0x0 2026-06-05T01:17:59.618 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\de-de\msprivs.dll.mui", hr=0x0 2026-06-05T01:18:01.778 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sl-si_dbf3efd98a2c5f5f\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:18:02.325 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\cs-cz\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:18:09.740 Engine:Setting original file name "dnsapi" for "c:\windows\winsxs\wow64_microsoft-windows-dns-client-minwin_31bf3856ad364e35_10.0.14393.7693_none_156ff427b23b125d\dnsapi.dll", hr=0x0 2026-06-05T01:18:11.130 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_hu-hu_20addfc2f189fb80\memtest.exe.mui", hr=0x0 2026-06-05T01:18:11.177 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sk-sk_dce1ce2189924c7c\bootmgr.efi.mui", hr=0x0 2026-06-05T01:18:11.443 Engine:Setting original file name "xpprof32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\xpprof64.dll", hr=0x0 2026-06-05T01:18:13.513 Engine:Setting original file name "audioadg.exe" for "c:\windows\system32\audiodg.exe", hr=0x0 2026-06-05T01:18:13.544 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\pl-pl\msprivs.dll.mui", hr=0x0 2026-06-05T01:18:14.985 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\da-dk\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:18:17.359 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_sr-..-rs_c6a2c0f983ee8ac3\bootmgr.exe.mui", hr=0x0 2026-06-05T01:18:19.040 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\pt-pt\memtest.efi.mui", hr=0x0 2026-06-05T01:18:23.052 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-processthreads-l1-1-0.dll", hr=0x0 2026-06-05T01:18:24.655 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nb-no_af7257e0cb4f50dd\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:18:31.512 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\syswow64\mp43decd.dll", hr=0x0 2026-06-05T01:18:35.014 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nl-nl_adb1a31ecc7b5ab2\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:18:36.213 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-utility-l1-1-0.dll", hr=0x0 2026-06-05T01:18:36.341 Engine:Setting original file name "Microsoft(r) DirectX for Windows(r) - Out Of Band" for "c:\program files (x86)\google\chrome\application\148.0.7778.217\dxil.dll", hr=0x0 2026-06-05T01:18:38.260 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rhp5zg2.dll", hr=0x0 2026-06-05T01:18:38.745 Engine:Setting original file name "System.Runtime" for "c:\windows\microsoft.net\assembly\gac_msil\system.runtime\v4.0_4.0.0.0__b03f5f7f11d50a3a\system.runtime.dll", hr=0x0 2026-06-05T01:18:39.167 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_lt-lt_6aab02ace551f0be\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:18:39.745 Engine:Setting original file name "AM_Delta_Patch_1.449.644.0.exe" for "c:\windows\softwaredistribution\download\d2d3847cd0413c8f1a1e7d2ac29b101392378d47", hr=0x0 2026-06-05T01:18:46.664 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-filesystem-l1-1-0.dll", hr=0x0 2026-06-05T01:18:47.367 Engine:Setting original file name "ISOLMIG.DLL" for "c:\windows\system32\migisol.dll", hr=0x0 2026-06-05T01:18:50.076 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\pl-pl\memtest.efi.mui", hr=0x0 2026-06-05T01:18:55.417 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-sysinfo-l1-1-0.dll", hr=0x0 2026-06-05T01:18:55.417 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\zh-hk\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:19:00.558 Engine:Setting original file name "AM_Delta_Patch_1.449.534.0.exe" for "c:\windows\softwaredistribution\download\9dda15f4fb743a5d108e327cb780b51974448aca", hr=0x0 2026-06-05T01:19:02.273 Engine:Setting original file name "WindowsCodecs" for "c:\windows\winsxs\wow64_microsoft-windows-windowscodec_31bf3856ad364e35_10.0.14393.9060_none_16a41eb030055032\windowscodecs.dll", hr=0x0 2026-06-05T01:19:03.101 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\pcat\qps-ploc\memtest.exe.mui", hr=0x0 2026-06-05T01:19:04.420 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_zh-tw_9a3d345bfec3dadf\memtest.exe.mui", hr=0x0 2026-06-05T01:19:05.832 Engine:Setting original file name "AM_Delta_Patch_1.449.676.0.exe" for "c:\windows\softwaredistribution\download\72254fd91756656688824d7fbc19b062cfb623e0", hr=0x0 2026-06-05T01:19:06.988 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\lv-lv\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:19:08.176 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hu-hu_de9904eb1acc35ce\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:19:12.571 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnhupnp.dll", hr=0x0 2026-06-05T01:19:23.159 Engine:Setting original file name "MicrosoftRawCodec" for "c:\windows\winsxs\wow64_microsoft-windows-windowscodecraw_31bf3856ad364e35_10.0.14393.5501_none_14dba92e46d1ced2\windowscodecsraw.dll", hr=0x0 2026-06-05T01:19:23.679 Engine:Setting original file name "WerMgr" for "c:\windows\syswow64\wermgr.exe", hr=0x0 2026-06-05T01:19:28.683 Engine:Setting original file name "vsce-sign.dll" for "c:\program files\microsoft vs code\resources\app\node_modules.asar.unpacked\node-vsce-sign\bin\vsce-sign.exe", hr=0x0 2026-06-05T01:19:33.147 Engine:Setting original file name "k5sprt32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\k5sprt64.dll", hr=0x0 2026-06-05T01:19:33.240 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sl-si_dbf3efd98a2c5f5f\bootmgr.efi.mui", hr=0x0 2026-06-05T01:19:34.699 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hr-hr_dd64df251b8ed466\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:19:36.418 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\da-dk\bootmgr.exe.mui", hr=0x0 2026-06-05T01:19:38.956 Engine:Setting original file name "krbcc32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\krbcc64.dll", hr=0x0 2026-06-05T01:19:42.826 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\da-dk\memtest.efi.mui", hr=0x0 2026-06-05T01:19:44.081 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_nb-no_a2406b530fbdf1fc\msprivs.dll.mui", hr=0x0 2026-06-05T01:19:47.678 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnhupnp.dll", hr=0x0 2026-06-05T01:19:48.655 Engine:Setting original file name "AM_Base_Patch1.exe" for "c:\windows\softwaredistribution\download\1d0e0fc4b85982d882c2ebba9838396fcd4b99db", hr=0x0 2026-06-05T01:19:49.109 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ko-kr_c6dfd6abf32a2521\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:19:49.359 Engine:Setting original file name "imm32" for "c:\windows\system32\imm32.dll", hr=0x0 2026-06-05T01:19:49.912 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-console-l1-1-0.dll", hr=0x0 2026-06-05T01:19:59.260 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_it-it_81507aea0d9e4c30\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:19:59.783 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_ro-ro_7fdce6c41aae1bb5\bootmgr.exe.mui", hr=0x0 2026-06-05T01:20:00.996 Engine:Setting original file name "System.Windows.Forms.dll" for "c:\windows\winsxs\amd64_netfx4-sys_windows_forms_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_66f5a950fbd66177\system.windows.forms.tlb", hr=0x0 2026-06-05T01:20:04.713 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_f1rv4wm4.sp5.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #2268, FileId: 0x12e00000004c4d6, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:20:06.398 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\zh-cn\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:20:06.804 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\es-es\memtest.efi.mui", hr=0x0 2026-06-05T01:20:09.029 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_nb-no_f18732b8a20d168f\memtest.exe.mui", hr=0x0 2026-06-05T01:20:10.201 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\zh-tw\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:20:12.171 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\de-de\bootmgr.exe.mui", hr=0x0 2026-06-05T01:20:21.973 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\cs-cz\memtest.efi.mui", hr=0x0 2026-06-05T01:20:23.035 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnsvr.exe", hr=0x0 2026-06-05T01:20:23.082 Engine:Setting original file name "AuditPolicyGP.DLL.MUI" for "c:\windows\winsxs\wow64_microsoft-windows-a..in-native.resources_31bf3856ad364e35_10.0.14393.8688_en-us_9eb35eb78ae63ec8\auditpolicygpinterop.dll.mui", hr=0x0 2026-06-05T01:20:23.082 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_uk-ua_1eaee0d7718e8cea\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:20:31.482 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\tr-tr\bootmgr.efi.mui", hr=0x0 2026-06-05T01:20:31.654 Engine:Setting original file name "rdvgogl32.dll" for "c:\windows\syswow64\en-us\rdvgogl32.dll.mui", hr=0x0 2026-06-05T01:20:31.747 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\pt-pt\msprivs.dll.mui", hr=0x0 2026-06-05T01:20:33.233 Engine:Setting original file name "WindowsCodecs" for "c:\windows\system32\windowscodecs.dll", hr=0x0 2026-06-05T01:20:36.537 Engine:Setting original file name "PSAPI" for "c:\windows\system32\psapi.dll", hr=0x0 2026-06-05T01:20:39.361 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2320, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:20:39.361 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2322, FileId: 0x46580000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:20:40.247 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_uk-ua_1eaee0d7718e8cea\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:20:40.888 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_et-ee_ee30da3447a02cdf\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:20:45.526 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ko-kr_c6dfd6abf32a2521\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:20:48.761 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sk-sk_dce1ce2189924c7c\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:20:49.214 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_da-dk_415759fd972d9f6b\msprivs.dll.mui", hr=0x0 2026-06-05T01:20:49.370 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2326, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:20:49.370 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #2329, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:20:51.757 Engine:Setting original file name "AppVEntSubsystems.dll" for "c:\windows\winsxs\wow64_microsoft-windows-appmanagement-appvwow_31bf3856ad364e35_10.0.14393.9140_none_334f62fd8157e09d\appventsubsystems32.dll", hr=0x0 2026-06-05T01:20:51.773 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rrpyj42.dll", hr=0x0 2026-06-05T01:20:51.929 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\zh-tw\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:20:53.468 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-processenvironment-l1-1-0.dll", hr=0x0 2026-06-05T01:20:53.500 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\es-mx\bootmgr.exe.mui", hr=0x0 2026-06-05T01:20:53.765 Engine:Setting original file name "user32" for "c:\windows\winsxs\wow64_microsoft-windows-user32_31bf3856ad364e35_10.0.14393.9140_none_4d4e02f6fc4d9aac\user32.dll", hr=0x0 2026-06-05T01:21:01.402 Engine:Setting original file name "CMMIGR.DLL" for "c:\windows\syswow64\setup\pbkmigr.dll", hr=0x0 2026-06-05T01:21:02.230 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\sv-se\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:21:04.519 Engine:Setting original file name "MSDIA90.DLL" for "c:\windows\installer\$patchcache$\managed\6f9e66ff7e38e3a3fa41d89e8a906a4a\9.0.21022\fl_msdia71_dll_2_60035_x86_ln.3643236f_fc70_11d3_a536_0090278a1bb8", hr=0x0 2026-06-05T01:21:05.737 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sl-si_dbf3efd98a2c5f5f\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:21:05.800 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_bg-bg_0645efc96ef12622\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:21:09.591 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\memtest.efi", hr=0x0 2026-06-05T01:21:09.999 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ru-ru_3dc6c97494785a52\bootmgr.efi.mui", hr=0x0 2026-06-05T01:21:10.926 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ro-ro_3b5e7de895fd9782\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:21:12.535 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rdpjm0d.dll", hr=0x0 2026-06-05T01:21:13.867 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..ore-bootmanager-efi_31bf3856ad364e35_10.0.14393.9060_none_fd4ea5baf6e64b54\bootmgfw.efi", hr=0x0 2026-06-05T01:21:14.894 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\sr-latn-rs\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:21:15.551 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..ore-bootmanager-efi_31bf3856ad364e35_10.0.14393.9060_none_fd4ea5baf6e64b54\bootmgr_ex.efi", hr=0x0 2026-06-05T01:21:21.083 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\lv-lv\bootmgr.exe.mui", hr=0x0 2026-06-05T01:21:26.335 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_zh-hk_97557d97b0212f80\bootmgr.exe.mui", hr=0x0 2026-06-05T01:21:28.735 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\fi-fi\memtest.efi.mui", hr=0x0 2026-06-05T01:21:30.176 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\system32\mp43decd.dll", hr=0x0 2026-06-05T01:21:30.239 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_el-gr_365fe4321a688126\memtest.exe.mui", hr=0x0 2026-06-05T01:21:36.502 Engine:Setting original file name "System.dll" for "c:\windows\winsxs\x86_netfx4-system_ni_b03f5f7f11d50a3a_4.0.14305.0_none_3f7dfb0ca6ab2808\system.ni.dll", hr=0x0 2026-06-05T01:21:37.236 Engine:Setting original file name " " for "c:\program files\microsoft vs code\unins000.exe", hr=0x0 2026-06-05T01:21:39.548 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\fr-fr\memtest.efi.mui", hr=0x0 2026-06-05T01:21:40.510 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\uk-ua\bootmgr.exe.mui", hr=0x0 2026-06-05T01:21:45.140 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_it-it_c36555c1e45c11e2\memtest.exe.mui", hr=0x0 2026-06-05T01:21:48.375 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_lt-lt_6aab02ace551f0be\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:21:49.540 Engine:Setting original file name "apisetschema" for "c:\windows\system32\apisetschema.dll", hr=0x0 2026-06-05T01:21:55.871 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_zh-tw_9ca6c25facb69960\bootmgr.exe.mui", hr=0x0 2026-06-05T01:22:00.638 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-profile-l1-1-0.dll", hr=0x0 2026-06-05T01:22:01.297 Engine:Setting original file name "Notepad++" for "c:\users\administrator.extern\appdata\local\temp\npp.8.9.3.installer.x64.exe", hr=0x0 2026-06-05T01:22:01.625 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\zh-cn\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:22:01.657 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-memory-l1-1-0.dll", hr=0x0 2026-06-05T01:22:01.782 Engine:Setting original file name "ISOLMIG.DLL" for "c:\windows\syswow64\migisol.dll", hr=0x0 2026-06-05T01:22:02.469 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hu-hu_de9904eb1acc35ce\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:22:03.641 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\lv-lv\bootmgr.efi.mui", hr=0x0 2026-06-05T01:22:04.739 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-runtime-l1-1-0.dll", hr=0x0 2026-06-05T01:22:07.609 Engine:Setting original file name "SCardSvr.exe.mui" for "c:\windows\winsxs\wow64_microsoft-windows-s..subsystem.resources_31bf3856ad364e35_10.0.14393.7876_en-us_73922ddead93580d\scardsvr.dll.mui", hr=0x0 2026-06-05T01:22:07.687 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-libraryloader-l1-1-0.dll", hr=0x0 2026-06-05T01:22:09.836 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-heap-l1-1-0.dll", hr=0x0 2026-06-05T01:22:13.699 Engine:Setting original file name "mf.dll" for "c:\windows\syswow64\mfpmp.exe", hr=0x0 2026-06-05T01:22:15.533 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\it-it\bootmgr.exe.mui", hr=0x0 2026-06-05T01:22:17.111 Engine:Setting original file name "Placeholder.dll" for "c:\windows\winsxs\x86_netfx4-penimc_v0400_b03f5f7f11d50a3a_4.0.15552.18271_none_96e1140275a4e3b6\penimc_v0400.dll", hr=0x0 2026-06-05T01:22:17.205 Engine:Setting original file name "gdi32" for "c:\windows\system32\gdi32full.dll", hr=0x0 2026-06-05T01:22:19.886 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sl-si_dbf3efd98a2c5f5f\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:22:23.674 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_bg-bg_4ac458a4f3a1aa55\bootmgr.exe.mui", hr=0x0 2026-06-05T01:22:23.690 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\pt-pt\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:22:24.495 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\sv-se\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:22:26.642 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\zh-hk\msprivs.dll.mui", hr=0x0 2026-06-05T01:22:27.713 Engine:Setting original file name "devinfoset.DLL" for "c:\windows\system32\devobj.dll", hr=0x0 2026-06-05T01:22:31.794 Job Notification: Process exited from job (312) 2026-06-05T01:22:31.794 Job Notification: Process exited from job (3148) 2026-06-05T01:22:34.081 Engine:Setting original file name "System.Core.dll" for "c:\windows\microsoft.net\framework64\v4.0.30319\nativeimages\system.core.ni.dll", hr=0x0 2026-06-05T01:22:36.176 Engine:Setting original file name "msdxm.ocx" for "c:\windows\system32\dxmasf.dll", hr=0x0 2026-06-05T01:22:38.413 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\es-mx\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:22:40.316 Engine:Setting original file name "System.Drawing.dll" for "c:\windows\winsxs\x86_netfx4-system_drawing_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_6c370d8116a1eb32\system.drawing.tlb", hr=0x0 2026-06-05T01:22:40.707 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_nl-nl_f2300bfa512bdee5\bootmgr.exe.mui", hr=0x0 2026-06-05T01:22:41.818 Job Notification: Process exited from job (3872) 2026-06-05T01:22:41.834 Job Notification: Process exited from job (2604) 2026-06-05T01:22:47.352 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_bg-bg_0645efc96ef12622\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:22:47.414 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-stdio-l1-1-0.dll", hr=0x0 2026-06-05T01:22:49.196 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\en-us\memtest.efi.mui", hr=0x0 2026-06-05T01:22:51.077 Engine:Setting original file name "mf.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-m..oundation.resources_31bf3856ad364e35_10.0.14393.953_en-us_d2c8fd7f8e3f6c23\mfpmp.exe.mui", hr=0x0 2026-06-05T01:22:53.832 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_fr-fr_972884a3366c66b2\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:22:58.700 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\it-it\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:23:00.917 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_13vna3wy.0hh.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #2347, FileId: 0xf8000000004eaa7, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:23:03.031 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\de-de\memtest.efi.mui", hr=0x0 2026-06-05T01:23:04.526 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_qps-ploc_f7c0124d0b6ecedd\bootmgr.exe.mui", hr=0x0 2026-06-05T01:23:04.573 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_fi-fi_d5a0ee290f72082c\memtest.exe.mui", hr=0x0 2026-06-05T01:23:05.881 Engine:Setting original file name "MrmCore.dll" for "c:\windows\system32\mrmcorer.dll", hr=0x0 2026-06-05T01:23:06.040 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_sl-si_207258b50edce392\bootmgr.exe.mui", hr=0x0 2026-06-05T01:23:06.603 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rkcbalz.dll", hr=0x0 2026-06-05T01:23:07.641 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnet.dll", hr=0x0 2026-06-05T01:23:07.892 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnlobby.dll", hr=0x0 2026-06-05T01:23:11.655 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_es-es_38ef777fc84ad483\bootmgr.exe.mui", hr=0x0 2026-06-05T01:23:11.890 Engine:Setting original file name "krb5_32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\krb5_64.dll", hr=0x0 2026-06-05T01:23:14.968 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_ja-jp_16440d694527ff2a\msprivs.dll.mui", hr=0x0 2026-06-05T01:23:15.963 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nl-nl_adb1a31ecc7b5ab2\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:23:20.499 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\et-ee\bootmgr.exe.mui", hr=0x0 2026-06-05T01:23:22.265 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\nb-no\memtest.efi.mui", hr=0x0 2026-06-05T01:23:22.744 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ro-ro_3b5e7de895fd9782\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:23:23.660 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\ko-kr\msprivs.dll.mui", hr=0x0 2026-06-05T01:23:25.626 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\ko-kr\bootmgr.exe.mui", hr=0x0 2026-06-05T01:23:28.657 Engine:Setting original file name "user32" for "c:\windows\system32\user32.dll", hr=0x0 2026-06-05T01:23:35.851 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_hu-hu_d167185d5f3ad6ed\msprivs.dll.mui", hr=0x0 2026-06-05T01:23:36.589 Engine:Setting original file name "System.EnterpriseServices.dll" for "c:\windows\winsxs\x86_netfx4-system_enterpriseservices_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_78cda70ae5417545\system.enterpriseservices.tlb", hr=0x0 2026-06-05T01:23:41.327 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sk-sk_dce1ce2189924c7c\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:23:42.905 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\it-it\memtest.efi.mui", hr=0x0 2026-06-05T01:23:43.421 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpmodemx.dll", hr=0x0 2026-06-05T01:23:45.858 Engine:Setting original file name "Install.exe" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rziiii6.exe", hr=0x0 2026-06-05T01:23:49.285 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\ja-jp\bootmgr.efi.mui", hr=0x0 2026-06-05T01:23:50.238 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\el-gr\bootmgr.efi.mui", hr=0x0 2026-06-05T01:23:50.535 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\system32\mpg4decd.dll", hr=0x0 2026-06-05T01:23:51.270 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\fr-ca\bootmgr.efi.mui", hr=0x0 2026-06-05T01:23:51.895 Engine:Setting original file name "comerr32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\comerr64.dll", hr=0x0 2026-06-05T01:23:51.926 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnhpast.dll", hr=0x0 2026-06-05T01:23:56.488 Engine:Setting original file name "CertAdm" for "c:\windows\winsxs\x86_microsoft-windows-c..rtadm-dll.resources_31bf3856ad364e35_10.0.14393.2368_en-us_807c5030739180ba\certadm.dll.mui", hr=0x0 2026-06-05T01:23:59.692 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\da-dk\bootmgr.efi.mui", hr=0x0 2026-06-05T01:24:00.035 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnet.dll", hr=0x0 2026-06-05T01:24:00.067 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\tr-tr\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:24:01.567 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dplayx.dll", hr=0x0 2026-06-05T01:24:07.539 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..ore-bootmanager-efi_31bf3856ad364e35_10.0.14393.9060_none_fd4ea5baf6e64b54\bootmgr.efi", hr=0x0 2026-06-05T01:24:08.867 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_pt-pt_39389288865491d8\memtest.exe.mui", hr=0x0 2026-06-05T01:24:09.164 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nb-no_af7257e0cb4f50dd\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:24:09.195 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-localization-l1-2-0.dll", hr=0x0 2026-06-05T01:24:09.242 Engine:Setting original file name "PSAPI" for "c:\windows\syswow64\psapi.dll", hr=0x0 2026-06-05T01:24:09.336 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_nl-nl_a07fb69110e9fbd1\msprivs.dll.mui", hr=0x0 2026-06-05T01:24:09.336 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-timezone-l1-1-0.dll", hr=0x0 2026-06-05T01:24:17.726 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\cs-cz\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:24:17.804 Engine:Setting original file name "rundll32.exe" for "c:\windows\system32\rundll32.exe", hr=0x0 2026-06-05T01:24:18.867 Engine:Setting original file name "System.Drawing.dll" for "c:\windows\winsxs\amd64_netfx4-system_drawing_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_2489d6aa0225c22c\system.drawing.tlb", hr=0x0 2026-06-05T01:24:25.398 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_pt-br_f641e844b0275c4a\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:24:25.601 Engine:Setting original file name "CloudStorageWizard.dll" for "c:\windows\winsxs\x86_microsoft-windows-cloudstoragewizard_31bf3856ad364e35_10.0.14393.4169_none_0e1140222fc9b7ce\cloudstoragewizard.exe", hr=0x0 2026-06-05T01:24:25.632 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\x86_netfx4-scripting_engine_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_88ed5da2059f7f5e\microsoft.jscript.tlb", hr=0x0 2026-06-05T01:24:26.726 Engine:Setting original file name "mscorlib.dll" for "c:\windows\assembly\nativeimages_v4.0.30319_64\mscorlib\62f204ac0ba259da374905c1b6c11fb0\mscorlib.ni.dll", hr=0x0 2026-06-05T01:24:29.101 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_et-ee_ee30da3447a02cdf\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:24:32.429 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\sv-se\bootmgr.efi.mui", hr=0x0 2026-06-05T01:24:33.414 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-namedpipe-l1-1-0.dll", hr=0x0 2026-06-05T01:24:35.398 Engine:Setting original file name "MrmCore.dll" for "c:\windows\syswow64\mrmcorer.dll", hr=0x0 2026-06-05T01:24:39.523 Engine:Setting original file name "setup" for "c:\programdata\package cache\{c649ede4-f16a-4486-a117-dcc2f2a35165}\vc_redist.x64.exe", hr=0x0 2026-06-05T01:24:41.961 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-processthreads-l1-1-1.dll", hr=0x0 2026-06-05T01:24:42.117 Engine:Setting original file name "CMMIGR.DLL" for "c:\windows\system32\setup\pbkmigr.dll", hr=0x0 2026-06-05T01:24:42.382 Engine:Setting original file name "mavinject64.exe" for "c:\windows\system32\mavinject.exe", hr=0x0 2026-06-05T01:24:43.398 Engine:Setting original file name "AM_Delta_Patch_1.449.488.0.exe" for "c:\windows\softwaredistribution\download\4b57c8a8c54cb6dffa4ce91347e58330f2447b48", hr=0x0 2026-06-05T01:24:43.789 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_sk-sk_216036fd0e42d0af\bootmgr.exe.mui", hr=0x0 2026-06-05T01:24:45.617 Engine:Setting original file name "aadtb.dll" for "c:\windows\winsxs\x86_microsoft-windows-s..ity-aadtb.resources_31bf3856ad364e35_10.0.14393.2368_en-us_c661af39b93a2882\aadtb.dll.mui", hr=0x0 2026-06-05T01:24:51.382 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_ru-ru_7fdba44c6b362004\memtest.exe.mui", hr=0x0 2026-06-05T01:24:52.226 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_es-es_f4710ea4439a5050\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:24:53.836 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nb-no_af7257e0cb4f50dd\bootmgr.efi.mui", hr=0x0 2026-06-05T01:24:53.945 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_ru-ru_3094dce6d8e6fb71\msprivs.dll.mui", hr=0x0 2026-06-05T01:24:53.976 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-gb_ed1cf6a2484aaae6\bootmgr.efi.mui", hr=0x0 2026-06-05T01:24:55.461 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\fi-fi\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:24:56.461 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\cs-cz\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:24:56.461 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rprsqob.dll", hr=0x0 2026-06-05T01:24:59.726 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_fi-fi_d80a7c2cbd64c6ad\bootmgr.exe.mui", hr=0x0 2026-06-05T01:24:59.945 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-handle-l1-1-0.dll", hr=0x0 2026-06-05T01:25:00.039 Engine:Setting original file name "winsqlite3" for "c:\windows\system32\winsqlite3.dll", hr=0x0 2026-06-05T01:25:00.945 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_adywdnqi.v3u.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #2394, FileId: 0x87100000004eb02, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:25:01.945 Engine:Setting original file name "updater.exe" for "c:\program files (x86)\google\update\googleupdate.exe", hr=0x0 2026-06-05T01:25:02.726 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\fr-ca\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:25:02.742 Engine:Setting original file name "msdxm.ocx" for "c:\windows\syswow64\dxmasf.dll", hr=0x0 2026-06-05T01:25:03.289 Engine:Setting original file name "winsqlite3" for "c:\windows\winsxs\wow64_microsoft-windows-winsqlite3_31bf3856ad364e35_10.0.14393.8781_none_9635b512b88eb01b\winsqlite3.dll", hr=0x0 2026-06-05T01:25:03.726 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\es-mx\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:25:05.492 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_sv-se_1bd68ec1625f2a5f\memtest.exe.mui", hr=0x0 2026-06-05T01:25:09.320 Engine:Setting original file name "System.dll" for "c:\windows\microsoft.net\framework64\v4.0.30319\nativeimages\system.ni.dll", hr=0x0 2026-06-05T01:25:09.367 Engine:Setting original file name "gssapi32.dll" for "c:\program files\mysql\mysql workbench 8.0 ce\gssapi64.dll", hr=0x0 2026-06-05T01:25:09.976 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_pt-br_3856c31c86e521fc\memtest.exe.mui", hr=0x0 2026-06-05T01:25:10.461 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\zh-cn\memtest.efi.mui", hr=0x0 2026-06-05T01:25:16.507 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_lt-lt_af296b886a0274f1\bootmgr.exe.mui", hr=0x0 2026-06-05T01:25:17.007 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-gb_ed1cf6a2484aaae6\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:25:17.367 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\sv-se\memtest.efi.mui", hr=0x0 2026-06-05T01:25:22.242 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\sr-latn-rs\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:25:23.054 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ko-kr_c6dfd6abf32a2521\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:25:27.711 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\el-gr\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:25:30.070 Engine:Setting original file name "gdi32" for "c:\windows\syswow64\gdi32full.dll", hr=0x0 2026-06-05T01:25:31.726 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_it-it_741e8e5c520ced4f\msprivs.dll.mui", hr=0x0 2026-06-05T01:25:32.929 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_pt-br_f641e844b0275c4a\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:25:36.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T01:25:39.429 Engine:Setting original file name "MSCOREE.DLL" for "c:\windows\winsxs\amd64_netfx4-mscoree_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_a40ab9cb7925b9cc\mscoree.tlb", hr=0x0 2026-06-05T01:25:40.523 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$r44dcag.dll", hr=0x0 2026-06-05T01:25:41.804 Engine:Setting original file name "security.dll" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-minwin_31bf3856ad364e35_10.0.14393.9060_none_bd8e08d321359956\sspicli.dll", hr=0x0 2026-06-05T01:25:44.476 Engine:Setting original file name "AM_Delta_Patch_1.449.466.0.exe" for "c:\windows\softwaredistribution\download\11487b7ce8baccbc2c0e1ffd6de22e5d7a953716", hr=0x0 2026-06-05T01:25:45.914 Engine:Setting original file name "Notepad++" for "c:\program files\notepad++\uninstall.exe", hr=0x0 2026-06-05T01:25:49.429 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\el-gr\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:25:49.539 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-us_f4a5b1c043735eab\bootmgr.efi.mui", hr=0x0 2026-06-05T01:25:52.039 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\fi-fi\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:25:53.476 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-util-l1-1-0.dll", hr=0x0 2026-06-05T01:25:53.867 Engine:Setting original file name "Vulkan Runtime" for "c:\program files (x86)\google\chrome\application\148.0.7778.217\vulkan-1.dll", hr=0x0 2026-06-05T01:25:54.039 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_sr-..-cs_6e4b7fde47f363c6\msprivs.dll.mui", hr=0x0 2026-06-05T01:25:55.945 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-file-l1-2-0.dll", hr=0x0 2026-06-05T01:25:56.789 Engine:Setting original file name "bootres" for "c:\windows\winsxs\amd64_microsoft-windows-bootres_31bf3856ad364e35_10.0.14393.2485_none_b4c0bfb8dc967b66\bootres.dll", hr=0x0 2026-06-05T01:25:58.648 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..re-memorydiagnostic_31bf3856ad364e35_10.0.14393.9140_none_584ae51f938e7638\memtest.exe", hr=0x0 2026-06-05T01:26:07.476 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\lv-lv\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:26:09.882 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_zh-cn_98aa8509af45bcf0\bootmgr.exe.mui", hr=0x0 2026-06-05T01:26:10.757 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_tr-tr_759d11a2becc07bd\msprivs.dll.mui", hr=0x0 2026-06-05T01:26:13.242 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_nb-no_f3f0c0bc4fffd510\bootmgr.exe.mui", hr=0x0 2026-06-05T01:26:16.336 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_tr-tr_c74d670bff0dead1\bootmgr.exe.mui", hr=0x0 2026-06-05T01:26:17.945 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hu-hu_de9904eb1acc35ce\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:26:19.132 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\de-de\bootmgr.efi.mui", hr=0x0 2026-06-05T01:26:21.789 Engine:Setting original file name "MapsMigrationPlugin.dll" for "c:\windows\syswow64\migration\mapsmigplugin.dll", hr=0x0 2026-06-05T01:26:22.351 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_fr-fr_972884a3366c66b2\bootmgr.efi.mui", hr=0x0 2026-06-05T01:26:22.492 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\pt-br\memtest.efi.mui", hr=0x0 2026-06-05T01:26:25.632 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_cs-cz_f364413c3336c7ff\memtest.exe.mui", hr=0x0 2026-06-05T01:26:27.211 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-synch-l1-2-0.dll", hr=0x0 2026-06-05T01:26:28.179 Engine:Setting original file name "CloudStorageWizard.dll" for "c:\windows\system32\cloudstoragewizard.exe", hr=0x0 2026-06-05T01:26:36.351 Engine:Setting original file name "gdi32" for "c:\windows\winsxs\wow64_microsoft-windows-gdi32_31bf3856ad364e35_10.0.14393.9060_none_d9a11131d838bda2\gdi32.dll", hr=0x0 2026-06-05T01:26:36.429 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_tr-tr_c4e3d908511b2c50\memtest.exe.mui", hr=0x0 2026-06-05T01:26:36.976 Engine:Setting original file name "System.EnterpriseServices.dll" for "c:\windows\winsxs\amd64_netfx4-system_enterpriseservices_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_31207033d0c54c3f\system.enterpriseservices.tlb", hr=0x0 2026-06-05T01:26:42.726 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_uk-ua_1eaee0d7718e8cea\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:26:42.929 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ru-ru_3dc6c97494785a52\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:26:44.211 Engine:Setting original file name "gdi32" for "c:\windows\system32\gdi32.dll", hr=0x0 2026-06-05T01:26:44.414 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\pl-pl\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:26:45.039 Engine:Setting original file name "hiberrsm.exe" for "c:\windows\system32\winresume.exe", hr=0x0 2026-06-05T01:26:53.961 Engine:Setting original file name "mscorlib.dll" for "c:\windows\microsoft.net\framework64\v4.0.30319\nativeimages\mscorlib.ni.dll", hr=0x0 2026-06-05T01:26:56.976 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnaddr.dll", hr=0x0 2026-06-05T01:27:02.429 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_fi-fi_865a26c37d22e399\msprivs.dll.mui", hr=0x0 2026-06-05T01:27:03.273 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_sr-..-cs_bffbd547883546da\bootmgr.exe.mui", hr=0x0 2026-06-05T01:27:06.804 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ko-kr_c6dfd6abf32a2521\bootmgr.efi.mui", hr=0x0 2026-06-05T01:27:06.882 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_el-gr_e7191ccc88195c93\msprivs.dll.mui", hr=0x0 2026-06-05T01:27:07.601 Engine:Setting original file name "MBXMAINT.EXE" for "c:\xampp\mercurymail\mbxmaint_ui.exe", hr=0x0 2026-06-05T01:27:08.117 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_bg-bg_0645efc96ef12622\bootmgr.efi.mui", hr=0x0 2026-06-05T01:27:15.445 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\sr-latn-rs\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:27:16.101 Engine:Setting original file name "AM_Delta_Patch_1.449.446.0.exe" for "c:\windows\softwaredistribution\download\864caa895cd9cb35a3874803a3ef7ccb350c638d", hr=0x0 2026-06-05T01:27:16.117 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\da-dk\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:27:16.757 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\pt-pt\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:27:17.101 Engine:Setting original file name "Microsoft® Windows® Operating System" for "c:\windows\system32\pcasvc.dll", hr=0x0 2026-06-05T01:27:17.257 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\nl-nl\memtest.efi.mui", hr=0x0 2026-06-05T01:27:17.414 Engine:Setting original file name "kernel32" for "c:\windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_10.0.14393.9140_none_13d37bf6e53ca428\kernel32.dll", hr=0x0 2026-06-05T01:27:18.711 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ru-ru_3dc6c97494785a52\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:27:19.351 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..ore-bootmanager-efi_31bf3856ad364e35_10.0.14393.9060_none_fd4ea5baf6e64b54\bootmgfw_ex.efi", hr=0x0 2026-06-05T01:27:21.070 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_fr-fr_d93d5f7b0d2a2c64\memtest.exe.mui", hr=0x0 2026-06-05T01:27:21.195 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\pcat\sr-latn-cs\memtest.exe.mui", hr=0x0 2026-06-05T01:27:23.914 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_sk-sk_dce1ce2189924c7c\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:27:24.211 Engine:Setting original file name "AppVEntSubsystemContoller.dll" for "c:\windows\system32\appventsubsystemcontroller.dll", hr=0x0 2026-06-05T01:27:26.836 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\pl-pl\bootmgr.efi.mui", hr=0x0 2026-06-05T01:27:27.382 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-errorhandling-l1-1-0.dll", hr=0x0 2026-06-05T01:27:34.039 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\zh-cn\msprivs.dll.mui", hr=0x0 2026-06-05T01:27:36.695 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_fr-fr_972884a3366c66b2\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:27:38.742 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hr-hr_dd64df251b8ed466\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:27:38.976 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-us_f4a5b1c043735eab\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:27:40.664 Engine:Setting original file name "imm32" for "c:\windows\syswow64\imm32.dll", hr=0x0 2026-06-05T01:27:41.320 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-interlocked-l1-1-0.dll", hr=0x0 2026-06-05T01:27:42.023 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnsvr.exe", hr=0x0 2026-06-05T01:27:46.289 Engine:Setting original file name "WerMgr" for "c:\windows\system32\wermgr.exe", hr=0x0 2026-06-05T01:27:46.851 Engine:Setting original file name "TAPISRV.EXE.MUI" for "c:\windows\syswow64\en-us\tapisrv.dll.mui", hr=0x0 2026-06-05T01:27:49.851 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\fi-fi\bootmgr.efi.mui", hr=0x0 2026-06-05T01:27:51.648 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-debug-l1-1-0.dll", hr=0x0 2026-06-05T01:27:51.882 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_it-it_81507aea0d9e4c30\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:27:52.320 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\fr-ca\bootmgr.exe.mui", hr=0x0 2026-06-05T01:27:54.804 Engine:Setting original file name "spwizres.dll" for "c:\windows\system32\spwizimg.dll", hr=0x0 2026-06-05T01:27:58.179 Engine:Setting original file name "auditgp.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-a..in-native.resources_31bf3856ad364e35_10.0.14393.8688_en-us_9eb35eb78ae63ec8\auditnativesnapin.dll.mui", hr=0x0 2026-06-05T01:27:58.179 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\el-gr\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:28:01.007 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vcdfv2yd.qel.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #2419, FileId: 0x220000000533fd, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:28:02.882 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\fr-fr\msprivs.dll.mui", hr=0x0 2026-06-05T01:28:02.961 Engine:Setting original file name "system.data.entity.dll" for "c:\windows\winsxs\msil_system.data.datasetextensions_b77a5c561934e089_4.0.14305.0_none_19a8b72a1c5b343b\system.data.datasetextensions.dll", hr=0x0 2026-06-05T01:28:07.492 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_en-us_39241a9bc823e2de\bootmgr.exe.mui", hr=0x0 2026-06-05T01:28:08.164 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ro-ro_3b5e7de895fd9782\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:28:10.039 Engine:Setting original file name "WLRMNDR.EXE" for "c:\windows\system32\wlrmdr.exe", hr=0x0 2026-06-05T01:28:10.419 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-math-l1-1-0.dll", hr=0x0 2026-06-05T01:28:11.117 Engine:Setting original file name "mp4sdmod.dll" for "c:\windows\system32\mp4sdecd.dll", hr=0x0 2026-06-05T01:28:12.961 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\zh-hk\bootmgr.efi.mui", hr=0x0 2026-06-05T01:28:13.382 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\zh-tw\msprivs.dll.mui", hr=0x0 2026-06-05T01:28:18.320 Engine:Setting original file name "Microsoft® Windows® Operating System" for "c:\windows\system32\aitstatic.exe", hr=0x0 2026-06-05T01:28:18.351 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\ru-ru\memtest.efi.mui", hr=0x0 2026-06-05T01:28:18.492 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$ri9nkvj.dll", hr=0x0 2026-06-05T01:28:18.836 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_en-us_e773c53287e1ffca\msprivs.dll.mui", hr=0x0 2026-06-05T01:28:27.023 Engine:Setting original file name "ntkrnlmp.exe" for "c:\windows\system32\ntoskrnl.exe", hr=0x0 2026-06-05T01:28:27.320 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_uk-ua_1eaee0d7718e8cea\bootmgr.efi.mui", hr=0x0 2026-06-05T01:28:30.148 Engine:Setting original file name "DismProvPS.DLL" for "c:\windows\system32\dism\dismcoreps.dll", hr=0x0 2026-06-05T01:28:30.242 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hr-hr_dd64df251b8ed466\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:28:30.320 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_es-es_f4710ea4439a5050\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:28:31.351 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\zh-hk\memtest.efi.mui", hr=0x0 2026-06-05T01:28:31.586 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_pt-pt_3ba2208c34475059\bootmgr.exe.mui", hr=0x0 2026-06-05T01:28:31.601 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\pl-pl\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:28:35.820 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\fr-ca\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:28:39.023 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_hr-hr_dd64df251b8ed466\bootmgr.efi.mui", hr=0x0 2026-06-05T01:28:39.414 Engine:Setting original file name "wcp.dll" for "c:\windows\system32\ssshim.dll", hr=0x0 2026-06-05T01:28:42.164 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\ja-jp\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:28:45.245 Engine:Setting original file name " " for "c:\program files (x86)\google\chrome\application\148.0.7778.217\dxcompiler.dll", hr=0x0 2026-06-05T01:28:46.136 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-us_f4a5b1c043735eab\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:28:47.381 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_sv-se_1e401cc51051e8e0\bootmgr.exe.mui", hr=0x0 2026-06-05T01:28:49.912 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\ar-sa\msprivs.dll.mui", hr=0x0 2026-06-05T01:28:53.412 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\zh-cn\bootmgr.efi.mui", hr=0x0 2026-06-05T01:28:55.100 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_ja-jp_658ad4ced77723bd\memtest.exe.mui", hr=0x0 2026-06-05T01:28:55.209 Engine:Setting original file name "AM_Delta_Patch_1.449.503.0.exe" for "c:\windows\softwaredistribution\download\955a0264ea628138c3ea2753579e1d3144b7f707", hr=0x0 2026-06-05T01:28:55.631 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_cs-cz_a41d79d6a0e7a36c\msprivs.dll.mui", hr=0x0 2026-06-05T01:28:56.896 Engine:Setting original file name "nlsbres.dll.mui" for "c:\windows\system32\en-us\winnlsres.dll.mui", hr=0x0 2026-06-05T01:28:59.901 Engine:Setting original file name "mscorlib.dll" for "c:\windows\winsxs\x86_netfx4-mscorlib_ni_b03f5f7f11d50a3a_4.0.15552.18265_none_8b075f02f7b8caaf\mscorlib.ni.dll", hr=0x0 2026-06-05T01:29:02.749 Engine:Setting original file name "mpg4dmod.dll" for "c:\windows\syswow64\mpg4decd.dll", hr=0x0 2026-06-05T01:29:09.995 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-string-l1-1-0.dll", hr=0x0 2026-06-05T01:29:11.963 Engine:Setting original file name "AM_Delta_Patch_1.449.577.0.exe" for "c:\windows\softwaredistribution\download\d7a0b990c530b319a2eb42e0849589b64bc29763", hr=0x0 2026-06-05T01:29:12.907 Engine:Setting original file name "BCP47Lang.dll" for "c:\windows\winsxs\wow64_microsoft-windows-bcp47languages_31bf3856ad364e35_10.0.14393.2457_none_1a5fc83a65dd036f\bcp47langs.dll", hr=0x0 2026-06-05T01:29:13.001 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_qps-ploc_eb01d9f7291b4e61\memtest.efi.mui", hr=0x0 2026-06-05T01:29:15.489 Engine:Setting original file name "scecli" for "c:\windows\winsxs\wow64_microsoft-windows-s..ineclient.resources_31bf3856ad364e35_10.0.14393.6250_en-us_ccc66d656c12563a\scecli.dll.mui", hr=0x0 2026-06-05T01:29:15.736 Engine:Setting original file name "nlsbres.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-i..ocale-nls.resources_31bf3856ad364e35_10.0.14393.7155_en-us_5d1af2004d30f690\winnlsres.dll.mui", hr=0x0 2026-06-05T01:29:16.767 Engine:Setting original file name "powershell.exe" for "c:\windows\syswow64\windowspowershell\v1.0\powershell.exe", hr=0x0 2026-06-05T01:29:17.172 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnhpast.dll", hr=0x0 2026-06-05T01:29:21.246 Engine:Setting original file name "MicrosoftRawCodec" for "c:\windows\system32\windowscodecsraw.dll", hr=0x0 2026-06-05T01:29:24.518 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\hr-hr\bootmgr.exe.mui", hr=0x0 2026-06-05T01:29:25.059 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nl-nl_adb1a31ecc7b5ab2\bootmgr.efi.mui", hr=0x0 2026-06-05T01:29:25.337 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\amd64_netfx4-system_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_1c2deb8b76e95843\system.tlb", hr=0x0 2026-06-05T01:29:26.502 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\tr-tr\memtest.efi.mui", hr=0x0 2026-06-05T01:29:28.550 Engine:Setting original file name "mf.dll" for "c:\windows\system32\mfpmp.exe", hr=0x0 2026-06-05T01:29:29.159 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\de-de\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:29:29.614 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\microsoft.net\assembly\gac_msil\accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\accessibility.dll", hr=0x0 2026-06-05T01:29:30.004 Engine:Setting original file name "RRASUPG.DLL" for "c:\windows\syswow64\setup\rasmigplugin.dll", hr=0x0 2026-06-05T01:29:31.922 Engine:Setting original file name "kernel32" for "c:\windows\winsxs\wow64_microsoft-windows-kernel32.resources_31bf3856ad364e35_10.0.14393.8781_en-us_bcf36325b462be8d\kernel32.dll.mui", hr=0x0 2026-06-05T01:29:31.937 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_da-dk_909e2163297cc3fe\memtest.exe.mui", hr=0x0 2026-06-05T01:29:32.303 Engine:Setting original file name "wow64lg2.dll" for "c:\windows\system32\wow64win.dll", hr=0x0 2026-06-05T01:29:32.615 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\cs-cz\bootmgr.efi.mui", hr=0x0 2026-06-05T01:29:32.709 Engine:Setting original file name "uiwrapperres.dll" for "c:\$recycle.bin\s-1-5-21-2655147344-3123060542-3182615479-500\$rigs9x9.dll", hr=0x0 2026-06-05T01:29:33.147 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnathlp.dll", hr=0x0 2026-06-05T01:29:33.600 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-string-l1-1-0.dll", hr=0x0 2026-06-05T01:29:34.888 Engine:Setting original file name "dpnaddr.dll" for "c:\windows\system32\dpnathlp.dll", hr=0x0 2026-06-05T01:29:36.839 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\pt-br\msprivs.dll.mui", hr=0x0 2026-06-05T01:29:39.379 Engine:Setting original file name "AppVEntSubsystems.dll" for "c:\windows\system32\appventsubsystems64.dll", hr=0x0 2026-06-05T01:29:40.440 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\zh-tw\memtest.efi.mui", hr=0x0 2026-06-05T01:29:40.721 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\lv-lv\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:29:46.063 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_de-de_8dc9b69f2b531898\memtest.exe.mui", hr=0x0 2026-06-05T01:29:46.897 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_hu-hu_23176dc69f7cba01\bootmgr.exe.mui", hr=0x0 2026-06-05T01:29:57.382 Engine:Setting original file name "nltestrk.exe.mui" for "c:\windows\syswow64\en-us\nltest.exe.mui", hr=0x0 2026-06-05T01:29:58.398 Engine:Setting original file name "Windows.Security.Credentials.UI.CredentialPicker.exe" for "c:\windows\winsxs\wow64_microsoft-windows-s..y-credential-picker_31bf3856ad364e35_10.0.14393.9060_none_30aa6e7dca8d6a1a\windows.security.credentials.ui.credentialpicker.dll", hr=0x0 2026-06-05T01:29:59.165 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-datetime-l1-1-0.dll", hr=0x0 2026-06-05T01:30:00.300 Engine:Setting original file name "EmbeddedAppLauncherConfig.exe" for "c:\windows\system32\embeddedapplauncherconfig.dll", hr=0x0 2026-06-05T01:30:07.433 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\de-de\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:30:08.027 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-heap-l1-1-0.dll", hr=0x0 2026-06-05T01:30:09.630 Engine:Setting original file name "VsVersion.dll" for "c:\windows\winsxs\x86_netfx4-penimc_b03f5f7f11d50a3a_4.0.15552.18271_none_e9b48dc128e20eab\penimc.dll", hr=0x0 2026-06-05T01:30:09.849 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ru-ru_3dc6c97494785a52\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:30:11.705 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-rtlsupport-l1-1-0.dll", hr=0x0 2026-06-05T01:30:11.908 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nb-no_af7257e0cb4f50dd\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:30:11.955 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_ro-ro_3b5e7de895fd9782\bootmgr.efi.mui", hr=0x0 2026-06-05T01:30:12.018 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\hu-hu\memtest.efi.mui", hr=0x0 2026-06-05T01:30:12.205 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\tr-tr\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:30:13.877 Engine:Setting original file name "CLEANMGR.DLL.MUI" for "c:\windows\winsxs\x86_microsoft-windows-cleanmgr.resources_31bf3856ad364e35_10.0.14393.8592_en-us_775253193af5d297\cleanmgr.exe.mui", hr=0x0 2026-06-05T01:30:17.106 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_pt-br_f641e844b0275c4a\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:30:19.080 Engine:Setting original file name "memdiag.exe" for "c:\windows\boot\efi\ja-jp\memtest.efi.mui", hr=0x0 2026-06-05T01:30:23.254 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\zh-hk\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:30:23.410 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-convert-l1-1-0.dll", hr=0x0 2026-06-05T01:30:24.970 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_zh-hk_94ebef94022e70ff\memtest.exe.mui", hr=0x0 2026-06-05T01:30:25.178 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_fr-fr_972884a3366c66b2\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:30:32.104 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-file-l1-1-0.dll", hr=0x0 2026-06-05T01:30:32.323 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_zh-cn_9640f7060152fe6f\memtest.exe.mui", hr=0x0 2026-06-05T01:30:32.588 Engine:Setting original file name "System.Core.dll" for "c:\windows\winsxs\x86_netfx4-system_core_ni_b03f5f7f11d50a3a_4.0.14305.0_none_96307a7a2f4c6676\system.core.ni.dll", hr=0x0 2026-06-05T01:30:39.482 Engine:Setting original file name "mscorlib.dll" for "c:\windows\assembly\nativeimages_v4.0.30319_32\mscorlib\5b7dfbb6f62799b6979729f5dc677903\mscorlib.ni.dll", hr=0x0 2026-06-05T01:30:39.967 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_pt-br_f641e844b0275c4a\bootmgr.efi.mui", hr=0x0 2026-06-05T01:30:40.045 Engine:Setting original file name "DismProvPS.DLL" for "c:\windows\winsxs\amd64_microsoft-windows-d..ing-management-core_31bf3856ad364e35_10.0.14393.0_none_58a891804171bf9b\dismcoreps.dll", hr=0x0 2026-06-05T01:30:43.537 Engine:Setting original file name "System.Windows.Forms.dll" for "c:\windows\winsxs\x86_netfx4-sys_windows_forms_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_aea2e02810528a7d\system.windows.forms.tlb", hr=0x0 2026-06-05T01:30:47.317 Engine:Setting original file name "setup" for "c:\users\administrator\downloads\vc_redist.x64.exe", hr=0x0 2026-06-05T01:30:48.440 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\sr-latn-rs\bootmgr.efi.mui", hr=0x0 2026-06-05T01:30:48.940 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\pt-pt\bootmgr.efi.mui", hr=0x0 2026-06-05T01:30:49.331 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\pt-pt\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:30:50.202 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_ja-jp_67f462d28569e23e\bootmgr.exe.mui", hr=0x0 2026-06-05T01:30:51.845 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\de-de\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:30:52.439 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_sr-..-cs_b33d9cf1a5e1c65e\memtest.efi.mui", hr=0x0 2026-06-05T01:30:54.314 Engine:Setting original file name "wcp.dll" for "c:\windows\winsxs\x86_microsoft-windows-packagemanager_31bf3856ad364e35_10.0.14393.2457_none_0659f8bf958f6270\ssshim.dll", hr=0x0 2026-06-05T01:30:56.554 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_nl-nl_adb1a31ecc7b5ab2\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:30:56.679 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\da-dk\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:30:58.226 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\ja-jp\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:30:59.773 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\pt-br\bootmgr.exe.mui", hr=0x0 2026-06-05T01:31:00.782 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\amd64_microsoft-windows-b..nager-efi.resources_31bf3856ad364e35_10.0.14393.9060_en-us_f4a5b1c043735eab\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:31:04.688 Engine:Setting original file name "osloader.exe" for "c:\windows\system32\winload.exe", hr=0x0 2026-06-05T01:31:05.188 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\sv-se\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:31:06.017 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-crt-time-l1-1-0.dll", hr=0x0 2026-06-05T01:31:11.735 Engine:Setting original file name "Vulkan Runtime" for "c:\program files\microsoft vs code\vulkan-1.dll", hr=0x0 2026-06-05T01:31:12.970 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\es-mx\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:31:14.501 Engine:Setting original file name "VsVersion.dll" for "c:\windows\microsoft.net\framework64\v4.0.30319\wpf\penimc.dll", hr=0x0 2026-06-05T01:31:14.501 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_en-gb_319b5f7dccfb2f19\bootmgr.exe.mui", hr=0x0 2026-06-05T01:31:16.579 Engine:Setting original file name "DismProvPS.DLL" for "c:\windows\winsxs\x86_microsoft-windows-d..ing-management-core_31bf3856ad364e35_10.0.14393.7426_none_44b37a10cd0cc41a\dismcoreps.dll", hr=0x0 2026-06-05T01:31:18.845 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\syswow64\sv-se\msprivs.dll.mui", hr=0x0 2026-06-05T01:31:19.720 Engine:Setting original file name "UNKNOWN_FILE" for "c:\windows\winsxs\x86_netfx4-system_tlb_b03f5f7f11d50a3a_4.0.14305.0_none_63db22628b658149\system.tlb", hr=0x0 2026-06-05T01:31:20.017 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dplaysvr.exe", hr=0x0 2026-06-05T01:31:24.845 Engine:Setting original file name "apisetstub" for "c:\program files\sqlyog community\api-ms-win-core-synch-l1-1-0.dll", hr=0x0 2026-06-05T01:31:25.360 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\fi-fi\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:31:27.657 Engine:Setting original file name "setup" for "c:\program files (x86)\google\chrome\application\148.0.7778.217\installer\setup.exe", hr=0x0 2026-06-05T01:31:29.892 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\it-it\bootmgr.efi.mui", hr=0x0 2026-06-05T01:31:29.923 Engine:Setting original file name "powershell.exe" for "c:\windows\winsxs\amd64_microsoft-windows-powershell-exe_31bf3856ad364e35_10.0.14393.206_none_a31a3bc69ffbbdcf\powershell.exe", hr=0x0 2026-06-05T01:31:31.673 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\fr-ca\bootmgfw_ex.efi.mui", hr=0x0 2026-06-05T01:31:40.870 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\tr-tr\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:31:42.058 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\ja-jp\bootmgfw.efi.mui", hr=0x0 2026-06-05T01:31:46.841 Engine:Setting original file name "dpwsockx.dll" for "c:\windows\syswow64\dpnlobby.dll", hr=0x0 2026-06-05T01:31:49.810 Engine:Setting original file name "mspriv.dll.mui" for "c:\windows\winsxs\wow64_microsoft-windows-lsa-msprivs.resources_31bf3856ad364e35_10.0.14393.9140_he-il_ce163fb7614a08bf\msprivs.dll.mui", hr=0x0 2026-06-05T01:31:50.169 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\pcat\el-gr\bootmgr.exe.mui", hr=0x0 2026-06-05T01:31:50.388 Engine:Setting original file name "memdiag.exe" for "c:\windows\winsxs\wow64_microsoft-windows-b..iagnostic.resources_31bf3856ad364e35_10.0.14393.1715_en-us_36ba8c981a31245d\memtest.exe.mui", hr=0x0 2026-06-05T01:31:52.845 Engine:Setting original file name "mpengine.dll" for "c:\programdata\microsoft\windows defender\definition updates\stableengineetwlocation\mpengine_etw.dll", hr=0x0 2026-06-05T01:31:54.204 Engine:Setting original file name "setup" for "c:\program files (x86)\google\chrome\application\148.0.7778.217\installer\chrmstp.exe", hr=0x0 2026-06-05T01:31:54.251 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi_ex\zh-cn\bootmgr_ex.efi.mui", hr=0x0 2026-06-05T01:31:54.501 Engine:Setting original file name "mp4sdmod.dll" for "c:\windows\winsxs\wow64_microsoft-windows-mp4sdecd_31bf3856ad364e35_10.0.14393.8519_none_8eceefcdfc3e5a71\mp4sdecd.dll", hr=0x0 2026-06-05T01:32:01.459 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_fr-fr_dba6ed7ebb1ceae5\bootmgr.exe.mui", hr=0x0 2026-06-05T01:32:01.584 Engine:Setting original file name "bootmgr.exe" for "c:\windows\winsxs\x86_microsoft-windows-b..ager-pcat.resources_31bf3856ad364e35_10.0.14393.9140_cs-cz_f5cdcf3fe1298680\bootmgr.exe.mui", hr=0x0 2026-06-05T01:32:02.146 Engine:Setting original file name "bootmgr.exe" for "c:\windows\boot\efi\zh-tw\bootmgr.efi.mui", hr=0x0 2026-06-05T01:32:04.193 OriginalFileName Maintenance::29233 files in Moac, 0 skipped (cached), 481 filename set 2026-06-05T01:32:04.193 [AutoPurge] Routine task for Cache Maintenance has ended. 2026-06-05T01:33:01.206 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_h4ukipxz.wa3.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #2606, FileId: 0x1d000000053d6d, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-06-05T01:33:15.922 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-06-05T01:33:15.922 [AutoExclusion] Applied roles from cache. 2026-06-05T01:33:15.922 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-06-05T01:33:15.938 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFABF125810, lRefCount: 5, hr=0 2026-06-05T01:33:15.938 [Engine] New active engine 00007FFAB7F55810 replacing engine 00007FFABF125810. Number of active engines: 2 2026-06-05T01:33:16.125 EngineInit:Global ASOC is enabled 2026-06-05T01:33:16.125 EngineInit:ASOO is enabled for developer volumes 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:33:17.548 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-05T01:33:17.657 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-06-05T01:33:17.673 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-06-05T01:33:17.673 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-06-05T01:33:17.673 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-06-05T01:33:17.673 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-06-05T01:33:17.673 [Plugin] Initializing RTP plugin state... 2026-06-05T01:33:17.673 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-06-05T01:33:17.673 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C0FEAF2-8666-4D31-AB71-283F721204AC} 2026-06-05T01:33:17.673 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{87F6CA9F-2AF6-4CCC-BFE6-B8B90D3CB55C} removed 2026-06-05T01:33:17.673 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299}\mpengine.dll cannot be deleted, hr=0x80070005 2026-06-05T01:33:17.673 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-05T01:33:17.673 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-05T01:33:17.673 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-05T01:33:17.673 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-05T01:33:17.673 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:06-05-2026 01:33:17 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:06-05-2026 01:33:17 2026-06-05T01:33:17.673 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-06-05T01:33:17.673 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-06-05T01:33:17.688 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-06-05T01:33:17.688 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎06‎-‎05‎-‎2026 03:05:31 Last Perf:‎06‎-‎05‎-‎2026 03:05:31 First RTP Scan:‎06‎-‎05‎-‎2026 03:05:31 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:677 Misses:1722 BM Queue:0,108,0 Proc:0,38,0 File:0,108,0 Plugin Queue:0,0,0 Threat:0,0,0 Susp:0,0,0 Unknown:0,0,0 Error:0,0,0 Request Queue:2,3,0 SetEngine:1,1,0 SetState:1,1,0 SetUser:0,0,0 Config:0,2,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:2642 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:3220822 AsyncQCurrent:0 BMFlags:40095 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:22139 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:47975 TotalHits:8845 InstanceCacheInserts:179 InstanceCacheUpdates:0 InstanceCacheDeletes:98 InstanceCacheHits:38 InstanceCacheMisses:23847 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:8ms (1219/142) Success: 142, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-06-05T01:33:17.688 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-06-05T01:33:17.704 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-05T01:33:17.704 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-05T01:33:17.704 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-05T01:33:17.704 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-05T01:33:17.704 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-05T01:33:17.704 MdCoreSvc is supported in this platform and OS Signature updated on 06-05-2026 01:33:17 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.269.0 AV Signature Version: 1.451.269.0 ************************************************************ 2026-06-05T01:33:17.704 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-06-05T01:33:17.704 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\D1AC6CCF-6163-474B-AC19-5B8742290B71108c.1dcf488cf67b044 2026-06-05T01:33:17.720 Process scan (postsignatureupdatescan) started. 2026-06-05T01:33:17.782 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-05T01:33:17.782 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-06-05T01:33:17.845 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-06-05T01:33:17.845 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-06-05T01:33:18.204 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-06-05T01:33:18.204 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-06-05T01:33:18.204 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-05T01:33:18.204 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-06-05T01:33:18.204 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-06-05T01:33:18.266 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-06-05T01:33:18.266 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-06-05T01:33:18.266 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-06-05T01:33:18.376 [Engine] Engine 00007FFABF125810 no longer in use. Number of active engines: 1 2026-06-05T01:33:18.376 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-05T01:33:18.376 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-06-05T01:33:18.876 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 41919, Count: 4178, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\js\jquery-1.7.1.min.js, EstimatedImpact: 2% 2026-06-05T01:33:18.876 ProcessImageName: powershell.exe, Pid: 3976, TotalTime: 726, Count: 35, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 2% 2026-06-05T01:33:18.876 ProcessImageName: WmiPrvSE.exe, Pid: 4044, TotalTime: 634, Count: 15, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys, EstimatedImpact: 24% 2026-06-05T01:33:18.876 ProcessImageName: powershell.exe, Pid: 4368, TotalTime: 276, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 1% 2026-06-05T01:33:18.876 ProcessImageName: powershell.exe, Pid: 4800, TotalTime: 228, Count: 22, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\Modules\ConfigDefender\ConfigDefender.psd1, EstimatedImpact: 5% 2026-06-05T01:33:18.876 ProcessImageName: powershell.exe, Pid: 3116, TotalTime: 200, Count: 27, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 55% 2026-06-05T01:33:18.876 ProcessImageName: ngentask.exe, Pid: 3084, TotalTime: 165, Count: 16, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.log, EstimatedImpact: 5% 2026-06-05T01:33:18.876 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 124, Count: 4, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\wbem\WMIADAP.exe, EstimatedImpact: 0% 2026-06-05T01:33:18.876 ProcessImageName: ngentask.exe, Pid: 3176, TotalTime: 106, Count: 10, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.log->(UTF-8), EstimatedImpact: 22% 2026-06-05T01:33:18.876 ProcessImageName: updater.exe, Pid: 3096, TotalTime: 62, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\prefs.json, EstimatedImpact: 44% 2026-06-05T01:33:18.876 ProcessImageName: tzsync.exe, Pid: 996, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Globalization\Time Zone\timezones.xml, EstimatedImpact: 3% 2026-06-05T01:33:18.876 ProcessImageName: GoogleUpdate.exe, Pid: 492, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\AppPatch\sysmain.sdb, EstimatedImpact: 14% 2026-06-05T01:33:18.907 [Engine] RSIG_UNLOADENGINE, 00007FFABF125810, err=0x0 2026-06-05T01:33:18.923 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E478EA1F-F9E6-4409-9EBD-49594FA88299} removed 2026-06-05T01:33:49.638 Process scan (postsignatureupdatescan) completed. 2026-06-05T01:35:01.078 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_litksqap.1uq.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #2875, FileId: 0x13ca00000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:37:01.088 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ln2xjgyy.ptm.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #2916, FileId: 0x13cc00000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:38:01.063 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_a2hbhtmv.22r.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #2926, FileId: 0x13cd00000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:38:16.053 [RbM] Setting Last known good engine candidate. hr = 0 2026-06-05T01:39:01.095 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bium51jq.gbl.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #2955, FileId: 0x13ce00000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:40:41.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T01:41:01.125 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_444nysrt.1n1.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #2973, FileId: 0x13d000000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:42:01.119 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_5aukfutn.b2g.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #3000, FileId: 0x13d100000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:43:01.111 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xwmp5wz1.wwa.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #3009, FileId: 0x13d200000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:44:01.116 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_nxwvv40m.5gu.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #3030, FileId: 0x13d300000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:45:01.151 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_fqqzchdi.pgq.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #3039, FileId: 0x13d400000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:46:01.142 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3ltqjehj.nhs.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #3056, FileId: 0x13d500000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:47:00.168 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_wvae5pbs.1nr.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #3065, FileId: 0x13d600000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:48:00.142 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_gghlnb4k.2wt.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #3077, FileId: 0x13d700000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:49:00.180 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_hiy4gidz.csb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #3092, FileId: 0x13d800000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:50:00.158 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_v3nicxww.xrj.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #3101, FileId: 0x13d900000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:51:00.143 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_prrdspdw.b34.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #3110, FileId: 0x13da00000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:52:00.176 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_b30sglmj.wsb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #3119, FileId: 0x13db00000000ca40, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T01:55:46.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T01:57:00.040 [RTP] [Mini-filter] OpenWithoutRead notification (297, 10680, \Device\HarddiskVolume2\Windows\System32\svchost.exe) sent successfully. 2026-06-05T02:04:18.588 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Windows\Temp\cab_4800_2. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52692, FileId: 0x6000000001b87d, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:18.650 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Windows\Temp\cab_4800_4. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52695, FileId: 0x25bd00000004c52f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:18.650 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Windows\Temp\cab_4800_5. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52696, FileId: 0x4c00000005394f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:18.650 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Windows\Temp\cab_4800_6. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52697, FileId: 0x2600000005395d, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:23.603 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Windows\Temp\cab_2868_2. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52699, FileId: 0x180000000004ba, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:23.713 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Windows\Temp\cab_2868_4. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52702, FileId: 0x70000000164df, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:23.713 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Windows\Temp\cab_2868_5. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52703, FileId: 0xc00000001b6e0, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:23.713 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Windows\Temp\cab_2868_6. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52704, FileId: 0xc00000001b6e1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:37.254 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Windows\Temp\cab_352_4. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52713, FileId: 0xe00000001b6e0, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:37.254 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Windows\Temp\cab_352_5. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52714, FileId: 0xd00000001b6e1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:37.254 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Windows\Temp\cab_352_6. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52715, FileId: 0xc00000001b73a, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:40.606 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Windows\Temp\cab_3188_3. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52718, FileId: 0x1000000001b6e0, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:40.673 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Windows\Temp\cab_3188_6. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52722, FileId: 0x2200000001bb76, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:44.061 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Windows\Temp\cab_4048_2. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52724, FileId: 0x39720000000088ae, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:44.150 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Windows\Temp\cab_4048_4. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52727, FileId: 0xa0000000008f3b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:44.150 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Windows\Temp\cab_4048_6. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52729, FileId: 0x1b00000001b465, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:04:44.150 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Windows\Temp\cab_4048_5. Process: \Device\HarddiskVolume2\Windows\System32\makecab.exe, Status: 0xc0000001, State: 0, ScanRequest #52728, FileId: 0xe4000000009d46, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:10:51.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T02:16:32.409 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE\IDR_XML_DEFAULT_TRANSFORM[1]. Process: \Device\HarddiskVolume2\Windows\System32\taskhostw.exe, Status: 0xc0000001, State: 0, ScanRequest #52933, FileId: 0x1b9000000000568, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x2020, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:20:41.559 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #53001, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:20:41.559 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #53003, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:20:51.573 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #53007, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:20:51.573 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #53009, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:25:56.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T02:41:01.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T02:46:00.510 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3engle1e.ke0.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #53923, FileId: 0x1d3000000000568, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:46:19.979 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_95_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #54405, FileId: 0x300000000004da, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:46:31.940 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_95_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #54868, FileId: 0x310000000004da, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:53:00.476 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_fvd5nn23.dwg.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #54932, FileId: 0x1dc000000000568, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T02:56:06.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T03:00:29.167 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_ad_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55034, FileId: 0x440000000004da, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:03:00.545 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_5n3l5x51.xew.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #55054, FileId: 0x1e8000000000568, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:06:00.584 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vqpbljqp.qni.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #55080, FileId: 0x1eb000000000568, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:11:11.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T03:15:00.622 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_sesypbvr.aqr.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #55169, FileId: 0xf0000000005e4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:20:42.568 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #55251, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:20:42.584 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #55253, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:20:52.587 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #55257, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:20:52.587 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #55259, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:20:52.728 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #55263, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:20:52.728 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #55265, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:21:00.635 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_pltfmc0h.dr5.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #55268, FileId: 0x180000000005e4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:26:16.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T03:30:00.709 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_14y01xcd.fvi.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #55341, FileId: 0x210000000005e4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:33:16.031 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 50556, Count: 6524, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-06-05T03:33:16.031 ProcessImageName: powershell.exe, Pid: 4800, TotalTime: 788, Count: 74, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 3% 2026-06-05T03:33:16.031 ProcessImageName: powershell.exe, Pid: 2008, TotalTime: 293, Count: 14, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 11% 2026-06-05T03:33:16.031 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 120, Count: 19, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_95_1.MAI, EstimatedImpact: 0% 2026-06-05T03:33:16.031 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-06-05T03:33:16.031 ProcessImageName: updater.exe, Pid: 4228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2c0506b-230f-4544-a2eb-1f5395fefd82.tmp, EstimatedImpact: 0% 2026-06-05T03:33:16.031 ProcessImageName: powershell.exe, Pid: 4752, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_707_for_KB5082198~31bf3856ad364e35~amd64~~10.0.1.28.cat, EstimatedImpact: 0% 2026-06-05T03:33:16.031 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6d3326fa-c868-4cf2-8bde-8ae711e8c469.tmp, EstimatedImpact: 0% 2026-06-05T03:33:16.031 ProcessImageName: makecab.exe, Pid: 352, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_352_2, EstimatedImpact: 6% 2026-06-05T03:33:16.031 ProcessImageName: makecab.exe, Pid: 2868, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_2868_3, EstimatedImpact: 0% 2026-06-05T03:35:41.711 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:934FFA10-9484-4C42-950D-0A782D2A1506, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-06-05T03:35:41.711 Scheduled scan with Id 934FFA10-9484-4C42-950D-0A782D2A1506 configured CPU priority: normal (LowCpuPriority: 0) 2026-06-05T03:35:41.711 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-05T03:35:41.711 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-06-05T03:35:41.711 [SFC] System file cache build is not needed (already completed) 2026-06-05T03:35:58.017 Engine:Triggered AR EMS scan 2026-06-05T03:35:58.017 Engine:EMS scan for process: lsass pid: 616, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.033 Engine:EMS scan for process: svchost pid: 704, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.033 Engine:EMS scan for process: svchost pid: 760, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.048 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.064 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.064 Engine:EMS scan for process: svchost pid: 972, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.080 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.095 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.111 Engine:EMS scan for process: svchost pid: 724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.126 Engine:EMS scan for process: svchost pid: 1160, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.142 Engine:EMS scan for process: svchost pid: 1184, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.158 Engine:EMS scan for process: svchost pid: 1368, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.158 Engine:EMS scan for process: svchost pid: 2012, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.173 Engine:EMS scan for process: svchost pid: 1924, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.173 Engine:EMS scan for process: svchost pid: 1956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.189 Engine:EMS scan for process: svchost pid: 2740, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.189 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:35:58.205 Engine:EMS scan for process: svchost pid: 4436, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-05T03:36:41.460 QuickScan:ScanID:934FFA10-9484-4C42-950D-0A782D2A1506: Quick scan finished with error 0 2026-06-05T03:36:41.460 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-05T03:36:41.963 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-05T03:36:41.963 [RTP] Duplicating the current plugin configuration object... 2026-06-05T03:36:41.963 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-05T03:36:41.963 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-05T03:36:41.963 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-05T03:36:41.963 [RTP] No config change detected. Not updating plugin configuration. 2026-06-05T03:36:41.963 [RTP] No config changes found. No configuration switch. 2026-06-05T03:36:41.963 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-05T03:41:21.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T03:45:00.762 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_wdsfu21s.dqi.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #55576, FileId: 0x14000000000642, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:48.836 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e4_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55591, FileId: 0x2a0000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:49.416 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e4_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55595, FileId: 0x2b0000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:54.077 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55650, FileId: 0x300000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:54.609 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55662, FileId: 0x310000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:54.656 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55667, FileId: 0x320000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:54.750 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55671, FileId: 0x330000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:54.781 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55674, FileId: 0x340000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:54.797 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55677, FileId: 0x350000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:54.844 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55680, FileId: 0x360000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:54.875 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55683, FileId: 0x370000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:54.906 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55686, FileId: 0x380000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:54.937 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_13.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55689, FileId: 0x390000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:54.969 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55692, FileId: 0x3a0000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:55.015 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_17.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55695, FileId: 0x3b0000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:55.626 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_19.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55699, FileId: 0x3c0000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:56.124 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_1b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55702, FileId: 0x3d0000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:56.663 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55705, FileId: 0x3e0000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:56.679 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55708, FileId: 0x3f0000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:56.725 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_21.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55711, FileId: 0x400000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:56.745 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_23.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55714, FileId: 0x410000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:56.761 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_25.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55717, FileId: 0x420000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:56.777 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_27.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55720, FileId: 0x430000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:56.792 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55723, FileId: 0x440000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:56.823 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_2b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55726, FileId: 0x450000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:56.855 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_2e.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55729, FileId: 0x460000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:56.902 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_31.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55732, FileId: 0x470000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:56.917 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55735, FileId: 0x480000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:56.949 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55738, FileId: 0x490000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:56.980 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_39.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55741, FileId: 0x4a0000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:57.011 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_3b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55744, FileId: 0x4b0000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:57.042 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_3d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55747, FileId: 0x4c0000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:46:57.495 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_e5_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #55760, FileId: 0x4d0000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T03:56:26.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T04:01:00.872 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_axqtlj5n.jpt.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #55904, FileId: 0x44000000000642, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:11:00.905 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ckukpzfe.idf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #55990, FileId: 0x4e000000000642, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:11:31.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T04:16:00.965 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_jrfzl3bc.vwz.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #56025, FileId: 0x53000000000642, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:20:40.531 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #56068, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:20:40.547 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #56070, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:20:50.535 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #56074, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:20:50.550 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #56077, FileId: 0x46580000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:26:36.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T04:33:01.061 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_juefi4ez.bzw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #56172, FileId: 0x65000000000642, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:33:54.167 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_122_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #56180, FileId: 0x20c000000000568, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:33:54.949 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_122_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #56184, FileId: 0x20e000000000568, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:33:54.995 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_122_5.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #56187, FileId: 0x20f000000000568, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:33:55.042 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_122_7.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #56190, FileId: 0x210000000000568, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:33:55.058 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_122_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #56193, FileId: 0x211000000000568, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:33:56.869 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_122_1d.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #56223, FileId: 0x21b000000000568, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:33:57.119 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_122_35.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #56253, FileId: 0x225000000000568, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T04:41:41.464 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T04:56:46.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T05:11:51.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T05:20:41.676 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #56653, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T05:26:56.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T05:33:16.030 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 53946, Count: 6864, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-05T05:33:16.030 ProcessImageName: powershell.exe, Pid: 4800, TotalTime: 788, Count: 74, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 3% 2026-06-05T05:33:16.030 ProcessImageName: powershell.exe, Pid: 2008, TotalTime: 293, Count: 14, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 11% 2026-06-05T05:33:16.030 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 195, Count: 146, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_95_1.MAI, EstimatedImpact: 0% 2026-06-05T05:33:16.030 ProcessImageName: updater.exe, Pid: 4228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2c0506b-230f-4544-a2eb-1f5395fefd82.tmp, EstimatedImpact: 0% 2026-06-05T05:33:16.030 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-06-05T05:33:16.030 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6d3326fa-c868-4cf2-8bde-8ae711e8c469.tmp, EstimatedImpact: 0% 2026-06-05T05:33:16.030 ProcessImageName: makecab.exe, Pid: 352, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_352_2, EstimatedImpact: 6% 2026-06-05T05:33:16.030 ProcessImageName: powershell.exe, Pid: 4752, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_707_for_KB5082198~31bf3856ad364e35~amd64~~10.0.1.28.cat, EstimatedImpact: 0% 2026-06-05T05:33:16.030 ProcessImageName: updater.exe, Pid: 2916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34108780-963b-4acf-bbd1-95879dd4e44f.tmp, EstimatedImpact: 0% 2026-06-05T05:33:16.030 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\310c65ec-9083-4f99-b865-36ab0ea7f81e.tmp, EstimatedImpact: 0% 2026-06-05T05:33:16.030 ProcessImageName: makecab.exe, Pid: 2868, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_2868_3, EstimatedImpact: 0% 2026-06-05T05:38:54.434 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_181_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #56814, FileId: 0x8f0000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T05:38:56.232 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_181_1c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #56844, FileId: 0x990000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T05:38:56.474 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_181_34.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #56874, FileId: 0xa30000000004bc, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T05:42:01.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T05:57:06.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T06:12:11.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T06:20:40.436 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #57251, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T06:27:16.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T06:42:21.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T06:57:26.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T07:03:00.128 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0si5xzrr.qh4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #57625, FileId: 0xd3000000000e2c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T07:12:31.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T07:27:00.269 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_siy2ffll.5ea.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #57833, FileId: 0xec000000000e2c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T07:27:36.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T07:33:16.030 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 54099, Count: 6899, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-05T07:33:16.030 ProcessImageName: powershell.exe, Pid: 4800, TotalTime: 788, Count: 74, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 3% 2026-06-05T07:33:16.030 ProcessImageName: powershell.exe, Pid: 2008, TotalTime: 293, Count: 14, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 11% 2026-06-05T07:33:16.030 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 255, Count: 213, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_95_1.MAI, EstimatedImpact: 0% 2026-06-05T07:33:16.030 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-06-05T07:33:16.030 ProcessImageName: updater.exe, Pid: 4228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2c0506b-230f-4544-a2eb-1f5395fefd82.tmp, EstimatedImpact: 0% 2026-06-05T07:33:16.030 ProcessImageName: makecab.exe, Pid: 352, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_352_2, EstimatedImpact: 6% 2026-06-05T07:33:16.030 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6d3326fa-c868-4cf2-8bde-8ae711e8c469.tmp, EstimatedImpact: 0% 2026-06-05T07:33:16.030 ProcessImageName: powershell.exe, Pid: 4752, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_707_for_KB5082198~31bf3856ad364e35~amd64~~10.0.1.28.cat, EstimatedImpact: 0% 2026-06-05T07:33:16.030 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b2f6c0-6643-4c8c-8806-c4da207a7f58.tmp, EstimatedImpact: 0% 2026-06-05T07:33:16.030 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\310c65ec-9083-4f99-b865-36ab0ea7f81e.tmp, EstimatedImpact: 0% 2026-06-05T07:33:16.030 ProcessImageName: updater.exe, Pid: 2916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34108780-963b-4acf-bbd1-95879dd4e44f.tmp, EstimatedImpact: 0% 2026-06-05T07:33:16.030 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8318b1b9-1042-46d1-bc0f-390ead94840f.tmp, EstimatedImpact: 0% 2026-06-05T07:33:16.030 ProcessImageName: makecab.exe, Pid: 2868, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_2868_3, EstimatedImpact: 0% 2026-06-05T07:42:41.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T07:45:34.218 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_241_8.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #57998, FileId: 0x135000000000642, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T07:45:35.949 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_241_1c.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #58028, FileId: 0x13f000000000642, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T07:45:36.230 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_241_36.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #58061, FileId: 0x14a000000000642, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T07:57:46.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T08:12:51.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T08:17:00.679 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0eqgsazp.p4c.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #58304, FileId: 0x13d000000000e2c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T08:27:56.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T08:43:01.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T08:47:00.848 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_svz1yosy.hes.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #58566, FileId: 0x15e000000000e2c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T08:58:06.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T09:13:11.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T09:28:16.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T09:33:16.031 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 54145, Count: 6903, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-05T09:33:16.031 ProcessImageName: powershell.exe, Pid: 4800, TotalTime: 788, Count: 74, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 3% 2026-06-05T09:33:16.031 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 360, Count: 276, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_95_1.MAI, EstimatedImpact: 0% 2026-06-05T09:33:16.031 ProcessImageName: powershell.exe, Pid: 2008, TotalTime: 293, Count: 14, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 11% 2026-06-05T09:33:16.031 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-06-05T09:33:16.031 ProcessImageName: updater.exe, Pid: 4652, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20317cdf-95b4-4713-9aa4-f1f8d6d566c9.tmp, EstimatedImpact: 0% 2026-06-05T09:33:16.031 ProcessImageName: updater.exe, Pid: 4228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2c0506b-230f-4544-a2eb-1f5395fefd82.tmp, EstimatedImpact: 0% 2026-06-05T09:33:16.031 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6d3326fa-c868-4cf2-8bde-8ae711e8c469.tmp, EstimatedImpact: 0% 2026-06-05T09:33:16.031 ProcessImageName: makecab.exe, Pid: 352, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_352_2, EstimatedImpact: 6% 2026-06-05T09:33:16.031 ProcessImageName: powershell.exe, Pid: 4752, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_707_for_KB5082198~31bf3856ad364e35~amd64~~10.0.1.28.cat, EstimatedImpact: 0% 2026-06-05T09:33:16.031 ProcessImageName: updater.exe, Pid: 2916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34108780-963b-4acf-bbd1-95879dd4e44f.tmp, EstimatedImpact: 0% 2026-06-05T09:33:16.031 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\310c65ec-9083-4f99-b865-36ab0ea7f81e.tmp, EstimatedImpact: 0% 2026-06-05T09:33:16.031 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8318b1b9-1042-46d1-bc0f-390ead94840f.tmp, EstimatedImpact: 0% 2026-06-05T09:33:16.031 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3da103b0-6b41-4805-903b-d2e5dd90cc08.tmp, EstimatedImpact: 0% 2026-06-05T09:33:16.031 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b2f6c0-6643-4c8c-8806-c4da207a7f58.tmp, EstimatedImpact: 0% 2026-06-05T09:33:16.031 ProcessImageName: makecab.exe, Pid: 2868, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_2868_3, EstimatedImpact: 0% 2026-06-05T09:43:21.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T09:49:07.231 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_2e7_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #59077, FileId: 0x19c000000000642, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T09:49:07.748 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_2e7_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #59107, FileId: 0x1a6000000000642, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T09:49:09.630 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_2e7_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #59137, FileId: 0x1b0000000000642, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T09:57:00.180 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_npw2rap0.ol4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #59223, FileId: 0x1c5000000000e2c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T09:58:26.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-06-05T09:59:49.230 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-05T09:59:49.230 [Cloud] Start of cloud request. Passive mode: 0 2026-06-05T09:59:49.230 [Cloud] Queued cloud request. 2026-06-05T09:59:49.230 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-05T09:59:49.261 Job Notification: New process added to job (5084) 2026-06-05T09:59:49.277 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey CDA7A74A-FB48-C835-6EC5-3DEE587FE1E8) launched 2026-06-05T09:59:49.277 Job Notification: New process added to job (2704) 2026-06-05T09:59:49.277 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:5084] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2704]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-05T09:59:49.292 Job Notification: New process added to job (4320) 2026-06-05T09:59:49.292 Job Notification: Process exited from job (5084) 2026-06-05T09:59:49.308 Job Notification: Process exited from job (2704) 2026-06-05T09:59:49.316 [Cloud] Dequeued cloud request. 2026-06-05T09:59:49.316 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-05T09:59:49.751 [Cloud] End of cloud request. 2026-06-05T09:59:49.751 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-06-05T09:59:49.766 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe BEGIN BM telemetry GUID:{D9E366C0-F9B3-E78B-13E3-6DB485E3A1D7} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:4804 ProcessCreationTime:134251271892217890 SessionID:0 CreationTime:06-05-2026 09:59:49 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1184:1, Operations:None END BM telemetry 2026-06-05T09:59:49.782 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE 2026-06-05T09:59:49.813 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-05T09:59:49.813 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-05T09:59:50.329 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-05T09:59:51.376 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-05T09:59:51.376 [Cloud] Start of cloud request. Passive mode: 0 2026-06-05T09:59:51.376 [Cloud] Queued cloud request. 2026-06-05T09:59:51.376 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-05T09:59:51.392 [Cloud] Dequeued cloud request. 2026-06-05T09:59:51.595 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-05T09:59:51.939 [Cloud] End of cloud request. 2026-06-05T09:59:52.376 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-05T09:59:52.376 [Cloud] Start of cloud request. Passive mode: 0 2026-06-05T09:59:52.376 [Cloud] Queued cloud request. 2026-06-05T09:59:52.376 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-05T09:59:52.376 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-06-05T09:59:52.376 [Cloud] Dequeued cloud request. 2026-06-05T09:59:52.376 [Cloud] Start of cloud request. Passive mode: 0 2026-06-05T09:59:52.376 [Cloud] Queued cloud request. 2026-06-05T09:59:52.376 [Cloud] Dequeued cloud request. 2026-06-05T09:59:52.376 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-05T09:59:52.392 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-05T09:59:52.439 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-05T09:59:52.533 [Cloud] End of cloud request. 2026-06-05T09:59:52.595 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-05T09:59:52.595 [Cloud] End of cloud request. 2026-06-05T09:59:53.037 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-05T10:13:31.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T10:20:50.946 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #59453, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T10:28:36.462 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T10:43:41.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T10:58:46.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T11:13:51.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T11:28:56.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T11:32:13.209 [RTP] [Mini-filter] Unsuccessful scan status(#300): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_363_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #60035, FileId: 0x2d000000005763, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T11:32:15.913 [RTP] [Mini-filter] Unsuccessful scan status(#310): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_364_12.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #60067, FileId: 0x3b000000005763, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T11:32:17.398 [RTP] [Mini-filter] Unsuccessful scan status(#320): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_364_26.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #60097, FileId: 0x45000000005763, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T11:33:00.857 [RTP] [Mini-filter] Unsuccessful scan status(#330): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_stalc0fm.cgs.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #60130, FileId: 0x8c00000000577c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T11:33:16.045 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 54749, Count: 6963, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-05T11:33:16.045 ProcessImageName: powershell.exe, Pid: 4800, TotalTime: 788, Count: 74, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 3% 2026-06-05T11:33:16.045 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 480, Count: 407, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_95_1.MAI, EstimatedImpact: 0% 2026-06-05T11:33:16.045 ProcessImageName: powershell.exe, Pid: 2008, TotalTime: 293, Count: 14, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 11% 2026-06-05T11:33:16.045 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-06-05T11:33:16.045 ProcessImageName: wacs.exe, Pid: 4804, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-05T11:33:16.045 ProcessImageName: updater.exe, Pid: 4652, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20317cdf-95b4-4713-9aa4-f1f8d6d566c9.tmp, EstimatedImpact: 0% 2026-06-05T11:33:16.045 ProcessImageName: updater.exe, Pid: 4228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2c0506b-230f-4544-a2eb-1f5395fefd82.tmp, EstimatedImpact: 0% 2026-06-05T11:33:16.045 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6d3326fa-c868-4cf2-8bde-8ae711e8c469.tmp, EstimatedImpact: 0% 2026-06-05T11:33:16.045 ProcessImageName: makecab.exe, Pid: 352, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_352_2, EstimatedImpact: 6% 2026-06-05T11:33:16.045 ProcessImageName: powershell.exe, Pid: 4752, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_707_for_KB5082198~31bf3856ad364e35~amd64~~10.0.1.28.cat, EstimatedImpact: 0% 2026-06-05T11:33:16.045 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3da103b0-6b41-4805-903b-d2e5dd90cc08.tmp, EstimatedImpact: 0% 2026-06-05T11:33:16.045 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\310c65ec-9083-4f99-b865-36ab0ea7f81e.tmp, EstimatedImpact: 0% 2026-06-05T11:33:16.045 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8318b1b9-1042-46d1-bc0f-390ead94840f.tmp, EstimatedImpact: 0% 2026-06-05T11:33:16.045 ProcessImageName: updater.exe, Pid: 2916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34108780-963b-4acf-bbd1-95879dd4e44f.tmp, EstimatedImpact: 0% 2026-06-05T11:33:16.045 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d70e51ed-f34b-419e-85ba-23c94f5291da.tmp, EstimatedImpact: 0% 2026-06-05T11:33:16.045 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b2f6c0-6643-4c8c-8806-c4da207a7f58.tmp, EstimatedImpact: 0% 2026-06-05T11:33:16.045 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4882ebd2-9707-494e-974b-fe96d346915b.tmp, EstimatedImpact: 0% 2026-06-05T11:33:16.045 ProcessImageName: makecab.exe, Pid: 2868, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_2868_3, EstimatedImpact: 0% 2026-06-05T11:44:01.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T11:59:06.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T12:14:11.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T12:20:50.579 [RTP] [Mini-filter] Unsuccessful scan status(#340): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #60522, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T12:29:16.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T12:44:21.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T12:59:26.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T13:14:31.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T13:20:40.651 [RTP] [Mini-filter] Unsuccessful scan status(#350): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #61633, FileId: 0x567000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T13:29:36.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T13:33:16.055 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 55330, Count: 7007, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: powershell.exe, Pid: 4800, TotalTime: 788, Count: 74, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 3% 2026-06-05T13:33:16.055 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 480, Count: 408, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_95_1.MAI, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: powershell.exe, Pid: 2008, TotalTime: 293, Count: 14, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 11% 2026-06-05T13:33:16.055 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: wacs.exe, Pid: 4804, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-05T13:33:16.055 ProcessImageName: updater.exe, Pid: 4652, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20317cdf-95b4-4713-9aa4-f1f8d6d566c9.tmp, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: updater.exe, Pid: 4228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2c0506b-230f-4544-a2eb-1f5395fefd82.tmp, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: updater.exe, Pid: 4572, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccdf4512-2cfb-441c-95f4-665a6d9788c0.tmp, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: updater.exe, Pid: 2484, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102a5e1-7521-4fcc-904b-2c0824726a1d.tmp, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: powershell.exe, Pid: 4752, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_707_for_KB5082198~31bf3856ad364e35~amd64~~10.0.1.28.cat, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6d3326fa-c868-4cf2-8bde-8ae711e8c469.tmp, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: makecab.exe, Pid: 352, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_352_2, EstimatedImpact: 6% 2026-06-05T13:33:16.055 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3da103b0-6b41-4805-903b-d2e5dd90cc08.tmp, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4882ebd2-9707-494e-974b-fe96d346915b.tmp, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b2f6c0-6643-4c8c-8806-c4da207a7f58.tmp, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d70e51ed-f34b-419e-85ba-23c94f5291da.tmp, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8318b1b9-1042-46d1-bc0f-390ead94840f.tmp, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: updater.exe, Pid: 2916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34108780-963b-4acf-bbd1-95879dd4e44f.tmp, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\310c65ec-9083-4f99-b865-36ab0ea7f81e.tmp, EstimatedImpact: 0% 2026-06-05T13:33:16.055 ProcessImageName: makecab.exe, Pid: 2868, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_2868_3, EstimatedImpact: 0% 2026-06-05T13:44:32.463 [RTP] [Mini-filter] Unsuccessful scan status(#360): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_480_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #61839, FileId: 0x9f000000005763, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T13:44:34.509 [RTP] [Mini-filter] Unsuccessful scan status(#370): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_481_14.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #61870, FileId: 0xad000000005763, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T13:44:36.316 [RTP] [Mini-filter] Unsuccessful scan status(#380): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_481_28.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #61900, FileId: 0xb7000000005763, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T13:44:36.894 [RTP] [Mini-filter] Unsuccessful scan status(#390): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_481_3f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #61930, FileId: 0xc1000000005763, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T13:44:41.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T13:59:46.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T14:14:51.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T14:20:51.679 [RTP] [Mini-filter] Unsuccessful scan status(#400): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #62213, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T14:29:56.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T14:45:01.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T15:00:06.461 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T15:15:11.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T15:20:38.836 [RTP] [Mini-filter] Unsuccessful scan status(#410): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #62681, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T15:27:19.948 [RTP] [Mini-filter] Unsuccessful scan status(#420): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_4f5_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #62763, FileId: 0x16f00000000577c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T15:27:21.804 [RTP] [Mini-filter] Unsuccessful scan status(#430): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_4f5_1f.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #62793, FileId: 0x17900000000577c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T15:27:22.054 [RTP] [Mini-filter] Unsuccessful scan status(#440): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_4f5_37.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #62823, FileId: 0x18300000000577c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T15:30:16.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T15:33:16.055 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 55345, Count: 7012, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: powershell.exe, Pid: 4800, TotalTime: 788, Count: 74, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 3% 2026-06-05T15:33:16.055 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 600, Count: 536, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_95_1.MAI, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: powershell.exe, Pid: 2008, TotalTime: 293, Count: 14, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 11% 2026-06-05T15:33:16.055 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 75, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: wacs.exe, Pid: 4804, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-05T15:33:16.055 ProcessImageName: updater.exe, Pid: 4228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2c0506b-230f-4544-a2eb-1f5395fefd82.tmp, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: updater.exe, Pid: 4652, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20317cdf-95b4-4713-9aa4-f1f8d6d566c9.tmp, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: updater.exe, Pid: 4572, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccdf4512-2cfb-441c-95f4-665a6d9788c0.tmp, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: updater.exe, Pid: 1084, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21325ef6-e744-4d6c-a37f-2dd7cdcb6edc.tmp, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: updater.exe, Pid: 2484, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102a5e1-7521-4fcc-904b-2c0824726a1d.tmp, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: powershell.exe, Pid: 4752, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_707_for_KB5082198~31bf3856ad364e35~amd64~~10.0.1.28.cat, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6d3326fa-c868-4cf2-8bde-8ae711e8c469.tmp, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: makecab.exe, Pid: 352, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_352_2, EstimatedImpact: 6% 2026-06-05T15:33:16.055 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8318b1b9-1042-46d1-bc0f-390ead94840f.tmp, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40f4114d-d2e0-4631-971f-5355e8ed53d2.tmp, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b2f6c0-6643-4c8c-8806-c4da207a7f58.tmp, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d70e51ed-f34b-419e-85ba-23c94f5291da.tmp, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4882ebd2-9707-494e-974b-fe96d346915b.tmp, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3da103b0-6b41-4805-903b-d2e5dd90cc08.tmp, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: updater.exe, Pid: 2916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34108780-963b-4acf-bbd1-95879dd4e44f.tmp, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\310c65ec-9083-4f99-b865-36ab0ea7f81e.tmp, EstimatedImpact: 0% 2026-06-05T15:33:16.055 ProcessImageName: makecab.exe, Pid: 2868, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_2868_3, EstimatedImpact: 0% 2026-06-05T15:45:21.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T16:00:26.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T16:07:37.548 [RTP] [Mini-filter] Unsuccessful scan status(#450): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_56e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #63213, FileId: 0x1b500000000577c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T16:15:31.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T16:30:36.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T16:45:41.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T17:00:46.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T17:15:51.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T17:17:00.942 [RTP] [Mini-filter] Unsuccessful scan status(#460): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_5ugpj0lr.zat.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #63810, FileId: 0x4b000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T17:30:56.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T17:33:13.752 [RTP] [Mini-filter] Unsuccessful scan status(#470): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_685_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #63966, FileId: 0x68000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T17:33:14.906 [RTP] [Mini-filter] Unsuccessful scan status(#480): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_685_1a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #63996, FileId: 0x72000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T17:33:15.669 [RTP] [Mini-filter] Unsuccessful scan status(#490): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_685_34.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #64029, FileId: 0x7d000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T17:33:16.060 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 57476, Count: 7166, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: powershell.exe, Pid: 4800, TotalTime: 788, Count: 74, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 3% 2026-06-05T17:33:16.060 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 690, Count: 608, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_95_1.MAI, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: powershell.exe, Pid: 2008, TotalTime: 293, Count: 14, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 11% 2026-06-05T17:33:16.060 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 105, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: wacs.exe, Pid: 4804, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 4652, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20317cdf-95b4-4713-9aa4-f1f8d6d566c9.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 4228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2c0506b-230f-4544-a2eb-1f5395fefd82.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 4572, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccdf4512-2cfb-441c-95f4-665a6d9788c0.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 2484, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102a5e1-7521-4fcc-904b-2c0824726a1d.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 1084, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21325ef6-e744-4d6c-a37f-2dd7cdcb6edc.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6d3326fa-c868-4cf2-8bde-8ae711e8c469.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: makecab.exe, Pid: 352, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_352_2, EstimatedImpact: 6% 2026-06-05T17:33:16.060 ProcessImageName: powershell.exe, Pid: 4752, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_707_for_KB5082198~31bf3856ad364e35~amd64~~10.0.1.28.cat, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b2f6c0-6643-4c8c-8806-c4da207a7f58.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4882ebd2-9707-494e-974b-fe96d346915b.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 2888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eed5e334-8121-4561-a77c-5a00bb51a7d0.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8318b1b9-1042-46d1-bc0f-390ead94840f.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\310c65ec-9083-4f99-b865-36ab0ea7f81e.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 2916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34108780-963b-4acf-bbd1-95879dd4e44f.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40f4114d-d2e0-4631-971f-5355e8ed53d2.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d70e51ed-f34b-419e-85ba-23c94f5291da.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3da103b0-6b41-4805-903b-d2e5dd90cc08.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: updater.exe, Pid: 5116, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\62b920b9-a7aa-4705-8258-7847eb4687ce.tmp, EstimatedImpact: 0% 2026-06-05T17:33:16.060 ProcessImageName: makecab.exe, Pid: 2868, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_2868_3, EstimatedImpact: 0% 2026-06-05T17:46:01.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T18:01:06.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T18:16:11.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T18:20:40.331 [RTP] [Mini-filter] Unsuccessful scan status(#500): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #64418, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T18:31:16.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T18:46:21.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T19:01:26.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T19:09:26.240 [RTP] [Mini-filter] Unsuccessful scan status(#510): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_6e6_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #64802, FileId: 0x2bb40000000055e5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T19:16:31.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T19:26:47.682 [RTP] [Mini-filter] Unsuccessful scan status(#520): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_6f9_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #64962, FileId: 0xc3000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T19:26:48.041 [RTP] [Mini-filter] Unsuccessful scan status(#530): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_6f9_16.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #64992, FileId: 0xcd000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T19:26:49.807 [RTP] [Mini-filter] Unsuccessful scan status(#540): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_6f9_2a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #65022, FileId: 0xd7000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T19:31:36.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T19:33:16.059 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 57476, Count: 7169, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: powershell.exe, Pid: 4800, TotalTime: 788, Count: 74, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 3% 2026-06-05T19:33:16.059 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 780, Count: 674, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_95_1.MAI, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: powershell.exe, Pid: 2008, TotalTime: 293, Count: 14, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 11% 2026-06-05T19:33:16.059 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 105, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: wacs.exe, Pid: 4804, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 4572, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccdf4512-2cfb-441c-95f4-665a6d9788c0.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 4652, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20317cdf-95b4-4713-9aa4-f1f8d6d566c9.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 4228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2c0506b-230f-4544-a2eb-1f5395fefd82.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 2484, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102a5e1-7521-4fcc-904b-2c0824726a1d.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 1084, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21325ef6-e744-4d6c-a37f-2dd7cdcb6edc.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 4352, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6315555f-8698-4f08-ba07-bb36fcddfe9c.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 780, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: powershell.exe, Pid: 4752, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_707_for_KB5082198~31bf3856ad364e35~amd64~~10.0.1.28.cat, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6d3326fa-c868-4cf2-8bde-8ae711e8c469.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\310c65ec-9083-4f99-b865-36ab0ea7f81e.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40f4114d-d2e0-4631-971f-5355e8ed53d2.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 1576, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4882ebd2-9707-494e-974b-fe96d346915b.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 2888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eed5e334-8121-4561-a77c-5a00bb51a7d0.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b2f6c0-6643-4c8c-8806-c4da207a7f58.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 2916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34108780-963b-4acf-bbd1-95879dd4e44f.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 5116, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\62b920b9-a7aa-4705-8258-7847eb4687ce.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8318b1b9-1042-46d1-bc0f-390ead94840f.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3da103b0-6b41-4805-903b-d2e5dd90cc08.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d70e51ed-f34b-419e-85ba-23c94f5291da.tmp, EstimatedImpact: 0% 2026-06-05T19:33:16.059 ProcessImageName: makecab.exe, Pid: 2868, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_2868_3, EstimatedImpact: 0% 2026-06-05T19:39:00.877 [RTP] [Mini-filter] Unsuccessful scan status(#550): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_smrotwe1.nse.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #65138, FileId: 0xd3000000005937, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T19:46:15.181 [RTP] [Mini-filter] Unsuccessful scan status(#560): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_711_11.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #65227, FileId: 0x105000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T19:46:17.016 [RTP] [Mini-filter] Unsuccessful scan status(#570): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_711_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #65263, FileId: 0x111000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T19:46:41.459 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T20:01:46.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T20:08:00.123 [RTP] [Mini-filter] Unsuccessful scan status(#580): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_djfqxvka.urd.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #65455, FileId: 0x110000000005937, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T20:16:51.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T20:31:56.458 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T20:47:01.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T21:02:06.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T21:17:11.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T21:18:00.520 [RTP] [Mini-filter] Unsuccessful scan status(#590): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ag4hqiug.4yv.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #66002, FileId: 0x157000000005937, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T21:32:16.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T21:33:16.068 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 57476, Count: 7175, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 840, Count: 741, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_95_1.MAI, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: powershell.exe, Pid: 4800, TotalTime: 788, Count: 74, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 3% 2026-06-05T21:33:16.068 ProcessImageName: powershell.exe, Pid: 2008, TotalTime: 293, Count: 14, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 11% 2026-06-05T21:33:16.068 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 105, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: wacs.exe, Pid: 4804, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 4652, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20317cdf-95b4-4713-9aa4-f1f8d6d566c9.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 4228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2c0506b-230f-4544-a2eb-1f5395fefd82.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 4572, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccdf4512-2cfb-441c-95f4-665a6d9788c0.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 2484, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102a5e1-7521-4fcc-904b-2c0824726a1d.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 4352, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6315555f-8698-4f08-ba07-bb36fcddfe9c.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: powershell.exe, Pid: 4752, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_707_for_KB5082198~31bf3856ad364e35~amd64~~10.0.1.28.cat, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6d3326fa-c868-4cf2-8bde-8ae711e8c469.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d70e51ed-f34b-419e-85ba-23c94f5291da.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8318b1b9-1042-46d1-bc0f-390ead94840f.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3da103b0-6b41-4805-903b-d2e5dd90cc08.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\310c65ec-9083-4f99-b865-36ab0ea7f81e.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 2888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eed5e334-8121-4561-a77c-5a00bb51a7d0.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 5116, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\62b920b9-a7aa-4705-8258-7847eb4687ce.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 2916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34108780-963b-4acf-bbd1-95879dd4e44f.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b2f6c0-6643-4c8c-8806-c4da207a7f58.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40f4114d-d2e0-4631-971f-5355e8ed53d2.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 2716, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be70e213-4d58-487c-9731-6cbac20971ef.tmp, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: updater.exe, Pid: 4388, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-05T21:33:16.068 ProcessImageName: makecab.exe, Pid: 2868, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_2868_3, EstimatedImpact: 0% 2026-06-05T21:42:08.111 [RTP] [Mini-filter] Unsuccessful scan status(#600): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_797_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66228, FileId: 0x15d000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T21:42:08.454 [RTP] [Mini-filter] Unsuccessful scan status(#610): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_797_16.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66258, FileId: 0x167000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T21:42:10.024 [RTP] [Mini-filter] Unsuccessful scan status(#620): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_797_2a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66288, FileId: 0x171000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T21:47:21.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T21:55:36.103 [RTP] [Mini-filter] Unsuccessful scan status(#630): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_7a5_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66410, FileId: 0x18a000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T21:55:37.197 [RTP] [Mini-filter] Unsuccessful scan status(#640): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_7a5_15.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66441, FileId: 0x195000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T21:55:39.075 [RTP] [Mini-filter] Unsuccessful scan status(#650): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_7a5_29.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66471, FileId: 0x19f000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T21:55:39.621 [RTP] [Mini-filter] Unsuccessful scan status(#660): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_7a5_41.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #66503, FileId: 0x1a9000000005936, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T22:02:26.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T22:17:31.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T22:32:36.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T22:35:00.991 [RTP] [Mini-filter] Unsuccessful scan status(#670): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xqlohbrc.h1g.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #66842, FileId: 0x1ec000000005937, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T22:47:41.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T23:02:46.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T23:17:51.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T23:21:04.238 ReportLowfi(c:\program files (x86)\google\chrome\application\148.0.7778.218\installer\chrmstp.exe, 0x437a0835) from 0x0006b6bd6566d2d9 Internal signature match:subtype=Lowfi, sigseq=0x000005550240CBF2, sigsha=e39a25e9b19899abbd79ec872fd8aeabe27e140d, cached=false, source=0, resourceid=0x08598afc 2026-06-05T23:21:16.844 [RTP] [Mini-filter] Unsuccessful scan status(#680): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #67521, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T23:32:56.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-05T23:33:16.067 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 57581, Count: 7200, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 2172, TotalTime: 7291, Count: 15, MaxTime: 4750, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2172_1678498713\148.0.7778.218_chrome_installer_uncompressed.exe, EstimatedImpact: 18% 2026-06-05T23:33:16.067 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 1020, Count: 875, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_95_1.MAI, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: powershell.exe, Pid: 4800, TotalTime: 788, Count: 74, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 3% 2026-06-05T23:33:16.067 ProcessImageName: powershell.exe, Pid: 2008, TotalTime: 293, Count: 14, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 11% 2026-06-05T23:33:16.067 ProcessImageName: 148.0.7778.218_chrome_installer_uncompressed.exe, Pid: 3040, TotalTime: 201, Count: 3, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2172_1678498713\CR_36511.tmp\setup.exe, EstimatedImpact: 80% 2026-06-05T23:33:16.067 ProcessImageName: setup.exe, Pid: 1532, TotalTime: 138, Count: 10, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 55% 2026-06-05T23:33:16.067 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 105, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: wacs.exe, Pid: 4804, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 4228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2c0506b-230f-4544-a2eb-1f5395fefd82.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 4652, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20317cdf-95b4-4713-9aa4-f1f8d6d566c9.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 4572, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccdf4512-2cfb-441c-95f4-665a6d9788c0.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 2484, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b102a5e1-7521-4fcc-904b-2c0824726a1d.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 4352, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6315555f-8698-4f08-ba07-bb36fcddfe9c.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 4992, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6d3326fa-c868-4cf2-8bde-8ae711e8c469.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: powershell.exe, Pid: 4752, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_707_for_KB5082198~31bf3856ad364e35~amd64~~10.0.1.28.cat, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 5116, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\62b920b9-a7aa-4705-8258-7847eb4687ce.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\310c65ec-9083-4f99-b865-36ab0ea7f81e.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 2716, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\be70e213-4d58-487c-9731-6cbac20971ef.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 4920, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d70e51ed-f34b-419e-85ba-23c94f5291da.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 2888, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eed5e334-8121-4561-a77c-5a00bb51a7d0.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 4248, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5c9314cb-0a41-40bd-b817-45b4e53db91f.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 2916, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\34108780-963b-4acf-bbd1-95879dd4e44f.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 3192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3da103b0-6b41-4805-903b-d2e5dd90cc08.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 4368, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_url_fetcher_2172_183391149\decoded_xz, EstimatedImpact: 4% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 4208, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21b2f6c0-6643-4c8c-8806-c4da207a7f58.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 4672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8318b1b9-1042-46d1-bc0f-390ead94840f.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 4336, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\40f4114d-d2e0-4631-971f-5355e8ed53d2.tmp, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: updater.exe, Pid: 4388, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-05T23:33:16.067 ProcessImageName: makecab.exe, Pid: 2868, TotalTime: 0, Count: 2, MaxTime: 0, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\cab_2868_3, EstimatedImpact: 0% 2026-06-05T23:43:39.210 [RTP] [Mini-filter] Unsuccessful scan status(#690): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_824_6.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #67731, FileId: 0x2c640000000055e5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T23:43:40.363 [RTP] [Mini-filter] Unsuccessful scan status(#700): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_824_1a.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #67761, FileId: 0x2c6e0000000055e5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T23:43:41.037 [RTP] [Mini-filter] Unsuccessful scan status(#710): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_824_30.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #67791, FileId: 0x2c780000000055e5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-05T23:48:01.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T00:03:06.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T00:13:28.912 [RTP] [Mini-filter] Unsuccessful scan status(#720): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_843_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #68033, FileId: 0x2ca00000000055e5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T00:18:11.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T00:21:00.682 [RTP] [Mini-filter] Unsuccessful scan status(#730): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_izkyhkfx.qag.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #68118, FileId: 0x27e000000005937, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T00:33:16.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T00:48:21.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T01:03:26.457 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T01:15:31.447 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-06-06T01:15:31.463 Job Notification: New process added to job (4404) 2026-06-06T01:15:31.463 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-06-06T01:15:31.463 Job Notification: New process added to job (4312) 2026-06-06T01:15:31.463 Aggressive catchup quick scan threshold: 779897649928 / 25920000000000 2026-06-06T01:15:31.478 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4404] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4312]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-06T01:15:31.603 Job Notification: New process added to job (3052) 2026-06-06T01:15:31.603 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-06-06T01:15:31.603 Job Notification: New process added to job (332) 2026-06-06T01:15:31.635 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3052] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:332]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-06T01:15:31.994 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-06T01:15:31.994 [RTP] Duplicating the current plugin configuration object... 2026-06-06T01:15:31.994 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-06T01:15:31.994 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-06T01:15:31.994 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-06T01:15:31.994 [RTP] No config change detected. Not updating plugin configuration. 2026-06-06T01:15:31.994 [RTP] No config changes found. No configuration switch. 2026-06-06T01:15:31.994 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-06T01:15:32.025 Job Notification: New process added to job (288) 2026-06-06T01:15:32.025 Task(GetDeviceTicket -AccessKey 5E115971-809C-8BA9-86C5-7EDCC07E7C23 ) launched as network service 2026-06-06T01:15:32.695 Job Notification: Process exited from job (288) 2026-06-06T01:15:33.885 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-06T01:15:33.885 [Cloud] Start of cloud request. Passive mode: 0 2026-06-06T01:15:33.885 [Cloud] Queued cloud request. 2026-06-06T01:15:33.885 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-06T01:15:33.885 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-06-06T01:15:33.885 [Cloud] Dequeued cloud request. 2026-06-06T01:15:33.885 [Cloud] Start of cloud request. Passive mode: 0 2026-06-06T01:15:33.885 [Cloud] Queued cloud request. 2026-06-06T01:15:33.885 [Cloud] Dequeued cloud request. 2026-06-06T01:15:33.885 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-06T01:15:33.885 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-06T01:15:34.145 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-06T01:15:34.145 [Cloud] End of cloud request. 2026-06-06T01:15:34.145 [Cloud] End of cloud request. 2026-06-06T01:15:34.395 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-06T01:15:35.997 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\B3650554-076E-4C27-8D60-9BB520E34690c40.1dcf551f98f4211 2026-06-06T01:15:36.075 Verifying engine and signature files (source: 0) ... 2026-06-06T01:15:36.075 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{23183CA8-E710-4C3E-8341-E8B19102FBAC}\mpengine.dll] due to PPL. 2026-06-06T01:15:36.075 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{23183CA8-E710-4C3E-8341-E8B19102FBAC}\mpasbase.vdm] (file in cache) 2026-06-06T01:15:36.075 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{23183CA8-E710-4C3E-8341-E8B19102FBAC}\mpasdlta.vdm]. File not in cache (0x1) 2026-06-06T01:15:36.091 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{23183CA8-E710-4C3E-8341-E8B19102FBAC}\mpasdlta.vdm] 2026-06-06T01:15:36.091 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{23183CA8-E710-4C3E-8341-E8B19102FBAC}\mpavbase.vdm] (file in cache) 2026-06-06T01:15:36.091 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{23183CA8-E710-4C3E-8341-E8B19102FBAC}\mpavdlta.vdm]. File not in cache (0x1) 2026-06-06T01:15:36.091 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{23183CA8-E710-4C3E-8341-E8B19102FBAC}\mpavdlta.vdm] 2026-06-06T01:15:36.232 [Engine] IsHybridMode: 0 2026-06-06T01:15:36.232 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-06-06T01:15:36.294 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-9A0172D9AF00DFCB6CFE0D1985F64CFB689F3BD1.bin): 0x00000002 2026-06-06T01:15:36.294 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-9A0172D9AF00DFCB6CFE0D1985F64CFB689F3BD1.bin) 2026-06-06T01:15:36.294 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-06-06T01:15:36.294 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-06-06T01:15:36.294 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-06-06T01:15:36.294 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-06-06T01:15:44.592 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-06-06T01:15:44.592 [AutoExclusion] Applied roles from cache. 2026-06-06T01:15:44.592 [AutoExclusion] Started roles monitoring. 2026-06-06T01:15:44.592 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFAB7F55810, lRefCount: 5, hr=0 2026-06-06T01:15:44.592 [Engine] New active engine 00007FFABD405810 replacing engine 00007FFAB7F55810. Number of active engines: 2 2026-06-06T01:15:44.592 EngineInit:Global ASOC is enabled 2026-06-06T01:15:44.592 EngineInit:ASOO is enabled for developer volumes 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-06T01:15:44.623 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-06T01:15:44.623 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-06-06T01:15:44.623 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-06-06T01:15:44.623 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-06-06T01:15:44.623 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-06-06T01:15:44.623 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-06-06T01:15:44.638 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-06-06T01:15:44.638 [Plugin] Initializing RTP plugin state... 2026-06-06T01:15:44.638 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-06-06T01:15:44.638 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎06‎-‎05‎-‎2026 03:33:18 Last Perf:‎06‎-‎05‎-‎2026 03:33:17 First RTP Scan:‎06‎-‎05‎-‎2026 03:33:19 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:733 Misses:46034 BM Queue:0,146,0 Proc:0,42,0 File:0,146,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,0,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:68843 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:133113844 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:59816 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:139171 TotalHits:330888 InstanceCacheInserts:4079 InstanceCacheUpdates:0 InstanceCacheDeletes:142 InstanceCacheHits:328 InstanceCacheMisses:114464 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:3ms (9394/3052) Success: 3052, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-06-06T01:15:44.638 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{23183CA8-E710-4C3E-8341-E8B19102FBAC} 2026-06-06T01:15:44.638 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-06-06T01:15:44.638 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{138A7043-3EF0-4FA1-A388-ED84573F8911} removed 2026-06-06T01:15:44.638 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C0FEAF2-8666-4D31-AB71-283F721204AC}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C0FEAF2-8666-4D31-AB71-283F721204AC}\mpengine.dll cannot be deleted, hr=0x80070005 2026-06-06T01:15:44.638 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-06T01:15:44.638 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-06T01:15:44.638 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-06T01:15:44.638 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-06T01:15:44.638 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:06-06-2026 01:15:44 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:06-06-2026 01:15:44 2026-06-06T01:15:44.638 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-06-06T01:15:44.638 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-06-06T01:15:44.638 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-06T01:15:44.638 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-06-06T01:15:44.638 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-06T01:15:44.638 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-06T01:15:44.638 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-06T01:15:44.638 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-06T01:15:44.638 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-06T01:15:44.638 MdCoreSvc is supported in this platform and OS Signature updated on 06-06-2026 01:15:44 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.286.0 AV Signature Version: 1.451.286.0 ************************************************************ 2026-06-06T01:15:44.638 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-06-06T01:15:44.638 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\B3650554-076E-4C27-8D60-9BB520E34690c40.1dcf551f98f4211 2026-06-06T01:15:44.654 Process scan (postsignatureupdatescan) started. 2026-06-06T01:15:44.701 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-06-06T01:15:44.701 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 06-06-2026 01:15:44 ************************************************************ 2026-06-06T01:15:44.732 Job Notification: Process exited from job (3052) 2026-06-06T01:15:44.732 Job Notification: Process exited from job (4404) 2026-06-06T01:15:44.732 Job Notification: Process exited from job (4312) 2026-06-06T01:15:44.732 Job Notification: Process exited from job (332) 2026-06-06T01:15:44.904 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-06-06T01:15:44.904 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-06-06T01:15:44.904 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-06-06T01:15:44.904 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-06-06T01:15:44.904 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-06-06T01:15:44.920 [Engine] Engine 00007FFAB7F55810 no longer in use. Number of active engines: 1 2026-06-06T01:15:44.920 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-06T01:15:44.920 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-06-06T01:15:45.138 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-06-06T01:15:45.138 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-06-06T01:15:45.138 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-06T01:15:46.045 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 57611, Count: 7206, MaxTime: 515, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\themes\pennews\js\script.lib.min.js, EstimatedImpact: 0% 2026-06-06T01:15:46.045 ProcessImageName: updater.exe, Pid: 2172, TotalTime: 7291, Count: 15, MaxTime: 4750, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2172_1678498713\148.0.7778.218_chrome_installer_uncompressed.exe, EstimatedImpact: 18% 2026-06-06T01:15:46.045 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 1095, Count: 943, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_95_1.MAI, EstimatedImpact: 0% 2026-06-06T01:15:46.045 ProcessImageName: powershell.exe, Pid: 4800, TotalTime: 788, Count: 74, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 3% 2026-06-06T01:15:46.045 ProcessImageName: powershell.exe, Pid: 2008, TotalTime: 293, Count: 14, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 11% 2026-06-06T01:15:46.045 ProcessImageName: 148.0.7778.218_chrome_installer_uncompressed.exe, Pid: 3040, TotalTime: 201, Count: 3, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping2172_1678498713\CR_36511.tmp\setup.exe, EstimatedImpact: 80% 2026-06-06T01:15:46.045 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 151, Count: 12, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-06-06T01:15:46.045 ProcessImageName: setup.exe, Pid: 1532, TotalTime: 138, Count: 10, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 55% 2026-06-06T01:15:46.045 ProcessImageName: wacs.exe, Pid: 4804, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-06T01:15:46.045 ProcessImageName: updater.exe, Pid: 4228, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a2c0506b-230f-4544-a2eb-1f5395fefd82.tmp, EstimatedImpact: 0% 2026-06-06T01:15:46.045 ProcessImageName: updater.exe, Pid: 4652, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\20317cdf-95b4-4713-9aa4-f1f8d6d566c9.tmp, EstimatedImpact: 0% 2026-06-06T01:15:46.045 ProcessImageName: updater.exe, Pid: 4572, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ccdf4512-2cfb-441c-95f4-665a6d9788c0.tmp, EstimatedImpact: 0% 2026-06-06T01:15:46.045 ProcessImageName: updater.exe, Pid: 3932, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f005225c-a188-4fdd-b517-872f5e8126e7.tmp, EstimatedImpact: 0% 2026-06-06T01:15:46.092 [Engine] RSIG_UNLOADENGINE, 00007FFAB7F55810, err=0x0 2026-06-06T01:15:46.107 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1C0FEAF2-8666-4D31-AB71-283F721204AC} removed 2026-06-06T01:15:50.082 Process scan (postsignatureupdatescan) completed. 2026-06-06T01:18:31.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T01:20:41.422 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #69049, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T01:20:41.422 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #69051, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T01:20:44.607 [RbM] Setting Last known good engine candidate. hr = 0 2026-06-06T01:20:51.437 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #69055, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T01:20:51.452 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #69057, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T01:23:00.098 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_1e02rqp3.clq.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #69117, FileId: 0x10000000005956, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T01:25:00.098 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xeqrq1gi.d51.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #69164, FileId: 0x12000000005956, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T01:27:00.100 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_34hdrjgs.fxc.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #69188, FileId: 0x29c000000005937, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T01:30:00.114 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_dkavfkti.i3h.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #69210, FileId: 0x29f000000005937, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T01:31:00.118 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_q0rswoqk.4d3.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #69217, FileId: 0x2a0000000005937, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T01:33:36.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T01:39:00.204 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_zrjx233p.wuc.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #69296, FileId: 0x2a8000000005937, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T01:43:00.207 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_mmq2ue3z.hhr.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #69324, FileId: 0x2ac000000005937, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T01:48:41.456 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T01:49:00.215 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_abkgvydg.obt.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #69366, FileId: 0x2b2000000005937, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T01:59:42.382 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #70662, FileId: 0x2cd80000000055e5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T01:59:53.043 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #71108, FileId: 0x2cd90000000055e5, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:03:46.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T02:05:00.359 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xheehazn.gc1.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #71151, FileId: 0x2c4000000005937, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:08:00.394 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_aqb12jmh.ej4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #71176, FileId: 0x2c7000000005937, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:18:51.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T02:20:41.037 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71278, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:20:41.052 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71280, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:20:51.040 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71284, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:20:51.040 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71286, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:20:51.056 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71288, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:20:51.056 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71290, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:29:00.478 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_t4zbraoe.wwb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #71359, FileId: 0x1c00000000594c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:30:00.493 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_fxjgyspm.zda.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #71366, FileId: 0x1d00000000594c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:33:56.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T02:39:00.548 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_nchgxsen.bbo.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #71449, FileId: 0x2600000000594c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:41:00.551 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vrrmozjg.bkq.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #71492, FileId: 0xc000000005951, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:45:00.547 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_zmtbkdcj.03g.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #71520, FileId: 0x10000000005951, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:46:00.559 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3krc54aw.fa4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #71527, FileId: 0x11000000005951, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T02:49:01.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T03:02:00.682 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4p21dmab.hix.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #71656, FileId: 0x24000000005951, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:04:06.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T03:09:00.710 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_nqryo0f3.tr1.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #71708, FileId: 0x2b000000005951, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:10:00.694 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_si5mok0c.iae.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #71715, FileId: 0x2c000000005951, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:13:00.734 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_fmuwhgdq.xsy.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #71736, FileId: 0x2f000000005951, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:15:44.606 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 44443, Count: 6321, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-06-06T03:15:44.606 ProcessImageName: powershell.exe, Pid: 4384, TotalTime: 245, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 28% 2026-06-06T03:15:44.606 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_3.MAI, EstimatedImpact: 0% 2026-06-06T03:15:44.606 ProcessImageName: updater.exe, Pid: 4372, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e05f669c-88a9-417c-bae7-cce2ebced07e.tmp, EstimatedImpact: 0% 2026-06-06T03:15:44.606 ProcessImageName: updater.exe, Pid: 5100, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47167595-245e-411b-8e87-67ced807ab24.tmp, EstimatedImpact: 0% 2026-06-06T03:19:11.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T03:20:00.784 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_sqbgqzxx.nyk.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #71787, FileId: 0x36000000005951, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:20:41.328 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71802, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:20:41.343 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71804, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:20:51.341 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71808, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:20:51.341 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71809, FileId: 0x46580000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:20:51.357 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #71810, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:27:00.793 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_k2rwe04w.y5y.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #71856, FileId: 0x3e000000005951, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:34:16.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T03:35:41.728 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:4EBDC16B-61F3-4AC6-9008-CB4ABA63C97E, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-06-06T03:35:41.728 Scheduled scan with Id 4EBDC16B-61F3-4AC6-9008-CB4ABA63C97E configured CPU priority: normal (LowCpuPriority: 0) 2026-06-06T03:35:41.728 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-06T03:35:41.728 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-06-06T03:35:41.728 [SFC] System file cache build is not needed (already completed) 2026-06-06T03:35:55.204 Engine:Triggered AR EMS scan 2026-06-06T03:35:55.204 Engine:EMS scan for process: lsass pid: 616, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.220 Engine:EMS scan for process: svchost pid: 704, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.220 Engine:EMS scan for process: svchost pid: 760, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.236 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.236 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.251 Engine:EMS scan for process: svchost pid: 972, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.267 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.267 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.298 Engine:EMS scan for process: svchost pid: 724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.298 Engine:EMS scan for process: svchost pid: 1160, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.314 Engine:EMS scan for process: svchost pid: 1184, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.329 Engine:EMS scan for process: svchost pid: 1368, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.329 Engine:EMS scan for process: svchost pid: 2012, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.345 Engine:EMS scan for process: svchost pid: 1924, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.361 Engine:EMS scan for process: svchost pid: 1956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.361 Engine:EMS scan for process: svchost pid: 2740, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.376 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:35:55.376 Engine:EMS scan for process: svchost pid: 4436, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-06T03:36:00.923 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_jpbmu30s.2cd.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #72052, FileId: 0x8000000005952, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:36:15.423 QuickScan:ScanID:4EBDC16B-61F3-4AC6-9008-CB4ABA63C97E: Quick scan finished with error 0 2026-06-06T03:36:15.423 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-06T03:36:15.944 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-06T03:36:15.944 [RTP] Duplicating the current plugin configuration object... 2026-06-06T03:36:15.944 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-06T03:36:15.944 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-06T03:36:15.944 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-06T03:36:15.944 [RTP] No config change detected. Not updating plugin configuration. 2026-06-06T03:36:15.944 [RTP] No config changes found. No configuration switch. 2026-06-06T03:36:15.944 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-06T03:37:00.872 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_tlnrzbfb.h43.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #72059, FileId: 0x9000000005952, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:49:21.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T03:50:00.958 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_2tbxhpai.jh4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #72150, FileId: 0x16000000005952, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:54:00.962 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_yqw3y4sl.pcy.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #72199, FileId: 0x1a000000005952, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T03:56:00.971 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_1njegfjw.y1v.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #72213, FileId: 0x1c000000005952, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T04:04:26.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T04:08:01.049 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0c1z4lrb.zrt.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #72303, FileId: 0x28000000005952, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T04:19:31.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T04:20:40.575 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72406, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T04:20:40.591 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72408, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T04:20:50.589 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72412, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T04:20:50.604 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72414, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T04:20:50.745 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72418, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T04:20:50.745 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72420, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T04:29:00.184 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vs4pf213.gro.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #72480, FileId: 0x40000000005952, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T04:34:36.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T04:35:00.219 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_f2yw1ctc.m2j.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #72522, FileId: 0x46000000005952, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T04:41:00.283 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xi1exrql.bkl.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #72568, FileId: 0x4f000000005952, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T04:49:41.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T04:52:00.325 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_nft1eir0.mjn.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #72659, FileId: 0xb000000005953, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T05:02:00.352 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_mku4y0js.mvf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #72740, FileId: 0x15000000005953, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T05:04:46.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T05:11:00.395 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_slqpjstj.kzj.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #72816, FileId: 0x1e000000005953, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T05:14:00.429 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_fuwo0vqh.old.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #72839, FileId: 0x21000000005953, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T05:15:44.617 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 44701, Count: 6349, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-includes\formatting.php, EstimatedImpact: 0% 2026-06-06T05:15:44.617 ProcessImageName: powershell.exe, Pid: 4384, TotalTime: 245, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 28% 2026-06-06T05:15:44.617 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33ae3982-d0bd-44b4-8d33-85f0239a34c7.tmp, EstimatedImpact: 0% 2026-06-06T05:15:44.617 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 15, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_3.MAI, EstimatedImpact: 0% 2026-06-06T05:15:44.617 ProcessImageName: updater.exe, Pid: 4372, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e05f669c-88a9-417c-bae7-cce2ebced07e.tmp, EstimatedImpact: 0% 2026-06-06T05:15:44.617 ProcessImageName: updater.exe, Pid: 5100, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47167595-245e-411b-8e87-67ced807ab24.tmp, EstimatedImpact: 0% 2026-06-06T05:15:44.617 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\034ab8b3-1ebb-46bb-865f-6361a47e04f9.tmp, EstimatedImpact: 0% 2026-06-06T05:19:51.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T05:20:39.785 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72898, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T05:20:39.801 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72900, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T05:20:49.806 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72904, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T05:20:49.806 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72905, FileId: 0x46580000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T05:20:49.806 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #72906, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T05:34:56.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T05:35:00.544 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_23xuhg4t.rza.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73008, FileId: 0x37000000005953, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T05:50:01.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T05:57:00.679 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0udpsxgf.1oe.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73189, FileId: 0xc000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:02:00.704 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_qugzlsiv.awa.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73224, FileId: 0x11000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:05:00.720 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_zoawjzzo.lr5.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73245, FileId: 0x14000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:05:06.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T06:06:00.729 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_qxzhd5fm.pg0.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73265, FileId: 0x15000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:07:00.729 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_dcv0bugh.dmn.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73282, FileId: 0x16000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:10:00.730 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_hulhco55.dvs.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73303, FileId: 0x19000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:12:00.758 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_epnqohss.c0k.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73317, FileId: 0x1b000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:20:11.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T06:20:42.053 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #73390, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:20:42.053 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #73392, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:20:52.067 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #73396, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:20:52.082 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #73398, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:26:00.861 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_tyvukugc.trw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73443, FileId: 0x2a000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:34:00.899 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4qtptnd1.fub.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73500, FileId: 0x32000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:35:16.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T06:37:00.917 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_fkzjazou.1ax.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73527, FileId: 0x35000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:39:00.943 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_lxxwrsox.1ut.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73541, FileId: 0x37000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:45:01.004 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_5s1eyzz2.22r.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73583, FileId: 0x3d000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:50:21.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T06:56:01.075 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_am0jpyqh.h5o.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73670, FileId: 0x48000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:57:01.087 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_adyhcnat.vom.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73677, FileId: 0x49000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:57:47.511 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_9ff_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #73685, FileId: 0xa0000000005952, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:57:48.151 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_9ff_9.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #73689, FileId: 0xa1000000005952, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:57:48.167 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_9ff_b.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #73692, FileId: 0xa2000000005952, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T06:59:01.092 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_z5xgct4u.d1t.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73701, FileId: 0x4e000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T07:05:26.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T07:09:00.132 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_2p5x33rb.fvt.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73779, FileId: 0x58000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T07:12:00.162 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_15mg01by.enc.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73800, FileId: 0x5b000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T07:15:44.621 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 45118, Count: 6363, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-06-06T07:15:44.621 ProcessImageName: powershell.exe, Pid: 4384, TotalTime: 245, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 28% 2026-06-06T07:15:44.621 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-06T07:15:44.621 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 30, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_3.MAI, EstimatedImpact: 0% 2026-06-06T07:15:44.621 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33ae3982-d0bd-44b4-8d33-85f0239a34c7.tmp, EstimatedImpact: 0% 2026-06-06T07:15:44.621 ProcessImageName: updater.exe, Pid: 4372, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e05f669c-88a9-417c-bae7-cce2ebced07e.tmp, EstimatedImpact: 0% 2026-06-06T07:15:44.621 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\034ab8b3-1ebb-46bb-865f-6361a47e04f9.tmp, EstimatedImpact: 0% 2026-06-06T07:15:44.621 ProcessImageName: updater.exe, Pid: 5100, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47167595-245e-411b-8e87-67ced807ab24.tmp, EstimatedImpact: 0% 2026-06-06T07:15:44.621 ProcessImageName: updater.exe, Pid: 1236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68440838-3600-49ee-b126-8eb4e99ef9e8.tmp, EstimatedImpact: 0% 2026-06-06T07:15:44.621 ProcessImageName: updater.exe, Pid: 712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1561a9e2-9cfe-4f16-83fa-166c4994e9f5.tmp, EstimatedImpact: 0% 2026-06-06T07:16:00.186 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_oxb4seal.oqb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73828, FileId: 0x5f000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T07:17:00.186 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ctdsbsug.ecd.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73837, FileId: 0x60000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T07:19:00.196 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_qirofmlu.ol0.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73851, FileId: 0x62000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T07:20:31.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T07:20:41.184 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #73873, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T07:20:41.200 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #73875, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T07:20:51.199 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #73879, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T07:20:51.214 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #73880, FileId: 0x46580000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T07:20:51.214 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #73882, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T07:31:00.293 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_psnovgzc.pq4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #73962, FileId: 0x6f000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T07:35:36.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T07:49:00.385 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_v52bqi4g.ne4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #74133, FileId: 0x81000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T07:50:41.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T07:56:00.408 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_r0dgjtss.jqg.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #74188, FileId: 0x88000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T08:05:46.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T08:08:00.475 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_sjz4dn44.2bf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #74275, FileId: 0x94000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T08:20:51.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T08:35:56.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T08:45:00.736 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_qx4cg2wr.lmb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #74644, FileId: 0xbd000000005954, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T08:51:01.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T09:06:06.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T09:15:44.620 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 45680, Count: 6422, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\js\jquery-1.7.1.min.js, EstimatedImpact: 0% 2026-06-06T09:15:44.620 ProcessImageName: powershell.exe, Pid: 4384, TotalTime: 245, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 28% 2026-06-06T09:15:44.620 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-06T09:15:44.620 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 30, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_3.MAI, EstimatedImpact: 0% 2026-06-06T09:15:44.620 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33ae3982-d0bd-44b4-8d33-85f0239a34c7.tmp, EstimatedImpact: 0% 2026-06-06T09:15:44.620 ProcessImageName: updater.exe, Pid: 4372, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e05f669c-88a9-417c-bae7-cce2ebced07e.tmp, EstimatedImpact: 0% 2026-06-06T09:15:44.620 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eaba90e4-134d-422f-96a1-b2ef534d38b4.tmp, EstimatedImpact: 0% 2026-06-06T09:15:44.620 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\034ab8b3-1ebb-46bb-865f-6361a47e04f9.tmp, EstimatedImpact: 0% 2026-06-06T09:15:44.620 ProcessImageName: updater.exe, Pid: 712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1561a9e2-9cfe-4f16-83fa-166c4994e9f5.tmp, EstimatedImpact: 0% 2026-06-06T09:15:44.620 ProcessImageName: updater.exe, Pid: 932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81b8dd88-693d-404a-8a12-2fcee8fc037c.tmp, EstimatedImpact: 0% 2026-06-06T09:15:44.620 ProcessImageName: updater.exe, Pid: 5100, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47167595-245e-411b-8e87-67ced807ab24.tmp, EstimatedImpact: 0% 2026-06-06T09:15:44.620 ProcessImageName: updater.exe, Pid: 1236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68440838-3600-49ee-b126-8eb4e99ef9e8.tmp, EstimatedImpact: 0% 2026-06-06T09:20:50.652 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #74960, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T09:21:11.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T09:36:16.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T09:51:21.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T10:00:02.687 Job Notification: Process exited from job (4320) 2026-06-06T10:06:26.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T10:20:50.481 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #75431, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T10:21:31.455 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-06-06T10:27:53.236 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-06T10:27:53.236 [Cloud] Start of cloud request. Passive mode: 0 2026-06-06T10:27:53.236 [Cloud] Queued cloud request. 2026-06-06T10:27:53.236 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-06T10:27:53.267 Job Notification: New process added to job (2468) 2026-06-06T10:27:53.267 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 5B78E60B-7CF9-5F38-B880-162D537CA918) launched 2026-06-06T10:27:53.267 Job Notification: New process added to job (4676) 2026-06-06T10:27:53.283 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:2468] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4676]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-06T10:27:53.298 Job Notification: New process added to job (4220) 2026-06-06T10:27:53.298 Job Notification: Process exited from job (2468) 2026-06-06T10:27:53.298 Job Notification: Process exited from job (4676) 2026-06-06T10:27:53.314 [Cloud] Dequeued cloud request. 2026-06-06T10:27:53.314 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-06T10:27:55.249 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) BEGIN BM telemetry GUID:{EF5613A1-312E-F5D8-D132-6D400642E469} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:1532 ProcessCreationTime:134252152732247425 SessionID:0 CreationTime:06-06-2026 10:27:55 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1184:1, Operations:None END BM telemetry 2026-06-06T10:27:55.264 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-06T10:27:55.280 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE 2026-06-06T10:27:55.311 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-06T10:27:55.311 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-06T10:27:56.171 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-06T10:27:56.171 [Cloud] Start of cloud request. Passive mode: 0 2026-06-06T10:27:56.171 [Cloud] Queued cloud request. 2026-06-06T10:27:56.171 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-06T10:27:56.171 [Cloud] Dequeued cloud request. 2026-06-06T10:27:56.186 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-06T10:27:56.796 [Cloud] End of cloud request. 2026-06-06T10:27:57.296 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-06T10:27:57.936 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-06T10:27:57.936 [Cloud] Start of cloud request. Passive mode: 0 2026-06-06T10:27:57.936 [Cloud] Queued cloud request. 2026-06-06T10:27:57.936 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-06T10:27:57.936 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-06-06T10:27:57.936 [Cloud] Dequeued cloud request. 2026-06-06T10:27:57.936 [Cloud] Start of cloud request. Passive mode: 0 2026-06-06T10:27:57.936 [Cloud] Queued cloud request. 2026-06-06T10:27:57.936 [Cloud] Dequeued cloud request. 2026-06-06T10:27:57.936 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-06T10:27:57.936 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-06T10:27:58.077 [Cloud] End of cloud request. 2026-06-06T10:27:58.139 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-06T10:27:58.139 [Cloud] End of cloud request. 2026-06-06T10:27:58.578 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-06T10:28:03.564 [Cloud] End of cloud request. 2026-06-06T10:28:04.078 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-06T10:36:36.454 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T10:51:41.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T11:06:46.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T11:13:00.641 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_rj43vov0.2w1.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #75859, FileId: 0x49000000005956, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T11:15:44.635 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 49670, Count: 6693, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-06T11:15:44.635 ProcessImageName: powershell.exe, Pid: 4384, TotalTime: 245, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 28% 2026-06-06T11:15:44.635 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 45, Count: 18, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_3.MAI, EstimatedImpact: 0% 2026-06-06T11:15:44.635 ProcessImageName: wacs.exe, Pid: 1532, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-06T11:15:44.635 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\799aa797-73fd-492a-b534-8f4dc4083648.tmp, EstimatedImpact: 0% 2026-06-06T11:15:44.635 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-06T11:15:44.635 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33ae3982-d0bd-44b4-8d33-85f0239a34c7.tmp, EstimatedImpact: 0% 2026-06-06T11:15:44.635 ProcessImageName: updater.exe, Pid: 4372, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e05f669c-88a9-417c-bae7-cce2ebced07e.tmp, EstimatedImpact: 0% 2026-06-06T11:15:44.635 ProcessImageName: updater.exe, Pid: 5100, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47167595-245e-411b-8e87-67ced807ab24.tmp, EstimatedImpact: 0% 2026-06-06T11:15:44.635 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\034ab8b3-1ebb-46bb-865f-6361a47e04f9.tmp, EstimatedImpact: 0% 2026-06-06T11:15:44.635 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eaba90e4-134d-422f-96a1-b2ef534d38b4.tmp, EstimatedImpact: 0% 2026-06-06T11:15:44.635 ProcessImageName: updater.exe, Pid: 932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81b8dd88-693d-404a-8a12-2fcee8fc037c.tmp, EstimatedImpact: 0% 2026-06-06T11:15:44.635 ProcessImageName: updater.exe, Pid: 712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1561a9e2-9cfe-4f16-83fa-166c4994e9f5.tmp, EstimatedImpact: 0% 2026-06-06T11:15:44.635 ProcessImageName: updater.exe, Pid: 736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2be9b9eb-d036-4043-9f18-93145d24fc18.tmp, EstimatedImpact: 0% 2026-06-06T11:15:44.635 ProcessImageName: updater.exe, Pid: 1236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68440838-3600-49ee-b126-8eb4e99ef9e8.tmp, EstimatedImpact: 0% 2026-06-06T11:21:51.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T11:36:56.453 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T11:52:01.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T12:03:00.953 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_oe00h5be.lzw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #76252, FileId: 0x7c000000005956, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T12:07:06.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T12:22:11.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T12:23:01.036 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_nq2hbimx.zbn.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #76434, FileId: 0x93000000005956, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T12:37:16.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T12:52:21.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T13:07:26.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T13:15:44.650 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 49685, Count: 6695, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-06T13:15:44.650 ProcessImageName: powershell.exe, Pid: 4384, TotalTime: 245, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 28% 2026-06-06T13:15:44.650 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 60, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_3.MAI, EstimatedImpact: 0% 2026-06-06T13:15:44.650 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-06T13:15:44.650 ProcessImageName: wacs.exe, Pid: 1532, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-06T13:15:44.650 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\799aa797-73fd-492a-b534-8f4dc4083648.tmp, EstimatedImpact: 0% 2026-06-06T13:15:44.650 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33ae3982-d0bd-44b4-8d33-85f0239a34c7.tmp, EstimatedImpact: 0% 2026-06-06T13:15:44.650 ProcessImageName: updater.exe, Pid: 4372, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e05f669c-88a9-417c-bae7-cce2ebced07e.tmp, EstimatedImpact: 0% 2026-06-06T13:15:44.650 ProcessImageName: updater.exe, Pid: 736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2be9b9eb-d036-4043-9f18-93145d24fc18.tmp, EstimatedImpact: 0% 2026-06-06T13:15:44.650 ProcessImageName: updater.exe, Pid: 5056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1f102a85-26db-440a-93e2-979cd787eaad.tmp, EstimatedImpact: 0% 2026-06-06T13:15:44.650 ProcessImageName: updater.exe, Pid: 2868, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37f48a2e-2020-4f83-aefb-c3b8051f3c11.tmp, EstimatedImpact: 0% 2026-06-06T13:15:44.650 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eaba90e4-134d-422f-96a1-b2ef534d38b4.tmp, EstimatedImpact: 0% 2026-06-06T13:15:44.650 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\034ab8b3-1ebb-46bb-865f-6361a47e04f9.tmp, EstimatedImpact: 0% 2026-06-06T13:15:44.650 ProcessImageName: updater.exe, Pid: 932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81b8dd88-693d-404a-8a12-2fcee8fc037c.tmp, EstimatedImpact: 0% 2026-06-06T13:15:44.650 ProcessImageName: updater.exe, Pid: 5100, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47167595-245e-411b-8e87-67ced807ab24.tmp, EstimatedImpact: 0% 2026-06-06T13:15:44.650 ProcessImageName: updater.exe, Pid: 712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1561a9e2-9cfe-4f16-83fa-166c4994e9f5.tmp, EstimatedImpact: 0% 2026-06-06T13:15:44.650 ProcessImageName: updater.exe, Pid: 1236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68440838-3600-49ee-b126-8eb4e99ef9e8.tmp, EstimatedImpact: 0% 2026-06-06T13:20:50.563 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #76946, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T13:22:31.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T13:37:36.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T13:52:41.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T14:07:46.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T14:15:00.714 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_urqoy3l5.m4e.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #77480, FileId: 0xf000000005d95, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T14:22:51.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T14:37:56.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T14:45:00.926 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_az0kqkar.muq.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #77746, FileId: 0x2500000000842c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T14:53:01.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T15:08:06.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T15:15:44.663 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51277, Count: 6819, MaxTime: 359, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: powershell.exe, Pid: 4384, TotalTime: 245, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 28% 2026-06-06T15:15:44.663 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 60, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_3.MAI, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: wacs.exe, Pid: 1532, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-06T15:15:44.663 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\799aa797-73fd-492a-b534-8f4dc4083648.tmp, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: updater.exe, Pid: 3104, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2ec3d50-d6d6-4cfe-9983-eb469e629550.tmp, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33ae3982-d0bd-44b4-8d33-85f0239a34c7.tmp, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: updater.exe, Pid: 4372, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e05f669c-88a9-417c-bae7-cce2ebced07e.tmp, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: updater.exe, Pid: 5100, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47167595-245e-411b-8e87-67ced807ab24.tmp, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f37fdfee-d916-48bd-9499-573276fc6350.tmp, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: updater.exe, Pid: 5056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1f102a85-26db-440a-93e2-979cd787eaad.tmp, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eaba90e4-134d-422f-96a1-b2ef534d38b4.tmp, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: updater.exe, Pid: 2868, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37f48a2e-2020-4f83-aefb-c3b8051f3c11.tmp, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: updater.exe, Pid: 712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1561a9e2-9cfe-4f16-83fa-166c4994e9f5.tmp, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: updater.exe, Pid: 1236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68440838-3600-49ee-b126-8eb4e99ef9e8.tmp, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: updater.exe, Pid: 736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2be9b9eb-d036-4043-9f18-93145d24fc18.tmp, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: updater.exe, Pid: 932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81b8dd88-693d-404a-8a12-2fcee8fc037c.tmp, EstimatedImpact: 0% 2026-06-06T15:15:44.663 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\034ab8b3-1ebb-46bb-865f-6361a47e04f9.tmp, EstimatedImpact: 0% 2026-06-06T15:23:11.452 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T15:38:16.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T15:53:00.527 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_1f2rozej.ap5.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #78408, FileId: 0x2c2b00000001ed0b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T15:53:21.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T16:08:26.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T16:23:31.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T16:38:36.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T16:47:00.989 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_yvbeyhaz.o0d.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #78837, FileId: 0x110000000060f5, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T16:53:41.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T17:08:46.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T17:15:44.672 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51671, Count: 6889, MaxTime: 359, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: powershell.exe, Pid: 4384, TotalTime: 245, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 28% 2026-06-06T17:15:44.672 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 60, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_3.MAI, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: wacs.exe, Pid: 1532, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\799aa797-73fd-492a-b534-8f4dc4083648.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33ae3982-d0bd-44b4-8d33-85f0239a34c7.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 3104, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2ec3d50-d6d6-4cfe-9983-eb469e629550.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 4372, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e05f669c-88a9-417c-bae7-cce2ebced07e.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 5100, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47167595-245e-411b-8e87-67ced807ab24.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f37fdfee-d916-48bd-9499-573276fc6350.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b1b1ed5-d962-4940-86a2-1797a687b5c2.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 5056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1f102a85-26db-440a-93e2-979cd787eaad.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eaba90e4-134d-422f-96a1-b2ef534d38b4.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 1236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68440838-3600-49ee-b126-8eb4e99ef9e8.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1561a9e2-9cfe-4f16-83fa-166c4994e9f5.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 736, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2be9b9eb-d036-4043-9f18-93145d24fc18.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 932, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\81b8dd88-693d-404a-8a12-2fcee8fc037c.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\034ab8b3-1ebb-46bb-865f-6361a47e04f9.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 2868, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37f48a2e-2020-4f83-aefb-c3b8051f3c11.tmp, EstimatedImpact: 0% 2026-06-06T17:15:44.672 ProcessImageName: updater.exe, Pid: 4852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ebc604f-8d89-4abb-afb5-85f6913ee9db.tmp, EstimatedImpact: 0% 2026-06-06T17:23:51.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T17:26:00.273 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_l4vb0rmu.mry.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #79151, FileId: 0x2c4f00000001ed0b, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T17:38:56.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T17:54:01.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T18:09:06.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T18:24:11.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T18:31:00.792 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0mgrupth.txv.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #79657, FileId: 0x6c00000001ed4c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T18:39:16.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T18:54:21.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T19:09:26.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T19:15:44.685 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51671, Count: 6892, MaxTime: 359, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: powershell.exe, Pid: 4384, TotalTime: 245, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 28% 2026-06-06T19:15:44.685 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 60, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_3.MAI, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: wacs.exe, Pid: 1532, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-06T19:15:44.685 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\799aa797-73fd-492a-b534-8f4dc4083648.tmp, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33ae3982-d0bd-44b4-8d33-85f0239a34c7.tmp, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: updater.exe, Pid: 3104, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2ec3d50-d6d6-4cfe-9983-eb469e629550.tmp, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: updater.exe, Pid: 4372, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e05f669c-88a9-417c-bae7-cce2ebced07e.tmp, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: updater.exe, Pid: 5056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1f102a85-26db-440a-93e2-979cd787eaad.tmp, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: updater.exe, Pid: 1668, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f37fdfee-d916-48bd-9499-573276fc6350.tmp, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eaba90e4-134d-422f-96a1-b2ef534d38b4.tmp, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b1b1ed5-d962-4940-86a2-1797a687b5c2.tmp, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: updater.exe, Pid: 1236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\68440838-3600-49ee-b126-8eb4e99ef9e8.tmp, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: updater.exe, Pid: 4852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ebc604f-8d89-4abb-afb5-85f6913ee9db.tmp, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\034ab8b3-1ebb-46bb-865f-6361a47e04f9.tmp, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: updater.exe, Pid: 5100, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47167595-245e-411b-8e87-67ced807ab24.tmp, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: updater.exe, Pid: 2868, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37f48a2e-2020-4f83-aefb-c3b8051f3c11.tmp, EstimatedImpact: 0% 2026-06-06T19:15:44.685 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3df274c6-f70c-4105-968b-c337cc9ac0d6.tmp, EstimatedImpact: 0% 2026-06-06T19:20:41.846 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #80040, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T19:24:31.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T19:39:36.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T19:54:41.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T20:04:00.391 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_rs4mwk00.cy0.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #80382, FileId: 0xcc00000001ed4c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T20:09:46.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T20:24:51.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T20:39:56.451 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T20:55:01.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T21:05:00.758 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4rcxbypx.33l.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #80868, FileId: 0x10a00000001ed4c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T21:10:06.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T21:15:44.684 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51950, Count: 6906, MaxTime: 359, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: powershell.exe, Pid: 4384, TotalTime: 245, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 28% 2026-06-06T21:15:44.684 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 60, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_3.MAI, EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: updater.exe, Pid: 2112, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\799aa797-73fd-492a-b534-8f4dc4083648.tmp, EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33ae3982-d0bd-44b4-8d33-85f0239a34c7.tmp, EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: updater.exe, Pid: 3104, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2ec3d50-d6d6-4cfe-9983-eb469e629550.tmp, EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: updater.exe, Pid: 2052, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0f64d8b8-0c2c-48b5-a37e-5ba1e3005c31.tmp, EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: updater.exe, Pid: 4372, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e05f669c-88a9-417c-bae7-cce2ebced07e.tmp, EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: updater.exe, Pid: 2868, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37f48a2e-2020-4f83-aefb-c3b8051f3c11.tmp, EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: updater.exe, Pid: 4852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ebc604f-8d89-4abb-afb5-85f6913ee9db.tmp, EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: updater.exe, Pid: 5056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1f102a85-26db-440a-93e2-979cd787eaad.tmp, EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eaba90e4-134d-422f-96a1-b2ef534d38b4.tmp, EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: updater.exe, Pid: 2228, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c2d5f320-76b8-403a-b2af-1d2bd314cd10.tmp, EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3df274c6-f70c-4105-968b-c337cc9ac0d6.tmp, EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b1b1ed5-d962-4940-86a2-1797a687b5c2.tmp, EstimatedImpact: 0% 2026-06-06T21:15:44.684 ProcessImageName: updater.exe, Pid: 5100, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47167595-245e-411b-8e87-67ced807ab24.tmp, EstimatedImpact: 0% 2026-06-06T21:25:11.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T21:34:00.886 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_wfjlnpgt.bdl.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #81101, FileId: 0x12800000001ed4c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T21:40:16.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T21:55:21.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T22:10:26.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T22:20:51.169 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81494, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T22:25:31.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T22:40:36.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T22:55:41.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T23:10:46.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T23:15:44.694 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51950, Count: 6917, MaxTime: 359, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: powershell.exe, Pid: 4384, TotalTime: 245, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 28% 2026-06-06T23:15:44.694 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 135, Count: 33, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_3.MAI, EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33ae3982-d0bd-44b4-8d33-85f0239a34c7.tmp, EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: updater.exe, Pid: 3104, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2ec3d50-d6d6-4cfe-9983-eb469e629550.tmp, EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: updater.exe, Pid: 4372, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e05f669c-88a9-417c-bae7-cce2ebced07e.tmp, EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: updater.exe, Pid: 5100, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47167595-245e-411b-8e87-67ced807ab24.tmp, EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b1b1ed5-d962-4940-86a2-1797a687b5c2.tmp, EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: updater.exe, Pid: 5056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1f102a85-26db-440a-93e2-979cd787eaad.tmp, EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: updater.exe, Pid: 4852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ebc604f-8d89-4abb-afb5-85f6913ee9db.tmp, EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eaba90e4-134d-422f-96a1-b2ef534d38b4.tmp, EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: updater.exe, Pid: 4828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b3ba666-a663-465b-9971-770edb9de2de.tmp, EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: updater.exe, Pid: 2868, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37f48a2e-2020-4f83-aefb-c3b8051f3c11.tmp, EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: updater.exe, Pid: 2228, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c2d5f320-76b8-403a-b2af-1d2bd314cd10.tmp, EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3df274c6-f70c-4105-968b-c337cc9ac0d6.tmp, EstimatedImpact: 0% 2026-06-06T23:15:44.694 ProcessImageName: updater.exe, Pid: 3052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a57ce2b3-6528-4c08-b54d-c2c2c26130f5.tmp, EstimatedImpact: 0% 2026-06-06T23:20:49.651 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #81980, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-06T23:25:51.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T23:40:56.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-06T23:56:01.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T00:11:06.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T00:20:41.171 [RTP] [Mini-filter] Unsuccessful scan status(#300): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #82651, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T00:26:11.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T00:41:16.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T00:56:21.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T01:05:00.128 [RTP] [Mini-filter] Unsuccessful scan status(#310): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ojfaxo1l.fff.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #82991, FileId: 0x145d0000000090ad, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T01:11:26.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T01:15:31.435 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-06-07T01:15:31.450 Job Notification: New process added to job (2572) 2026-06-07T01:15:31.466 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-06-07T01:15:31.466 Job Notification: New process added to job (4632) 2026-06-07T01:15:31.466 Aggressive catchup quick scan threshold: 779897391904 / 25920000000000 2026-06-07T01:15:31.481 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:2572] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4632]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-07T01:15:31.591 Job Notification: New process added to job (2032) 2026-06-07T01:15:31.591 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-06-07T01:15:31.607 Job Notification: New process added to job (1416) 2026-06-07T01:15:31.607 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:2032] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:1416]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-07T01:15:31.872 Job Notification: New process added to job (548) 2026-06-07T01:15:31.872 Task(GetDeviceTicket -AccessKey 873DD0F9-FC7B-329A-5E82-B576576E1920 ) launched as network service 2026-06-07T01:15:31.888 Job Notification: Process exited from job (548) 2026-06-07T01:15:32.013 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-07T01:15:32.013 [RTP] Duplicating the current plugin configuration object... 2026-06-07T01:15:32.013 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-07T01:15:32.013 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-07T01:15:32.013 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-07T01:15:32.013 [RTP] No config change detected. Not updating plugin configuration. 2026-06-07T01:15:32.013 [RTP] No config changes found. No configuration switch. 2026-06-07T01:15:32.013 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-07T01:15:33.001 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-07T01:15:33.001 [Cloud] Start of cloud request. Passive mode: 0 2026-06-07T01:15:33.001 [Cloud] Queued cloud request. 2026-06-07T01:15:33.001 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-07T01:15:33.001 [Cloud] Dequeued cloud request. 2026-06-07T01:15:33.001 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-06-07T01:15:33.001 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-07T01:15:33.001 [Cloud] Start of cloud request. Passive mode: 0 2026-06-07T01:15:33.001 [Cloud] Queued cloud request. 2026-06-07T01:15:33.001 [Cloud] Dequeued cloud request. 2026-06-07T01:15:33.001 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-07T01:15:33.220 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-07T01:15:33.220 [Cloud] End of cloud request. 2026-06-07T01:15:33.220 [Cloud] End of cloud request. 2026-06-07T01:15:33.512 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-07T01:15:44.705 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51950, Count: 6918, MaxTime: 359, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: powershell.exe, Pid: 4384, TotalTime: 245, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 28% 2026-06-07T01:15:44.705 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 135, Count: 33, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_3.MAI, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 106, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db87d0a9-c310-44f8-8611-d61b60beef4a.tmp, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: updater.exe, Pid: 3104, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2ec3d50-d6d6-4cfe-9983-eb469e629550.tmp, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33ae3982-d0bd-44b4-8d33-85f0239a34c7.tmp, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: updater.exe, Pid: 4372, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e05f669c-88a9-417c-bae7-cce2ebced07e.tmp, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: updater.exe, Pid: 5100, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\47167595-245e-411b-8e87-67ced807ab24.tmp, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: updater.exe, Pid: 2868, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\37f48a2e-2020-4f83-aefb-c3b8051f3c11.tmp, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3df274c6-f70c-4105-968b-c337cc9ac0d6.tmp, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: updater.exe, Pid: 5056, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1f102a85-26db-440a-93e2-979cd787eaad.tmp, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: updater.exe, Pid: 4852, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5ebc604f-8d89-4abb-afb5-85f6913ee9db.tmp, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: updater.exe, Pid: 5024, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\eaba90e4-134d-422f-96a1-b2ef534d38b4.tmp, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: updater.exe, Pid: 4828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3b3ba666-a663-465b-9971-770edb9de2de.tmp, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: updater.exe, Pid: 4196, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8bda29ab-c771-4599-beb1-553e2253faa3.tmp, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: updater.exe, Pid: 3052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a57ce2b3-6528-4c08-b54d-c2c2c26130f5.tmp, EstimatedImpact: 0% 2026-06-07T01:15:44.705 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7b1b1ed5-d962-4940-86a2-1797a687b5c2.tmp, EstimatedImpact: 0% 2026-06-07T01:16:01.762 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\43BF7909-C07F-42A7-8DB0-D9FBAC892A318b4.1dcf61b332ba9e5 2026-06-07T01:16:01.825 Verifying engine and signature files (source: 0) ... 2026-06-07T01:16:01.825 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{38BB46C3-0E0B-45EA-969E-67F9F6C489B2}\mpengine.dll] due to PPL. 2026-06-07T01:16:01.825 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{38BB46C3-0E0B-45EA-969E-67F9F6C489B2}\mpasbase.vdm] (file in cache) 2026-06-07T01:16:01.825 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{38BB46C3-0E0B-45EA-969E-67F9F6C489B2}\mpasdlta.vdm]. File not in cache (0x1) 2026-06-07T01:16:01.840 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{38BB46C3-0E0B-45EA-969E-67F9F6C489B2}\mpasdlta.vdm] 2026-06-07T01:16:01.840 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{38BB46C3-0E0B-45EA-969E-67F9F6C489B2}\mpavbase.vdm] (file in cache) 2026-06-07T01:16:01.840 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{38BB46C3-0E0B-45EA-969E-67F9F6C489B2}\mpavdlta.vdm]. File not in cache (0x1) 2026-06-07T01:16:01.856 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{38BB46C3-0E0B-45EA-969E-67F9F6C489B2}\mpavdlta.vdm] 2026-06-07T01:16:01.981 [Engine] IsHybridMode: 0 2026-06-07T01:16:01.981 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-06-07T01:16:02.061 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-70EA7D6DE08311F9C1616AA0A8EBCEE50893235E.bin): 0x00000002 2026-06-07T01:16:02.061 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-70EA7D6DE08311F9C1616AA0A8EBCEE50893235E.bin) 2026-06-07T01:16:02.061 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-06-07T01:16:02.061 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-06-07T01:16:02.061 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-06-07T01:16:02.061 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-06-07T01:16:10.179 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-06-07T01:16:10.179 [AutoExclusion] Applied roles from cache. 2026-06-07T01:16:10.179 [AutoExclusion] Started roles monitoring. 2026-06-07T01:16:10.179 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFABD405810, lRefCount: 5, hr=0 2026-06-07T01:16:10.179 [Engine] New active engine 00007FFABC285810 replacing engine 00007FFABD405810. Number of active engines: 2 2026-06-07T01:16:10.179 EngineInit:Global ASOC is enabled 2026-06-07T01:16:10.179 EngineInit:ASOO is enabled for developer volumes 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-07T01:16:10.195 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-07T01:16:10.211 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-06-07T01:16:10.211 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-06-07T01:16:10.211 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-06-07T01:16:10.211 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-06-07T01:16:10.211 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-06-07T01:16:10.226 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-06-07T01:16:10.226 [Plugin] Initializing RTP plugin state... 2026-06-07T01:16:10.226 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-06-07T01:16:10.226 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎06‎-‎06‎-‎2026 03:15:44 Last Perf:‎06‎-‎06‎-‎2026 03:15:44 First RTP Scan:‎06‎-‎06‎-‎2026 03:16:00 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:604 Misses:7010 BM Queue:0,68,0 Proc:0,60,0 File:0,60,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:83185 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1075284974 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:59953 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:147374 TotalHits:4201117 InstanceCacheInserts:7061 InstanceCacheUpdates:0 InstanceCacheDeletes:3753 InstanceCacheHits:367 InstanceCacheMisses:118406 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:3ms (9667/3089) Success: 3089, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-06-07T01:16:10.226 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{38BB46C3-0E0B-45EA-969E-67F9F6C489B2} 2026-06-07T01:16:10.226 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{23183CA8-E710-4C3E-8341-E8B19102FBAC}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{23183CA8-E710-4C3E-8341-E8B19102FBAC}\mpengine.dll cannot be deleted, hr=0x80070005 2026-06-07T01:16:10.226 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-06-07T01:16:10.226 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{78416419-AED9-4A83-A6B8-16B76D881D75} removed 2026-06-07T01:16:10.226 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-07T01:16:10.226 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-07T01:16:10.226 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-07T01:16:10.226 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-07T01:16:10.226 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:06-07-2026 01:16:10 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:06-07-2026 01:16:10 2026-06-07T01:16:10.226 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-06-07T01:16:10.226 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-06-07T01:16:10.226 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-07T01:16:10.226 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-06-07T01:16:10.226 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-07T01:16:10.226 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-07T01:16:10.226 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-07T01:16:10.226 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-07T01:16:10.226 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-07T01:16:10.226 MdCoreSvc is supported in this platform and OS Signature updated on 06-07-2026 01:16:10 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.303.0 AV Signature Version: 1.451.303.0 ************************************************************ 2026-06-07T01:16:10.226 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-06-07T01:16:10.226 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\43BF7909-C07F-42A7-8DB0-D9FBAC892A318b4.1dcf61b332ba9e5 2026-06-07T01:16:10.242 Process scan (postsignatureupdatescan) started. 2026-06-07T01:16:10.289 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-06-07T01:16:10.289 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 06-07-2026 01:16:10 ************************************************************ 2026-06-07T01:16:10.304 Job Notification: Process exited from job (2032) 2026-06-07T01:16:10.304 Job Notification: Process exited from job (2572) 2026-06-07T01:16:10.320 Job Notification: Process exited from job (4632) 2026-06-07T01:16:10.320 Job Notification: Process exited from job (1416) 2026-06-07T01:16:10.507 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-06-07T01:16:10.507 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-06-07T01:16:10.507 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-06-07T01:16:10.507 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-06-07T01:16:10.507 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-06-07T01:16:10.523 [Engine] Engine 00007FFABD405810 no longer in use. Number of active engines: 1 2026-06-07T01:16:10.523 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-07T01:16:10.523 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-06-07T01:16:10.726 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-06-07T01:16:10.726 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-06-07T01:16:10.726 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-07T01:16:11.711 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51950, Count: 6918, MaxTime: 359, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-07T01:16:11.711 ProcessImageName: powershell.exe, Pid: 4384, TotalTime: 245, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.P521220ea#\35ef65d2ce08ac71ceebef1b6316a209\Microsoft.PowerShell.Commands.Utility.ni.dll, EstimatedImpact: 28% 2026-06-07T01:16:11.711 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 135, Count: 33, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_8b4_3.MAI, EstimatedImpact: 0% 2026-06-07T01:16:11.711 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 106, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-06-07T01:16:11.711 ProcessImageName: updater.exe, Pid: 5080, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\db87d0a9-c310-44f8-8611-d61b60beef4a.tmp, EstimatedImpact: 0% 2026-06-07T01:16:11.711 ProcessImageName: updater.exe, Pid: 4144, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\33ae3982-d0bd-44b4-8d33-85f0239a34c7.tmp, EstimatedImpact: 0% 2026-06-07T01:16:11.711 ProcessImageName: updater.exe, Pid: 3104, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b2ec3d50-d6d6-4cfe-9983-eb469e629550.tmp, EstimatedImpact: 0% 2026-06-07T01:16:11.757 [Engine] RSIG_UNLOADENGINE, 00007FFABD405810, err=0x0 2026-06-07T01:16:11.773 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{23183CA8-E710-4C3E-8341-E8B19102FBAC} removed 2026-06-07T01:16:15.589 Process scan (postsignatureupdatescan) completed. 2026-06-07T01:20:00.204 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_zls3id13.uca.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #83352, FileId: 0x17000000008f8d, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T01:20:40.371 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #83387, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T01:20:40.386 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #83389, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T01:20:50.385 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #83394, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T01:20:50.400 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #83396, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T01:21:10.197 [RbM] Setting Last known good engine candidate. hr = 0 2026-06-07T01:26:08.317 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b94_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #84667, FileId: 0x68000000005943, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T01:26:19.742 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b94_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #85117, FileId: 0x20000000008f8d, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T01:26:19.742 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b96_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #85119, FileId: 0x6c000000005943, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T01:26:31.450 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T01:41:36.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T01:56:41.449 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T01:57:00.427 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ltqzyza4.ajz.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #85420, FileId: 0x3f000000008f8d, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:05:00.440 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ksrndwgm.gf2.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #85476, FileId: 0x14700000000090ad, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:08:00.464 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_f0p05tlr.jlu.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #85501, FileId: 0x14730000000090ad, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:11:46.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T02:13:00.498 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_nbu52yne.fui.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #85539, FileId: 0x14780000000090ad, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:14:00.508 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_kmvjykrx.2mj.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #85547, FileId: 0x14790000000090ad, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:15:00.518 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_mhvtd0ft.xlx.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #85554, FileId: 0x147a0000000090ad, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:20:38.496 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85605, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:20:38.511 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85607, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:20:48.499 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85611, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:20:48.515 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85613, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:20:48.515 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85615, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:20:48.515 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #85617, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:23:00.583 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_puxtk5w0.t4f.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #85645, FileId: 0x14830000000090ad, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:26:51.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T02:30:00.622 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0gumdd0c.5o1.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #85697, FileId: 0x148a0000000090ad, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:32:00.650 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_zcoev2nb.fiw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #85711, FileId: 0x148c0000000090ad, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:34:00.671 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xc3mel52.jom.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #85725, FileId: 0x148e0000000090ad, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T02:41:56.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T02:57:01.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T03:09:00.901 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_p2hppnjz.1a2.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #86080, FileId: 0xf2400000000adfa, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T03:10:00.906 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_5t3rxjfk.lxc.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #86087, FileId: 0xf2500000000adfa, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T03:12:06.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T03:15:00.925 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_mnyzy5a2.mn3.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #86122, FileId: 0xf2a00000000adfa, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T03:16:00.929 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_llgetlbc.fix.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #86129, FileId: 0xf2b00000000adfa, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T03:16:10.179 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 49067, Count: 6595, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 1% 2026-06-07T03:16:10.179 ProcessImageName: powershell.exe, Pid: 3824, TotalTime: 307, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pb378ec07#\ba1ae1f2ea97b15e3526960dce8d8d9c\Microsoft.PowerShell.ConsoleHost.ni.dll, EstimatedImpact: 35% 2026-06-07T03:16:10.179 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 15, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b96_2.MAI, EstimatedImpact: 0% 2026-06-07T03:16:10.179 ProcessImageName: updater.exe, Pid: 1268, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92ebe189-052f-4130-83cc-f7ff13aa202f.tmp, EstimatedImpact: 0% 2026-06-07T03:16:10.179 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\decec28f-424b-4eb3-a73b-9e120a04c1a9.tmp, EstimatedImpact: 0% 2026-06-07T03:20:39.825 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #86174, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T03:20:39.840 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #86176, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T03:20:49.839 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #86180, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T03:20:49.854 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #86182, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T03:20:49.854 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #86184, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T03:25:00.977 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_pqvst0dp.gml.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #86228, FileId: 0xf3500000000adfa, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T03:26:00.982 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vej3tvui.gux.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #86235, FileId: 0xf3600000000adfa, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T03:27:11.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T03:35:41.725 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:BB19BE61-27C1-4AED-87D6-DBBA5A76D9CF, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-06-07T03:35:41.725 Scheduled scan with Id BB19BE61-27C1-4AED-87D6-DBBA5A76D9CF configured CPU priority: normal (LowCpuPriority: 0) 2026-06-07T03:35:41.725 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-07T03:35:41.725 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-06-07T03:35:41.725 [SFC] System file cache build is not needed (already completed) 2026-06-07T03:35:54.679 Engine:Triggered AR EMS scan 2026-06-07T03:35:54.679 Engine:EMS scan for process: lsass pid: 616, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.679 Engine:EMS scan for process: svchost pid: 704, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.694 Engine:EMS scan for process: svchost pid: 760, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.710 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.710 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.726 Engine:EMS scan for process: svchost pid: 972, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.741 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.741 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.757 Engine:EMS scan for process: svchost pid: 724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.772 Engine:EMS scan for process: svchost pid: 1160, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.772 Engine:EMS scan for process: svchost pid: 1184, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.788 Engine:EMS scan for process: svchost pid: 1368, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.804 Engine:EMS scan for process: svchost pid: 2012, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.804 Engine:EMS scan for process: svchost pid: 1924, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.819 Engine:EMS scan for process: svchost pid: 1956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.819 Engine:EMS scan for process: svchost pid: 2740, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.835 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:35:54.835 Engine:EMS scan for process: svchost pid: 4436, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-07T03:36:09.076 QuickScan:ScanID:BB19BE61-27C1-4AED-87D6-DBBA5A76D9CF: Quick scan finished with error 0 2026-06-07T03:36:09.076 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-07T03:36:09.586 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-07T03:36:09.586 [RTP] Duplicating the current plugin configuration object... 2026-06-07T03:36:09.586 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-07T03:36:09.586 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-07T03:36:09.586 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-07T03:36:09.586 [RTP] No config change detected. Not updating plugin configuration. 2026-06-07T03:36:09.586 [RTP] No config changes found. No configuration switch. 2026-06-07T03:36:09.586 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-07T03:38:01.038 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_der5po0a.ixf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #86452, FileId: 0x64000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T03:42:16.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T03:43:01.057 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_2majyn0s.1wi.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #86487, FileId: 0x69000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T03:57:21.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T04:10:00.274 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_cnabqbad.ffv.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #86686, FileId: 0x84000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T04:12:26.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T04:20:41.573 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #86773, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T04:20:41.588 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #86775, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T04:20:51.581 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #86780, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T04:20:51.597 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #86783, FileId: 0x46580000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T04:27:31.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T04:29:00.386 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_nbo5xtac.mo3.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #86843, FileId: 0x98000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T04:42:36.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T04:51:00.512 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vydfsljn.u1d.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87022, FileId: 0xaf000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T04:54:00.525 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_kodu5nze.4qk.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87047, FileId: 0xb2000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T04:57:41.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T05:12:46.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T05:16:10.187 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 49188, Count: 6607, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-06-07T05:16:10.187 ProcessImageName: powershell.exe, Pid: 3824, TotalTime: 307, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pb378ec07#\ba1ae1f2ea97b15e3526960dce8d8d9c\Microsoft.PowerShell.ConsoleHost.ni.dll, EstimatedImpact: 35% 2026-06-07T05:16:10.187 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 30, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b96_2.MAI, EstimatedImpact: 0% 2026-06-07T05:16:10.187 ProcessImageName: updater.exe, Pid: 1268, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92ebe189-052f-4130-83cc-f7ff13aa202f.tmp, EstimatedImpact: 0% 2026-06-07T05:16:10.187 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\decec28f-424b-4eb3-a73b-9e120a04c1a9.tmp, EstimatedImpact: 0% 2026-06-07T05:16:10.187 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\749ee3e6-59a8-4025-ac48-ebcea55b3ba3.tmp, EstimatedImpact: 0% 2026-06-07T05:16:10.187 ProcessImageName: updater.exe, Pid: 840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff5ae067-ac70-4569-bd9c-be4749275ec7.tmp, EstimatedImpact: 0% 2026-06-07T05:17:00.676 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_zdbxlfig.jz0.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87214, FileId: 0xc9000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T05:19:00.702 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4wzboq1t.1sh.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87233, FileId: 0xcb000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T05:20:42.283 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87256, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T05:20:42.299 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87258, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T05:20:52.302 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87263, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T05:20:52.302 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87265, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T05:20:52.548 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87269, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T05:20:52.564 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87271, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T05:22:00.716 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4bghpuf4.rcv.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87281, FileId: 0xd1000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T05:27:51.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T05:37:00.798 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_hhzznfy0.cnb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87399, FileId: 0xe0000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T05:38:00.818 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_e5wvdgsf.w2z.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87406, FileId: 0xe1000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T05:42:56.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T05:51:00.850 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_c4nuhdfh.5ow.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87505, FileId: 0xee000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T05:52:00.850 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_y4t2d1qo.hps.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87524, FileId: 0xef000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T05:55:00.857 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_y00mk4ss.nwo.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87545, FileId: 0xf2000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T05:58:01.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T05:59:00.882 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_hli2oqto.5ba.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87594, FileId: 0xf6000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:04:00.942 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_fnqznrro.ua2.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87629, FileId: 0xfb000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:11:00.973 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_qqou0zno.vaa.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87698, FileId: 0x102000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:12:01.000 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_f0uekcyl.esl.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87705, FileId: 0x103000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:13:01.005 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bnhsg3ez.5tl.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87712, FileId: 0x104000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:13:06.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T06:14:01.021 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_hqf45yfv.coc.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87719, FileId: 0x105000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:20:42.043 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87776, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:20:42.059 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87778, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:20:52.058 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87782, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:20:52.073 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #87785, FileId: 0xd00000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:23:01.063 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_pdoitrn3.qj4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87805, FileId: 0x10f000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:28:11.448 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T06:30:00.137 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_saup0l1k.axc.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87856, FileId: 0x116000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:31:00.168 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_f2d2uzcj.abf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87863, FileId: 0x117000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:32:00.168 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_velx15fi.5z2.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87870, FileId: 0x118000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:43:16.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T06:45:00.251 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_brt2zhn0.qv2.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #87988, FileId: 0x125000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:50:00.279 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0rmo2ekm.qdg.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88024, FileId: 0x12a000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:54:00.318 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_rpxl00ug.b3c.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88055, FileId: 0x12e000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T06:58:21.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T07:08:00.364 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ffnt2q22.qow.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88169, FileId: 0x13c000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T07:13:26.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T07:16:10.193 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 49233, Count: 6615, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-06-07T07:16:10.193 ProcessImageName: powershell.exe, Pid: 3824, TotalTime: 307, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pb378ec07#\ba1ae1f2ea97b15e3526960dce8d8d9c\Microsoft.PowerShell.ConsoleHost.ni.dll, EstimatedImpact: 35% 2026-06-07T07:16:10.193 ProcessImageName: updater.exe, Pid: 800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c39906a-ebe2-41f0-a693-773e012d62b3.tmp, EstimatedImpact: 0% 2026-06-07T07:16:10.193 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 30, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b96_2.MAI, EstimatedImpact: 0% 2026-06-07T07:16:10.193 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-07T07:16:10.193 ProcessImageName: updater.exe, Pid: 1268, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92ebe189-052f-4130-83cc-f7ff13aa202f.tmp, EstimatedImpact: 0% 2026-06-07T07:16:10.193 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\decec28f-424b-4eb3-a73b-9e120a04c1a9.tmp, EstimatedImpact: 0% 2026-06-07T07:16:10.193 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\749ee3e6-59a8-4025-ac48-ebcea55b3ba3.tmp, EstimatedImpact: 0% 2026-06-07T07:16:10.193 ProcessImageName: updater.exe, Pid: 2496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3eba0798-acbe-4830-bba5-83a5c39d9ca2.tmp, EstimatedImpact: 0% 2026-06-07T07:16:10.193 ProcessImageName: updater.exe, Pid: 840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff5ae067-ac70-4569-bd9c-be4749275ec7.tmp, EstimatedImpact: 0% 2026-06-07T07:17:00.380 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_cm3vs10r.drn.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88231, FileId: 0x145000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T07:20:00.375 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_jo1lm2tk.qde.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88252, FileId: 0x148000000013a4f, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T07:20:41.045 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88267, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T07:20:41.060 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88269, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T07:20:51.053 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88286, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T07:20:51.053 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88287, FileId: 0x46580000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T07:20:51.069 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88289, FileId: 0x46580000000004f2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-06-07T07:28:23.236 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-07T07:28:23.236 [Cloud] Start of cloud request. Passive mode: 0 2026-06-07T07:28:23.236 [Cloud] Queued cloud request. 2026-06-07T07:28:23.236 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-07T07:28:23.236 [Cloud] Dequeued cloud request. 2026-06-07T07:28:23.236 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-07T07:28:23.555 [Cloud] End of cloud request. 2026-06-07T07:28:23.555 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-06-07T07:28:23.555 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe BEGIN BM telemetry GUID:{6BD07CAF-A5D2-7732-9250-C2696DD6B9A4} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:2116 ProcessCreationTime:134252909032250019 SessionID:0 CreationTime:06-07-2026 07:28:23 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1184:1, Operations:None END BM telemetry 2026-06-07T07:28:23.570 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE 2026-06-07T07:28:23.602 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-07T07:28:23.602 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-07T07:28:24.211 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-07T07:28:24.477 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-07T07:28:24.477 [Cloud] Start of cloud request. Passive mode: 0 2026-06-07T07:28:24.477 [Cloud] Queued cloud request. 2026-06-07T07:28:24.477 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-07T07:28:24.492 [Cloud] Dequeued cloud request. 2026-06-07T07:28:24.695 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-07T07:28:25.461 [Cloud] End of cloud request. 2026-06-07T07:28:25.961 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-07T07:28:26.149 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-07T07:28:26.149 [Cloud] Start of cloud request. Passive mode: 0 2026-06-07T07:28:26.149 [Cloud] Queued cloud request. 2026-06-07T07:28:26.149 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-07T07:28:26.149 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-06-07T07:28:26.149 [Cloud] Dequeued cloud request. 2026-06-07T07:28:26.149 [Cloud] Start of cloud request. Passive mode: 0 2026-06-07T07:28:26.149 [Cloud] Queued cloud request. 2026-06-07T07:28:26.149 [Cloud] Dequeued cloud request. 2026-06-07T07:28:26.149 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-07T07:28:26.149 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-07T07:28:26.274 [Cloud] End of cloud request. 2026-06-07T07:28:26.289 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-07T07:28:26.289 [Cloud] End of cloud request. 2026-06-07T07:28:26.786 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-07T07:28:31.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T07:36:00.483 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_aeim2dwz.os4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88432, FileId: 0x385a000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T07:37:00.498 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3xg0g3q1.ere.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88439, FileId: 0x385b000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T07:38:00.508 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_n44g2yfm.vzh.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88446, FileId: 0x385c000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T07:43:36.446 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T07:44:00.531 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_c5cuoc51.gfe.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88488, FileId: 0x3862000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T07:58:41.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T08:13:46.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T08:18:00.787 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ngu55gb0.h25.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88741, FileId: 0x3887000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T08:20:00.823 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_sispcnp4.fav.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88755, FileId: 0x3889000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T08:20:40.691 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88769, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T08:20:40.706 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88771, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T08:20:50.693 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88775, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T08:20:50.693 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88777, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T08:20:50.708 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88779, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T08:20:50.708 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #88781, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T08:21:00.828 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_nzpavnqa.zr2.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88785, FileId: 0x388b000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T08:28:51.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T08:30:00.839 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bqmrod0h.w0o.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88860, FileId: 0x3894000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T08:40:00.902 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_wgc1cqus.gm1.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88940, FileId: 0x389e000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T08:43:56.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T08:47:00.946 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_y5crgfzg.oyr.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #88989, FileId: 0x38a5000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T08:59:01.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T09:14:06.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T09:16:10.197 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 49725, Count: 6631, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-06-07T09:16:10.197 ProcessImageName: powershell.exe, Pid: 3824, TotalTime: 307, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pb378ec07#\ba1ae1f2ea97b15e3526960dce8d8d9c\Microsoft.PowerShell.ConsoleHost.ni.dll, EstimatedImpact: 35% 2026-06-07T09:16:10.197 ProcessImageName: wacs.exe, Pid: 2116, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-07T09:16:10.197 ProcessImageName: updater.exe, Pid: 800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c39906a-ebe2-41f0-a693-773e012d62b3.tmp, EstimatedImpact: 0% 2026-06-07T09:16:10.197 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 30, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b96_2.MAI, EstimatedImpact: 0% 2026-06-07T09:16:10.197 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-07T09:16:10.197 ProcessImageName: updater.exe, Pid: 1268, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92ebe189-052f-4130-83cc-f7ff13aa202f.tmp, EstimatedImpact: 0% 2026-06-07T09:16:10.197 ProcessImageName: updater.exe, Pid: 2496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3eba0798-acbe-4830-bba5-83a5c39d9ca2.tmp, EstimatedImpact: 0% 2026-06-07T09:16:10.197 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9ee0ca6-5e47-476a-afd1-9a6505cd5021.tmp, EstimatedImpact: 0% 2026-06-07T09:16:10.197 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c15aa3c-bdf7-4da1-9f04-72721683d244.tmp, EstimatedImpact: 0% 2026-06-07T09:16:10.197 ProcessImageName: updater.exe, Pid: 840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff5ae067-ac70-4569-bd9c-be4749275ec7.tmp, EstimatedImpact: 0% 2026-06-07T09:16:10.197 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\decec28f-424b-4eb3-a73b-9e120a04c1a9.tmp, EstimatedImpact: 0% 2026-06-07T09:16:10.197 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\749ee3e6-59a8-4025-ac48-ebcea55b3ba3.tmp, EstimatedImpact: 0% 2026-06-07T09:29:00.244 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4vg2fdwm.rbv.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #89326, FileId: 0x38d0000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T09:29:11.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T09:44:16.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T09:59:21.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T10:14:26.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T10:20:52.055 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #89738, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T10:28:06.314 Job Notification: Process exited from job (4220) 2026-06-07T10:29:31.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T10:44:36.447 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T10:59:00.740 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_pwwf4gsv.1ru.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #90034, FileId: 0x3930000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T10:59:41.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T11:14:46.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T11:16:10.206 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 50405, Count: 6690, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-06-07T11:16:10.206 ProcessImageName: powershell.exe, Pid: 3824, TotalTime: 307, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pb378ec07#\ba1ae1f2ea97b15e3526960dce8d8d9c\Microsoft.PowerShell.ConsoleHost.ni.dll, EstimatedImpact: 35% 2026-06-07T11:16:10.206 ProcessImageName: wacs.exe, Pid: 2116, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-07T11:16:10.206 ProcessImageName: updater.exe, Pid: 5028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b443e19-9081-4322-bcba-44422f4c6b33.tmp, EstimatedImpact: 0% 2026-06-07T11:16:10.206 ProcessImageName: updater.exe, Pid: 800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c39906a-ebe2-41f0-a693-773e012d62b3.tmp, EstimatedImpact: 0% 2026-06-07T11:16:10.206 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 30, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b96_2.MAI, EstimatedImpact: 0% 2026-06-07T11:16:10.206 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-07T11:16:10.206 ProcessImageName: updater.exe, Pid: 1268, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92ebe189-052f-4130-83cc-f7ff13aa202f.tmp, EstimatedImpact: 0% 2026-06-07T11:16:10.206 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\decec28f-424b-4eb3-a73b-9e120a04c1a9.tmp, EstimatedImpact: 0% 2026-06-07T11:16:10.206 ProcessImageName: updater.exe, Pid: 2496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3eba0798-acbe-4830-bba5-83a5c39d9ca2.tmp, EstimatedImpact: 0% 2026-06-07T11:16:10.206 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9ee0ca6-5e47-476a-afd1-9a6505cd5021.tmp, EstimatedImpact: 0% 2026-06-07T11:16:10.206 ProcessImageName: updater.exe, Pid: 4012, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd90e0a6-d5b4-4136-bde6-7ae885eb295f.tmp, EstimatedImpact: 0% 2026-06-07T11:16:10.206 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c15aa3c-bdf7-4da1-9f04-72721683d244.tmp, EstimatedImpact: 0% 2026-06-07T11:16:10.206 ProcessImageName: updater.exe, Pid: 840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff5ae067-ac70-4569-bd9c-be4749275ec7.tmp, EstimatedImpact: 0% 2026-06-07T11:16:10.206 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\749ee3e6-59a8-4025-ac48-ebcea55b3ba3.tmp, EstimatedImpact: 0% 2026-06-07T11:27:00.903 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_gtt0nh5q.3ss.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #90259, FileId: 0x394d000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T11:29:51.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T11:44:56.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T12:00:01.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T12:15:06.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T12:20:50.802 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #90713, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T12:30:11.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T12:45:16.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T13:00:21.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T13:15:26.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T13:16:10.211 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 50405, Count: 6690, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-06-07T13:16:10.211 ProcessImageName: powershell.exe, Pid: 3824, TotalTime: 307, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pb378ec07#\ba1ae1f2ea97b15e3526960dce8d8d9c\Microsoft.PowerShell.ConsoleHost.ni.dll, EstimatedImpact: 35% 2026-06-07T13:16:10.211 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-07T13:16:10.211 ProcessImageName: wacs.exe, Pid: 2116, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-07T13:16:10.211 ProcessImageName: updater.exe, Pid: 5028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b443e19-9081-4322-bcba-44422f4c6b33.tmp, EstimatedImpact: 0% 2026-06-07T13:16:10.211 ProcessImageName: updater.exe, Pid: 800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c39906a-ebe2-41f0-a693-773e012d62b3.tmp, EstimatedImpact: 0% 2026-06-07T13:16:10.211 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 30, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b96_2.MAI, EstimatedImpact: 0% 2026-06-07T13:16:10.211 ProcessImageName: updater.exe, Pid: 1268, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92ebe189-052f-4130-83cc-f7ff13aa202f.tmp, EstimatedImpact: 0% 2026-06-07T13:16:10.211 ProcessImageName: updater.exe, Pid: 840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff5ae067-ac70-4569-bd9c-be4749275ec7.tmp, EstimatedImpact: 0% 2026-06-07T13:16:10.211 ProcessImageName: updater.exe, Pid: 2496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3eba0798-acbe-4830-bba5-83a5c39d9ca2.tmp, EstimatedImpact: 0% 2026-06-07T13:16:10.211 ProcessImageName: updater.exe, Pid: 864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75eaa6c0-42c5-4f7c-ab4d-7c7128cc25b3.tmp, EstimatedImpact: 0% 2026-06-07T13:16:10.211 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c15aa3c-bdf7-4da1-9f04-72721683d244.tmp, EstimatedImpact: 0% 2026-06-07T13:16:10.211 ProcessImageName: updater.exe, Pid: 4632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3bb5990-fae2-439f-921c-248a041bec93.tmp, EstimatedImpact: 0% 2026-06-07T13:16:10.211 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\749ee3e6-59a8-4025-ac48-ebcea55b3ba3.tmp, EstimatedImpact: 0% 2026-06-07T13:16:10.211 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9ee0ca6-5e47-476a-afd1-9a6505cd5021.tmp, EstimatedImpact: 0% 2026-06-07T13:16:10.211 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\decec28f-424b-4eb3-a73b-9e120a04c1a9.tmp, EstimatedImpact: 0% 2026-06-07T13:16:10.211 ProcessImageName: updater.exe, Pid: 4012, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd90e0a6-d5b4-4136-bde6-7ae885eb295f.tmp, EstimatedImpact: 0% 2026-06-07T13:25:00.633 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ztnajzm4.1aj.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #91239, FileId: 0x13c000000013ea6, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T13:30:31.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T13:45:36.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T14:00:41.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T14:15:46.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T14:20:39.748 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #91660, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T14:30:51.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T14:45:56.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T14:52:00.171 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vdhrpjzw.wej.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #91909, FileId: 0x194000000013ea6, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T15:01:01.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T15:16:06.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T15:16:10.210 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 50405, Count: 6690, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: powershell.exe, Pid: 3824, TotalTime: 307, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pb378ec07#\ba1ae1f2ea97b15e3526960dce8d8d9c\Microsoft.PowerShell.ConsoleHost.ni.dll, EstimatedImpact: 35% 2026-06-07T15:16:10.210 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: wacs.exe, Pid: 2116, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-07T15:16:10.210 ProcessImageName: updater.exe, Pid: 800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c39906a-ebe2-41f0-a693-773e012d62b3.tmp, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: updater.exe, Pid: 5028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b443e19-9081-4322-bcba-44422f4c6b33.tmp, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 30, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b96_2.MAI, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: updater.exe, Pid: 1268, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92ebe189-052f-4130-83cc-f7ff13aa202f.tmp, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\749ee3e6-59a8-4025-ac48-ebcea55b3ba3.tmp, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: updater.exe, Pid: 3124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70636a22-464b-4781-9e1b-1138693940dc.tmp, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: updater.exe, Pid: 2496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3eba0798-acbe-4830-bba5-83a5c39d9ca2.tmp, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9ee0ca6-5e47-476a-afd1-9a6505cd5021.tmp, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c15aa3c-bdf7-4da1-9f04-72721683d244.tmp, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: updater.exe, Pid: 4012, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd90e0a6-d5b4-4136-bde6-7ae885eb295f.tmp, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: updater.exe, Pid: 4632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3bb5990-fae2-439f-921c-248a041bec93.tmp, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\decec28f-424b-4eb3-a73b-9e120a04c1a9.tmp, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: updater.exe, Pid: 840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff5ae067-ac70-4569-bd9c-be4749275ec7.tmp, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: updater.exe, Pid: 864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75eaa6c0-42c5-4f7c-ab4d-7c7128cc25b3.tmp, EstimatedImpact: 0% 2026-06-07T15:16:10.210 ProcessImageName: updater.exe, Pid: 2956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84c16f45-532c-41a9-b27d-c2a9b99bd049.tmp, EstimatedImpact: 0% 2026-06-07T15:31:11.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T15:46:16.445 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T15:53:00.545 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_eoa5hgyb.lrv.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #92388, FileId: 0x1d2000000013ea6, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T16:01:21.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T16:16:26.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T16:31:31.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T16:46:36.444 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T16:56:00.918 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_da5uok0b.25f.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #92897, FileId: 0x216000000013ea6, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T17:01:41.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T17:16:10.214 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 50435, Count: 6694, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: powershell.exe, Pid: 3824, TotalTime: 307, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pb378ec07#\ba1ae1f2ea97b15e3526960dce8d8d9c\Microsoft.PowerShell.ConsoleHost.ni.dll, EstimatedImpact: 35% 2026-06-07T17:16:10.214 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 60, Count: 14, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b96_2.MAI, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: wacs.exe, Pid: 2116, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 5056, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e5dba1b-29f1-4198-8b52-04d4873ce6a2.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 5028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b443e19-9081-4322-bcba-44422f4c6b33.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 800, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9c39906a-ebe2-41f0-a693-773e012d62b3.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 1268, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92ebe189-052f-4130-83cc-f7ff13aa202f.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9ee0ca6-5e47-476a-afd1-9a6505cd5021.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 3096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3bd1a00e-c49b-4cb0-a85a-ead70d63d50c.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 840, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ff5ae067-ac70-4569-bd9c-be4749275ec7.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 864, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\75eaa6c0-42c5-4f7c-ab4d-7c7128cc25b3.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\749ee3e6-59a8-4025-ac48-ebcea55b3ba3.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 2956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84c16f45-532c-41a9-b27d-c2a9b99bd049.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 2496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3eba0798-acbe-4830-bba5-83a5c39d9ca2.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 4012, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd90e0a6-d5b4-4136-bde6-7ae885eb295f.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 4632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3bb5990-fae2-439f-921c-248a041bec93.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 3124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70636a22-464b-4781-9e1b-1138693940dc.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c15aa3c-bdf7-4da1-9f04-72721683d244.tmp, EstimatedImpact: 0% 2026-06-07T17:16:10.214 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\decec28f-424b-4eb3-a73b-9e120a04c1a9.tmp, EstimatedImpact: 0% 2026-06-07T17:16:46.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T17:24:00.128 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xmoe4usi.lac.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #93123, FileId: 0x233000000013ea6, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T17:31:51.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T17:46:56.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T18:02:01.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T18:14:00.419 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vszrlhqt.oze.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #93508, FileId: 0x267000000013ea6, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T18:17:06.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T18:32:11.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T18:47:16.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T19:02:21.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T19:06:00.698 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_f22t1dbr.zg4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #93916, FileId: 0x29f000000013ea6, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T19:16:10.219 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 50465, Count: 6698, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: powershell.exe, Pid: 3824, TotalTime: 307, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pb378ec07#\ba1ae1f2ea97b15e3526960dce8d8d9c\Microsoft.PowerShell.ConsoleHost.ni.dll, EstimatedImpact: 35% 2026-06-07T19:16:10.219 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 75, Count: 19, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b96_2.MAI, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: wacs.exe, Pid: 2116, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-07T19:16:10.219 ProcessImageName: updater.exe, Pid: 5056, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e5dba1b-29f1-4198-8b52-04d4873ce6a2.tmp, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: updater.exe, Pid: 5028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b443e19-9081-4322-bcba-44422f4c6b33.tmp, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: updater.exe, Pid: 1268, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\92ebe189-052f-4130-83cc-f7ff13aa202f.tmp, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: updater.exe, Pid: 4632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3bb5990-fae2-439f-921c-248a041bec93.tmp, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: updater.exe, Pid: 2956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84c16f45-532c-41a9-b27d-c2a9b99bd049.tmp, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c15aa3c-bdf7-4da1-9f04-72721683d244.tmp, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\decec28f-424b-4eb3-a73b-9e120a04c1a9.tmp, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: updater.exe, Pid: 1028, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\749ee3e6-59a8-4025-ac48-ebcea55b3ba3.tmp, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: updater.exe, Pid: 3124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70636a22-464b-4781-9e1b-1138693940dc.tmp, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9ee0ca6-5e47-476a-afd1-9a6505cd5021.tmp, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: updater.exe, Pid: 3096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3bd1a00e-c49b-4cb0-a85a-ead70d63d50c.tmp, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: updater.exe, Pid: 4600, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d74798c-56cc-4e45-94a5-3cf2505e4900.tmp, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: updater.exe, Pid: 4012, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd90e0a6-d5b4-4136-bde6-7ae885eb295f.tmp, EstimatedImpact: 0% 2026-06-07T19:16:10.219 ProcessImageName: updater.exe, Pid: 2496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3eba0798-acbe-4830-bba5-83a5c39d9ca2.tmp, EstimatedImpact: 0% 2026-06-07T19:17:26.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T19:32:31.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T19:47:36.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T20:02:41.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T20:04:45.267 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_208d_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #94389, FileId: 0x138000000007f1e, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T20:17:46.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T20:32:51.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T20:47:56.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T21:03:01.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T21:07:00.554 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4nkdimhc.dwy.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #94886, FileId: 0x31f000000013ea6, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T21:16:10.229 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 50465, Count: 6703, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: powershell.exe, Pid: 3824, TotalTime: 307, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pb378ec07#\ba1ae1f2ea97b15e3526960dce8d8d9c\Microsoft.PowerShell.ConsoleHost.ni.dll, EstimatedImpact: 35% 2026-06-07T21:16:10.229 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 105, Count: 30, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b96_2.MAI, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: wacs.exe, Pid: 2116, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-07T21:16:10.229 ProcessImageName: updater.exe, Pid: 5028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b443e19-9081-4322-bcba-44422f4c6b33.tmp, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: updater.exe, Pid: 5056, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e5dba1b-29f1-4198-8b52-04d4873ce6a2.tmp, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: updater.exe, Pid: 4012, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd90e0a6-d5b4-4136-bde6-7ae885eb295f.tmp, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d9456a2-3d68-44b2-aac4-671970ac12fb.tmp, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: updater.exe, Pid: 2956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84c16f45-532c-41a9-b27d-c2a9b99bd049.tmp, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c15aa3c-bdf7-4da1-9f04-72721683d244.tmp, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: updater.exe, Pid: 2496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3eba0798-acbe-4830-bba5-83a5c39d9ca2.tmp, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: updater.exe, Pid: 3096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3bd1a00e-c49b-4cb0-a85a-ead70d63d50c.tmp, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9ee0ca6-5e47-476a-afd1-9a6505cd5021.tmp, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: updater.exe, Pid: 4632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3bb5990-fae2-439f-921c-248a041bec93.tmp, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: updater.exe, Pid: 4600, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d74798c-56cc-4e45-94a5-3cf2505e4900.tmp, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4bf5943-3d6e-4686-87e7-a85de4fc7669.tmp, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\decec28f-424b-4eb3-a73b-9e120a04c1a9.tmp, EstimatedImpact: 0% 2026-06-07T21:16:10.229 ProcessImageName: updater.exe, Pid: 3124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70636a22-464b-4781-9e1b-1138693940dc.tmp, EstimatedImpact: 0% 2026-06-07T21:18:06.443 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T21:31:00.690 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xqthsxrp.0nn.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #95094, FileId: 0x33a000000013ea6, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T21:33:11.442 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T21:48:16.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T22:03:21.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T22:18:26.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T22:20:52.822 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #95503, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T22:33:31.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T22:48:36.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T23:03:41.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T23:16:10.235 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 50480, Count: 6711, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\feed\7d02d16fefc1f69dcbd60d4a0acf950a.html, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: powershell.exe, Pid: 3824, TotalTime: 307, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pb378ec07#\ba1ae1f2ea97b15e3526960dce8d8d9c\Microsoft.PowerShell.ConsoleHost.ni.dll, EstimatedImpact: 35% 2026-06-07T23:16:10.235 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 105, Count: 33, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b96_2.MAI, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start->(UTF-16LE), EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 5028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b443e19-9081-4322-bcba-44422f4c6b33.tmp, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cddf1078-0608-40d3-beb3-c56852b058ed.tmp, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 5056, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e5dba1b-29f1-4198-8b52-04d4873ce6a2.tmp, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 4384, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\decec28f-424b-4eb3-a73b-9e120a04c1a9.tmp, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d9ee0ca6-5e47-476a-afd1-9a6505cd5021.tmp, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 2956, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\84c16f45-532c-41a9-b27d-c2a9b99bd049.tmp, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 4632, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f3bb5990-fae2-439f-921c-248a041bec93.tmp, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 4600, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5d74798c-56cc-4e45-94a5-3cf2505e4900.tmp, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4bf5943-3d6e-4686-87e7-a85de4fc7669.tmp, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 3096, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3bd1a00e-c49b-4cb0-a85a-ead70d63d50c.tmp, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 3124, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\70636a22-464b-4781-9e1b-1138693940dc.tmp, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 2496, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3eba0798-acbe-4830-bba5-83a5c39d9ca2.tmp, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 4012, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bd90e0a6-d5b4-4136-bde6-7ae885eb295f.tmp, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 2848, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7d9456a2-3d68-44b2-aac4-671970ac12fb.tmp, EstimatedImpact: 0% 2026-06-07T23:16:10.235 ProcessImageName: updater.exe, Pid: 4132, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6c15aa3c-bdf7-4da1-9f04-72721683d244.tmp, EstimatedImpact: 0% 2026-06-07T23:17:00.450 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_l1g32hfg.cy4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #95934, FileId: 0x1069000000019a76, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-07T23:18:46.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T23:33:51.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-07T23:48:56.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T00:04:01.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T00:13:00.871 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_pvpyltyv.4re.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #96386, FileId: 0x10a5000000019a76, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T00:19:06.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T00:34:11.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T00:49:16.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T01:04:21.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T01:15:31.435 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-06-08T01:15:31.451 Job Notification: New process added to job (1056) 2026-06-08T01:15:31.467 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-06-08T01:15:31.467 Job Notification: New process added to job (4676) 2026-06-08T01:15:31.467 Aggressive catchup quick scan threshold: 779897449867 / 25920000000000 2026-06-08T01:15:31.498 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:1056] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4676]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-08T01:15:31.576 Job Notification: New process added to job (4680) 2026-06-08T01:15:31.592 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-06-08T01:15:31.592 Job Notification: New process added to job (4804) 2026-06-08T01:15:31.592 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4680] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4804]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-08T01:15:31.982 Job Notification: New process added to job (3136) 2026-06-08T01:15:31.998 Task(GetDeviceTicket -AccessKey AB41ED12-F5C0-FAEA-F3C6-98AC67A8942D ) launched as network service 2026-06-08T01:15:32.029 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-08T01:15:32.029 [RTP] Duplicating the current plugin configuration object... 2026-06-08T01:15:32.029 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-08T01:15:32.029 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-08T01:15:32.029 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-08T01:15:32.029 [RTP] No config change detected. Not updating plugin configuration. 2026-06-08T01:15:32.029 [RTP] No config changes found. No configuration switch. 2026-06-08T01:15:32.029 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-08T01:15:33.039 Job Notification: Process exited from job (3136) 2026-06-08T01:15:34.172 [RTP] [Mini-filter] MpQueryRuntimeDrivers called. bytesToCopy = 36, ntStatus = 0xc0000023 2026-06-08T01:15:34.172 [RTP] [Mini-filter] MpQueryRuntimeDrivers called. bytesToCopy = 28928, ntStatus = 0x0 2026-06-08T01:15:34.187 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-08T01:15:34.187 [Cloud] Start of cloud request. Passive mode: 0 2026-06-08T01:15:34.187 [Cloud] Queued cloud request. 2026-06-08T01:15:34.187 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-08T01:15:34.187 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-06-08T01:15:34.187 [Cloud] Start of cloud request. Passive mode: 0 2026-06-08T01:15:34.187 [Cloud] Queued cloud request. 2026-06-08T01:15:34.219 Job Notification: New process added to job (2868) 2026-06-08T01:15:34.219 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 8A25CFA0-2D0E-0CC2-4F16-FB2B2DBFFF56) launched 2026-06-08T01:15:34.219 Job Notification: New process added to job (3080) 2026-06-08T01:15:34.234 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:2868] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3080]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-08T01:15:34.250 Job Notification: New process added to job (4052) 2026-06-08T01:15:34.250 Job Notification: Process exited from job (2868) 2026-06-08T01:15:34.250 Job Notification: Process exited from job (3080) 2026-06-08T01:15:34.265 [Cloud] Dequeued cloud request. 2026-06-08T01:15:34.265 [Cloud] Dequeued cloud request. 2026-06-08T01:15:34.265 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-08T01:15:34.265 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-08T01:15:34.578 [Cloud] End of cloud request. 2026-06-08T01:15:34.641 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-08T01:15:34.641 [Cloud] End of cloud request. 2026-06-08T01:15:34.687 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-08T01:15:46.914 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\CB152D4D-A2AB-47F7-AD0F-898B987B48BE10a8.1dcf6e454e2c059 2026-06-08T01:15:46.961 Verifying engine and signature files (source: 0) ... 2026-06-08T01:15:46.961 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3B44E8C2-F7C4-416A-9625-FA9E13DED895}\mpengine.dll] due to PPL. 2026-06-08T01:15:46.961 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3B44E8C2-F7C4-416A-9625-FA9E13DED895}\mpasbase.vdm] (file in cache) 2026-06-08T01:15:46.961 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3B44E8C2-F7C4-416A-9625-FA9E13DED895}\mpasdlta.vdm]. File not in cache (0x1) 2026-06-08T01:15:46.977 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3B44E8C2-F7C4-416A-9625-FA9E13DED895}\mpasdlta.vdm] 2026-06-08T01:15:46.977 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3B44E8C2-F7C4-416A-9625-FA9E13DED895}\mpavbase.vdm] (file in cache) 2026-06-08T01:15:46.977 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3B44E8C2-F7C4-416A-9625-FA9E13DED895}\mpavdlta.vdm]. File not in cache (0x1) 2026-06-08T01:15:46.992 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3B44E8C2-F7C4-416A-9625-FA9E13DED895}\mpavdlta.vdm] 2026-06-08T01:15:47.102 [Engine] IsHybridMode: 0 2026-06-08T01:15:47.117 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-06-08T01:15:47.180 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-351697431664A9E9ADFF4A047C6BEFD9F41E4042.bin): 0x00000002 2026-06-08T01:15:47.180 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-351697431664A9E9ADFF4A047C6BEFD9F41E4042.bin) 2026-06-08T01:15:47.180 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-06-08T01:15:47.180 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-06-08T01:15:47.180 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-06-08T01:15:47.180 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-06-08T01:15:55.083 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-06-08T01:15:55.083 [AutoExclusion] Applied roles from cache. 2026-06-08T01:15:55.083 [AutoExclusion] Started roles monitoring. 2026-06-08T01:15:55.083 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFABC285810, lRefCount: 5, hr=0 2026-06-08T01:15:55.083 [Engine] New active engine 00007FFABD405810 replacing engine 00007FFABC285810. Number of active engines: 2 2026-06-08T01:15:55.083 EngineInit:Global ASOC is enabled 2026-06-08T01:15:55.083 EngineInit:ASOO is enabled for developer volumes 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-08T01:15:55.115 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-08T01:15:55.115 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-06-08T01:15:55.115 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-06-08T01:15:55.115 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-06-08T01:15:55.115 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-06-08T01:15:55.115 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-06-08T01:15:55.130 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-06-08T01:15:55.130 [Plugin] Initializing RTP plugin state... 2026-06-08T01:15:55.130 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-06-08T01:15:55.130 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎06‎-‎07‎-‎2026 03:16:10 Last Perf:‎06‎-‎07‎-‎2026 03:16:10 First RTP Scan:‎06‎-‎07‎-‎2026 03:16:31 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:440 Misses:6873 BM Queue:0,97,0 Proc:0,38,0 File:0,90,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:97186 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1166186920 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:60096 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:155464 TotalHits:4464728 InstanceCacheInserts:10032 InstanceCacheUpdates:0 InstanceCacheDeletes:6695 InstanceCacheHits:404 InstanceCacheMisses:122132 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:2ms (7866/3079) Success: 3079, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-06-08T01:15:55.130 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3B44E8C2-F7C4-416A-9625-FA9E13DED895} 2026-06-08T01:15:55.130 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{38BB46C3-0E0B-45EA-969E-67F9F6C489B2}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{38BB46C3-0E0B-45EA-969E-67F9F6C489B2}\mpengine.dll cannot be deleted, hr=0x80070005 2026-06-08T01:15:55.130 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-06-08T01:15:55.130 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B5553A01-D4F2-4FAE-9E2C-EE70D4EE0354} removed 2026-06-08T01:15:55.130 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-08T01:15:55.130 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-08T01:15:55.130 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-08T01:15:55.130 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-08T01:15:55.130 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:06-08-2026 01:15:55 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:06-08-2026 01:15:55 2026-06-08T01:15:55.130 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-06-08T01:15:55.130 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-06-08T01:15:55.130 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-08T01:15:55.130 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-06-08T01:15:55.130 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-08T01:15:55.130 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-08T01:15:55.130 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-08T01:15:55.130 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-08T01:15:55.130 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-08T01:15:55.130 MdCoreSvc is supported in this platform and OS Signature updated on 06-08-2026 01:15:55 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.319.0 AV Signature Version: 1.451.319.0 ************************************************************ 2026-06-08T01:15:55.130 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-06-08T01:15:55.130 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\CB152D4D-A2AB-47F7-AD0F-898B987B48BE10a8.1dcf6e454e2c059 2026-06-08T01:15:55.146 Process scan (postsignatureupdatescan) started. 2026-06-08T01:15:55.193 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-06-08T01:15:55.193 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 06-08-2026 01:15:55 ************************************************************ 2026-06-08T01:15:55.411 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-06-08T01:15:55.411 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-06-08T01:15:55.411 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-06-08T01:15:55.411 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-06-08T01:15:55.411 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-06-08T01:15:55.427 Job Notification: Process exited from job (4680) 2026-06-08T01:15:55.427 Job Notification: Process exited from job (4804) 2026-06-08T01:15:55.427 [Engine] Engine 00007FFABC285810 no longer in use. Number of active engines: 1 2026-06-08T01:15:55.427 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-08T01:15:55.427 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-06-08T01:15:55.427 Job Notification: Process exited from job (1056) 2026-06-08T01:15:55.427 Job Notification: Process exited from job (4676) 2026-06-08T01:15:55.630 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-06-08T01:15:55.630 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-06-08T01:15:55.630 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-08T01:15:56.677 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51515, Count: 6780, MaxTime: 171, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ipa4c5a8d2d8fbd879fe34142c0520427d.html, EstimatedImpact: 0% 2026-06-08T01:15:56.677 ProcessImageName: powershell.exe, Pid: 3824, TotalTime: 307, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Pb378ec07#\ba1ae1f2ea97b15e3526960dce8d8d9c\Microsoft.PowerShell.ConsoleHost.ni.dll, EstimatedImpact: 35% 2026-06-08T01:15:56.677 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 105, Count: 33, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_1b96_2.MAI, EstimatedImpact: 0% 2026-06-08T01:15:56.677 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 91, Count: 10, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-06-08T01:15:56.677 ProcessImageName: updater.exe, Pid: 5056, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3e5dba1b-29f1-4198-8b52-04d4873ce6a2.tmp, EstimatedImpact: 0% 2026-06-08T01:15:56.677 ProcessImageName: updater.exe, Pid: 5032, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cddf1078-0608-40d3-beb3-c56852b058ed.tmp, EstimatedImpact: 0% 2026-06-08T01:15:56.677 ProcessImageName: updater.exe, Pid: 5028, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8b443e19-9081-4322-bcba-44422f4c6b33.tmp, EstimatedImpact: 0% 2026-06-08T01:15:56.677 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\a4bf5943-3d6e-4686-87e7-a85de4fc7669.tmp, EstimatedImpact: 0% 2026-06-08T01:15:56.740 [Engine] RSIG_UNLOADENGINE, 00007FFABC285810, err=0x0 2026-06-08T01:15:56.755 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{38BB46C3-0E0B-45EA-969E-67F9F6C489B2} removed 2026-06-08T01:15:59.818 Process scan (postsignatureupdatescan) completed. 2026-06-08T01:19:26.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T01:20:39.759 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97393, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T01:20:39.775 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97395, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T01:20:49.773 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97399, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T01:20:49.789 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97401, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T01:20:55.100 [RbM] Setting Last known good engine candidate. hr = 0 2026-06-08T01:22:00.342 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ijn1fbfk.h3u.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #97412, FileId: 0xe000000008108, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T01:27:00.375 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_oxyf12jj.s5q.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #97458, FileId: 0x13000000008108, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T01:34:00.404 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ujnhypo0.sqp.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #97518, FileId: 0x1a000000008108, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T01:34:31.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T01:49:36.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T01:53:00.494 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4a3wauw0.pls.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #97685, FileId: 0x2d000000008108, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:04:41.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T02:07:00.607 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_zkpkuo4c.k1v.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #97869, FileId: 0x3b000000008108, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:09:00.623 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_mildo0gb.hld.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #97883, FileId: 0x3d000000008108, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:12:00.626 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_we5df4gq.cx4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #97905, FileId: 0x40000000008108, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:19:46.441 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T02:20:39.855 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97980, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:20:39.871 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97982, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:20:49.864 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97986, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:20:49.880 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97988, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:20:50.021 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97992, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:20:50.036 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #97994, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:21:00.706 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_lw4wdhzi.2y0.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #97997, FileId: 0x4f000000008108, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:26:00.734 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4imuyncd.fng.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #98034, FileId: 0x54000000008108, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:31:00.753 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_f5bknpco.wwc.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #98070, FileId: 0x59000000008108, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:33:00.771 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_kdzlcv5n.b4v.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #98086, FileId: 0x5b000000008108, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:34:51.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T02:40:00.806 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3rosgurx.o3r.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #98163, FileId: 0xd000000008267, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:44:00.846 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vajufpcn.rcz.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #98191, FileId: 0x11000000008267, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:49:56.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T02:51:00.880 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_daisgwko.303.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #98253, FileId: 0x18000000008267, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T02:52:00.864 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3mbbmqe1.1hi.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #98268, FileId: 0x19000000008267, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T03:05:01.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T03:12:00.975 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_dxqcgfl1.j2u.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #98417, FileId: 0x2d000000008267, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T03:15:55.096 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 662, Count: 71, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\error\HTTP_NOT_FOUND.html.var, EstimatedImpact: 0% 2026-06-08T03:15:55.096 ProcessImageName: powershell.exe, Pid: 2292, TotalTime: 290, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 37% 2026-06-08T03:15:55.096 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b3ff225-350c-4b2a-8ff3-3f547972d3aa.tmp, EstimatedImpact: 0% 2026-06-08T03:15:55.096 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-08T03:15:55.096 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\575726e9-833e-4613-9241-191af1e6c7c1.tmp, EstimatedImpact: 0% 2026-06-08T03:16:00.999 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_awlcc4ey.4wt.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #98445, FileId: 0x31000000008267, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T03:20:06.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T03:20:40.450 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98488, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T03:20:40.466 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98490, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T03:20:50.480 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98494, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T03:20:50.480 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98496, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T03:20:50.480 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #98498, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T03:35:11.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T03:35:41.725 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:36A6B93C-9721-4088-8EBE-7BADF6C4C623, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-06-08T03:35:41.725 Scheduled scan with Id 36A6B93C-9721-4088-8EBE-7BADF6C4C623 configured CPU priority: normal (LowCpuPriority: 0) 2026-06-08T03:35:41.725 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-08T03:35:41.741 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-06-08T03:35:41.741 [SFC] System file cache build is not needed (already completed) 2026-06-08T03:35:53.978 Engine:Triggered AR EMS scan 2026-06-08T03:35:53.978 Engine:EMS scan for process: lsass pid: 616, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:53.993 Engine:EMS scan for process: svchost pid: 704, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:53.993 Engine:EMS scan for process: svchost pid: 760, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.009 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.024 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.024 Engine:EMS scan for process: svchost pid: 972, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.040 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.040 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.056 Engine:EMS scan for process: svchost pid: 724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.071 Engine:EMS scan for process: svchost pid: 1160, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.071 Engine:EMS scan for process: svchost pid: 1184, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.087 Engine:EMS scan for process: svchost pid: 1368, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.103 Engine:EMS scan for process: svchost pid: 2012, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.118 Engine:EMS scan for process: svchost pid: 1924, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.118 Engine:EMS scan for process: svchost pid: 1956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.134 Engine:EMS scan for process: svchost pid: 2740, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.134 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:35:54.149 Engine:EMS scan for process: svchost pid: 4436, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-08T03:36:08.396 QuickScan:ScanID:36A6B93C-9721-4088-8EBE-7BADF6C4C623: Quick scan finished with error 0 2026-06-08T03:36:08.405 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-08T03:36:08.927 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-08T03:36:08.927 [RTP] Duplicating the current plugin configuration object... 2026-06-08T03:36:08.927 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-08T03:36:08.927 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-08T03:36:08.927 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-08T03:36:08.927 [RTP] No config change detected. Not updating plugin configuration. 2026-06-08T03:36:08.927 [RTP] No config changes found. No configuration switch. 2026-06-08T03:36:08.927 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-08T03:42:00.174 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_kfmao1nj.5gf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #98823, FileId: 0x1b0000000088e4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T03:50:16.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T04:04:00.336 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_rtdxyibr.45e.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #98983, FileId: 0x310000000088e4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T04:05:21.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T04:20:26.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T04:20:39.530 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99121, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T04:20:39.545 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99123, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T04:20:49.544 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99127, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T04:20:49.559 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99129, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T04:20:49.559 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99131, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T04:33:00.595 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_es2tq1sw.2qs.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #99225, FileId: 0x4f0000000088e4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T04:35:31.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T04:50:36.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T05:01:00.780 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_zrryaelf.2ai.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #99430, FileId: 0x6b0000000088e4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T05:05:41.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T05:06:00.805 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ift2cty5.pce.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #99465, FileId: 0x700000000088e4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T05:10:00.833 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0c5qt2x2.5ml.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #99493, FileId: 0x740000000088e4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T05:13:00.842 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xk1a5dkr.rb2.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #99514, FileId: 0x770000000088e4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T05:15:00.847 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_kzxruy5r.s44.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #99529, FileId: 0x790000000088e4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T05:15:55.098 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 2341, Count: 228, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2018\05\05\in-perioada-9-si-13-mai-se-desfasoara-la-tirgu-mures-festivalul-international-studentesc-de-jazz-youth-jazz-competition-festival-2\328dac102a73b26f2fb894e1885c184c.html, EstimatedImpact: 0% 2026-06-08T05:15:55.098 ProcessImageName: powershell.exe, Pid: 2292, TotalTime: 290, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 37% 2026-06-08T05:15:55.098 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b3ff225-350c-4b2a-8ff3-3f547972d3aa.tmp, EstimatedImpact: 0% 2026-06-08T05:15:55.098 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 45, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-08T05:15:55.098 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\575726e9-833e-4613-9241-191af1e6c7c1.tmp, EstimatedImpact: 0% 2026-06-08T05:15:55.098 ProcessImageName: updater.exe, Pid: 4472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ed7fb97-939a-4902-ab42-43bb4c85f1b8.tmp, EstimatedImpact: 0% 2026-06-08T05:15:55.098 ProcessImageName: updater.exe, Pid: 1828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826d03da-84e7-42e8-b264-87df53dcbc1d.tmp, EstimatedImpact: 0% 2026-06-08T05:20:41.545 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99579, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T05:20:41.561 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99581, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T05:20:46.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T05:20:51.559 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99585, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T05:20:51.575 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99587, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T05:20:51.575 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #99589, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T05:24:00.931 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_j1ow1hsi.5e0.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #99621, FileId: 0x830000000088e4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T05:27:00.966 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3izg4we2.3rn.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #99649, FileId: 0x860000000088e4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T05:35:51.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T05:50:56.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T05:55:00.125 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_uysy3cnh.dmo.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #99858, FileId: 0xa50000000088e4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:03:00.173 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xh5b2uih.fes.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #99929, FileId: 0x77000000013c1c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:04:00.204 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_zvo2yqd1.zst.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #99936, FileId: 0x78000000013c1c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:06:01.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T06:10:00.259 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_i0fi15bk.3rg.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #100000, FileId: 0x7e000000013c1c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:15:00.283 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_lfis1455.5jx.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #100035, FileId: 0x83000000013c1c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:20:39.325 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #100086, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:20:39.341 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #100088, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:20:49.328 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #100092, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:20:49.328 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #100094, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:20:49.344 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #100096, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:20:49.344 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #100098, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:21:06.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T06:36:11.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T06:44:00.497 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_pmugudci.kxe.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #100275, FileId: 0xa1000000013c1c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:51:00.537 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_d0iuggh2.olf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #100861, FileId: 0xa8000000013c1c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:51:16.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T06:51:24.612 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_235e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #101506, FileId: 0xac000000013c1c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:51:24.612 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_235c_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #101507, FileId: 0xeb000000008108, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T06:53:00.537 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_w4or05te.bkw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #101968, FileId: 0xaf000000013c1c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T07:02:00.584 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_jtmhwkqb.r2g.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #102088, FileId: 0xb8000000013c1c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T07:06:21.440 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T07:08:00.596 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ne2j302v.g0y.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #102130, FileId: 0xbe000000013c1c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T07:15:55.110 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 46853, Count: 6420, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2018\05\05\in-perioada-9-si-13-mai-se-desfasoara-la-tirgu-mures-festivalul-international-studentesc-de-jazz-youth-jazz-competition-festival-2\328dac102a73b26f2fb894e1885c184c.html, EstimatedImpact: 0% 2026-06-08T07:15:55.110 ProcessImageName: powershell.exe, Pid: 2292, TotalTime: 290, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 37% 2026-06-08T07:15:55.110 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 45, Count: 5, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-08T07:15:55.110 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b3ff225-350c-4b2a-8ff3-3f547972d3aa.tmp, EstimatedImpact: 0% 2026-06-08T07:15:55.110 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\539799d5-b58a-4fbd-8a37-f7cb323ca5e6.tmp, EstimatedImpact: 0% 2026-06-08T07:15:55.110 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 15, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_235c_3.MAI, EstimatedImpact: 0% 2026-06-08T07:15:55.110 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\575726e9-833e-4613-9241-191af1e6c7c1.tmp, EstimatedImpact: 0% 2026-06-08T07:15:55.110 ProcessImageName: updater.exe, Pid: 4472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ed7fb97-939a-4902-ab42-43bb4c85f1b8.tmp, EstimatedImpact: 0% 2026-06-08T07:15:55.110 ProcessImageName: updater.exe, Pid: 1828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826d03da-84e7-42e8-b264-87df53dcbc1d.tmp, EstimatedImpact: 0% 2026-06-08T07:15:55.110 ProcessImageName: updater.exe, Pid: 1908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae281394-b19e-4145-9f0c-9c0d94b058bc.tmp, EstimatedImpact: 0% 2026-06-08T07:20:40.071 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #102309, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T07:20:40.071 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #102311, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T07:20:50.085 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #102315, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T07:20:50.101 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #102317, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T07:20:50.243 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #102321, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T07:20:50.258 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #102323, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T07:21:26.439 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T07:35:00.778 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_manld135.25h.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #102431, FileId: 0xdc000000013c1c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T07:36:31.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T07:44:00.821 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_5tfphawu.nzt.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #102494, FileId: 0xe5000000013c1c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T07:45:00.806 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_kvss4q5b.h5t.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #102501, FileId: 0xe6000000013c1c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T07:47:00.815 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_nrtty4dv.s4z.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #102515, FileId: 0xe8000000013c1c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T07:51:36.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T08:06:00.916 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_czt4ngni.3j5.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #102710, FileId: 0x397d000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T08:06:41.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T08:08:00.941 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_myrd5vjk.3yl.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #102724, FileId: 0x397f000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T08:10:00.946 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_y2of4omu.oew.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #102741, FileId: 0x3981000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T08:20:40.189 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #102829, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T08:20:40.189 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #102831, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T08:20:50.198 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #102835, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T08:20:50.213 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #102837, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T08:21:46.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T08:24:01.001 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ufvbboca.vcq.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #102862, FileId: 0x3990000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T08:29:01.041 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0kuylzsi.1x3.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #102897, FileId: 0x3995000000013e5c, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T08:36:51.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-06-08T08:38:04.220 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-08T08:38:04.220 [Cloud] Start of cloud request. Passive mode: 0 2026-06-08T08:38:04.220 [Cloud] Queued cloud request. 2026-06-08T08:38:04.220 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-08T08:38:04.220 [Cloud] Dequeued cloud request. 2026-06-08T08:38:04.220 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-08T08:38:04.539 [Cloud] End of cloud request. 2026-06-08T08:38:04.539 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) BEGIN BM telemetry GUID:{88F4786D-A167-68C0-C06E-40E611351EE4} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:844 ProcessCreationTime:134253814842249689 SessionID:0 CreationTime:06-08-2026 08:38:04 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1184:1, Operations:None END BM telemetry 2026-06-08T08:38:04.555 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-08T08:38:04.570 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE 2026-06-08T08:38:04.586 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-08T08:38:04.586 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-08T08:38:05.367 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-08T08:38:05.774 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-08T08:38:05.774 [Cloud] Start of cloud request. Passive mode: 0 2026-06-08T08:38:05.774 [Cloud] Queued cloud request. 2026-06-08T08:38:05.774 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-08T08:38:05.774 [Cloud] Dequeued cloud request. 2026-06-08T08:38:05.820 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-08T08:38:06.367 [Cloud] End of cloud request. 2026-06-08T08:38:06.930 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-08T08:38:07.149 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-08T08:38:07.149 [Cloud] Start of cloud request. Passive mode: 0 2026-06-08T08:38:07.149 [Cloud] Queued cloud request. 2026-06-08T08:38:07.149 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-08T08:38:07.149 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-06-08T08:38:07.149 [Cloud] Dequeued cloud request. 2026-06-08T08:38:07.149 [Cloud] Start of cloud request. Passive mode: 0 2026-06-08T08:38:07.149 [Cloud] Queued cloud request. 2026-06-08T08:38:07.149 [Cloud] Dequeued cloud request. 2026-06-08T08:38:07.149 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-08T08:38:07.149 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-08T08:38:07.274 [Cloud] End of cloud request. 2026-06-08T08:38:07.336 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-08T08:38:07.336 [Cloud] End of cloud request. 2026-06-08T08:38:07.788 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-08T08:40:01.078 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bbty2d0v.evw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #102996, FileId: 0x810000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T08:47:00.094 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_qtdn4hzq.si5.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #103045, FileId: 0x880000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T08:51:56.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T08:56:00.142 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vsvuat4x.yvd.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #103114, FileId: 0x910000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T08:57:40.107 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_2463_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #103129, FileId: 0x1e0b000000014d2c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T08:57:40.716 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_2463_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #103133, FileId: 0x1e0c000000014d2c, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T09:00:00.192 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_uw4sc0bx.auk.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #103150, FileId: 0x970000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T09:02:00.216 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ktcflu5g.4pn.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #103164, FileId: 0x990000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T09:07:00.226 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_yz4x54vv.lkg.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #103208, FileId: 0xa10000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T09:07:01.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T09:12:00.307 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_na2uff2p.ywb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #103243, FileId: 0xa60000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T09:15:55.125 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 49317, Count: 6559, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-08T09:15:55.125 ProcessImageName: powershell.exe, Pid: 2292, TotalTime: 290, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 37% 2026-06-08T09:15:55.125 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-08T09:15:55.125 ProcessImageName: wacs.exe, Pid: 844, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-08T09:15:55.125 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 45, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_235c_3.MAI, EstimatedImpact: 0% 2026-06-08T09:15:55.125 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b3ff225-350c-4b2a-8ff3-3f547972d3aa.tmp, EstimatedImpact: 0% 2026-06-08T09:15:55.125 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\71c5ad44-5acb-476a-b314-b8979ea0e31d.tmp, EstimatedImpact: 0% 2026-06-08T09:15:55.125 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\539799d5-b58a-4fbd-8a37-f7cb323ca5e6.tmp, EstimatedImpact: 0% 2026-06-08T09:15:55.125 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\575726e9-833e-4613-9241-191af1e6c7c1.tmp, EstimatedImpact: 0% 2026-06-08T09:15:55.125 ProcessImageName: updater.exe, Pid: 1908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae281394-b19e-4145-9f0c-9c0d94b058bc.tmp, EstimatedImpact: 0% 2026-06-08T09:15:55.125 ProcessImageName: updater.exe, Pid: 1828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826d03da-84e7-42e8-b264-87df53dcbc1d.tmp, EstimatedImpact: 0% 2026-06-08T09:15:55.125 ProcessImageName: updater.exe, Pid: 1152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32b34883-460f-439e-b55e-b57c142f072c.tmp, EstimatedImpact: 0% 2026-06-08T09:15:55.125 ProcessImageName: updater.exe, Pid: 4472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ed7fb97-939a-4902-ab42-43bb4c85f1b8.tmp, EstimatedImpact: 0% 2026-06-08T09:18:00.319 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_14drwyvl.sal.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #103300, FileId: 0xac0000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T09:20:41.256 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #103330, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T09:22:06.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T09:37:11.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T09:46:00.503 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0fwi1rc3.xfa.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #103525, FileId: 0xc90000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T09:52:16.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T10:07:21.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T10:22:26.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T10:37:31.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T10:39:00.888 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bupvjwmw.dxw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #103940, FileId: 0xff0000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T10:52:36.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T11:07:41.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T11:15:55.135 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 49317, Count: 6559, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-08T11:15:55.135 ProcessImageName: powershell.exe, Pid: 2292, TotalTime: 290, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 37% 2026-06-08T11:15:55.135 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-08T11:15:55.135 ProcessImageName: wacs.exe, Pid: 844, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-08T11:15:55.135 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 45, Count: 10, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_235c_3.MAI, EstimatedImpact: 0% 2026-06-08T11:15:55.135 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\71c5ad44-5acb-476a-b314-b8979ea0e31d.tmp, EstimatedImpact: 0% 2026-06-08T11:15:55.135 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b3ff225-350c-4b2a-8ff3-3f547972d3aa.tmp, EstimatedImpact: 0% 2026-06-08T11:15:55.135 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\539799d5-b58a-4fbd-8a37-f7cb323ca5e6.tmp, EstimatedImpact: 0% 2026-06-08T11:15:55.135 ProcessImageName: updater.exe, Pid: 4252, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-08T11:15:55.135 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\575726e9-833e-4613-9241-191af1e6c7c1.tmp, EstimatedImpact: 0% 2026-06-08T11:15:55.135 ProcessImageName: updater.exe, Pid: 1828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826d03da-84e7-42e8-b264-87df53dcbc1d.tmp, EstimatedImpact: 0% 2026-06-08T11:15:55.135 ProcessImageName: updater.exe, Pid: 1152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32b34883-460f-439e-b55e-b57c142f072c.tmp, EstimatedImpact: 0% 2026-06-08T11:15:55.135 ProcessImageName: updater.exe, Pid: 1908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae281394-b19e-4145-9f0c-9c0d94b058bc.tmp, EstimatedImpact: 0% 2026-06-08T11:15:55.135 ProcessImageName: updater.exe, Pid: 996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\05dac8c6-fbee-4799-b53c-a7a2c950e1ab.tmp, EstimatedImpact: 0% 2026-06-08T11:15:55.135 ProcessImageName: updater.exe, Pid: 4472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ed7fb97-939a-4902-ab42-43bb4c85f1b8.tmp, EstimatedImpact: 0% 2026-06-08T11:20:50.985 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104262, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T11:22:46.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T11:37:51.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T11:48:00.282 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_2exhckhi.ugk.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #104487, FileId: 0x1470000000164e2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T11:52:56.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T12:08:01.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T12:20:49.912 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #104766, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T12:23:06.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T12:38:11.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T12:53:16.438 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T13:08:21.437 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T13:15:55.139 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 52424, Count: 6767, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-08T13:15:55.139 ProcessImageName: powershell.exe, Pid: 2292, TotalTime: 290, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 37% 2026-06-08T13:15:55.139 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 90, Count: 19, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_235c_3.MAI, EstimatedImpact: 0% 2026-06-08T13:15:55.139 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-08T13:15:55.139 ProcessImageName: wacs.exe, Pid: 844, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-08T13:15:55.139 ProcessImageName: updater.exe, Pid: 772, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\46afbd27-66ea-4fba-b537-b44111dca709.tmp, EstimatedImpact: 0% 2026-06-08T13:15:55.139 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\71c5ad44-5acb-476a-b314-b8979ea0e31d.tmp, EstimatedImpact: 0% 2026-06-08T13:15:55.139 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b3ff225-350c-4b2a-8ff3-3f547972d3aa.tmp, EstimatedImpact: 0% 2026-06-08T13:15:55.139 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\539799d5-b58a-4fbd-8a37-f7cb323ca5e6.tmp, EstimatedImpact: 0% 2026-06-08T13:15:55.139 ProcessImageName: updater.exe, Pid: 4252, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-08T13:15:55.139 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\575726e9-833e-4613-9241-191af1e6c7c1.tmp, EstimatedImpact: 0% 2026-06-08T13:15:55.139 ProcessImageName: updater.exe, Pid: 1828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826d03da-84e7-42e8-b264-87df53dcbc1d.tmp, EstimatedImpact: 0% 2026-06-08T13:15:55.139 ProcessImageName: updater.exe, Pid: 1908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae281394-b19e-4145-9f0c-9c0d94b058bc.tmp, EstimatedImpact: 0% 2026-06-08T13:15:55.139 ProcessImageName: updater.exe, Pid: 1152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32b34883-460f-439e-b55e-b57c142f072c.tmp, EstimatedImpact: 0% 2026-06-08T13:15:55.139 ProcessImageName: updater.exe, Pid: 3052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\790a2d77-e436-4e5c-851e-ac7a0defc21c.tmp, EstimatedImpact: 0% 2026-06-08T13:15:55.139 ProcessImageName: updater.exe, Pid: 4472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ed7fb97-939a-4902-ab42-43bb4c85f1b8.tmp, EstimatedImpact: 0% 2026-06-08T13:15:55.139 ProcessImageName: updater.exe, Pid: 996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\05dac8c6-fbee-4799-b53c-a7a2c950e1ab.tmp, EstimatedImpact: 0% 2026-06-08T13:20:39.298 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #105312, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T13:23:26.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T13:38:31.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T13:46:01.050 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_c2ve3i0i.ae1.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #105503, FileId: 0x10f0000000164e8, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T13:53:36.436 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T14:08:41.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T14:23:46.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T14:32:00.372 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_z1ijygfs.xlv.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #105870, FileId: 0x13e0000000164e8, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T14:38:51.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T14:53:56.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T15:09:01.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T15:15:55.141 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 52500, Count: 6778, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: powershell.exe, Pid: 2292, TotalTime: 290, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 37% 2026-06-08T15:15:55.141 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 90, Count: 19, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_235c_3.MAI, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: wacs.exe, Pid: 844, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-08T15:15:55.141 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b3ff225-350c-4b2a-8ff3-3f547972d3aa.tmp, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: updater.exe, Pid: 772, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\46afbd27-66ea-4fba-b537-b44111dca709.tmp, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\71c5ad44-5acb-476a-b314-b8979ea0e31d.tmp, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\539799d5-b58a-4fbd-8a37-f7cb323ca5e6.tmp, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: updater.exe, Pid: 4252, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\575726e9-833e-4613-9241-191af1e6c7c1.tmp, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: updater.exe, Pid: 1828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826d03da-84e7-42e8-b264-87df53dcbc1d.tmp, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: updater.exe, Pid: 1908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae281394-b19e-4145-9f0c-9c0d94b058bc.tmp, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: updater.exe, Pid: 3052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\790a2d77-e436-4e5c-851e-ac7a0defc21c.tmp, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: updater.exe, Pid: 996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\05dac8c6-fbee-4799-b53c-a7a2c950e1ab.tmp, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: updater.exe, Pid: 1152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32b34883-460f-439e-b55e-b57c142f072c.tmp, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: updater.exe, Pid: 624, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ea096c1-94d6-4348-9b60-0c01e66e5a5b.tmp, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: updater.exe, Pid: 4472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ed7fb97-939a-4902-ab42-43bb4c85f1b8.tmp, EstimatedImpact: 0% 2026-06-08T15:15:55.141 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e598449e-aede-4ca0-b9f7-cfbfd6751c43.tmp, EstimatedImpact: 0% 2026-06-08T15:20:50.498 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #106242, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T15:24:06.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T15:39:11.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T15:52:00.719 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_xvqsgrar.ge5.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #106498, FileId: 0x1910000000164e8, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T15:54:16.433 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T16:09:21.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T16:24:26.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T16:39:31.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T16:54:36.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T17:09:41.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T17:15:55.154 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 52500, Count: 6779, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: powershell.exe, Pid: 2292, TotalTime: 290, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 37% 2026-06-08T17:15:55.154 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 105, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_235c_3.MAI, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: wacs.exe, Pid: 844, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 772, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\46afbd27-66ea-4fba-b537-b44111dca709.tmp, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\71c5ad44-5acb-476a-b314-b8979ea0e31d.tmp, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b3ff225-350c-4b2a-8ff3-3f547972d3aa.tmp, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\539799d5-b58a-4fbd-8a37-f7cb323ca5e6.tmp, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 4252, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 172, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\575726e9-833e-4613-9241-191af1e6c7c1.tmp, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 1828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826d03da-84e7-42e8-b264-87df53dcbc1d.tmp, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\05dac8c6-fbee-4799-b53c-a7a2c950e1ab.tmp, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 1908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae281394-b19e-4145-9f0c-9c0d94b058bc.tmp, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 1152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32b34883-460f-439e-b55e-b57c142f072c.tmp, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bbc7d8bd-6bae-4094-8fe7-946f9520944c.tmp, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 3052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\790a2d77-e436-4e5c-851e-ac7a0defc21c.tmp, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 624, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1ea096c1-94d6-4348-9b60-0c01e66e5a5b.tmp, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e598449e-aede-4ca0-b9f7-cfbfd6751c43.tmp, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 4472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ed7fb97-939a-4902-ab42-43bb4c85f1b8.tmp, EstimatedImpact: 0% 2026-06-08T17:15:55.154 ProcessImageName: updater.exe, Pid: 4904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50feb3b8-bf38-4e93-8006-be6547b4b48b.tmp, EstimatedImpact: 0% 2026-06-08T17:16:00.233 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_fkwgylne.h2i.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #107135, FileId: 0x1e60000000164e8, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T17:24:46.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T17:39:51.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T17:54:56.435 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T18:10:01.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T18:20:41.218 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #107648, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T18:25:06.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T18:40:11.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T18:55:16.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T19:02:00.864 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_lbgehs0p.gdc.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #107964, FileId: 0x2570000000164e8, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T19:10:21.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T19:15:55.153 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 52546, Count: 6780, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: powershell.exe, Pid: 2292, TotalTime: 290, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 37% 2026-06-08T19:15:55.153 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 105, Count: 24, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_235c_3.MAI, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: wacs.exe, Pid: 844, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-08T19:15:55.153 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\71c5ad44-5acb-476a-b314-b8979ea0e31d.tmp, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b3ff225-350c-4b2a-8ff3-3f547972d3aa.tmp, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\539799d5-b58a-4fbd-8a37-f7cb323ca5e6.tmp, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: updater.exe, Pid: 4252, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: updater.exe, Pid: 4904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50feb3b8-bf38-4e93-8006-be6547b4b48b.tmp, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: updater.exe, Pid: 1152, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\32b34883-460f-439e-b55e-b57c142f072c.tmp, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: updater.exe, Pid: 4508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c20950d7-e7ac-47db-87d5-f37fc0ed8e3d.tmp, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e598449e-aede-4ca0-b9f7-cfbfd6751c43.tmp, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: updater.exe, Pid: 3052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\790a2d77-e436-4e5c-851e-ac7a0defc21c.tmp, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: updater.exe, Pid: 1828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826d03da-84e7-42e8-b264-87df53dcbc1d.tmp, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: updater.exe, Pid: 1908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae281394-b19e-4145-9f0c-9c0d94b058bc.tmp, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: updater.exe, Pid: 4472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ed7fb97-939a-4902-ab42-43bb4c85f1b8.tmp, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bbc7d8bd-6bae-4094-8fe7-946f9520944c.tmp, EstimatedImpact: 0% 2026-06-08T19:15:55.153 ProcessImageName: updater.exe, Pid: 996, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\05dac8c6-fbee-4799-b53c-a7a2c950e1ab.tmp, EstimatedImpact: 0% 2026-06-08T19:25:26.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T19:40:31.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T19:55:36.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T20:10:41.432 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T20:20:41.642 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #108579, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T20:25:46.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-06-08T20:40:28.703 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-08T20:40:28.719 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-06-08T20:40:28.719 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-06-08T20:40:28.719 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-06-08T20:40:28.719 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-08T20:40:28.719 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-08T20:40:28.719 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-08T20:40:28.719 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-08T20:40:28.719 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-08T20:40:28.719 MdCoreSvc is supported in this platform and OS 2026-06-08T20:40:29.217 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-06-08T20:40:29.217 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-06-08T20:40:29.217 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-08T20:40:51.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T20:54:00.598 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_i2n3b3vm.gvz.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #108847, FileId: 0x2cc0000000164e8, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T20:55:56.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T21:11:01.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T21:15:55.163 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 52592, Count: 6786, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: powershell.exe, Pid: 2292, TotalTime: 290, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 37% 2026-06-08T21:15:55.163 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 165, Count: 32, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_235c_3.MAI, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: wacs.exe, Pid: 844, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-08T21:15:55.163 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\71c5ad44-5acb-476a-b314-b8979ea0e31d.tmp, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b3ff225-350c-4b2a-8ff3-3f547972d3aa.tmp, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\539799d5-b58a-4fbd-8a37-f7cb323ca5e6.tmp, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: updater.exe, Pid: 4252, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: updater.exe, Pid: 4472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ed7fb97-939a-4902-ab42-43bb4c85f1b8.tmp, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: updater.exe, Pid: 3052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\790a2d77-e436-4e5c-851e-ac7a0defc21c.tmp, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: updater.exe, Pid: 4904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50feb3b8-bf38-4e93-8006-be6547b4b48b.tmp, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: updater.exe, Pid: 1828, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\826d03da-84e7-42e8-b264-87df53dcbc1d.tmp, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: updater.exe, Pid: 1908, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ae281394-b19e-4145-9f0c-9c0d94b058bc.tmp, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9daa416a-765c-4dc8-b750-b6df4bcf5a03.tmp, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: updater.exe, Pid: 4528, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aa53e81a-71bb-4ab7-8a23-e2c36e35093a.tmp, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bbc7d8bd-6bae-4094-8fe7-946f9520944c.tmp, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: updater.exe, Pid: 4508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c20950d7-e7ac-47db-87d5-f37fc0ed8e3d.tmp, EstimatedImpact: 0% 2026-06-08T21:15:55.163 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e598449e-aede-4ca0-b9f7-cfbfd6751c43.tmp, EstimatedImpact: 0% 2026-06-08T21:20:39.458 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #109047, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T21:26:06.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T21:41:11.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T21:56:16.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T22:11:21.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T22:20:39.780 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #109534, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T22:26:26.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T22:41:31.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T22:56:36.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T23:06:00.324 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ke2y2oxm.xvf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #109891, FileId: 0x3560000000164e8, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T23:11:41.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T23:15:55.173 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 52652, Count: 6798, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: powershell.exe, Pid: 2292, TotalTime: 290, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 37% 2026-06-08T23:15:55.173 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 165, Count: 34, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_235c_3.MAI, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: wacs.exe, Pid: 844, TotalTime: 60, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-08T23:15:55.173 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b3ff225-350c-4b2a-8ff3-3f547972d3aa.tmp, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: updater.exe, Pid: 2308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\71c5ad44-5acb-476a-b314-b8979ea0e31d.tmp, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\539799d5-b58a-4fbd-8a37-f7cb323ca5e6.tmp, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: updater.exe, Pid: 4252, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: updater.exe, Pid: 3052, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\790a2d77-e436-4e5c-851e-ac7a0defc21c.tmp, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: updater.exe, Pid: 4472, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2ed7fb97-939a-4902-ab42-43bb4c85f1b8.tmp, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: updater.exe, Pid: 2872, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9daa416a-765c-4dc8-b750-b6df4bcf5a03.tmp, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: updater.exe, Pid: 4904, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\50feb3b8-bf38-4e93-8006-be6547b4b48b.tmp, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: updater.exe, Pid: 4528, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\aa53e81a-71bb-4ab7-8a23-e2c36e35093a.tmp, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: updater.exe, Pid: 4508, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\c20950d7-e7ac-47db-87d5-f37fc0ed8e3d.tmp, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: updater.exe, Pid: 3892, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bbc7d8bd-6bae-4094-8fe7-946f9520944c.tmp, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: updater.exe, Pid: 4856, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a3401a6-8746-4c94-a64f-5dd38121d585.tmp, EstimatedImpact: 0% 2026-06-08T23:15:55.173 ProcessImageName: updater.exe, Pid: 4104, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e598449e-aede-4ca0-b9f7-cfbfd6751c43.tmp, EstimatedImpact: 0% 2026-06-08T23:21:08.282 ReportLowfi(c:\program files (x86)\google\chrome\application\149.0.7827.55\installer\chrmstp.exe, 0x437a0835) from 0x0006b6bd6566d2d9 Internal signature match:subtype=Lowfi, sigseq=0x000005550240CBF2, sigsha=e39a25e9b19899abbd79ec872fd8aeabe27e140d, cached=false, source=0, resourceid=0xc868f908 2026-06-08T23:21:10.359 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #110332, FileId: 0x568000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-08T23:26:46.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T23:41:51.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-08T23:56:56.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T00:12:01.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T00:20:51.822 [RTP] [Mini-filter] Unsuccessful scan status(#300): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #110814, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T00:27:06.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T00:42:11.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T00:57:16.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T01:12:21.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T01:15:31.422 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-06-09T01:15:31.437 Job Notification: New process added to job (4136) 2026-06-09T01:15:31.453 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-06-09T01:15:31.455 Job Notification: New process added to job (700) 2026-06-09T01:15:31.455 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4136] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:700]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-09T01:15:31.455 Aggressive catchup quick scan threshold: 779897266586 / 25920000000000 2026-06-09T01:15:31.549 Job Notification: New process added to job (3916) 2026-06-09T01:15:31.549 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-06-09T01:15:31.564 Job Notification: New process added to job (4936) 2026-06-09T01:15:31.595 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3916] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4936]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-09T01:15:31.986 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-09T01:15:31.986 [RTP] Duplicating the current plugin configuration object... 2026-06-09T01:15:31.986 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-09T01:15:31.986 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-09T01:15:31.986 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-09T01:15:31.986 [RTP] No config change detected. Not updating plugin configuration. 2026-06-09T01:15:31.986 [RTP] No config changes found. No configuration switch. 2026-06-09T01:15:31.986 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-09T01:15:32.220 Job Notification: New process added to job (2952) 2026-06-09T01:15:32.220 Task(GetDeviceTicket -AccessKey B9C22D56-BE0D-4168-4EA4-704F52E5256B ) launched as network service 2026-06-09T01:15:32.252 Job Notification: Process exited from job (2952) 2026-06-09T01:15:33.373 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-09T01:15:33.373 [Cloud] Start of cloud request. Passive mode: 0 2026-06-09T01:15:33.373 [Cloud] Queued cloud request. 2026-06-09T01:15:33.373 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-09T01:15:33.373 [Cloud] Dequeued cloud request. 2026-06-09T01:15:33.373 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-09T01:15:33.373 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-06-09T01:15:33.373 [Cloud] Start of cloud request. Passive mode: 0 2026-06-09T01:15:33.373 [Cloud] Queued cloud request. 2026-06-09T01:15:33.373 [Cloud] Dequeued cloud request. 2026-06-09T01:15:33.373 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-09T01:15:33.707 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-09T01:15:33.707 [Cloud] End of cloud request. 2026-06-09T01:15:33.748 [Cloud] End of cloud request. 2026-06-09T01:15:33.875 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-09T01:15:44.154 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\92DC0B39-C5C5-45CA-9B22-0800502F4A83730.1dcf7ad7da78ebf 2026-06-09T01:15:44.200 Verifying engine and signature files (source: 0) ... 2026-06-09T01:15:44.200 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5510BA12-2CA0-4E44-A1F4-D5D42DA24609}\mpengine.dll] due to PPL. 2026-06-09T01:15:44.200 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5510BA12-2CA0-4E44-A1F4-D5D42DA24609}\mpasbase.vdm] (file in cache) 2026-06-09T01:15:44.200 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5510BA12-2CA0-4E44-A1F4-D5D42DA24609}\mpasdlta.vdm]. File not in cache (0x1) 2026-06-09T01:15:44.216 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5510BA12-2CA0-4E44-A1F4-D5D42DA24609}\mpasdlta.vdm] 2026-06-09T01:15:44.216 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5510BA12-2CA0-4E44-A1F4-D5D42DA24609}\mpavbase.vdm] (file in cache) 2026-06-09T01:15:44.216 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5510BA12-2CA0-4E44-A1F4-D5D42DA24609}\mpavdlta.vdm]. File not in cache (0x1) 2026-06-09T01:15:44.232 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5510BA12-2CA0-4E44-A1F4-D5D42DA24609}\mpavdlta.vdm] 2026-06-09T01:15:44.341 [Engine] IsHybridMode: 0 2026-06-09T01:15:44.341 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-06-09T01:15:44.419 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-5B52875AE61328DF22FED880B7279B74401A7602.bin): 0x00000002 2026-06-09T01:15:44.419 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-5B52875AE61328DF22FED880B7279B74401A7602.bin) 2026-06-09T01:15:44.419 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-06-09T01:15:44.419 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-06-09T01:15:44.419 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-06-09T01:15:44.419 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-06-09T01:15:47.582 Job Notification: Process exited from job (4052) IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-06-09T01:15:52.330 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-06-09T01:15:52.330 [AutoExclusion] Applied roles from cache. 2026-06-09T01:15:52.330 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-06-09T01:15:52.346 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFABD405810, lRefCount: 5, hr=0 2026-06-09T01:15:52.346 [Engine] New active engine 00007FFABC285810 replacing engine 00007FFABD405810. Number of active engines: 2 2026-06-09T01:15:52.346 EngineInit:Global ASOC is enabled 2026-06-09T01:15:52.346 EngineInit:ASOO is enabled for developer volumes 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-09T01:15:52.361 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-09T01:15:52.361 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-06-09T01:15:52.377 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-06-09T01:15:52.377 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-06-09T01:15:52.377 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-06-09T01:15:52.377 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-06-09T01:15:52.377 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-06-09T01:15:52.377 [Plugin] Initializing RTP plugin state... 2026-06-09T01:15:52.377 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-06-09T01:15:52.377 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎06‎-‎08‎-‎2026 03:15:55 Last Perf:‎06‎-‎08‎-‎2026 03:15:55 First RTP Scan:‎06‎-‎08‎-‎2026 03:16:00 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:502 Misses:6844 BM Queue:0,177,0 Proc:0,44,0 File:0,177,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,0,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:111519 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1258616594 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:60092 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:164332 TotalHits:4732119 InstanceCacheInserts:13099 InstanceCacheUpdates:0 InstanceCacheDeletes:9630 InstanceCacheHits:480 InstanceCacheMisses:126623 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:2ms (7810/3089) Success: 3089, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-06-09T01:15:52.377 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5510BA12-2CA0-4E44-A1F4-D5D42DA24609} 2026-06-09T01:15:52.377 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3B44E8C2-F7C4-416A-9625-FA9E13DED895}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3B44E8C2-F7C4-416A-9625-FA9E13DED895}\mpengine.dll cannot be deleted, hr=0x80070005 2026-06-09T01:15:52.377 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-06-09T01:15:52.377 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{77EF40A0-CC73-48E2-B62A-B654538E2550} removed 2026-06-09T01:15:52.377 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-09T01:15:52.377 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-09T01:15:52.377 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-09T01:15:52.377 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-09T01:15:52.377 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:06-09-2026 01:15:52 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:06-09-2026 01:15:52 2026-06-09T01:15:52.377 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-06-09T01:15:52.377 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-06-09T01:15:52.392 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-09T01:15:52.392 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-06-09T01:15:52.392 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-09T01:15:52.392 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-09T01:15:52.392 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-09T01:15:52.392 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-09T01:15:52.392 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-09T01:15:52.392 MdCoreSvc is supported in this platform and OS Signature updated on 06-09-2026 01:15:52 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26040.8 AS Signature Version: 1.451.333.0 AV Signature Version: 1.451.333.0 ************************************************************ 2026-06-09T01:15:52.392 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-06-09T01:15:52.392 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\92DC0B39-C5C5-45CA-9B22-0800502F4A83730.1dcf7ad7da78ebf 2026-06-09T01:15:52.424 Process scan (postsignatureupdatescan) started. Signature updated via MicrosoftUpdateServer on 06-09-2026 01:15:52 ************************************************************ 2026-06-09T01:15:52.455 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-06-09T01:15:52.455 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 2026-06-09T01:15:52.658 Job Notification: Process exited from job (3916) 2026-06-09T01:15:52.674 Job Notification: Process exited from job (4936) 2026-06-09T01:15:52.689 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-06-09T01:15:52.689 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-06-09T01:15:52.689 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-06-09T01:15:52.689 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-06-09T01:15:52.689 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-06-09T01:15:52.689 [Engine] Engine 00007FFABD405810 no longer in use. Number of active engines: 1 2026-06-09T01:15:52.689 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-09T01:15:52.689 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-06-09T01:15:52.689 Job Notification: Process exited from job (4136) 2026-06-09T01:15:52.689 Job Notification: Process exited from job (700) 2026-06-09T01:15:52.877 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-06-09T01:15:52.877 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-06-09T01:15:52.877 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-09T01:15:53.346 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 52757, Count: 6813, MaxTime: 375, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\admin2\build\static\js\2.ced95867.chunk.js, EstimatedImpact: 0% 2026-06-09T01:15:53.346 ProcessImageName: updater.exe, Pid: 888, TotalTime: 7652, Count: 14, MaxTime: 4843, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping888_784437751\149.0.7827.55_chrome_installer_uncompressed.exe, EstimatedImpact: 17% 2026-06-09T01:15:53.346 ProcessImageName: powershell.exe, Pid: 2292, TotalTime: 290, Count: 32, MaxTime: 46, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 37% 2026-06-09T01:15:53.346 ProcessImageName: 149.0.7827.55_chrome_installer_uncompressed.exe, Pid: 4824, TotalTime: 217, Count: 3, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\Windows\SystemTemp\GoogleUpdater_chrome_Unpacker_BeginUnzipping888_784437751\CR_FEF5D.tmp\setup.exe, EstimatedImpact: 100% 2026-06-09T01:15:53.346 ProcessImageName: setup.exe, Pid: 4792, TotalTime: 168, Count: 10, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe, EstimatedImpact: 71% 2026-06-09T01:15:53.346 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 165, Count: 34, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_235c_3.MAI, EstimatedImpact: 0% 2026-06-09T01:15:53.346 ProcessImageName: updater.exe, Pid: 4308, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4b3ff225-350c-4b2a-8ff3-3f547972d3aa.tmp, EstimatedImpact: 0% 2026-06-09T01:15:53.346 ProcessImageName: updater.exe, Pid: 4260, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\539799d5-b58a-4fbd-8a37-f7cb323ca5e6.tmp, EstimatedImpact: 0% 2026-06-09T01:15:53.346 ProcessImageName: updater.exe, Pid: 4252, TotalTime: 30, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\Crashpad\settings.dat, EstimatedImpact: 0% 2026-06-09T01:15:53.392 [Engine] RSIG_UNLOADENGINE, 00007FFABD405810, err=0x0 2026-06-09T01:15:53.408 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3B44E8C2-F7C4-416A-9625-FA9E13DED895} removed 2026-06-09T01:15:57.564 Process scan (postsignatureupdatescan) completed. 2026-06-09T01:20:41.816 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #111712, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:20:41.831 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #111714, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:20:51.825 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #111718, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:20:51.841 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #111720, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:20:51.841 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #111722, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:20:52.370 [RbM] Setting Last known good engine candidate. hr = 0 2026-06-09T01:27:26.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T01:33:26.822 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #113032, FileId: 0x4b4e0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:33:38.529 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #113481, FileId: 0x4b520000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:33:38.529 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290d_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #113482, FileId: 0x17000000008607, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:36:00.342 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_huiv2vio.4fe.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #113506, FileId: 0x1d0000000082b3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:41:00.372 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_nt4c2vwx.4mc.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #113561, FileId: 0x220000000082b3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:42:31.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T01:46:00.369 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_hjghrur1.diu.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #113614, FileId: 0x270000000082b3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:54:00.417 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_o4nrueu4.q4p.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #113682, FileId: 0x2f0000000082b3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:54:56.265 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_2925_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #113695, FileId: 0x4b6c0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:56:08.270 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_2928_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #113711, FileId: 0x4b720000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:56:08.832 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_2928_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #113715, FileId: 0x4b730000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:56:23.848 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_2929_2.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #113720, FileId: 0x4b770000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T01:57:36.434 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T02:03:00.465 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4opiloxh.y1x.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #113765, FileId: 0x3d0000000082b3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T02:12:41.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T02:13:00.528 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_lecepmr0.nhr.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #113836, FileId: 0x470000000082b3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T02:19:00.537 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_opop1kco.c31.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #113879, FileId: 0x4d0000000082b3, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T02:20:39.139 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #113902, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T02:20:39.139 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #113904, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T02:20:49.148 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #113908, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T02:20:49.163 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #113910, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T02:21:00.540 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_fqx0yow2.cm5.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #113913, FileId: 0x1b0000000082cf, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T02:24:00.585 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_rosawsli.l1i.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #113939, FileId: 0x1e0000000082cf, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T02:27:46.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T02:42:51.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T02:50:00.772 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bigtqotn.r1j.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #114273, FileId: 0x180000000084c4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T02:57:56.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T03:01:00.825 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_v1c3irkq.lvz.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #114376, FileId: 0x230000000084c4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T03:10:00.883 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_1h0jezzt.41j.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #114478, FileId: 0x2c0000000084c4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T03:12:00.908 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3ikeyjt4.wfn.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #114492, FileId: 0x2e0000000084c4, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T03:13:01.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T03:15:52.345 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 48779, Count: 6582, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-09T03:15:52.345 ProcessImageName: powershell.exe, Pid: 2268, TotalTime: 244, Count: 32, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 27% 2026-06-09T03:15:52.345 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 75, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_1.MAD, EstimatedImpact: 0% 2026-06-09T03:15:52.345 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-09T03:15:52.345 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56f560fc-a108-4d81-98c7-ef7bbd23e95f.tmp, EstimatedImpact: 0% 2026-06-09T03:15:52.345 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a7b04cc-0ef8-4f16-b420-6a347499509b.tmp, EstimatedImpact: 0% 2026-06-09T03:20:39.125 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #114563, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T03:20:39.141 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #114565, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T03:20:49.150 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #114569, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T03:20:49.150 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #114571, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T03:28:06.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T03:35:41.741 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:689A1346-B6F1-4194-AC1E-96AA5E9EEB57, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-06-09T03:35:41.741 Scheduled scan with Id 689A1346-B6F1-4194-AC1E-96AA5E9EEB57 configured CPU priority: normal (LowCpuPriority: 0) 2026-06-09T03:35:41.741 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-09T03:35:41.741 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-06-09T03:35:41.741 [SFC] System file cache build is not needed (already completed) 2026-06-09T03:35:54.755 Engine:Triggered AR EMS scan 2026-06-09T03:35:54.755 Engine:EMS scan for process: lsass pid: 616, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.771 Engine:EMS scan for process: svchost pid: 704, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.771 Engine:EMS scan for process: svchost pid: 760, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.787 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.787 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.802 Engine:EMS scan for process: svchost pid: 972, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.818 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.818 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.833 Engine:EMS scan for process: svchost pid: 724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.849 Engine:EMS scan for process: svchost pid: 1160, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.849 Engine:EMS scan for process: svchost pid: 1184, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.865 Engine:EMS scan for process: svchost pid: 1368, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.880 Engine:EMS scan for process: svchost pid: 2012, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.880 Engine:EMS scan for process: svchost pid: 1924, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.896 Engine:EMS scan for process: svchost pid: 1956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.896 Engine:EMS scan for process: svchost pid: 2740, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.912 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:35:54.927 Engine:EMS scan for process: svchost pid: 4436, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-09T03:36:14.630 QuickScan:ScanID:689A1346-B6F1-4194-AC1E-96AA5E9EEB57: Quick scan finished with error 0 2026-06-09T03:36:14.630 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-09T03:36:15.142 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-09T03:36:15.142 [RTP] Duplicating the current plugin configuration object... 2026-06-09T03:36:15.142 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-09T03:36:15.142 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-09T03:36:15.142 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-09T03:36:15.142 [RTP] No config change detected. Not updating plugin configuration. 2026-06-09T03:36:15.142 [RTP] No config changes found. No configuration switch. 2026-06-09T03:36:15.142 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-09T03:41:12.694 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_29a9_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #114860, FileId: 0x4baa0000000080c4, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T03:43:11.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T03:49:01.079 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vb2bhebd.sv3.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #114917, FileId: 0x30000000008509, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T03:50:01.084 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ootcrz2t.3dv.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #114924, FileId: 0x31000000008509, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T03:58:16.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T04:01:00.150 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_k20aeace.zxb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #115015, FileId: 0x3c000000008509, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T04:07:00.195 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_uivhnj2a.iza.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #115058, FileId: 0x42000000008509, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T04:10:00.205 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_mkpvrgr0.ujh.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #115080, FileId: 0x48000000008509, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T04:13:21.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T04:20:41.110 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #115174, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T04:20:41.125 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #115176, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T04:20:51.124 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #115180, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T04:20:51.124 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #115182, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T04:20:51.264 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #115186, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T04:20:51.280 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #115188, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T04:28:26.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T04:43:31.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T04:46:00.428 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_lcmjizhk.4hw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #115373, FileId: 0x6f000000008509, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T04:48:00.437 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_wfdfa1h0.oir.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #115387, FileId: 0x71000000008509, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T04:52:00.471 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ybk0uua2.1fe.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #115418, FileId: 0x75000000008509, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T04:53:00.471 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_eylqia3a.i0v.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #115425, FileId: 0x76000000008509, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T04:58:36.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T04:59:00.526 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_cjmbesf1.bxa.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #115467, FileId: 0x7c000000008509, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T05:10:00.587 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_tlebf2dp.pqs.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #115544, FileId: 0x87000000008509, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T05:13:41.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T05:15:52.345 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 48946, Count: 6598, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-09T05:15:52.345 ProcessImageName: powershell.exe, Pid: 2268, TotalTime: 244, Count: 32, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 27% 2026-06-09T05:15:52.345 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 105, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_1.MAD, EstimatedImpact: 0% 2026-06-09T05:15:52.345 ProcessImageName: updater.exe, Pid: 4524, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6dc32f6-4ca0-4e95-b1d5-8175a3282835.tmp, EstimatedImpact: 0% 2026-06-09T05:15:52.345 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 30, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-09T05:15:52.345 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56f560fc-a108-4d81-98c7-ef7bbd23e95f.tmp, EstimatedImpact: 0% 2026-06-09T05:15:52.345 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a7b04cc-0ef8-4f16-b420-6a347499509b.tmp, EstimatedImpact: 0% 2026-06-09T05:15:52.345 ProcessImageName: updater.exe, Pid: 580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72129fa7-e538-4d15-bef0-61a7c739632e.tmp, EstimatedImpact: 0% 2026-06-09T05:20:39.832 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #115629, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T05:20:39.847 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #115631, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T05:20:49.853 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #115635, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T05:20:49.869 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #115637, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T05:24:00.692 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_jbwhe0ec.2of.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #115675, FileId: 0x96000000008509, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T05:28:46.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T05:43:51.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T05:47:00.801 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_sdiycjkz.1ej.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #115874, FileId: 0xad000000008509, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T05:58:00.906 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_fbdpzfzw.y0z.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #115971, FileId: 0x29000000008527, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T05:58:56.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T06:06:00.949 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_asvc3dpc.32r.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #116027, FileId: 0x31000000008527, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:14:01.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T06:20:40.878 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #116159, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:20:40.878 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #116161, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:20:50.892 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #116165, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:20:50.907 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #116167, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:29:06.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T06:35:01.066 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_sugc0ge4.hsd.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #116272, FileId: 0x4f000000008527, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:37:01.087 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_nxelr21e.zem.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #116289, FileId: 0x51000000008527, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:40:00.110 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ovsjui1k.3ji.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #116322, FileId: 0x54000000008527, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:44:11.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T06:46:00.164 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_kmhvxzpv.hih.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #116389, FileId: 0x5a000000008527, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:49:00.179 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0fgwq03j.05r.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #116416, FileId: 0x5d000000008527, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:51:00.271 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_rgosaof2.ya3.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #116433, FileId: 0x5f000000008527, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:53:00.218 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3yh33fgp.qqu.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #117028, FileId: 0x61000000008527, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:53:15.432 ReportLowfi(ctfmon.exe, 0x437a0835) from 0x0006b6bd6566d2d9 BEGIN BM telemetry GUID:{C4C5D998-89BE-7156-C30E-3FC972B5A125} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:2092 ProcessCreationTime:134254615954475520 SessionID:2 CreationTime:06-09-2026 06:53:15 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\userinit.exe:2168:1, Operations:None END BM telemetry 2026-06-09T06:53:15.526 Bm signature throttled:0x00003fb37eb842dc 2026-06-09T06:53:16.510 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-09T06:53:16.510 [Cloud] Start of cloud request. Passive mode: 0 2026-06-09T06:53:16.510 [Cloud] Queued cloud request. 2026-06-09T06:53:16.510 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-09T06:53:16.557 Job Notification: New process added to job (4028) 2026-06-09T06:53:16.557 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 716575C1-C996-BAC5-3B99-ABAB809F70FB) launched 2026-06-09T06:53:16.557 Job Notification: New process added to job (4292) 2026-06-09T06:53:16.588 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:4028] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:4292]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-09T06:53:16.604 Job Notification: New process added to job (4196) 2026-06-09T06:53:16.604 Job Notification: Process exited from job (4028) 2026-06-09T06:53:16.604 Job Notification: Process exited from job (4292) 2026-06-09T06:53:16.619 [Cloud] Dequeued cloud request. 2026-06-09T06:53:16.619 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-09T06:53:16.982 [Cloud] End of cloud request. 2026-06-09T06:53:17.482 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-09T06:53:19.466 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #117465, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:53:19.466 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #117467, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:53:23.129 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\Users\Administrator.EXTERN\AppData\Local\Temp\Prs22AB.tmp. Process: \Device\HarddiskVolume2\Windows\System32\rdpclip.exe, Status: 0xc0000001, State: 0, ScanRequest #117655, FileId: 0x9000000008892, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:53:29.480 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #117759, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:53:29.480 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #117760, FileId: 0x48000000005f7b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:53:29.495 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #117761, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:53:29.495 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #117762, FileId: 0x48000000005f7b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T06:59:16.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T07:00:00.267 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_rbofauro.q14.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #118047, FileId: 0x5eb000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T07:14:21.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T07:15:52.349 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 50277, Count: 6693, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-09T07:15:52.349 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 577, Count: 2, MaxTime: 562, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 1% 2026-06-09T07:15:52.349 ProcessImageName: explorer.exe, Pid: 3824, TotalTime: 547, Count: 40, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Program Files\Windows Defender\shellext.dll, EstimatedImpact: 2% 2026-06-09T07:15:52.349 ProcessImageName: powershell.exe, Pid: 2268, TotalTime: 244, Count: 32, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 27% 2026-06-09T07:15:52.349 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 105, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_1.MAD, EstimatedImpact: 0% 2026-06-09T07:15:52.349 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 60, Count: 7, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-09T07:15:52.349 ProcessImageName: updater.exe, Pid: 4524, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6dc32f6-4ca0-4e95-b1d5-8175a3282835.tmp, EstimatedImpact: 0% 2026-06-09T07:15:52.349 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56f560fc-a108-4d81-98c7-ef7bbd23e95f.tmp, EstimatedImpact: 0% 2026-06-09T07:15:52.349 ProcessImageName: updater.exe, Pid: 2880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\651a1bc7-4b00-46b3-81a3-7cf8f24b8050.tmp, EstimatedImpact: 0% 2026-06-09T07:15:52.349 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a7b04cc-0ef8-4f16-b420-6a347499509b.tmp, EstimatedImpact: 0% 2026-06-09T07:15:52.349 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52fe5d9e-de75-4b07-95b6-27519498140d.tmp, EstimatedImpact: 0% 2026-06-09T07:15:52.349 ProcessImageName: updater.exe, Pid: 4192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8eb962a5-e99d-4e70-b7dd-28a99af5e5ca.tmp, EstimatedImpact: 0% 2026-06-09T07:15:52.349 ProcessImageName: updater.exe, Pid: 580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72129fa7-e538-4d15-bef0-61a7c739632e.tmp, EstimatedImpact: 0% 2026-06-09T07:18:00.400 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0x2bit1e.5tg.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #118210, FileId: 0x12d000000009d2a, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T07:20:42.107 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #118236, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T07:20:42.107 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #118238, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T07:20:52.116 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #118242, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T07:20:52.131 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #118244, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T07:20:52.131 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #118246, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T07:23:16.510 Bm signature throttled:0x00003fb37eb842dc 2026-06-09T07:29:26.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T07:44:31.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T07:45:00.644 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_tlxibbor.iuz.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #118425, FileId: 0x149000000009d2a, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T07:45:52.862 Bm signature throttled:0x00003fb37eb842dc 2026-06-09T07:46:00.635 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_pltk015b.rmt.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #118459, FileId: 0x14a000000009d2a, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T07:53:00.724 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_yg31fqeo.am1.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #118521, FileId: 0x151000000009d2a, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T07:55:00.737 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_elsimx00.pht.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #118535, FileId: 0x153000000009d2a, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T07:59:00.767 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_kap0nrmi.zxh.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #118563, FileId: 0x157000000009d2a, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T07:59:36.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T08:14:41.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T08:19:00.936 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_cpukocnk.i53.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #118717, FileId: 0x16b000000009d2a, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T08:20:41.035 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #118739, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T08:20:41.035 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #118741, FileId: 0x48000000005f7b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T08:20:51.049 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #118745, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T08:20:51.064 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #118747, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T08:20:51.064 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #118749, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T08:29:46.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T08:30:01.052 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_4ngijiaf.y0v.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #118849, FileId: 0x66000000009d37, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T08:31:01.047 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_lpwtwunx.le4.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #118856, FileId: 0x67000000009d37, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T08:44:51.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T08:53:00.270 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_sua3gucf.w04.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #119028, FileId: 0x7d000000009d37, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T08:59:56.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T09:08:00.403 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_gry4fnoh.ch1.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #119133, FileId: 0x8c000000009d37, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T09:15:01.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T09:15:52.364 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 50913, Count: 6745, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-09T09:15:52.364 ProcessImageName: explorer.exe, Pid: 3824, TotalTime: 625, Count: 41, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files\FileZilla FTP Client\fzshellext_64.dll, EstimatedImpact: 0% 2026-06-09T09:15:52.364 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 577, Count: 2, MaxTime: 562, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 1% 2026-06-09T09:15:52.364 ProcessImageName: powershell.exe, Pid: 2268, TotalTime: 244, Count: 32, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 27% 2026-06-09T09:15:52.364 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 105, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_1.MAD, EstimatedImpact: 0% 2026-06-09T09:15:52.364 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 75, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-09T09:15:52.364 ProcessImageName: updater.exe, Pid: 4524, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6dc32f6-4ca0-4e95-b1d5-8175a3282835.tmp, EstimatedImpact: 0% 2026-06-09T09:15:52.364 ProcessImageName: updater.exe, Pid: 5076, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3e12916-1d12-4a75-aaa5-f21324cf51a0.tmp, EstimatedImpact: 0% 2026-06-09T09:15:52.364 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56f560fc-a108-4d81-98c7-ef7bbd23e95f.tmp, EstimatedImpact: 0% 2026-06-09T09:15:52.364 ProcessImageName: updater.exe, Pid: 2880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\651a1bc7-4b00-46b3-81a3-7cf8f24b8050.tmp, EstimatedImpact: 0% 2026-06-09T09:15:52.364 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a7b04cc-0ef8-4f16-b420-6a347499509b.tmp, EstimatedImpact: 0% 2026-06-09T09:15:52.364 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52fe5d9e-de75-4b07-95b6-27519498140d.tmp, EstimatedImpact: 0% 2026-06-09T09:15:52.364 ProcessImageName: updater.exe, Pid: 1784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74febd83-2513-4f4b-9a1d-766753218586.tmp, EstimatedImpact: 0% 2026-06-09T09:15:52.364 ProcessImageName: updater.exe, Pid: 4192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8eb962a5-e99d-4e70-b7dd-28a99af5e5ca.tmp, EstimatedImpact: 0% 2026-06-09T09:15:52.364 ProcessImageName: updater.exe, Pid: 580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72129fa7-e538-4d15-bef0-61a7c739632e.tmp, EstimatedImpact: 0% 2026-06-09T09:16:00.464 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_x3zc40lp.4je.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #119190, FileId: 0x94000000009d37, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T09:30:06.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T09:44:00.615 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_detsm1sd.h0o.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #119452, FileId: 0xb3000000009d37, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T09:45:11.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T10:00:16.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T10:15:21.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T10:30:26.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T10:45:31.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-06-09T10:47:54.221 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-09T10:47:54.221 [Cloud] Start of cloud request. Passive mode: 0 2026-06-09T10:47:54.221 [Cloud] Queued cloud request. 2026-06-09T10:47:54.221 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-09T10:47:54.221 [Cloud] Dequeued cloud request. 2026-06-09T10:47:54.221 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-09T10:47:54.658 [Cloud] End of cloud request. 2026-06-09T10:47:54.658 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) BEGIN BM telemetry GUID:{E0C39101-6FFC-6600-FF28-8709D4866C92} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:2956 ProcessCreationTime:134254756742251772 SessionID:0 CreationTime:06-09-2026 10:47:54 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1184:1, Operations:None END BM telemetry 2026-06-09T10:47:54.673 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-09T10:47:54.689 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE 2026-06-09T10:47:54.720 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-09T10:47:54.720 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-09T10:47:55.298 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-09T10:47:55.642 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-09T10:47:55.642 [Cloud] Start of cloud request. Passive mode: 0 2026-06-09T10:47:55.642 [Cloud] Queued cloud request. 2026-06-09T10:47:55.642 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-09T10:47:55.642 [Cloud] Dequeued cloud request. 2026-06-09T10:47:55.705 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-09T10:47:56.111 [Cloud] End of cloud request. 2026-06-09T10:47:56.830 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-09T10:47:57.283 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-09T10:47:57.283 [Cloud] Start of cloud request. Passive mode: 0 2026-06-09T10:47:57.283 [Cloud] Queued cloud request. 2026-06-09T10:47:57.283 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-09T10:47:57.283 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-06-09T10:47:57.283 [Cloud] Dequeued cloud request. 2026-06-09T10:47:57.283 [Cloud] Start of cloud request. Passive mode: 0 2026-06-09T10:47:57.283 [Cloud] Queued cloud request. 2026-06-09T10:47:57.283 [Cloud] Dequeued cloud request. 2026-06-09T10:47:57.283 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-09T10:47:57.283 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-09T10:47:57.455 [Cloud] End of cloud request. 2026-06-09T10:47:57.501 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-09T10:47:57.501 [Cloud] End of cloud request. 2026-06-09T10:47:57.970 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-09T11:00:36.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T11:13:00.374 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_legc3hv3.3dw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #120160, FileId: 0x645000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T11:15:41.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T11:15:52.369 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 50943, Count: 6751, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-09T11:15:52.369 ProcessImageName: explorer.exe, Pid: 3824, TotalTime: 625, Count: 41, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files\FileZilla FTP Client\fzshellext_64.dll, EstimatedImpact: 0% 2026-06-09T11:15:52.369 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 577, Count: 2, MaxTime: 562, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 1% 2026-06-09T11:15:52.369 ProcessImageName: powershell.exe, Pid: 2268, TotalTime: 244, Count: 32, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 27% 2026-06-09T11:15:52.369 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 105, Count: 22, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_1.MAD, EstimatedImpact: 0% 2026-06-09T11:15:52.369 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 75, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-09T11:15:52.369 ProcessImageName: wacs.exe, Pid: 2956, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-09T11:15:52.369 ProcessImageName: updater.exe, Pid: 4524, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6dc32f6-4ca0-4e95-b1d5-8175a3282835.tmp, EstimatedImpact: 0% 2026-06-09T11:15:52.369 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ea9859c-6f1f-4cc0-954e-8fcfe5e5310b.tmp, EstimatedImpact: 0% 2026-06-09T11:15:52.369 ProcessImageName: updater.exe, Pid: 5076, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3e12916-1d12-4a75-aaa5-f21324cf51a0.tmp, EstimatedImpact: 0% 2026-06-09T11:15:52.369 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56f560fc-a108-4d81-98c7-ef7bbd23e95f.tmp, EstimatedImpact: 0% 2026-06-09T11:15:52.369 ProcessImageName: updater.exe, Pid: 1784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74febd83-2513-4f4b-9a1d-766753218586.tmp, EstimatedImpact: 0% 2026-06-09T11:15:52.369 ProcessImageName: updater.exe, Pid: 5236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\861cf845-944b-4fca-844b-6568f490ead3.tmp, EstimatedImpact: 0% 2026-06-09T11:15:52.369 ProcessImageName: updater.exe, Pid: 2880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\651a1bc7-4b00-46b3-81a3-7cf8f24b8050.tmp, EstimatedImpact: 0% 2026-06-09T11:15:52.369 ProcessImageName: updater.exe, Pid: 4192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8eb962a5-e99d-4e70-b7dd-28a99af5e5ca.tmp, EstimatedImpact: 0% 2026-06-09T11:15:52.369 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52fe5d9e-de75-4b07-95b6-27519498140d.tmp, EstimatedImpact: 0% 2026-06-09T11:15:52.369 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a7b04cc-0ef8-4f16-b420-6a347499509b.tmp, EstimatedImpact: 0% 2026-06-09T11:15:52.369 ProcessImageName: updater.exe, Pid: 580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72129fa7-e538-4d15-bef0-61a7c739632e.tmp, EstimatedImpact: 0% 2026-06-09T11:30:46.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T11:45:51.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T11:51:00.635 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_piuxj4tp.zpj.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #120487, FileId: 0x66c000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T12:00:56.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T12:16:01.431 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T12:31:06.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T12:40:00.967 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_mbk0xkgv.gdo.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #120867, FileId: 0x6a0000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T12:46:11.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T13:01:16.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T13:15:52.373 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51050, Count: 6760, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: explorer.exe, Pid: 3824, TotalTime: 625, Count: 41, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files\FileZilla FTP Client\fzshellext_64.dll, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 577, Count: 2, MaxTime: 562, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 1% 2026-06-09T13:15:52.373 ProcessImageName: powershell.exe, Pid: 2268, TotalTime: 244, Count: 32, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 27% 2026-06-09T13:15:52.373 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 120, Count: 26, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_1.MAD, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 75, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: wacs.exe, Pid: 2956, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-09T13:15:52.373 ProcessImageName: updater.exe, Pid: 4524, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6dc32f6-4ca0-4e95-b1d5-8175a3282835.tmp, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ea9859c-6f1f-4cc0-954e-8fcfe5e5310b.tmp, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: updater.exe, Pid: 5076, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3e12916-1d12-4a75-aaa5-f21324cf51a0.tmp, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56f560fc-a108-4d81-98c7-ef7bbd23e95f.tmp, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: updater.exe, Pid: 4552, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5f3876a-a2c1-4eeb-a17b-66477cd75206.tmp, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: updater.exe, Pid: 1784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74febd83-2513-4f4b-9a1d-766753218586.tmp, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: updater.exe, Pid: 2880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\651a1bc7-4b00-46b3-81a3-7cf8f24b8050.tmp, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: updater.exe, Pid: 1432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b93f7e16-c505-4350-be86-3a9f7c96841b.tmp, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a7b04cc-0ef8-4f16-b420-6a347499509b.tmp, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52fe5d9e-de75-4b07-95b6-27519498140d.tmp, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: updater.exe, Pid: 5236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\861cf845-944b-4fca-844b-6568f490ead3.tmp, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: updater.exe, Pid: 580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72129fa7-e538-4d15-bef0-61a7c739632e.tmp, EstimatedImpact: 0% 2026-06-09T13:15:52.373 ProcessImageName: updater.exe, Pid: 4192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8eb962a5-e99d-4e70-b7dd-28a99af5e5ca.tmp, EstimatedImpact: 0% 2026-06-09T13:16:21.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T13:20:50.211 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #121222, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T13:31:26.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T13:46:31.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T14:01:36.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T14:16:41.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T14:20:49.808 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #121686, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T14:31:46.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T14:46:51.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T15:01:56.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T15:15:52.377 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51050, Count: 6762, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: explorer.exe, Pid: 3824, TotalTime: 625, Count: 41, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files\FileZilla FTP Client\fzshellext_64.dll, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 577, Count: 2, MaxTime: 562, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 1% 2026-06-09T15:15:52.377 ProcessImageName: powershell.exe, Pid: 2268, TotalTime: 244, Count: 32, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 27% 2026-06-09T15:15:52.377 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 135, Count: 31, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_1.MAD, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 75, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: wacs.exe, Pid: 2956, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 4524, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6dc32f6-4ca0-4e95-b1d5-8175a3282835.tmp, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 5548, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4c793b55-10c4-4355-b6ae-0264ad598c20.tmp, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ea9859c-6f1f-4cc0-954e-8fcfe5e5310b.tmp, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 5076, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3e12916-1d12-4a75-aaa5-f21324cf51a0.tmp, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56f560fc-a108-4d81-98c7-ef7bbd23e95f.tmp, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 5236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\861cf845-944b-4fca-844b-6568f490ead3.tmp, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 1432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b93f7e16-c505-4350-be86-3a9f7c96841b.tmp, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 4192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8eb962a5-e99d-4e70-b7dd-28a99af5e5ca.tmp, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8fcc9ca-d48a-45c9-b703-f8929ec5a880.tmp, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52fe5d9e-de75-4b07-95b6-27519498140d.tmp, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a7b04cc-0ef8-4f16-b420-6a347499509b.tmp, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 1784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74febd83-2513-4f4b-9a1d-766753218586.tmp, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 4552, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5f3876a-a2c1-4eeb-a17b-66477cd75206.tmp, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 2880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\651a1bc7-4b00-46b3-81a3-7cf8f24b8050.tmp, EstimatedImpact: 0% 2026-06-09T15:15:52.377 ProcessImageName: updater.exe, Pid: 580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72129fa7-e538-4d15-bef0-61a7c739632e.tmp, EstimatedImpact: 0% 2026-06-09T15:17:01.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T15:20:48.689 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #122163, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T15:32:06.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T15:47:11.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T16:02:16.430 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T16:17:21.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T16:20:41.535 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #122654, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T16:32:26.425 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T16:47:31.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T16:48:00.920 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_qenpb4jt.1i0.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #122858, FileId: 0x11f000000009d37, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T17:02:36.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T17:15:52.377 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51343, Count: 6783, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: explorer.exe, Pid: 3824, TotalTime: 625, Count: 41, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files\FileZilla FTP Client\fzshellext_64.dll, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 577, Count: 2, MaxTime: 562, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 1% 2026-06-09T17:15:52.377 ProcessImageName: powershell.exe, Pid: 2268, TotalTime: 244, Count: 32, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 27% 2026-06-09T17:15:52.377 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 135, Count: 35, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_1.MAD, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 75, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: wacs.exe, Pid: 2956, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ea9859c-6f1f-4cc0-954e-8fcfe5e5310b.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 4524, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6dc32f6-4ca0-4e95-b1d5-8175a3282835.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 5548, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4c793b55-10c4-4355-b6ae-0264ad598c20.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 5076, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3e12916-1d12-4a75-aaa5-f21324cf51a0.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56f560fc-a108-4d81-98c7-ef7bbd23e95f.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 4192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8eb962a5-e99d-4e70-b7dd-28a99af5e5ca.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 580, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\72129fa7-e538-4d15-bef0-61a7c739632e.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 1432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b93f7e16-c505-4350-be86-3a9f7c96841b.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 5236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\861cf845-944b-4fca-844b-6568f490ead3.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52fe5d9e-de75-4b07-95b6-27519498140d.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 4552, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5f3876a-a2c1-4eeb-a17b-66477cd75206.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 2880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\651a1bc7-4b00-46b3-81a3-7cf8f24b8050.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 1784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74febd83-2513-4f4b-9a1d-766753218586.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 5944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8e95c05-1abe-4605-99df-57452f687055.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8fcc9ca-d48a-45c9-b703-f8929ec5a880.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a7b04cc-0ef8-4f16-b420-6a347499509b.tmp, EstimatedImpact: 0% 2026-06-09T17:15:52.377 ProcessImageName: updater.exe, Pid: 5560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f5678aa-2b6b-46d1-bb66-d086b9cca5be.tmp, EstimatedImpact: 0% 2026-06-09T17:17:41.429 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T17:20:50.859 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #123145, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T17:32:46.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T17:47:51.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T18:02:56.428 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T18:14:59.478 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_2ef7_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #123567, FileId: 0x7ca000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T18:18:01.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T18:33:06.427 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T18:41:00.818 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_k2gqvwxz.imf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #123790, FileId: 0x196000000009d37, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T18:48:11.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T19:03:16.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T19:15:52.376 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51343, Count: 6787, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: explorer.exe, Pid: 3824, TotalTime: 625, Count: 41, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files\FileZilla FTP Client\fzshellext_64.dll, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 577, Count: 2, MaxTime: 562, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 1% 2026-06-09T19:15:52.376 ProcessImageName: powershell.exe, Pid: 2268, TotalTime: 244, Count: 32, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 27% 2026-06-09T19:15:52.376 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 165, Count: 43, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_1.MAD, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 75, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: wacs.exe, Pid: 2956, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ea9859c-6f1f-4cc0-954e-8fcfe5e5310b.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 4524, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6dc32f6-4ca0-4e95-b1d5-8175a3282835.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 5548, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4c793b55-10c4-4355-b6ae-0264ad598c20.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 5076, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3e12916-1d12-4a75-aaa5-f21324cf51a0.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56f560fc-a108-4d81-98c7-ef7bbd23e95f.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 2880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\651a1bc7-4b00-46b3-81a3-7cf8f24b8050.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\562eaf5c-87f3-4d8e-90df-ea827af83a57.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 1784, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\74febd83-2513-4f4b-9a1d-766753218586.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 5944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8e95c05-1abe-4605-99df-57452f687055.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 4192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8eb962a5-e99d-4e70-b7dd-28a99af5e5ca.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 1432, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b93f7e16-c505-4350-be86-3a9f7c96841b.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52fe5d9e-de75-4b07-95b6-27519498140d.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8fcc9ca-d48a-45c9-b703-f8929ec5a880.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a7b04cc-0ef8-4f16-b420-6a347499509b.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 5560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f5678aa-2b6b-46d1-bb66-d086b9cca5be.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 5236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\861cf845-944b-4fca-844b-6568f490ead3.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 5500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f88dae49-80c6-4211-82c6-61d490394132.tmp, EstimatedImpact: 0% 2026-06-09T19:15:52.376 ProcessImageName: updater.exe, Pid: 4552, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5f3876a-a2c1-4eeb-a17b-66477cd75206.tmp, EstimatedImpact: 0% 2026-06-09T19:18:21.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T19:20:51.419 [RTP] [Mini-filter] Unsuccessful scan status(#230): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #124101, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T19:33:26.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T19:48:31.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T20:02:08.287 [RTP] [Mini-filter] Unsuccessful scan status(#240): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_2f6a_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #124434, FileId: 0x801000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T20:03:36.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T20:18:41.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T20:20:51.998 [RTP] [Mini-filter] Unsuccessful scan status(#250): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #124594, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T20:33:46.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T20:48:51.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T21:03:56.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T21:15:52.386 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51343, Count: 6789, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: explorer.exe, Pid: 3824, TotalTime: 625, Count: 41, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files\FileZilla FTP Client\fzshellext_64.dll, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 577, Count: 2, MaxTime: 562, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 1% 2026-06-09T21:15:52.386 ProcessImageName: powershell.exe, Pid: 2268, TotalTime: 244, Count: 32, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 27% 2026-06-09T21:15:52.386 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 210, Count: 52, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_1.MAD, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 75, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: wacs.exe, Pid: 2956, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 5548, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4c793b55-10c4-4355-b6ae-0264ad598c20.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 5404, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef8fd917-b701-4b4e-970c-f3f4c3a04000.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 4524, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6dc32f6-4ca0-4e95-b1d5-8175a3282835.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ea9859c-6f1f-4cc0-954e-8fcfe5e5310b.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 5076, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3e12916-1d12-4a75-aaa5-f21324cf51a0.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 2264, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8ba4b429-527e-49f6-ad10-6bba42720b95.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56f560fc-a108-4d81-98c7-ef7bbd23e95f.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 5236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\861cf845-944b-4fca-844b-6568f490ead3.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 4552, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5f3876a-a2c1-4eeb-a17b-66477cd75206.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 5500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f88dae49-80c6-4211-82c6-61d490394132.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 4192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8eb962a5-e99d-4e70-b7dd-28a99af5e5ca.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\562eaf5c-87f3-4d8e-90df-ea827af83a57.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 2880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\651a1bc7-4b00-46b3-81a3-7cf8f24b8050.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52fe5d9e-de75-4b07-95b6-27519498140d.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 5944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8e95c05-1abe-4605-99df-57452f687055.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a7b04cc-0ef8-4f16-b420-6a347499509b.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8fcc9ca-d48a-45c9-b703-f8929ec5a880.tmp, EstimatedImpact: 0% 2026-06-09T21:15:52.386 ProcessImageName: updater.exe, Pid: 5560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f5678aa-2b6b-46d1-bb66-d086b9cca5be.tmp, EstimatedImpact: 0% 2026-06-09T21:19:01.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T21:20:50.134 [RTP] [Mini-filter] Unsuccessful scan status(#260): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #125072, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T21:34:06.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T21:49:11.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T22:04:16.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T22:19:21.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T22:20:39.079 [RTP] [Mini-filter] Unsuccessful scan status(#270): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #125554, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T22:34:26.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T22:49:31.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T23:04:36.415 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T23:15:52.385 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51343, Count: 6793, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: explorer.exe, Pid: 3824, TotalTime: 625, Count: 41, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files\FileZilla FTP Client\fzshellext_64.dll, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 577, Count: 2, MaxTime: 562, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 1% 2026-06-09T23:15:52.385 ProcessImageName: powershell.exe, Pid: 2268, TotalTime: 244, Count: 32, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 27% 2026-06-09T23:15:52.385 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 240, Count: 56, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_1.MAD, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 75, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: wacs.exe, Pid: 2956, TotalTime: 45, Count: 6, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\win-acme\settings.json, EstimatedImpact: 1% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ea9859c-6f1f-4cc0-954e-8fcfe5e5310b.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 5548, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4c793b55-10c4-4355-b6ae-0264ad598c20.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 5404, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef8fd917-b701-4b4e-970c-f3f4c3a04000.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 4524, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6dc32f6-4ca0-4e95-b1d5-8175a3282835.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 5076, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3e12916-1d12-4a75-aaa5-f21324cf51a0.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56f560fc-a108-4d81-98c7-ef7bbd23e95f.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 5236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\861cf845-944b-4fca-844b-6568f490ead3.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 4192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8eb962a5-e99d-4e70-b7dd-28a99af5e5ca.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 4012, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb81c086-b95d-4afd-b893-aac4be4d9569.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\562eaf5c-87f3-4d8e-90df-ea827af83a57.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8fcc9ca-d48a-45c9-b703-f8929ec5a880.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 5560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f5678aa-2b6b-46d1-bb66-d086b9cca5be.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52fe5d9e-de75-4b07-95b6-27519498140d.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 5944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8e95c05-1abe-4605-99df-57452f687055.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a7b04cc-0ef8-4f16-b420-6a347499509b.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 4552, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5f3876a-a2c1-4eeb-a17b-66477cd75206.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 2880, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\651a1bc7-4b00-46b3-81a3-7cf8f24b8050.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 5036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b331126c-63ba-49ad-9353-5c37ceea107c.tmp, EstimatedImpact: 0% 2026-06-09T23:15:52.385 ProcessImageName: updater.exe, Pid: 5500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f88dae49-80c6-4211-82c6-61d490394132.tmp, EstimatedImpact: 0% 2026-06-09T23:19:41.415 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T23:20:50.354 [RTP] [Mini-filter] Unsuccessful scan status(#280): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #126035, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-09T23:34:46.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-09T23:49:51.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T00:04:56.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T00:20:01.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T00:20:40.222 [RTP] [Mini-filter] Unsuccessful scan status(#290): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #126484, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T00:35:06.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T00:50:11.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T01:05:16.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T01:15:31.423 [AutoPurge] AutoPurgeWorker triggered with dwWork=0x3 2026-06-10T01:15:31.439 Job Notification: New process added to job (288) 2026-06-10T01:15:31.454 Task(SignatureUpdate -ScheduleJob -RestrictPrivileges) launched 2026-06-10T01:15:31.454 Aggressive catchup quick scan threshold: 779897155477 / 25920000000000 2026-06-10T01:15:31.454 Job Notification: New process added to job (2100) 2026-06-10T01:15:31.470 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:288] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:2100]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-10T01:15:31.579 Job Notification: New process added to job (2648) 2026-06-10T01:15:31.595 Task(SignaturesUpdateService -ScheduleJob -UnmanagedUpdate) launched 2026-06-10T01:15:31.595 Job Notification: New process added to job (3896) 2026-06-10T01:15:31.595 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:2648] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:3896]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-10T01:15:32.001 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-10T01:15:32.048 [RTP] Duplicating the current plugin configuration object... 2026-06-10T01:15:32.048 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-10T01:15:32.048 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-10T01:15:32.048 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-10T01:15:32.048 [RTP] No config change detected. Not updating plugin configuration. 2026-06-10T01:15:32.048 [RTP] No config changes found. No configuration switch. 2026-06-10T01:15:32.048 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-10T01:15:32.173 Job Notification: New process added to job (3180) 2026-06-10T01:15:32.173 Task(GetDeviceTicket -AccessKey 03606960-EBE9-7ED1-A231-321B033A9A86 ) launched as network service 2026-06-10T01:15:32.743 Job Notification: Process exited from job (3180) 2026-06-10T01:15:33.855 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T01:15:33.855 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T01:15:33.855 [Cloud] Queued cloud request. 2026-06-10T01:15:33.855 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T01:15:33.855 [Cloud] Dequeued cloud request. 2026-06-10T01:15:33.855 [Cloud] SubmitReport(CMpHeartbeatSpyNetReportContext), ShouldSendEvenOnPaidNetworks: 0 2026-06-10T01:15:33.855 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T01:15:33.855 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T01:15:33.855 [Cloud] Queued cloud request. 2026-06-10T01:15:33.855 [Cloud] Dequeued cloud request. 2026-06-10T01:15:33.855 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T01:15:34.113 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-10T01:15:34.113 [Cloud] End of cloud request. 2026-06-10T01:15:34.129 [Cloud] End of cloud request. 2026-06-10T01:15:34.365 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T01:15:52.390 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51343, Count: 6793, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: explorer.exe, Pid: 3824, TotalTime: 625, Count: 41, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files\FileZilla FTP Client\fzshellext_64.dll, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 577, Count: 2, MaxTime: 562, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 1% 2026-06-10T01:15:52.390 ProcessImageName: powershell.exe, Pid: 2268, TotalTime: 244, Count: 32, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 27% 2026-06-10T01:15:52.390 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 240, Count: 56, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_1.MAD, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 75, Count: 9, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_a55c73fd-474f-4def-bef8-21eec077bd7b, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ea9859c-6f1f-4cc0-954e-8fcfe5e5310b.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 5404, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef8fd917-b701-4b4e-970c-f3f4c3a04000.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 4524, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6dc32f6-4ca0-4e95-b1d5-8175a3282835.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\037980f0-88e6-4793-bbac-ddbe610c6a71.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 5548, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4c793b55-10c4-4355-b6ae-0264ad598c20.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 5076, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3e12916-1d12-4a75-aaa5-f21324cf51a0.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 4496, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\56f560fc-a108-4d81-98c7-ef7bbd23e95f.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 5036, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b331126c-63ba-49ad-9353-5c37ceea107c.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 5560, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\2f5678aa-2b6b-46d1-bb66-d086b9cca5be.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 3148, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\52fe5d9e-de75-4b07-95b6-27519498140d.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 5568, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8fcc9ca-d48a-45c9-b703-f8929ec5a880.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 3184, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\1a7b04cc-0ef8-4f16-b420-6a347499509b.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 5236, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\861cf845-944b-4fca-844b-6568f490ead3.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 5808, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f4218890-8ac4-4e47-a940-3f8cef906d92.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 4192, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\8eb962a5-e99d-4e70-b7dd-28a99af5e5ca.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 5500, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f88dae49-80c6-4211-82c6-61d490394132.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\562eaf5c-87f3-4d8e-90df-ea827af83a57.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 5944, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f8e95c05-1abe-4605-99df-57452f687055.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 4012, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\fb81c086-b95d-4afd-b893-aac4be4d9569.tmp, EstimatedImpact: 0% 2026-06-10T01:15:52.390 ProcessImageName: updater.exe, Pid: 4552, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d5f3876a-a2c1-4eeb-a17b-66477cd75206.tmp, EstimatedImpact: 0% 2026-06-10T01:16:46.466 UpdateEngine start: Source: 1, szUpdateDirectory: C:\Windows\Temp\C922670E-3B47-4119-87DD-37F87F21FB4F1668.1dcf876bf59a314 2026-06-10T01:16:46.936 Verifying engine and signature files (source: 0) ... 2026-06-10T01:16:46.936 Skipped verification of [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{29014346-82B8-4372-A7C5-48A1AECE8613}\mpengine.dll] due to PPL. 2026-06-10T01:16:46.936 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{29014346-82B8-4372-A7C5-48A1AECE8613}\mpasbase.vdm]. File not in cache (0x1) 2026-06-10T01:16:47.623 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{29014346-82B8-4372-A7C5-48A1AECE8613}\mpasbase.vdm] 2026-06-10T01:16:47.623 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{29014346-82B8-4372-A7C5-48A1AECE8613}\mpasdlta.vdm]. File not in cache (0x1) 2026-06-10T01:16:47.639 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{29014346-82B8-4372-A7C5-48A1AECE8613}\mpasdlta.vdm] 2026-06-10T01:16:47.639 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{29014346-82B8-4372-A7C5-48A1AECE8613}\mpavbase.vdm]. File not in cache (0x1) 2026-06-10T01:16:47.936 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{29014346-82B8-4372-A7C5-48A1AECE8613}\mpavbase.vdm] 2026-06-10T01:16:47.936 MpCacheManagerIsTrustedFile [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{29014346-82B8-4372-A7C5-48A1AECE8613}\mpavdlta.vdm]. File not in cache (0x1) 2026-06-10T01:16:47.951 Verified [C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{29014346-82B8-4372-A7C5-48A1AECE8613}\mpavdlta.vdm] 2026-06-10T01:16:48.108 [Engine] IsHybridMode: 0 2026-06-10T01:16:48.108 [KSL]KSL(1.1.26051.3007) Is available via CAMP. KslDevice : KslD 2026-06-10T01:16:48.108 Current mpengine.dll version(1.1.26050.11) is newer than mpengine_etw.dll version(1.1.26040.8). Updating C:\ProgramData\Microsoft\Windows Defender\Definition Updates\StableEngineEtwLocation\mpengine_etw.dll ... 2026-06-10T01:16:48.170 C:\ProgramData\Microsoft\Windows Defender\Definition Updates\StableEngineEtwLocation\mpengine_etw.dll updated. 2026-06-10T01:16:48.311 Job Notification: New process added to job (5796) 2026-06-10T01:16:48.330 Job Notification: New process added to job (3128) 2026-06-10T01:16:48.393 Job Notification: Process exited from job (5796) 2026-06-10T01:16:48.393 Job Notification: Process exited from job (3128) 2026-06-10T01:16:48.393 Job Notification: New process added to job (4528) 2026-06-10T01:16:48.408 Job Notification: New process added to job (4460) 2026-06-10T01:16:48.580 Job Notification: Process exited from job (4528) 2026-06-10T01:16:48.580 Job Notification: Process exited from job (4460) 2026-06-10T01:16:48.627 Database:Can't find offline cache cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-44634D4ED0F21677A97C22F9EA8681D99C9E6CAB.bin): 0x00000002 2026-06-10T01:16:48.627 Database:Creating offline cache (C:\ProgramData\Microsoft\Windows Defender\Scans\mpcache-44634D4ED0F21677A97C22F9EA8681D99C9E6CAB.bin) 2026-06-10T01:16:48.627 Database:Product:1, ProductVersion:5, Platform:6, PlatformVersion:19, IsBeta:0, IsAdvancedAtLoad:1, IsParanoid: 0, IsOffline: 0 2026-06-10T01:16:48.627 Database:IsEmbedded: 0, IsIEVEnabled: 1, IsServerSku: 1, IsRsdhSku: 1, IsEnterpriseProduct: 0, IsMsft: 0, IsSeville: 0, IsMsSense: 0, IsImmune: 0, IsMba: 0, IsPus: 0, IsManaged: 0, IsSmode: 0 2026-06-10T01:16:48.627 Database:IsAutoSubmit:1, IsPusRem:0, LoadedAS:1, LoadedAV:1, LoadedInternal: 0, PassiveMode: 0, SxsPassiveMode:0, IsDevMode:0, IsTestSigning:0, IsWCOS: 0, IsInsideContainer: 0, IsHybridMode: 0 2026-06-10T01:16:48.627 Database:kLCID:1031, kOsVersion:655360, kProcessorArch:9, dwIsTest:0, kOOsVersion:655360, kOsSP:0, kOsBld:14393, dwPvpRing=0xffffffff 2026-06-10T01:16:48.814 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 1) ... 2026-06-10T01:16:48.814 [RTP] [RtpConfig] Config change detected, type: 1024 2026-06-10T01:16:51.393 [RTP] Duplicating the current plugin configuration object... 2026-06-10T01:16:51.393 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-10T01:16:51.393 [RTP] Updating plugin configuration due to recent config changes (0x400) ... 2026-06-10T01:16:51.393 [RTP] Calling GenerateEngineConfigStruct (0x18) ... 2026-06-10T01:16:51.393 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x400, Changed: 0x218 IDynamicConfig::ReportError value=BruteForceProtectionIPExclusion hr=0x8007007b IDynamicConfig::ReportError value=BruteForceProtectionStatus hr=0x8007007b IDynamicConfig::ReportError value=DisableGradualRelease hr=0x8007007b IDynamicConfig::ReportError value=EnableFileHashComputation hr=0x8007007b IDynamicConfig::ReportError value=MpBafsExtendedTimeout hr=0x8007000d IDynamicConfig::ReportError value=MpCampRingThrottled hr=0x8007007b IDynamicConfig::ReportError value=MpCloudBlockLevel hr=0x8007000d IDynamicConfig::ReportError value=MpEngineRingThrottled hr=0x8007007b 2026-06-10T01:16:56.446 Geo ID not found using standard default set: :SOAP:https://wdcp.microsoft.com/WdCpSrvc.asmx 2026-06-10T01:16:56.446 [AutoExclusion] Applied roles from cache. 2026-06-10T01:16:56.446 [AutoExclusion] Started roles monitoring. IDynamicConfig::ReportError ECS value=EnableAdsSymlinkMitigation_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableBmProcessInfoMetastoreMaintenance_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=EnableCIWorkaroundOnCFAEnabled_MpRamp hr=0x8007007b IDynamicConfig::ReportError ECS value=MdDisableResController hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerInitalDelay hr=0x800700d4 IDynamicConfig::ReportError ECS value=MdTimerMonitorInterval hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpCopyAcceleratorCancellableCopyState hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisablePropBagNotification hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnableNoMetaStoreProcessInfoContainer hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpEnablePurgeHipsCache hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpForceDllHostScanExeOnOpen hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpDisableResourceMonitoring hr=0x8007007b IDynamicConfig::ReportError ECS value=EnableThreatIdKeyForSigExpiry_MpRamp hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_DisableTransportCallouts hr=0x8007007b IDynamicConfig::ReportError ECS value=NIS_EnableUsoSupport hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDlpClipboardSettings hr=0x8007007b IDynamicConfig::ReportError ECS value=MpDisablePerProcessLoopbackTraffic hr=0x800700d4 IDynamicConfig::ReportError ECS value=MpFC_NisSrvWatchDogTimerFix hr=0x8007007b IDynamicConfig::ReportChange ECS value=MpDisableBmHealthOneDsEvent new=True oldFalse 2026-06-10T01:16:56.446 Engine upgrade detected 0x1000165b80008. Saving old engine files to last known good engine files ... 2026-06-10T01:16:56.462 [Engine] RSIG_ENGINE_PRE_SHUTDOWN, 0x00007FFABC285810, lRefCount: 5, hr=0 2026-06-10T01:16:56.462 [Engine] New active engine 00007FFAB28A84C0 replacing engine 00007FFABC285810. Number of active engines: 2 2026-06-10T01:16:56.462 EngineInit:Global ASOC is enabled 2026-06-10T01:16:56.462 EngineInit:ASOO is enabled for developer volumes 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block use of copied or impersonated system tools", State=5, Action=0, Type=9, Duplicates(Interval=288000000000, scope=0x100) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block executable files from running unless they meet a prevalence, age, or trusted list criteria", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block credential stealing from the Windows local security authority subsystem (lsass.exe)", State=5, Action=7, Type=1, Duplicates(Interval=288000000000, scope=0x380) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from injecting code into other processes", State=5, Action=2, Type=24, Duplicates(Interval=144000000000, scope=0x380) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Controlled folder access", State=0, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block untrusted and unsigned processes that run from USB", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block Adobe Reader from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block Office applications from creating executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block Webshell creation for Servers", State=5, Action=0, Type=1, Duplicates(Interval=0, scope=0x0) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block Office communication application from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block abuse of in-the-wild exploited vulnerable signed drivers", State=5, Action=0, Type=1, Duplicates(Interval=36000000000, scope=0x100) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block all Office applications from creating child processes", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Use advanced protection against ransomware", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block Process Creations originating from PSExec & WMI commands", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block Launching of executable content from email attachment", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block JavaScript or VBScript from launching downloaded executable content", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block persistence through WMI event subscription", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block rebooting machine in Safe Mode", State=5, Action=1, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-10T01:16:56.477 Engine-HIPS:Loaded ASR vdm rule "Block execution of potentially obfuscated scripts", State=5, Action=0, Type=1, Duplicates(Interval=1200000000, scope=0x100) 2026-06-10T01:16:56.477 ForceSyncMoacInsertion config from engine is 0, hr = 0x0 2026-06-10T01:16:56.493 [RTP] [Mini-filter] MpFC: MpFC_Kernel_HardenUxProcesses=0;MpFC_Kernel_SystemIoRequestWorkOnBehalfOf=0x1;MpFC_Kernel_PreventBindfltAbuse=0x1;MpFC_Kernel_ParentProcessObHardeningAllow=0;MpFC_Kernel_ReduceOfficeInjectRuleFP=0x1;MPC_Kernel_CheckValidityOfProcessFilterFlagsInASR=0x1;MpFc_Kernel_UseLowPrioThreadsForAsyncScans=0x1;MpFc_Kernel_DisableFileDirtyLogic=0;MpFC_Kernel_DisableDLPPort=0x1;MpFC_Kernel_DlpFeatures=0;MpFC_Kernel_EnableFolderGuardOnPostCreate=0x1;MpFC_Kernel_StrictTiChildrenMatch=0;MpFC_Kernel_PPLReduxMitigationFlags=0x3;MpFc_Kernel_UseLowPriAsyncScansDevDrvOnly=0x1;MpFc_Kernel_DisableOfficeInjectUevSuppression=0x1;MpFc_Kernel_CopyChunkFileHintMask=0;MpFc_Kernel_DisableScanOnCloseForNetworkFiles=0x1;MpFc_Kernel_MaxAsyncWorkQueue=0x400;MpFc_Kernel_DlpIgnoreSystemFolder=0x1;MpFc_Kernel_DlpPassThroughMode=0;MpFc_Kernel_L2StateCache_DefaultStreamsOnly=0x1;MpFc_Kernel_L2StateCache_SupportGenericFileState=0x1;MpFc_Kernel_CryptSvcPreScanFilter=0x1;MpFc_Kernel_SystemPreScanFilter=0x1;MpFC_Kernel_CheckValidit 2026-06-10T01:16:56.493 [HybridMode] HybridMode change notification isHybridModePolicyEnabled: 0, isVerifiedAndReputableTrustModeEnabled: 0 2026-06-10T01:16:56.493 Hybrid mode change notification called, no change detected in verified and reputable trust mode (0 -> 0)! 2026-06-10T01:16:56.493 Hybrid mode change notification called, no change detected in Hybrid mode (0 -> 0)!ApplyDefenderProcessTokenTrustLableAce failed to set. hr = 0x80070005 2026-06-10T01:16:56.493 MpUpdateUpdateResiliencyConfiguration updated to 0 2026-06-10T01:16:56.493 [Plugin] Initializing RTP plugin state... 2026-06-10T01:16:56.493 [Plugin] Normal mode, or passive mode with shadow protection enabled. Will not force RTP off. 2026-06-10T01:16:56.493 [RTP] ****************************RTP Perf Log*************************** RTP Start:‎06‎-‎09‎-‎2026 03:15:52 Last Perf:‎06‎-‎09‎-‎2026 03:15:52 First RTP Scan:‎06‎-‎09‎-‎2026 03:15:53 Plugin States: AV:1 AS:1 RTP:1 OA:1 BM:1 Process Exclusions: Path Exclusions: Ext Exclusions: Temp Exclusions: Worker Threads: AM:14 Async:4 Cache Flushes: RTP:1 System File Cache: Hits:1059 Misses:7722 BM Queue:0,85,0 Proc:0,41,0 File:0,56,0 Plugin Queue:0,1,0 Threat:0,0,0 Susp:0,1,0 Unknown:0,0,0 Error:0,0,0 Request Queue:1,3,0 SetEngine:1,1,0 SetState:0,1,0 SetUser:0,1,0 Config:0,1,0 ProcExcl:0,1,0 FilterReload:0,0,0 FilterUnload:0,0,0 MpFilter: Scans:127129 Pending:0 RegSize:282036 AsyncQNotif:0 AsyncQMissed:0 AsyncQTotalSent:1353048976 AsyncQCurrent:0 BMFlags:40127 ServiceMaj:0 ServiceMin:0 NumInstance:3 TotalStreamCon:60611 NTFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:174469 TotalHits:5019090 InstanceCacheInserts:16259 InstanceCacheUpdates:0 InstanceCacheDeletes:15714 InstanceCacheHits:545 InstanceCacheMisses:131387 InstanceCacheOverflows:0 CSVFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 REFS Cache Statistics (Instance Cache Type:GenericTable): TotalMisses:0 TotalHits:0 InstanceCacheInserts:0 InstanceCacheUpdates:0 InstanceCacheDeletes:0 InstanceCacheHits:0 InstanceCacheMisses:0 InstanceCacheOverflows:0 SyncProcessCreateDuration:2ms (8599/3141) Success: 3141, failures: 0 (last code: 0x0), timeouts: 0, baddata: 0 **************************END RTP Perf Log************************* 2026-06-10T01:16:56.493 [Engine] Loaded C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{29014346-82B8-4372-A7C5-48A1AECE8613} 2026-06-10T01:16:56.493 [RTP] Setting TrustedInstallerHardeningExcludeFlags to 7 (hr=0). 2026-06-10T01:16:56.509 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-10T01:16:56.509 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). BmLoggingDisabled:MpDisableBmLogging not set. 2026-06-10T01:16:56.509 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3D127C8A-E5C6-4E46-A009-EBCEBCCB1745} removed 2026-06-10T01:16:56.509 [Engine] Skip removing C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5510BA12-2CA0-4E44-A1F4-D5D42DA24609}, C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5510BA12-2CA0-4E44-A1F4-D5D42DA24609}\mpengine.dll cannot be deleted, hr=0x80070005 2026-06-10T01:16:56.509 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-10T01:16:56.509 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-10T01:16:56.509 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-10T01:16:56.509 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-10T01:16:56.509 MdCoreSvc is supported in this platform and OS Beginning quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Target: Flags:131074 Start time:06-10-2026 01:16:56 Finished quarantine recovery Quarantine ID:{00000000-0000-0000-0000-000000000000} Result:0 End time:06-10-2026 01:16:56 2026-06-10T01:16:56.509 MpPlatformKillbitsFromEngine (0x4000000) written, hr = 0 2026-06-10T01:16:56.509 MpPlatformKillbitsFromEngineEx (0x0) (0x0) written, hr = 0 2026-06-10T01:16:56.509 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T01:16:56.509 Failed to retrieve config value from engine or configurations for config key (MdCpuSensorCollectionLag) hr = 0x8050800f 2026-06-10T01:16:56.509 Failed to retrieve config value from engine or configurations for config key (MdCrashSensorCollectionLag) hr = 0x8050800f 2026-06-10T01:16:56.509 Failed to retrieve config value from engine or configurations for config key (MdDiskSensorCollectionLag) hr = 0x8050800f 2026-06-10T01:16:56.509 Failed to retrieve config value from engine or configurations for config key (MdMemorySensorCollectionLag) hr = 0x8050800f 2026-06-10T01:16:56.509 MdCoreSvc is supported in this platform and OS Signature updated on 06-10-2026 01:16:56 Product Version: 4.18.26040.7 Service Version: 4.18.26040.7 Engine Version: 1.1.26050.11 AS Signature Version: 1.453.16.0 AV Signature Version: 1.453.16.0 ************************************************************ 2026-06-10T01:16:56.524 [Update] Performing ScanOnUpdate, GetConfigHr: 0x0, dwDisableScanOnUpdate: 0, passiveMode: 0, killbit: 0 2026-06-10T01:16:56.524 UpdateEngine finished with 0: Source: 1, szUpdateDirectory: C:\Windows\Temp\C922670E-3B47-4119-87DD-37F87F21FB4F1668.1dcf876bf59a314 2026-06-10T01:16:56.540 Process scan (postsignatureupdatescan) started. 2026-06-10T01:16:56.571 [TP] State change. FeatureAvialable: False, NewState: 0x2, OldState: 0x2, Scenario: Consumer, Source: Signatures, ConfigChange: Remove 2026-06-10T01:16:56.571 [TP] TP Enabled: 0, SecureConfigEnabled: 0, DisableTPExclusionBypass: 0, EnableTPExclusion via FC: 0, IsIntuneManagedDefender: 0, IsSCCMManagedDefender: 0, IsMDEAttachManagedDefender: 0, IsSCCMOnlyManagedDefender: 0, IsStrictPolicyModeEnabled: 0 (from snapshot: 0), Effective EnableTPExclusions: 0, Previous EnableTPExclusions: 0, Delayed call: 0 Signature updated via MicrosoftUpdateServer on 06-10-2026 01:16:56 ************************************************************ 2026-06-10T01:16:56.837 Job Notification: Process exited from job (2648) 2026-06-10T01:16:56.837 Job Notification: Process exited from job (288) 2026-06-10T01:16:56.837 Job Notification: Process exited from job (3896) 2026-06-10T01:16:56.837 [RTP] Setting RegLinkHardeningMode to 1 (hr=0). 2026-06-10T01:16:56.837 [RTP] Setting EfsHardeningFlags to 0 (hr=0). 2026-06-10T01:16:56.837 [RTP] Setting DisableDynamicFsHardening to 0 (hr=0). 2026-06-10T01:16:56.837 [RTP] PreventPagingFileAbuseKillbit[0]. 2026-06-10T01:16:56.837 [RTP] Setting PreventPagingFileAbuse to 0 (hr=0). 2026-06-10T01:16:56.837 Job Notification: Process exited from job (2100) 2026-06-10T01:16:56.852 [Engine] Engine 00007FFABC285810 no longer in use. Number of active engines: 1 2026-06-10T01:16:56.852 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-10T01:16:56.852 [RTP] Setting SetEnablePurgeHipsCache to 1 (hr=0). 2026-06-10T01:16:56.993 [KSL] Entering CKSLEngine::EnableKSL. State: [3] 2026-06-10T01:16:56.993 [KSL] CKSLEngine::EnableKSL feature is already enabled. 2026-06-10T01:16:56.993 [KSL] Leaving CKSLEngine::EnableKsl(0). 2026-06-10T01:16:57.634 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 51343, Count: 6793, MaxTime: 109, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-10T01:16:57.634 ProcessImageName: explorer.exe, Pid: 3824, TotalTime: 625, Count: 41, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Program Files\FileZilla FTP Client\fzshellext_64.dll, EstimatedImpact: 0% 2026-06-10T01:16:57.634 ProcessImageName: svchost.exe, Pid: 956, TotalTime: 577, Count: 2, MaxTime: 562, MaxTimeFile: \Device\Harddisk0\DR0, EstimatedImpact: 1% 2026-06-10T01:16:57.634 ProcessImageName: MpSigStub.exe, Pid: 5736, TotalTime: 280, Count: 2, MaxTime: 187, MaxTimeFile: \Device\HarddiskVolume2\Windows\Temp\C922670E-3B47-4119-87DD-37F87F21FB4F1668.1dcf876bf59a314\mpengine.dll, EstimatedImpact: 100% 2026-06-10T01:16:57.634 ProcessImageName: powershell.exe, Pid: 2268, TotalTime: 244, Count: 32, MaxTime: 62, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 27% 2026-06-10T01:16:57.634 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 240, Count: 56, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_290b_1.MAD, EstimatedImpact: 0% 2026-06-10T01:16:57.634 ProcessImageName: wuauclt.exe, Pid: 6096, TotalTime: 155, Count: 3, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\SoftwareDistribution\Download\Install\AM_Engine_Patch_1.1.26040.8.exe, EstimatedImpact: 9% 2026-06-10T01:16:57.634 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 106, Count: 10, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-06-10T01:16:57.634 ProcessImageName: updater.exe, Pid: 4524, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\f6dc32f6-4ca0-4e95-b1d5-8175a3282835.tmp, EstimatedImpact: 0% 2026-06-10T01:16:57.634 ProcessImageName: updater.exe, Pid: 5548, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\4c793b55-10c4-4355-b6ae-0264ad598c20.tmp, EstimatedImpact: 0% 2026-06-10T01:16:57.634 ProcessImageName: updater.exe, Pid: 6124, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\037980f0-88e6-4793-bbac-ddbe610c6a71.tmp, EstimatedImpact: 0% 2026-06-10T01:16:57.634 ProcessImageName: updater.exe, Pid: 5364, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\3ea9859c-6f1f-4cc0-954e-8fcfe5e5310b.tmp, EstimatedImpact: 0% 2026-06-10T01:16:57.634 ProcessImageName: updater.exe, Pid: 5404, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ef8fd917-b701-4b4e-970c-f3f4c3a04000.tmp, EstimatedImpact: 0% 2026-06-10T01:16:57.634 ProcessImageName: updater.exe, Pid: 5076, TotalTime: 31, Count: 2, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d3e12916-1d12-4a75-aaa5-f21324cf51a0.tmp, EstimatedImpact: 0% 2026-06-10T01:16:57.680 [Engine] RSIG_UNLOADENGINE, 00007FFABC285810, err=0x0 2026-06-10T01:16:57.696 [Engine] C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5510BA12-2CA0-4E44-A1F4-D5D42DA24609} removed 2026-06-10T01:17:01.899 Process scan (postsignatureupdatescan) completed. 2026-06-10T01:20:00.975 [RTP] [Mini-filter] Unsuccessful scan status(#1): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_1ywi05tr.5uq.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #127514, FileId: 0x1a00000000ad11, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T01:20:21.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T01:20:41.582 [RTP] [Mini-filter] Unsuccessful scan status(#2): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #127550, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T01:20:41.598 [RTP] [Mini-filter] Unsuccessful scan status(#3): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #127552, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T01:20:51.594 [RTP] [Mini-filter] Unsuccessful scan status(#4): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #127556, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T01:20:51.594 [RTP] [Mini-filter] Unsuccessful scan status(#5): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #127557, FileId: 0x48000000005f7b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T01:20:51.610 [RTP] [Mini-filter] Unsuccessful scan status(#6): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #127559, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T01:21:56.486 [RbM] Setting Last known good engine candidate. hr = 0 2026-06-10T01:35:26.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T01:37:00.117 [RTP] [Mini-filter] Unsuccessful scan status(#7): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_2hvzs4cx.xin.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #127745, FileId: 0x8af000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T01:42:00.178 [RTP] [Mini-filter] Unsuccessful scan status(#8): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_5rqpjljn.wwb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #127790, FileId: 0x8b4000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T01:43:00.188 [RTP] [Mini-filter] Unsuccessful scan status(#9): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_vqigw0ju.0cn.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #127797, FileId: 0x8b5000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T01:50:31.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T02:05:36.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T02:07:00.417 [RTP] [Mini-filter] Unsuccessful scan status(#10): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_330vqaux.2tf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #128009, FileId: 0x8cd000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T02:11:00.457 [RTP] [Mini-filter] Unsuccessful scan status(#11): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bu0khpov.ofp.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #128054, FileId: 0x8d1000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T02:16:00.545 [RTP] [Mini-filter] Unsuccessful scan status(#12): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_s0wtp0si.3rd.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #128096, FileId: 0x8d6000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T02:20:40.126 [RTP] [Mini-filter] Unsuccessful scan status(#13): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #128143, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T02:20:40.142 [RTP] [Mini-filter] Unsuccessful scan status(#14): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #128145, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T02:20:41.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T02:20:50.136 [RTP] [Mini-filter] Unsuccessful scan status(#15): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #128149, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T02:20:50.136 [RTP] [Mini-filter] Unsuccessful scan status(#16): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #128150, FileId: 0x48000000005f7b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T02:20:50.152 [RTP] [Mini-filter] Unsuccessful scan status(#17): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #128153, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T02:34:00.701 [RTP] [Mini-filter] Unsuccessful scan status(#18): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3qceyyup.3un.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #128273, FileId: 0x8e9000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T02:35:46.426 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T02:50:51.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T02:52:00.851 [RTP] [Mini-filter] Unsuccessful scan status(#19): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_wgfcz2ec.lpi.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #128415, FileId: 0x8fb000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T03:05:56.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T03:07:00.970 [RTP] [Mini-filter] Unsuccessful scan status(#20): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bghfjdp2.pxb.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #128610, FileId: 0x90a000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T03:10:00.984 [RTP] [Mini-filter] Unsuccessful scan status(#21): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_okjfwtxi.0a3.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #128642, FileId: 0x90d000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T03:11:01.009 [RTP] [Mini-filter] Unsuccessful scan status(#22): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_cfsdgxxb.q4w.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #128649, FileId: 0x90e000000009d34, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T03:16:56.476 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 1027, Count: 120, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\nowplaying.php, EstimatedImpact: 0% 2026-06-10T03:16:56.476 ProcessImageName: powershell.exe, Pid: 1864, TotalTime: 322, Count: 32, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 14% 2026-06-10T03:16:56.476 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 46, Count: 4, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-06-10T03:16:56.476 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d7f8463-91cb-45af-9311-d11feb536398.tmp, EstimatedImpact: 0% 2026-06-10T03:16:56.476 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30a4c592-7d17-4ad4-8463-34ac929dae97.tmp, EstimatedImpact: 0% 2026-06-10T03:20:39.584 [RTP] [Mini-filter] Unsuccessful scan status(#23): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #128749, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T03:20:39.599 [RTP] [Mini-filter] Unsuccessful scan status(#24): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #128751, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T03:20:49.597 [RTP] [Mini-filter] Unsuccessful scan status(#25): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #128755, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T03:20:49.613 [RTP] [Mini-filter] Unsuccessful scan status(#26): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #128757, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T03:20:49.613 [RTP] [Mini-filter] Unsuccessful scan status(#27): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #128759, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T03:21:01.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T03:35:41.762 Created on demand scan context for ScanType:1. ScanTrigger:55, ScanId:9AEE2563-1D7D-40D1-9556-BF7E52AB64BD, Source: MPSOURCE_SYSTEM(2), EngineSource: MP_SCANSOURCE_SCHEDULED(1) 2026-06-10T03:35:41.762 Scheduled scan with Id 9AEE2563-1D7D-40D1-9556-BF7E52AB64BD configured CPU priority: normal (LowCpuPriority: 0) 2026-06-10T03:35:41.762 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-10T03:35:41.762 [SFC] MpCmIsBuildPermissible(1) returns S_OK. Start SFC build. 2026-06-10T03:35:41.762 [SFC] System file cache build is not needed (already completed) 2026-06-10T03:35:54.342 Engine:Triggered AR EMS scan 2026-06-10T03:35:54.342 Engine:EMS scan for process: lsass pid: 616, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.358 Engine:EMS scan for process: svchost pid: 704, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.374 Engine:EMS scan for process: svchost pid: 760, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.374 Engine:EMS scan for process: svchost pid: 868, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.389 Engine:EMS scan for process: svchost pid: 956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.405 Engine:EMS scan for process: svchost pid: 972, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.420 Engine:EMS scan for process: svchost pid: 984, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.420 Engine:EMS scan for process: svchost pid: 72, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.436 Engine:EMS scan for process: svchost pid: 724, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.436 Engine:EMS scan for process: svchost pid: 1160, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.452 Engine:EMS scan for process: svchost pid: 1184, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.467 Engine:EMS scan for process: svchost pid: 1368, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.483 Engine:EMS scan for process: svchost pid: 2012, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.483 Engine:EMS scan for process: svchost pid: 1924, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.499 Engine:EMS scan for process: svchost pid: 1956, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.514 Engine:EMS scan for process: svchost pid: 2740, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.514 Engine:EMS scan for process: svchost pid: 1196, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.530 Engine:EMS scan for process: svchost pid: 4436, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.530 Engine:EMS scan for process: svchost pid: 3044, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 2026-06-10T03:35:54.545 Engine:EMS scan for process: explorer pid: 3824, sigseq: 0x0, sendMemoryScanReport: 0, source: 1 BEGIN BM telemetry GUID:{0E512DAC-E4EA-EA75-4B24-40316A3785D3} SignatureID:70040157700828 SigSha:3d54fa3f8a6e10b79be46d29cc5c3dfe39d65f6d ThreatLevel:0 ProcessID:3824 ProcessCreationTime:134254615955307177 SessionID:2 CreationTime:06-10-2026 03:35:54 ImagePath:C:\Windows\explorer.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-06-10T03:35:55.124 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T03:35:55.124 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T03:35:55.124 [Cloud] Queued cloud request. 2026-06-10T03:35:55.124 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T03:35:55.124 [Cloud] Dequeued cloud request. 2026-06-10T03:35:55.124 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T03:35:55.342 [Cloud] End of cloud request. 2026-06-10T03:35:55.842 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T03:36:00.238 [RTP] [Mini-filter] Unsuccessful scan status(#28): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_scflbepc.2tw.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #129026, FileId: 0x13000000009df1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T03:36:06.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T03:36:09.357 QuickScan:ScanID:9AEE2563-1D7D-40D1-9556-BF7E52AB64BD: Quick scan finished with error 0 2026-06-10T03:36:09.357 CheckProductDisabled(fWaitWSC: 0, fRemoveConfigs: 0) ... 2026-06-10T03:36:09.864 [RTP] [RtpConfig] Config change detected, type: 32 2026-06-10T03:36:09.864 [RTP] Duplicating the current plugin configuration object... 2026-06-10T03:36:09.864 [RTP] CCMPluginConfiguration::Duplicate() - no GenerateEngineEngineConfigStruct ... 2026-06-10T03:36:09.864 [RTP] Updating plugin configuration due to recent config changes (0x20) ... 2026-06-10T03:36:09.864 [RTP] OS Copy Accelerator feature is: 0 (0:Disabled, 1:Enabled) 2026-06-10T03:36:09.864 [RTP] No config change detected. Not updating plugin configuration. 2026-06-10T03:36:09.864 [RTP] No config changes found. No configuration switch. 2026-06-10T03:36:09.864 [RTP] RefreshPluginConfiguration completed successfully. Requested: 0x20, Changed: 0 2026-06-10T03:51:11.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T04:06:16.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T04:20:40.786 [RTP] [Mini-filter] Unsuccessful scan status(#29): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #129413, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T04:20:40.786 [RTP] [Mini-filter] Unsuccessful scan status(#30): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #129415, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T04:20:50.789 [RTP] [Mini-filter] Unsuccessful scan status(#31): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #129419, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T04:20:50.805 [RTP] [Mini-filter] Unsuccessful scan status(#32): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #129421, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T04:20:50.805 [RTP] [Mini-filter] Unsuccessful scan status(#33): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #129423, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T04:20:50.805 [RTP] [Mini-filter] Unsuccessful scan status(#34): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #129425, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T04:21:21.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T04:23:00.503 [RTP] [Mini-filter] Unsuccessful scan status(#35): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_zf4s32jw.b22.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #129465, FileId: 0x43000000009df1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T04:36:26.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T04:42:00.636 [RTP] [Mini-filter] Unsuccessful scan status(#36): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_phc2h1wv.w0u.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #129605, FileId: 0x59000000009df1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T04:45:00.647 [RTP] [Mini-filter] Unsuccessful scan status(#37): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_uppx5nlz.jak.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #129626, FileId: 0x5c000000009df1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T04:51:31.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T04:57:00.728 [RTP] [Mini-filter] Unsuccessful scan status(#38): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_jzt03elj.u3a.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #129725, FileId: 0x68000000009df1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T05:05:00.785 [RTP] [Mini-filter] Unsuccessful scan status(#39): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_rboa1w1f.pos.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #129782, FileId: 0x70000000009df1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T05:06:36.423 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T05:16:56.476 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 1390, Count: 196, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\nowplaying.php, EstimatedImpact: 0% 2026-06-10T05:16:56.476 ProcessImageName: powershell.exe, Pid: 1864, TotalTime: 322, Count: 32, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 14% 2026-06-10T05:16:56.476 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 77, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-06-10T05:16:56.476 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d7f8463-91cb-45af-9311-d11feb536398.tmp, EstimatedImpact: 0% 2026-06-10T05:16:56.476 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6be60606-02ac-4f2f-ac7d-1dc68d2afd0f.tmp, EstimatedImpact: 0% 2026-06-10T05:16:56.476 ProcessImageName: updater.exe, Pid: 2084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e5132f9-bbc0-47dd-be24-875bba59b8f8.tmp, EstimatedImpact: 0% 2026-06-10T05:16:56.476 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30a4c592-7d17-4ad4-8463-34ac929dae97.tmp, EstimatedImpact: 0% 2026-06-10T05:20:40.956 [RTP] [Mini-filter] Unsuccessful scan status(#40): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #129903, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T05:20:40.972 [RTP] [Mini-filter] Unsuccessful scan status(#41): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #129905, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T05:20:50.970 [RTP] [Mini-filter] Unsuccessful scan status(#42): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #129909, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T05:20:50.986 [RTP] [Mini-filter] Unsuccessful scan status(#43): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater_history.jsonl. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #129912, FileId: 0x48000000005f7b, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T05:21:00.947 [RTP] [Mini-filter] Unsuccessful scan status(#44): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_dr15n2vv.kmt.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #129914, FileId: 0x81000000009df1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T05:21:41.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T05:25:01.002 [RTP] [Mini-filter] Unsuccessful scan status(#45): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_5pjz3nrv.nox.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #129942, FileId: 0x85000000009df1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T05:36:46.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T05:37:00.132 [RTP] [Mini-filter] Unsuccessful scan status(#46): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_qpiu3ewx.2gt.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #130026, FileId: 0x91000000009df1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T05:38:00.129 [RTP] [Mini-filter] Unsuccessful scan status(#47): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_oxm1qcvr.lkf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #130036, FileId: 0x92000000009df1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T05:40:00.147 [RTP] [Mini-filter] Unsuccessful scan status(#48): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_l2nsc0es.04s.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #130063, FileId: 0x94000000009df1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T05:51:51.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T06:06:56.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T06:17:00.516 [RTP] [Mini-filter] Unsuccessful scan status(#49): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_in5on2we.3hk.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #130541, FileId: 0x24c3000000009e20, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T06:20:40.256 [RTP] [Mini-filter] Unsuccessful scan status(#50): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #130579, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T06:20:40.271 [RTP] [Mini-filter] Unsuccessful scan status(#51): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #130581, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T06:20:50.265 [RTP] [Mini-filter] Unsuccessful scan status(#52): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #130585, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T06:20:50.280 [RTP] [Mini-filter] Unsuccessful scan status(#53): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #130587, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T06:20:50.411 [RTP] [Mini-filter] Unsuccessful scan status(#54): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #130591, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T06:20:50.411 [RTP] [Mini-filter] Unsuccessful scan status(#55): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #130593, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T06:22:01.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T06:37:06.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T06:40:00.699 [RTP] [Mini-filter] Unsuccessful scan status(#56): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_esttax41.zxd.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #130784, FileId: 0xa9b00000000a01d, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T06:43:00.734 [RTP] [Mini-filter] Unsuccessful scan status(#57): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_zizg42qe.ugy.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #130809, FileId: 0xa9f00000000a01d, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T06:46:00.753 [RTP] [Mini-filter] Unsuccessful scan status(#58): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_c5ocgzv2.gbu.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #130830, FileId: 0xaa200000000a01d, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T06:52:11.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T06:53:29.933 Job Notification: Process exited from job (4196) 2026-06-10T06:57:00.827 [RTP] [Mini-filter] Unsuccessful scan status(#59): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_a53rmbmk.0s1.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #130950, FileId: 0xaad00000000a01d, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T07:07:16.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T07:11:00.894 [RTP] [Mini-filter] Unsuccessful scan status(#60): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_jxtkz1qc.pvl.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #131054, FileId: 0xabb00000000a01d, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T07:16:56.482 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 1450, Count: 305, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\kptv2\ro\nowplaying.php, EstimatedImpact: 0% 2026-06-10T07:16:56.482 ProcessImageName: powershell.exe, Pid: 1864, TotalTime: 322, Count: 32, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 14% 2026-06-10T07:16:56.482 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 92, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-06-10T07:16:56.482 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ead14d2c-cf5f-4a46-9b7f-8cda6c0e7b49.tmp, EstimatedImpact: 0% 2026-06-10T07:16:56.482 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d7f8463-91cb-45af-9311-d11feb536398.tmp, EstimatedImpact: 0% 2026-06-10T07:16:56.482 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6be60606-02ac-4f2f-ac7d-1dc68d2afd0f.tmp, EstimatedImpact: 0% 2026-06-10T07:16:56.482 ProcessImageName: updater.exe, Pid: 2672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6233a4b-59b2-487e-a120-c136711891e6.tmp, EstimatedImpact: 0% 2026-06-10T07:16:56.482 ProcessImageName: updater.exe, Pid: 2084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e5132f9-bbc0-47dd-be24-875bba59b8f8.tmp, EstimatedImpact: 0% 2026-06-10T07:16:56.482 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30a4c592-7d17-4ad4-8463-34ac929dae97.tmp, EstimatedImpact: 0% Internal signature match:subtype=Lowfi, sigseq=0x00028FD735F69661, sigsha=044187fe6b3b282811284d545dbb45c9d589c011, cached=false, source=0, resourceid=0x1bb01acb 2026-06-10T07:19:50.225 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T07:19:50.225 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T07:19:50.240 [Cloud] Queued cloud request. 2026-06-10T07:19:50.240 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T07:19:50.272 Job Notification: New process added to job (3908) 2026-06-10T07:19:50.287 Task(SpyNetServiceDss -RestrictPrivileges -AccessKey 81B7AFDA-63F3-BAE5-6EA4-8800D3255B19) launched 2026-06-10T07:19:50.287 Job Notification: New process added to job (5672) 2026-06-10T07:19:50.287 [RTP] [Mini-filter] Denied OB operation OpenProcess[\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\platform\4.18.26040.7-0\MpCmdRun.exe][Pid:3908] from process [\Device\HarddiskVolume2\Windows\System32\conhost.exe][Pid:5672]. OriginalDesiredAccess: [0x1fffff] ResultingAccess: [0x1ff7d4] 2026-06-10T07:19:50.303 Job Notification: New process added to job (5936) 2026-06-10T07:19:50.303 Job Notification: Process exited from job (3908) 2026-06-10T07:19:50.319 Job Notification: Process exited from job (5672) 2026-06-10T07:19:50.323 [Cloud] Dequeued cloud request. 2026-06-10T07:19:50.323 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T07:19:50.672 [Cloud] End of cloud request. 2026-06-10T07:19:50.672 Engine:command line reported as lowfi: C:\win-acme\wacs.exe(C:\win-acme\wacs.exe --renew --baseuri https://acme-v02.api.letsencrypt.org/) 2026-06-10T07:19:50.672 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe BEGIN BM telemetry GUID:{2BAF36B6-9EBC-ABD1-5A9F-2085FE2D2CB6} SignatureID:94228788664420 SigSha:1bffab051537d9df6fb6e4d482b1e78956b7bad3 ThreatLevel:0 ProcessID:5364 ProcessCreationTime:134255495902292493 SessionID:0 CreationTime:06-10-2026 07:19:50 ImagePath:C:\win-acme\wacs.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: C:\Windows\System32\svchost.exe:1184:1, Operations:None END BM telemetry 2026-06-10T07:19:50.688 UnknownTelemetryScan triggered, type: 2 (1 - Unknown, 2- Lofi), flags: 0 (0 - Regular, 1 - MemScan), 1 resources, RtpIoavOnly: FALSE 2026-06-10T07:19:50.719 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-10T07:19:50.719 Using signature default action MP_THREAT_ACTION_ALLOW(6) for special threatID: 0xe34f3efa7ffffffe 2026-06-10T07:19:51.172 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T07:19:52.157 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T07:19:52.157 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T07:19:52.157 [Cloud] Queued cloud request. 2026-06-10T07:19:52.157 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T07:19:52.172 [Cloud] Dequeued cloud request. 2026-06-10T07:19:52.313 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T07:19:52.610 [Cloud] End of cloud request. 2026-06-10T07:19:53.094 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T07:19:53.094 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T07:19:53.094 [Cloud] Queued cloud request. 2026-06-10T07:19:53.094 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T07:19:53.094 [Cloud] SubmitReport(CMpUnknownSpyNetReportContext) 2026-06-10T07:19:53.094 [Cloud] Dequeued cloud request. 2026-06-10T07:19:53.094 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T07:19:53.094 [Cloud] Queued cloud request. 2026-06-10T07:19:53.094 [Cloud] Dequeued cloud request. 2026-06-10T07:19:53.094 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T07:19:53.094 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T07:19:53.141 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T07:19:53.240 [Cloud] End of cloud request. 2026-06-10T07:19:53.240 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-10T07:19:53.240 [Cloud] End of cloud request. 2026-06-10T07:19:53.741 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T07:20:40.846 [RTP] [Mini-filter] Unsuccessful scan status(#61): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #131148, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T07:20:40.862 [RTP] [Mini-filter] Unsuccessful scan status(#62): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #131150, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T07:20:50.849 [RTP] [Mini-filter] Unsuccessful scan status(#63): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #131167, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T07:20:50.849 [RTP] [Mini-filter] Unsuccessful scan status(#64): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #131169, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T07:20:50.865 [RTP] [Mini-filter] Unsuccessful scan status(#65): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #131171, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T07:20:50.865 [RTP] [Mini-filter] Unsuccessful scan status(#66): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #131173, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T07:21:00.941 [RTP] [Mini-filter] Unsuccessful scan status(#67): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_uclolnlk.gk3.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #131176, FileId: 0x2600000000acba, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T07:22:21.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T07:37:26.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T07:44:01.087 [RTP] [Mini-filter] Unsuccessful scan status(#68): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_s3sylthe.ymq.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #131348, FileId: 0x3d00000000acba, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T07:52:31.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T07:58:00.173 [RTP] [Mini-filter] Unsuccessful scan status(#69): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_2tzoquyp.hzj.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #131757, FileId: 0x4b00000000acba, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:07:36.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T08:10:00.272 [RTP] [Mini-filter] Unsuccessful scan status(#70): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3yrxl53x.4tu.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #131857, FileId: 0x5700000000acba, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:11:00.282 [RTP] [Mini-filter] Unsuccessful scan status(#71): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ifl5wonz.b1z.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #131876, FileId: 0x5800000000acba, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:19:20.649 [RTP] [Mini-filter] Unsuccessful scan status(#72): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_32c1_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #133133, FileId: 0xfe000000009df1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:19:30.884 [RTP] [Mini-filter] Unsuccessful scan status(#73): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_32c1_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #133579, FileId: 0xff000000009df1, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:20:40.900 [RTP] [Mini-filter] Unsuccessful scan status(#74): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #133606, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:20:40.900 [RTP] [Mini-filter] Unsuccessful scan status(#75): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #133608, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:20:50.909 [RTP] [Mini-filter] Unsuccessful scan status(#76): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #133612, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:20:50.924 [RTP] [Mini-filter] Unsuccessful scan status(#77): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #133614, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:20:50.924 [RTP] [Mini-filter] Unsuccessful scan status(#78): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #133616, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:22:00.372 [RTP] [Mini-filter] Unsuccessful scan status(#79): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_dttdbcfb.pae.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #133633, FileId: 0x6600000000acba, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:22:41.424 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T08:26:00.396 [RTP] [Mini-filter] Unsuccessful scan status(#80): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_0dl0uris.qas.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #133665, FileId: 0x6a00000000acba, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:27:00.421 [RTP] [Mini-filter] Unsuccessful scan status(#81): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_oyugct4i.c0f.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #133672, FileId: 0x6b00000000acba, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:29:00.441 [RTP] [Mini-filter] Unsuccessful scan status(#82): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_wbsfkywv.w0l.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #133686, FileId: 0x6d00000000acba, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:37:46.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T08:43:00.532 [RTP] [Mini-filter] Unsuccessful scan status(#83): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_bqdsfttt.qqk.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #133784, FileId: 0x7b00000000acba, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:45:00.519 [RTP] [Mini-filter] Unsuccessful scan status(#84): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_z5bk3gd5.bm3.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #133798, FileId: 0x7d00000000acba, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:52:00.587 [RTP] [Mini-filter] Unsuccessful scan status(#85): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_3dp3atf2.3uk.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #133856, FileId: 0xf00000000ade2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T08:52:51.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T09:07:56.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T09:11:00.761 [RTP] [Mini-filter] Unsuccessful scan status(#86): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_x2bslqsn.gc1.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #133992, FileId: 0x2200000000ade2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T09:16:56.491 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 42398, Count: 6701, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\ads.txt21fb88f779baffaba99ea05c7c6c7b52.html, EstimatedImpact: 0% 2026-06-10T09:16:56.491 ProcessImageName: powershell.exe, Pid: 1864, TotalTime: 322, Count: 32, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 14% 2026-06-10T09:16:56.491 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 92, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-06-10T09:16:56.491 ProcessImageName: wacs.exe, Pid: 5364, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260610.txt, EstimatedImpact: 2% 2026-06-10T09:16:56.491 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ead14d2c-cf5f-4a46-9b7f-8cda6c0e7b49.tmp, EstimatedImpact: 0% 2026-06-10T09:16:56.491 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_32c1_1.MAD, EstimatedImpact: 0% 2026-06-10T09:16:56.491 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d7f8463-91cb-45af-9311-d11feb536398.tmp, EstimatedImpact: 0% 2026-06-10T09:16:56.491 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6be60606-02ac-4f2f-ac7d-1dc68d2afd0f.tmp, EstimatedImpact: 0% 2026-06-10T09:16:56.491 ProcessImageName: updater.exe, Pid: 2724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e8b42c7-a68b-4352-89b4-afc1f996ebc1.tmp, EstimatedImpact: 0% 2026-06-10T09:16:56.491 ProcessImageName: updater.exe, Pid: 2672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6233a4b-59b2-487e-a120-c136711891e6.tmp, EstimatedImpact: 0% 2026-06-10T09:16:56.491 ProcessImageName: updater.exe, Pid: 2084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e5132f9-bbc0-47dd-be24-875bba59b8f8.tmp, EstimatedImpact: 0% 2026-06-10T09:16:56.491 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30a4c592-7d17-4ad4-8463-34ac929dae97.tmp, EstimatedImpact: 0% 2026-06-10T09:16:56.491 ProcessImageName: updater.exe, Pid: 352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfb674d3-e258-4ce1-87f1-9c4bbdfed520.tmp, EstimatedImpact: 0% 2026-06-10T09:20:40.080 [RTP] [Mini-filter] Unsuccessful scan status(#87): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #134070, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T09:20:40.080 [RTP] [Mini-filter] Unsuccessful scan status(#88): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #134072, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T09:20:50.093 [RTP] [Mini-filter] Unsuccessful scan status(#89): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #134076, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T09:20:50.108 [RTP] [Mini-filter] Unsuccessful scan status(#90): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #134078, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T09:20:50.108 [RTP] [Mini-filter] Unsuccessful scan status(#91): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #134081, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T09:23:01.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T09:37:00.959 [RTP] [Mini-filter] Unsuccessful scan status(#92): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_noxeg2d4.vre.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #135023, FileId: 0x3d00000000ade2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T09:38:06.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T09:39:00.968 [RTP] [Mini-filter] Unsuccessful scan status(#93): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_ons1wvwn.n5x.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #135197, FileId: 0x3f00000000ade2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T09:48:01.024 [RTP] [Mini-filter] Unsuccessful scan status(#94): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_n3cz2g34.nze.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #135467, FileId: 0x4800000000ade2, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T09:53:11.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T10:08:00.155 [RTP] [Mini-filter] Unsuccessful scan status(#95): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_osnszmyt.wnf.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #135622, FileId: 0x1800000000ae43, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T10:08:16.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T10:10:00.172 [RTP] [Mini-filter] Unsuccessful scan status(#96): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_gsqkzsbt.tvk.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #135636, FileId: 0x1a00000000ae43, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T10:11:00.182 [RTP] [Mini-filter] Unsuccessful scan status(#97): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_psj4yf5i.zwi.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #135643, FileId: 0x1b00000000ae43, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T10:15:05.748 [RTP] [Mini-filter] Unsuccessful scan status(#98): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_333e_1.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #135678, FileId: 0x6700000000ade2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T10:15:06.311 [RTP] [Mini-filter] Unsuccessful scan status(#99): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_333e_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #135682, FileId: 0x6800000000ade2, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T10:20:41.922 [RTP] [Mini-filter] Unsuccessful scan status(#100): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #135732, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T10:23:21.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T10:38:26.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T10:53:31.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T11:08:36.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0xc96f4efc Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0xc96f4efc Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0xc96f4efc BEGIN BM telemetry GUID:{0E11653D-7F9B-2A68-C2BB-40E535A5B511} SignatureID:55745256291477 SigSha:7106c73e392948e275190c3cff85a5401a98a8bc ThreatLevel:0 ProcessID:1748 ProcessCreationTime:134250951264493403 SessionID:0 CreationTime:06-10-2026 11:13:42 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-06-10T11:13:42.262 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T11:13:42.262 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T11:13:42.262 [Cloud] Queued cloud request. 2026-06-10T11:13:42.262 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T11:13:42.262 [Cloud] Dequeued cloud request. 2026-06-10T11:13:42.262 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T11:13:42.782 [Cloud] End of cloud request. 2026-06-10T11:13:42.782 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv2\iphone.php. status=0x40070000, statusex=0x200200, threatid=0x80000000, sigseq=0x55521838dea Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0xa1a51b82 Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0xa1a51b82 2026-06-10T11:13:42.797 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T11:13:42.797 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T11:13:42.797 [Cloud] Queued cloud request. 2026-06-10T11:13:42.797 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T11:13:42.797 [Cloud] Dequeued cloud request. 2026-06-10T11:13:42.797 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T11:13:43.275 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T11:13:43.275 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T11:13:43.275 [Cloud] Queued cloud request. 2026-06-10T11:13:43.275 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T11:13:43.275 [Cloud] Dequeued cloud request. 2026-06-10T11:13:43.275 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T11:13:43.290 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-06-10T11:13:43.290 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T11:13:43.290 [Cloud] Queued cloud request. 2026-06-10T11:13:43.290 [Cloud] Dequeued cloud request. 2026-06-10T11:13:43.290 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T11:13:43.290 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T11:13:43.306 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv2\iphone.php. status=0x40030000, statusex=0x200200, threatid=0x80000000, sigseq=0x55521838dea 2026-06-10T11:13:43.306 [Cloud] End of cloud request. 2026-06-10T11:13:43.525 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-10T11:13:43.525 [Cloud] End of cloud request. 2026-06-10T11:13:43.824 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T11:13:43.855 Dynamic signature received Dynamic Signature has been received Dynamic Signature Type:Signature Update Signature Path:C:\ProgramData\Microsoft\Windows Defender\Scans\\RtSigs\Data\c5bf779e0c138493fde813b0a47b3de6abd7feee Dynamic Signature Compilation Timestamp:06-10-2026 11:13:04 Persistence Type:Duration Time remaining:50065408 2026-06-10T11:13:43.855 [Cloud] End of cloud request. 2026-06-10T11:13:44.361 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T11:16:56.491 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 46312, Count: 7566, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-10T11:16:56.491 ProcessImageName: powershell.exe, Pid: 1864, TotalTime: 322, Count: 32, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 14% 2026-06-10T11:16:56.491 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 92, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-06-10T11:16:56.491 ProcessImageName: wacs.exe, Pid: 5364, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260610.txt, EstimatedImpact: 2% 2026-06-10T11:16:56.491 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_32c1_1.MAD, EstimatedImpact: 0% 2026-06-10T11:16:56.491 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ead14d2c-cf5f-4a46-9b7f-8cda6c0e7b49.tmp, EstimatedImpact: 0% 2026-06-10T11:16:56.491 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d7f8463-91cb-45af-9311-d11feb536398.tmp, EstimatedImpact: 0% 2026-06-10T11:16:56.491 ProcessImageName: updater.exe, Pid: 2672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6233a4b-59b2-487e-a120-c136711891e6.tmp, EstimatedImpact: 0% 2026-06-10T11:16:56.491 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\171818b3-786d-49e7-aff7-743625027b0d.tmp, EstimatedImpact: 0% 2026-06-10T11:16:56.491 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6be60606-02ac-4f2f-ac7d-1dc68d2afd0f.tmp, EstimatedImpact: 0% 2026-06-10T11:16:56.491 ProcessImageName: updater.exe, Pid: 2084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e5132f9-bbc0-47dd-be24-875bba59b8f8.tmp, EstimatedImpact: 0% 2026-06-10T11:16:56.491 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30a4c592-7d17-4ad4-8463-34ac929dae97.tmp, EstimatedImpact: 0% 2026-06-10T11:16:56.491 ProcessImageName: updater.exe, Pid: 712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0167960d-3c97-4b60-8659-92b6cc770d45.tmp, EstimatedImpact: 0% 2026-06-10T11:16:56.491 ProcessImageName: updater.exe, Pid: 352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfb674d3-e258-4ce1-87f1-9c4bbdfed520.tmp, EstimatedImpact: 0% 2026-06-10T11:16:56.491 ProcessImageName: updater.exe, Pid: 2724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e8b42c7-a68b-4352-89b4-afc1f996ebc1.tmp, EstimatedImpact: 0% 2026-06-10T11:18:00.752 [RTP] [Mini-filter] Unsuccessful scan status(#110): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_lnzws5cr.fid.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #136234, FileId: 0x1e00000000ae2e, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T11:23:41.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T11:38:46.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T11:53:51.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T11:56:01.069 [RTP] [Mini-filter] Unsuccessful scan status(#120): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_adomveul.cy3.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #136660, FileId: 0x4700000000ae2e, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T12:08:56.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T12:24:01.422 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T12:39:06.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T12:50:00.532 [RTP] [Mini-filter] Unsuccessful scan status(#130): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_womvzvmg.xfq.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #137407, FileId: 0x7e00000000ae2e, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T12:54:11.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T13:09:16.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T13:16:56.500 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 62210, Count: 9660, MaxTime: 93, MaxTimeFile: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\wphb-cache\cache\landing.kptv.ro\2020\07\18\%EF%BB%BF%EF%BB%BFcontinua-curatenia-generala-de-primavara-toamna-2020\e537a3c8641562118476b9980cd4eb1a.html, EstimatedImpact: 0% 2026-06-10T13:16:56.500 ProcessImageName: powershell.exe, Pid: 1864, TotalTime: 322, Count: 32, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 14% 2026-06-10T13:16:56.500 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 92, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-06-10T13:16:56.500 ProcessImageName: wacs.exe, Pid: 5364, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260610.txt, EstimatedImpact: 2% 2026-06-10T13:16:56.500 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_32c1_1.MAD, EstimatedImpact: 0% 2026-06-10T13:16:56.500 ProcessImageName: updater.exe, Pid: 5700, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e2851be-ee51-47bd-9a2a-d4fe9be3140a.tmp, EstimatedImpact: 0% 2026-06-10T13:16:56.500 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ead14d2c-cf5f-4a46-9b7f-8cda6c0e7b49.tmp, EstimatedImpact: 0% 2026-06-10T13:16:56.500 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d7f8463-91cb-45af-9311-d11feb536398.tmp, EstimatedImpact: 0% 2026-06-10T13:16:56.500 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6be60606-02ac-4f2f-ac7d-1dc68d2afd0f.tmp, EstimatedImpact: 0% 2026-06-10T13:16:56.500 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\171818b3-786d-49e7-aff7-743625027b0d.tmp, EstimatedImpact: 0% 2026-06-10T13:16:56.500 ProcessImageName: updater.exe, Pid: 2672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6233a4b-59b2-487e-a120-c136711891e6.tmp, EstimatedImpact: 0% 2026-06-10T13:16:56.500 ProcessImageName: updater.exe, Pid: 2724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e8b42c7-a68b-4352-89b4-afc1f996ebc1.tmp, EstimatedImpact: 0% 2026-06-10T13:16:56.500 ProcessImageName: updater.exe, Pid: 4660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\885e06bf-07ef-48eb-a46f-e77cb58a75c0.tmp, EstimatedImpact: 0% 2026-06-10T13:16:56.500 ProcessImageName: updater.exe, Pid: 2084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e5132f9-bbc0-47dd-be24-875bba59b8f8.tmp, EstimatedImpact: 0% 2026-06-10T13:16:56.500 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30a4c592-7d17-4ad4-8463-34ac929dae97.tmp, EstimatedImpact: 0% 2026-06-10T13:16:56.500 ProcessImageName: updater.exe, Pid: 712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0167960d-3c97-4b60-8659-92b6cc770d45.tmp, EstimatedImpact: 0% 2026-06-10T13:16:56.500 ProcessImageName: updater.exe, Pid: 352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfb674d3-e258-4ce1-87f1-9c4bbdfed520.tmp, EstimatedImpact: 0% 2026-06-10T13:24:21.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T13:39:26.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T13:54:31.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x000084E7E01AFFB6, sigsha=7a815adb9b9e14267419c8f39edc71f49b2651f9, cached=false, source=2, resourceid=0x29aa5dba Internal signature match:subtype=Lowfi, sigseq=0x0000B1E79AAAACC6, sigsha=36046c13f19c561aedb654f634ba085d6a607ced, cached=false, source=2, resourceid=0x29aa5dba Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0x29aa5dba BEGIN BM telemetry GUID:{AC05567F-9E47-012E-D0DB-9F3C35B27B31} SignatureID:55745797457393 SigSha:ddb4adac2aca8c16554162e265921a50721a9574 ThreatLevel:0 ProcessID:1748 ProcessCreationTime:134250951264493403 SessionID:0 CreationTime:06-10-2026 13:55:19 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry BEGIN BM telemetry GUID:{15C2E213-C5E2-AE87-F811-FEC8EE4928AD} SignatureID:55745256291477 SigSha:7106c73e392948e275190c3cff85a5401a98a8bc ThreatLevel:0 ProcessID:1748 ProcessCreationTime:134250951264493403 SessionID:0 CreationTime:06-10-2026 13:55:19 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-06-10T13:55:19.965 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T13:55:19.965 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T13:55:19.965 [Cloud] Queued cloud request. 2026-06-10T13:55:19.965 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T13:55:19.965 [Cloud] Dequeued cloud request. 2026-06-10T13:55:19.965 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T13:55:20.468 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T13:55:20.468 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T13:55:20.468 [Cloud] Queued cloud request. 2026-06-10T13:55:20.468 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T13:55:20.484 [Cloud] SubmitReport(CMpBmSpyNetReportContext) 2026-06-10T13:55:20.484 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T13:55:20.484 [Cloud] Queued cloud request. 2026-06-10T13:55:20.484 [Cloud] Dequeued cloud request. 2026-06-10T13:55:20.484 [Cloud] Dequeued cloud request. 2026-06-10T13:55:20.484 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T13:55:20.484 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T13:55:20.546 [Cloud] End of cloud request. 2026-06-10T13:55:20.546 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv2\backup_ro\music\187120171213-u2p.php. status=0x40070000, statusex=0x200200, threatid=0x80000000, sigseq=0x84e7e01affb6 2026-06-10T13:55:20.704 [Cloud] MpEngineParseSpyNetResponse(). hr = 0 2026-06-10T13:55:20.704 [Cloud] End of cloud request. 2026-06-10T13:55:20.720 [Cloud] End of cloud request. 2026-06-10T13:55:20.993 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T13:55:20.993 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T13:55:20.993 [Cloud] Queued cloud request. 2026-06-10T13:55:20.993 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T13:55:20.993 [Cloud] Dequeued cloud request. 2026-06-10T13:55:20.993 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T13:55:21.061 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T13:55:21.255 [Cloud] End of cloud request. 2026-06-10T13:55:21.763 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T14:09:36.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T14:10:01.030 [RTP] [Mini-filter] Unsuccessful scan status(#140): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_2zsxqgqc.yda.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #138574, FileId: 0x6100000000ae43, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T14:24:41.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T14:39:46.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T14:54:51.420 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T15:08:00.510 [RTP] [Mini-filter] Unsuccessful scan status(#150): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_molfhtzi.wgi.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #139489, FileId: 0x9f00000000ae43, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T15:09:56.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T15:16:56.505 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 74881, Count: 10883, MaxTime: 250, MaxTimeFile: \Device\HarddiskVolume2\xampp\uninstall.exe, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: powershell.exe, Pid: 1864, TotalTime: 322, Count: 32, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 14% 2026-06-10T15:16:56.505 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 92, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: wacs.exe, Pid: 5364, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260610.txt, EstimatedImpact: 2% 2026-06-10T15:16:56.505 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_32c1_1.MAD, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: updater.exe, Pid: 5700, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e2851be-ee51-47bd-9a2a-d4fe9be3140a.tmp, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ead14d2c-cf5f-4a46-9b7f-8cda6c0e7b49.tmp, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d7f8463-91cb-45af-9311-d11feb536398.tmp, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e04d9a29-e486-4d2e-84fc-6b58ef65eb7b.tmp, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\171818b3-786d-49e7-aff7-743625027b0d.tmp, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: updater.exe, Pid: 2672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6233a4b-59b2-487e-a120-c136711891e6.tmp, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: updater.exe, Pid: 2724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e8b42c7-a68b-4352-89b4-afc1f996ebc1.tmp, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21a4f4f1-895e-467d-a8a6-6fa6374aa6d9.tmp, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: updater.exe, Pid: 4660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\885e06bf-07ef-48eb-a46f-e77cb58a75c0.tmp, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: updater.exe, Pid: 2084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e5132f9-bbc0-47dd-be24-875bba59b8f8.tmp, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6be60606-02ac-4f2f-ac7d-1dc68d2afd0f.tmp, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30a4c592-7d17-4ad4-8463-34ac929dae97.tmp, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: updater.exe, Pid: 712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0167960d-3c97-4b60-8659-92b6cc770d45.tmp, EstimatedImpact: 0% 2026-06-10T15:16:56.505 ProcessImageName: updater.exe, Pid: 352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfb674d3-e258-4ce1-87f1-9c4bbdfed520.tmp, EstimatedImpact: 0% 2026-06-10T15:25:01.409 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T15:40:06.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000108090FCF4C4, sigsha=064f0536ffb97bb72d6c274c080aa4e2ffdf1b46, cached=false, source=2, resourceid=0xce2165b0 Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0xd0b70dbd Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0xd0b70dbd Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0xd0b70dbd 2026-06-10T15:46:36.958 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T15:46:36.958 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T15:46:36.958 [Cloud] Queued cloud request. 2026-06-10T15:46:36.958 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T15:46:37.286 [Cloud] Dequeued cloud request. 2026-06-10T15:46:37.348 Bm signature throttled:0x000032b3547485f1 2026-06-10T15:46:37.348 Bm signature throttled:0x000032b33432fc95 2026-06-10T15:46:37.958 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T15:46:40.458 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv\backup_ro\android.php. status=0x40070000, statusex=0x200200, threatid=0x80000000, sigseq=0x55521838dea Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0x64abda3e Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0x64abda3e 2026-06-10T15:46:40.473 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T15:46:40.473 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T15:46:40.473 [Cloud] Queued cloud request. 2026-06-10T15:46:40.473 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T15:46:40.473 [Cloud] Dequeued cloud request. 2026-06-10T15:46:40.473 [Cloud] End of cloud request. 2026-06-10T15:46:40.473 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T15:46:41.536 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T15:46:41.661 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\kptv\backup_ro\android.php. status=0x40030000, statusex=0x200200, threatid=0x80000000, sigseq=0x55521838dea 2026-06-10T15:46:41.661 [Cloud] End of cloud request. 2026-06-10T15:46:42.629 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T15:55:11.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T16:00:00.919 [RTP] [Mini-filter] Unsuccessful scan status(#160): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_k0k2w44e.bkx.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #142196, FileId: 0x2100000000ae60, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T16:10:16.418 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T16:20:50.938 [RTP] [Mini-filter] Unsuccessful scan status(#170): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #142406, FileId: 0xd10000000005ae, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T16:25:21.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T16:40:26.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T16:55:31.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T17:10:36.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T17:16:56.514 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 186845, Count: 21143, MaxTime: 1265, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\bin\curl.exe, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: powershell.exe, Pid: 1864, TotalTime: 322, Count: 32, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 14% 2026-06-10T17:16:56.514 ProcessImageName: svchost.exe, Pid: 1184, TotalTime: 92, Count: 8, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\Windows\System32\pcwum.dll, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: wacs.exe, Pid: 5364, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260610.txt, EstimatedImpact: 2% 2026-06-10T17:16:56.514 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 60, Count: 11, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_32c1_1.MAD, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 5700, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e2851be-ee51-47bd-9a2a-d4fe9be3140a.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ead14d2c-cf5f-4a46-9b7f-8cda6c0e7b49.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 6056, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d66b2c82-bb7a-44a2-937b-0efe0d6b387d.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d7f8463-91cb-45af-9311-d11feb536398.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\12b1eb0c-557b-4a12-bcd3-31f2971c63d7.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6be60606-02ac-4f2f-ac7d-1dc68d2afd0f.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e04d9a29-e486-4d2e-84fc-6b58ef65eb7b.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 2672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6233a4b-59b2-487e-a120-c136711891e6.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\171818b3-786d-49e7-aff7-743625027b0d.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 2724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e8b42c7-a68b-4352-89b4-afc1f996ebc1.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 4660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\885e06bf-07ef-48eb-a46f-e77cb58a75c0.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21a4f4f1-895e-467d-a8a6-6fa6374aa6d9.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 2084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e5132f9-bbc0-47dd-be24-875bba59b8f8.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 1416, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\30a4c592-7d17-4ad4-8463-34ac929dae97.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0167960d-3c97-4b60-8659-92b6cc770d45.tmp, EstimatedImpact: 0% 2026-06-10T17:16:56.514 ProcessImageName: updater.exe, Pid: 352, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\bfb674d3-e258-4ce1-87f1-9c4bbdfed520.tmp, EstimatedImpact: 0% 2026-06-10T17:20:41.540 [RTP] [Mini-filter] Unsuccessful scan status(#180): \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\updater.log. Process: (unknown), Status: 0xc000004b, State: 0, ScanRequest #146892, FileId: 0x569000000000348, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T17:25:41.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T17:40:46.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T17:55:51.416 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T18:06:42.206 [RTP] [Mini-filter] Unsuccessful scan status(#190): \Device\HarddiskVolume2\xampp\tmp\#sqlb08_3533_3.MAI. Process: \Device\HarddiskVolume2\xampp\mysql\bin\mysqld.exe, Status: 0xc0000001, State: 0, ScanRequest #148936, FileId: 0x11e00000000ae43, Reason: OnClose, IoStatusBlockForNewFile: 0xffffffff, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x801, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T18:10:56.410 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T18:26:01.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T18:40:32.583 Lua SetAttribute:Filter caching disabled for \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\plugins\updraftplus\index.html (runtime MpDisableCaching from 0x00040cbdc4489f5e) 2026-06-10T18:40:32.583 MpLog-Throttle:The above 1 log lines will be snoozed for 3600000 ms Internal signature match:subtype=Lowfi, sigseq=0x000017E741530473, sigsha=60462a18b8bebb90c4c31884470339e8172f14bb, cached=false, source=2, resourceid=0x636fb04e Internal signature match:subtype=Lowfi, sigseq=0x000112E75BEB89A0, sigsha=df2e4c6cfedf431b491a3226e0c0200928a3db58, cached=false, source=2, resourceid=0x636fb04e 2026-06-10T18:40:32.598 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp\htdocs\landing\wp-content\plugins\updraftplus\index.html. status=0x40050000, statusex=0x0, threatid=0x80000000, sigseq=0x17e741530473 2026-06-10T18:41:06.419 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T18:44:00.343 [RTP] [Mini-filter] Unsuccessful scan status(#200): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_qmcxlsbj.pfl.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #155785, FileId: 0x55ac00000000bea1, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T18:56:11.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T19:11:16.414 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T19:16:56.519 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 306679, Count: 30963, MaxTime: 1265, MaxTimeFile: \Device\HarddiskVolume2\xampp\apache\bin\curl.exe, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: powershell.exe, Pid: 1864, TotalTime: 322, Count: 32, MaxTime: 78, MaxTimeFile: \Device\HarddiskVolume2\Windows\assembly\NativeImages_v4.0.30319_64\System.Manaa57fc8cc#\29105203c1101e823793bec5576a6a37\System.Management.Automation.ni.dll, EstimatedImpact: 14% 2026-06-10T19:16:56.519 ProcessImageName: wacs.exe, Pid: 5364, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260610.txt, EstimatedImpact: 2% 2026-06-10T19:16:56.519 ProcessImageName: mysqld.exe, Pid: 2204, TotalTime: 75, Count: 17, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\xampp\tmp\#sqlb08_32c1_1.MAD, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 5700, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e2851be-ee51-47bd-9a2a-d4fe9be3140a.tmp, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 6056, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d66b2c82-bb7a-44a2-937b-0efe0d6b387d.tmp, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ead14d2c-cf5f-4a46-9b7f-8cda6c0e7b49.tmp, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d7f8463-91cb-45af-9311-d11feb536398.tmp, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\12b1eb0c-557b-4a12-bcd3-31f2971c63d7.tmp, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 5732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\61378ce9-1a7a-4763-ae50-891923f2c3ab.tmp, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 2724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e8b42c7-a68b-4352-89b4-afc1f996ebc1.tmp, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e04d9a29-e486-4d2e-84fc-6b58ef65eb7b.tmp, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6be60606-02ac-4f2f-ac7d-1dc68d2afd0f.tmp, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 4660, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\885e06bf-07ef-48eb-a46f-e77cb58a75c0.tmp, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 5292, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\cb36bf3d-eec8-4bd2-815d-01e3514651b8.tmp, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 5456, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\171818b3-786d-49e7-aff7-743625027b0d.tmp, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21a4f4f1-895e-467d-a8a6-6fa6374aa6d9.tmp, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 2672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6233a4b-59b2-487e-a120-c136711891e6.tmp, EstimatedImpact: 0% 2026-06-10T19:16:56.519 ProcessImageName: updater.exe, Pid: 2084, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\7e5132f9-bbc0-47dd-be24-875bba59b8f8.tmp, EstimatedImpact: 0% 2026-06-10T19:26:21.408 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T19:41:26.406 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000157E075BDAF7, sigsha=88890d9310678dd16fbdb3eaa1b94e63c008c09c, cached=false, source=2, resourceid=0xfade677a Internal signature match:subtype=Lowfi, sigseq=0x0000157E7E10585E, sigsha=11649d496c66a5dd5424f700ae2b27af15ebc616, cached=false, source=2, resourceid=0xfade677a 2026-06-10T19:42:35.976 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\FileZilla_3.52.2_win64_sponsored-setup.exe. status=0x40050000, statusex=0x0, threatid=0x1002c85a, sigseq=0x157e075bdaf7 Internal signature match:subtype=Lowfi, sigseq=0x0000108766DC1975, sigsha=aecef3f845b0f2d07826ff984849c077aad0fd76, cached=false, source=2, resourceid=0x23e82ff5 Internal signature match:subtype=Lowfi, sigseq=0x0000157E7E10585E, sigsha=11649d496c66a5dd5424f700ae2b27af15ebc616, cached=false, source=2, resourceid=0x23e82ff5 2026-06-10T19:43:39.367 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\Users\Administrator.EXTERN\Downloads\FileZilla_3.62.1_win64_sponsored2-setup.exe. status=0x40050000, statusex=0x0, threatid=0x80000000, sigseq=0x108766dc1975 2026-06-10T19:56:31.413 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T20:10:01.002 [RTP] [Mini-filter] Unsuccessful scan status(#210): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_pd34modj.0hi.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #163678, FileId: 0x1a00000000c250, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T20:11:36.412 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0xb22958fc Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0xb22958fc Internal signature match:subtype=Lowfi, sigseq=0x001107BD8A45AAC6, sigsha=5f443c7a99b8ca69580bdc91a5c96c381a4909ba, cached=false, source=2, resourceid=0xb22958fc BEGIN BM telemetry GUID:{23BADBC3-1605-A431-532D-4485CCF7A60E} SignatureID:55745797457393 SigSha:ddb4adac2aca8c16554162e265921a50721a9574 ThreatLevel:0 ProcessID:1748 ProcessCreationTime:134250951264493403 SessionID:0 CreationTime:06-10-2026 20:20:42 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry BEGIN BM telemetry GUID:{F9038BC0-EA51-C408-C447-961EC65D1082} SignatureID:55745256291477 SigSha:7106c73e392948e275190c3cff85a5401a98a8bc ThreatLevel:0 ProcessID:1748 ProcessCreationTime:134250951264493403 SessionID:0 CreationTime:06-10-2026 20:20:42 ImagePath:C:\xampp\apache\bin\httpd.exe Taint Info:Friendly: Y; Reason: ; Modules: ; Parents: Operations:None END BM telemetry 2026-06-10T20:20:42.264 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp2_not used\htdocs\kptv\android.php. status=0x40050000, statusex=0x0, threatid=0x80000000, sigseq=0x55521838dea Internal signature match:subtype=Lowfi, sigseq=0x0000055521838DEA, sigsha=c9d9aa2fdf9ba1f159c94ff82b70d34412fdb2d0, cached=false, source=2, resourceid=0xf27e802d Internal signature match:subtype=Lowfi, sigseq=0x000020292818F356, sigsha=bc95c3d44c4b61ff9eda96f36ec1760625964b90, cached=false, source=2, resourceid=0xf27e802d 2026-06-10T20:20:42.280 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T20:20:42.280 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T20:20:42.280 [Cloud] Queued cloud request. 2026-06-10T20:20:42.280 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T20:20:42.280 [Cloud] Dequeued cloud request. 2026-06-10T20:20:42.280 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T20:20:42.960 [RTP] [MpRtp] Engine VFZ lofi/sample/expensive: \Device\HarddiskVolume2\xampp2_not used\htdocs\kptv\android.php. status=0x40030000, statusex=0x200200, threatid=0x80000000, sigseq=0x55521838dea 2026-06-10T20:20:42.960 [Cloud] End of cloud request. 2026-06-10T20:20:43.476 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T20:20:44.194 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T20:20:44.194 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T20:20:44.194 [Cloud] Queued cloud request. 2026-06-10T20:20:44.194 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T20:20:44.194 [Cloud] Dequeued cloud request. 2026-06-10T20:20:44.194 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T20:20:44.456 [Cloud] End of cloud request. 2026-06-10T20:20:44.957 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T20:20:46.144 [Cloud] SubmitReport(CMpSpyDssContext), ShouldSendEvenOnPaidNetworks: 1 2026-06-10T20:20:46.144 [Cloud] Start of cloud request. Passive mode: 0 2026-06-10T20:20:46.144 [Cloud] Queued cloud request. 2026-06-10T20:20:46.144 [Cloud] MpEngineCloudRequest(). hr = 0 2026-06-10T20:20:46.144 [Cloud] Dequeued cloud request. 2026-06-10T20:20:46.144 [Cloud] RpcSpynetQueueGenerateReport(). hr = 0 2026-06-10T20:20:46.394 [Cloud] End of cloud request. 2026-06-10T20:20:46.904 [NRI] Successfully updated NIS service with platform settings for enforcement level Log 2026-06-10T20:23:01.406 [RTP] [Mini-filter] Unsuccessful scan status(#220): \Device\HarddiskVolume2\Windows\SystemTemp\__PSScriptPolicyTest_x3vxlmwy.0ro.psm1. Process: \Device\HarddiskVolume2\Windows\System32\WindowsPowerShell\v1.0\powershell.exe, Status: 0xc0000001, State: 0, ScanRequest #165686, FileId: 0x1000000000c291, Reason: OnClose, IoStatusBlockForNewFile: 0x2, DesiredAccess:0x0, FileAttributes:0x20, ScanAttributes:0x10, AccessStateFlags:0x1, BackingFileInfo: 0x0, 0x0, 0x0:0\0x0:0 2026-06-10T20:26:41.417 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T20:41:46.421 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T20:56:51.411 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T21:11:56.405 [ESU] ESU heartbeat: ESU disabled (explicit EnableEmergencySigs config) 2026-06-10T21:16:56.519 ProcessImageName: httpd.exe, Pid: 1748, TotalTime: 475875, Count: 45722, MaxTime: 1531, MaxTimeFile: \Device\HarddiskVolume2\Users\Administrator\Downloads\xampp-windows-x64-7.3.5-0-VC15-installer.exe, EstimatedImpact: 0% 2026-06-10T21:16:56.519 ProcessImageName: wacs.exe, Pid: 5364, TotalTime: 91, Count: 6, MaxTime: 31, MaxTimeFile: \Device\HarddiskVolume2\ProgramData\win-acme\acme-v02.api.letsencrypt.org\Log\log-20260610.txt, EstimatedImpact: 2% 2026-06-10T21:16:56.519 ProcessImageName: updater.exe, Pid: 5700, TotalTime: 45, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\0e2851be-ee51-47bd-9a2a-d4fe9be3140a.tmp, EstimatedImpact: 0% 2026-06-10T21:16:56.519 ProcessImageName: updater.exe, Pid: 5864, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\ead14d2c-cf5f-4a46-9b7f-8cda6c0e7b49.tmp, EstimatedImpact: 0% 2026-06-10T21:16:56.519 ProcessImageName: updater.exe, Pid: 6056, TotalTime: 30, Count: 4, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\d66b2c82-bb7a-44a2-937b-0efe0d6b387d.tmp, EstimatedImpact: 0% 2026-06-10T21:16:56.519 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 3, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\9d7f8463-91cb-45af-9311-d11feb536398.tmp, EstimatedImpact: 0% 2026-06-10T21:16:56.519 ProcessImageName: updater.exe, Pid: 4016, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\21a4f4f1-895e-467d-a8a6-6fa6374aa6d9.tmp, EstimatedImpact: 0% 2026-06-10T21:16:56.519 ProcessImageName: updater.exe, Pid: 6088, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\12b1eb0c-557b-4a12-bcd3-31f2971c63d7.tmp, EstimatedImpact: 0% 2026-06-10T21:16:56.519 ProcessImageName: updater.exe, Pid: 2724, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\5e8b42c7-a68b-4352-89b4-afc1f996ebc1.tmp, EstimatedImpact: 0% 2026-06-10T21:16:56.519 ProcessImageName: updater.exe, Pid: 6020, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\e04d9a29-e486-4d2e-84fc-6b58ef65eb7b.tmp, EstimatedImpact: 0% 2026-06-10T21:16:56.519 ProcessImageName: updater.exe, Pid: 2672, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\b6233a4b-59b2-487e-a120-c136711891e6.tmp, EstimatedImpact: 0% 2026-06-10T21:16:56.519 ProcessImageName: updater.exe, Pid: 5732, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\61378ce9-1a7a-4763-ae50-891923f2c3ab.tmp, EstimatedImpact: 0% 2026-06-10T21:16:56.519 ProcessImageName: updater.exe, Pid: 5712, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\6be60606-02ac-4f2f-ac7d-1dc68d2afd0f.tmp, EstimatedImpact: 0% 2026-06-10T21:16:56.519 ProcessImageName: updater.exe, Pid: 5700, TotalTime: 15, Count: 2, MaxTime: 15, MaxTimeFile: \Device\HarddiskVolume2\Program Files (x86)\Google\GoogleUpdater\858823d2-f47e-4917-8139-3e7e975228c1.tmp, EstimatedImpact: 0%戼砾戼㹲戼㹲楗摮睯⁳呎䬠呐⁖⸶′畢汩⁤㈹〰⠠楗摮睯⁳敓癲牥㈠㄰′慄慴散瑮牥䔠楤楴湯
㕩㘸戼㹲⼼㹢